05 ago
|
GMV
|
Tres Cantos
ppDo you want to participate in advanced offensive security assessments? The bGMV Technical Audits team /b is looking for you! /p pWe like to get straight to the point and tell you what you won't find online. If you'd like to learn more about us, visit the GMV website. /p h3WHAT CHALLENGE WILL YOU TAKE ON? /h3 pAs a bSenior Pentester /b, you will not only execute technical assessments but also bdesign realistic attack scenarios /b based on MITRE ATTCK TTPs and lead audit projects, helping organizations understand how they could be compromised before a real attacker does. You will work on web and mobile applications, network infrastructures, Wi‑Fi networks, cloud environments (AWS, Azure, GCP), Active Directory and AI‑based systems. You will also participate in bRed Team and Purple Team exercises /b, simulating real attacks and collaborating with Blue Team professionals to improve threat detection and response capabilities. /p h3DAY‑TO‑DAY RESPONSIBILITIES /h3 ul liExecute and lead penetration tests in complex corporate environments. /li liParticipate in Red Team exercises, applying evasion techniques against EDR, XDR, WAF and antivirus solutions. /li liIdentify vulnerabilities, analyze their impact and propose effective mitigation strategies. /li liDevelop or adapt offensive tools and automations using Python, Bash or PowerShell. /li liProduce clear technical and executive reports focused on risk. /li liPresent findings to both technical and business audiences. /li liManage technical audit projects, coordinating scope, timelines and deliverables. /li /ul h3QUALIFICATIONS /h3 ul li5+ years of experience in penetration testing (web, mobile, network, cloud, Active Directory, Wi‑Fi). /li liExperience in Red Team operations designing and executing simulated attacks.
/li liAdvanced knowledge of tools such as Burp Suite, Nmap, Metasploit or C2 frameworks. /li liAbility to automate offensive tasks through scripting (Python, Bash or PowerShell). /liliExperience producing technical and executive reports focused on risk. /li liStrong communication skills and ability to present results clearly. /li liExperience managing cybersecurity or technical audit projects. /li liOffensive certifications such as OSCP, OSEP, OSWE, eCPPT, CRTP or equivalent. /li liKnowledge of frameworks and methodologies such as PTES, MITRE ATTCK or OWASP. /li liExperience assessing security in AI or LLM‑based systems (OWASP Top 10 for LLMs). /li /ul h3BENEFITS /h3 ul liHybrid work model and up to 8 weeks per year of remote work outside your usual geographical area. /li liFlexible working hours and intensive working days on Fridays and during summer. /li liA personalized career development plan, training opportunities and language learning support. /li liNational and international mobility. Coming from another country? We offer a relocation package. /li liCompetitive salary with continuous reviews, versátil compensation and brand discounts. /li liWellbeing program: health, dental and accident insurance; free fruit and coffee; physical, mental and financial wellbeing initiatives. /li /ul pThroughout our recruitment process you will always have direct contact with our talent acquisition team, either by phone or in person/online. We will never request bank transfers or credit card details. If you are contacted through any other process, please reach out to the person responsible for the recruitment process. /p pWe promote equal opportunities in hiring and are committed to inclusion and diversity. /p pWHAT ARE YOU WAITING FOR? JOIN US /p /p #J-18808-Ljbffr
📌 Senior pentester (Tres Cantos)
🏢 GMV
📍 Tres Cantos