Nowa
Automated Security Testing Engineer
Brak informacji o wynagrodzeniu
SeniorFull-time
#346804·Dodano dziś·0
Źródło: nofluffjobs.comTech Stack / Keywords
SecurityTestingOWASPSASTDASTCI/CD PipelinesPythonBashPowerShellTest automationJenkinsGitLab CIGitHub ActionsAI
Firma i stanowisko
Experienced Security Testing Engineer role in a cybersecurity team focused on strengthening security of modern digital systems including web, mobile, and desktop applications.
Wymagania
- 3–5 years of experience in security testing and penetration testing
- Required Certification (one of the following): CREST Practitioner Security Analyst (CPSA), CREST Registered Penetration Tester (CRT), CREST Certified Tester (CCT), Offensive Security Certified Professional (OSCP)
- Experience testing web, mobile, and desktop applications
- Strong understanding of application security and common vulnerabilities (OWASP Top 10)
- Ability to produce clear, structured security documentation and reports
- Strong analytical and problem-solving skills
- English skills sufficient for technical conversations
Nice to have:
- Experience in automating security testing processes (SAST, DAST, SCA) within CI/CD pipelines
- Hands-on experience with scripting for automation (Python, Bash, PowerShell)
- Experience integrating security tools into DevSecOps workflows
- Ability to develop custom scripts/tools for vulnerability scanning and exploitation
- Experience with test automation frameworks and orchestration tools (e.g., Jenkins, GitLab CI, GitHub Actions)
- Experience leveraging AI/ML tools to enhance security testing and vulnerability detection
- Familiarity with AI-assisted code analysis and pentesting tools (e.g., LLM-based assistants, AI fuzzing tools)
- Ability to use AI tools for automation of reporting, vulnerability triage, and threat analysis
- Understanding of AI security risks (prompt injection, model abuse, LLM vulnerabilities) is a plus
Obowiązki
- Conduct penetration testing and vulnerability assessments for web, mobile, and desktop applications
- Identify security vulnerabilities and provide clear remediation recommendations
- Develop and maintain security testing strategies and methodologies
- Prepare technical documentation and security reports for stakeholders
- Collaborate with engineering and development teams to address security issues and improve system resilience
Oferta
- International projects
- Private healthcare
- English lessons
- Friendly atmosphere
- No dress code
- Modern office
Opieka zdrowotna
Kursy językowe
Itransition
6 aktywnych ofert