It Security Ai-Redteamer
Role details
Job location
Tech stack
Job description
OverviewWelcome to DKB Code Factory. Use AI driven offensive security techniques to proactively identify, validate, and communicate exploitable vulnerabilities across DKB's digital banking products, cloud platforms, APIs, and internal systems. In this high impact role you will run red team engagements, shape remediation priorities, and help establish a scalable offensive security capability that protects millions of customers.ResponsibilitiesPlan and execute AI-assisted red team engagements across web applications, APIs, cloud workloads and infrastructure, and deliver prioritized technical reports and executive summaries.Provide clear remediation guidance and validate fixes, prioritizing critical and high findings.Configure, tune and maintain offensive tooling and develop automation playbooks that reduce manual triage and false positives.Integrate recurring security checks into CI/CD pipelines and platform processes to enable continuous testing and attack-surface reduction.Run remediation workshops and knowledge transfers, and produce reusable runbooks for product and platform teams.Coordinate triage and handoff with SOC, IT Ops, product teams and central IT Security, and support governance and compliance mapping (OWASP, API Security Top 10, CVSS).QualificationsProven hands on experience in red team or offensive security testing across web apps, APIs, and cloud environments.Solid understanding of OWASP Top 10, API Security Top 10, CVSS, secure SDLC, threat modeling.Experience with AI assisted offensive tooling or demonstrable integration of ML/NLP techniques into offensive workflows (e.g., Mythos, GPT Cyber).Strong practical experience with Burp Suite, OWASP ZAP, Nmap, Metasploit, Nessus/OpenVAS, and Kali Linux.Solid cloud security knowledge, particularly AWS, and experience with Kubernetes and container security.Scripting and automation skills (Python, Bash) and experience integrating security checks in Git/GitLab CI or equivalent CI systems.Excellent written and verbal communication skills in English.Experience with SIEM/logging platforms, OpenSearch, Grafana, or production monitoring stacks; prior experience in financial services or regulated environments is a plus.NoteGot the feeling not to match every single requirement? Don't worry! We encourage you to apply anyways, even if your qualifications do not align perfectly. You might still be the right candidate for us.Benefits and CultureFrom Morning Daily to Afterwork drinks, team spirit is essential to us. We are connected with each other: we share ideas, give support in personal development, and celebrate success together. We offer numerous other benefits.#J-*****-Ljbffr
Requirements
Proven hands on experience in red team or offensive security testing across web apps, APIs, and cloud environments. Solid understanding of OWASP Top 10, API Security Top 10, CVSS, secure SDLC, threat modeling. Experience with AI assisted offensive tooling or demonstrable integration of ML/NLP techniques into offensive workflows (e.g., Mythos, GPT Cyber). Strong practical experience with Burp Suite, OWASP ZAP, Nmap, Metasploit, Nessus/OpenVAS, and Kali Linux. Solid cloud security knowledge, particularly AWS, and experience with Kubernetes and container security. Scripting and automation skills (Python, Bash) and experience integrating security checks in Git/GitLab CI or equivalent CI systems. Excellent written and verbal communication skills in English. Experience with SIEM/logging platforms, OpenSearch, Grafana, or production monitoring stacks; prior experience in financial services or regulated environments is a plus. Note