Lead It Security Ai-Redteamer

Dkbcodefactory
A Coruña, Spain
2 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Working hours
Regular working hours
Languages
English

Job location

A Coruña, Spain

Tech stack

Kubernetes Security
API
Artificial Intelligence
Amazon Web Services (AWS)
Automation of Tests
Bash
Burp Suite
Cloud Computing
Cloud Computing Security
Computer Security
Python
Kali Linux
Natural Language Processing
NMap
Open Web Application Security
Systems Development Life Cycle
Cloud Services
Red Team (Cyber Security)
Security Information and Event Management
Systems Integration
Web Applications
Data Logging
Cloud Platform System
Grafana
Software Security
GIT
Gitlab-ci
Kubernetes
Metasploit
Nessus
GPT

Job description

Welcome to DKB Code Factory. We are looking for a Lead IT Security AI Redteamer to strengthen our offensive security capability in Spain.ResponsibilitiesLead and perform AI-assisted red team engagements across web applications, APIs, cloud workloads and infrastructure, and deliver prioritized technical reports and executive summaries.Manage and develop two direct reports, run regular 1:1s, performance reviews, and development plans; contribute to hiring and team growth.Provide clear remediation guidance and validate fixes, prioritizing critical and high findings.Configure, tune and maintain offensive tooling and develop automation playbooks that reduce manual triage and false positives.Integrate recurring security checks into CI/CD pipelines and platform processes to enable continuous testing and attack?surface reduction.Lead remediation workshops and knowledge transfers, and produce reusable runbooks for product and platform teams.Coordinate triage and handoff with SOC, IT Ops, product teams and central IT Security, and support governance and compliance mapping (OWASP, API Security Top 10, CVSS).QualificationsProven hands?on experience in red team or offensive security testing across web apps, APIs, and cloud environments.Solid understanding of OWASP Top 10, API Security Top 10, CVSS, secure SDLC, and threat modeling.Experience with AI?assisted offensive tooling or demonstrable integration of ML/NLP techniques into offensive workflows (e.g., Mythos, GPT Cyber).Strong practical experience with Burp Suite, OWASP ZAP, Nmap, Metasploit, Nessus/OpenVAS, and Kali Linux.Solid cloud security knowledge, particularly AWS, and experience with Kubernetes and container security.Scripting and automation skills (Python, Bash) and experience integrating security checks in Git/GitLab CI or equivalent CI systems.Strong stakeholder management skills, with the ability to engage confidently with engineering teams, senior stakeholders and leadership.Excellent written and verbal communication skills in English.Experience with SIEM/logging platforms, OpenSearch, Grafana, or production monitoring stacks; prior experience in financial services or regulated environments is a plus.BenefitsWe offer a vibrant culture with morning daily gatherings and after?work drinks, strong team spirit, personal development support, and a comprehensive benefits package.We encourage you to apply even if not every requirement matches. You could still be the right candidate for us.#J-*****-Ljbffr

Requirements

Proven hands?on experience in red team or offensive security testing across web apps, APIs, and cloud environments. Solid understanding of OWASP Top 10, API Security Top 10, CVSS, secure SDLC, and threat modeling. Experience with AI?assisted offensive tooling or demonstrable integration of ML/NLP techniques into offensive workflows (e.g., Mythos, GPT Cyber). Strong practical experience with Burp Suite, OWASP ZAP, Nmap, Metasploit, Nessus/OpenVAS, and Kali Linux. Solid cloud security knowledge, particularly AWS, and experience with Kubernetes and container security. Scripting and automation skills (Python, Bash) and experience integrating security checks in Git/GitLab CI or equivalent CI systems. Strong stakeholder management skills, with the ability to engage confidently with engineering teams, senior stakeholders and leadership. Excellent written and verbal communication skills in English. Experience with SIEM/logging platforms, OpenSearch, Grafana, or production monitoring stacks; prior experience in financial services or regulated environments is a plus.

Benefits & conditions

We offer a vibrant culture with morning daily gatherings and after?work drinks, strong team spirit, personal development support, and a comprehensive benefits package. We encourage you to apply even if not every requirement matches. You could still be the right candidate for us. #J-*****-Ljbffr

Apply for this position