Automated Security Testing Engineer

Brak informacji o wynagrodzeniu
SeniorFull-time
#346804·Dodano dziś·0
Źródło: nofluffjobs.com
Aplikuj teraz

Tech Stack / Keywords

SecurityTestingOWASPSASTDASTCI/CD PipelinesPythonBashPowerShellTest automationJenkinsGitLab CIGitHub ActionsAI

Firma i stanowisko

Experienced Security Testing Engineer role in a cybersecurity team focused on strengthening security of modern digital systems including web, mobile, and desktop applications.


Wymagania

  • 3–5 years of experience in security testing and penetration testing
  • Required Certification (one of the following): CREST Practitioner Security Analyst (CPSA), CREST Registered Penetration Tester (CRT), CREST Certified Tester (CCT), Offensive Security Certified Professional (OSCP)
  • Experience testing web, mobile, and desktop applications
  • Strong understanding of application security and common vulnerabilities (OWASP Top 10)
  • Ability to produce clear, structured security documentation and reports
  • Strong analytical and problem-solving skills
  • English skills sufficient for technical conversations

Nice to have:

  • Experience in automating security testing processes (SAST, DAST, SCA) within CI/CD pipelines
  • Hands-on experience with scripting for automation (Python, Bash, PowerShell)
  • Experience integrating security tools into DevSecOps workflows
  • Ability to develop custom scripts/tools for vulnerability scanning and exploitation
  • Experience with test automation frameworks and orchestration tools (e.g., Jenkins, GitLab CI, GitHub Actions)
  • Experience leveraging AI/ML tools to enhance security testing and vulnerability detection
  • Familiarity with AI-assisted code analysis and pentesting tools (e.g., LLM-based assistants, AI fuzzing tools)
  • Ability to use AI tools for automation of reporting, vulnerability triage, and threat analysis
  • Understanding of AI security risks (prompt injection, model abuse, LLM vulnerabilities) is a plus

Obowiązki

  • Conduct penetration testing and vulnerability assessments for web, mobile, and desktop applications
  • Identify security vulnerabilities and provide clear remediation recommendations
  • Develop and maintain security testing strategies and methodologies
  • Prepare technical documentation and security reports for stakeholders
  • Collaborate with engineering and development teams to address security issues and improve system resilience

Oferta

  • International projects
  • Private healthcare
  • English lessons
  • Friendly atmosphere
  • No dress code
  • Modern office
Opieka zdrowotna
Kursy językowe
Itransition

Itransition

6 aktywnych ofert

Zobacz wszystkie oferty
Aplikuj teraz