Information Security - Penetration Tester (Madrid)

Information Security - Penetration Tester (Madrid)

02 sep
|
Axa Group
|
Madrid

02 sep

Axa Group

Madrid

Join us as an AI-Enhanced Penetration Tester to revolutionize cybersecurity with cutting-edge AI/ML techniques. Innovate, analyze, and strengthen digital defenses in a dynamic, forward-thinking environment! About the jobJob purpose We are seeking a highly skilled and forward-thinking individual to elevate our cybersecurity posture by applying Artificial Intelligence and Machine Learning techniques to traditional penetration testing, attack surface monitoring, and vulnerability assurance.

You will be instrumental in identifying complex vulnerabilities, simulating advanced cyberattacks, and providing data-driven insights that directly contribute to AXA's robust security and digital posture, ensuring effective controls are in place and aligned with our Group Security Corporate function's mandate for advanced assurance and monitoring.

Conduct Advanced Penetration Tests: Perform detailed security assessments and penetration tests across a wide range of traditional systems, including web applications, APIs, network infrastructure, cloud environments (AWS, Azure, GCP), and internal systems.

Integrate AI into Pentesting Workflows: Research, evaluate, and implement AI/ML tools and techniques to augment and automate various stages of the penetration testing lifecycle, such as: Intelligent Reconnaissance for advanced OSINT, asset discovery, and mapping complex attack surfaces.

Automated Vulnerability

Discovery using AI/ML for smarter fuzzing, code analysis (SAST/DAST), and identifying logical flaws.

Threat

Modeling & Attack Path Analysis utilizing AI to analyze system architecture and predict likely attack vectors.

Behavioral Anomaly

Detection to identify suspicious activities during tests.

Continuous Attack Surface

Monitoring (ASM): Utilize AI-driven tools and techniques to continuously monitor and map the organization's dynamic attack surface, identifying new assets, services, and potential entry points. Leverage AI and data analytics to perform assurance activities on the overall vulnerability landscape. Analyzing vulnerability data to identify trends, prioritize remediation efforts, and assess the true risk posture.

Providing data-driven insights into the efficacy of security controls. Develop custom scripts, tools, and integrate AI/ML models to enhance existing penetration testing platforms and create novel offensive security capabilities.

Research & Innovation: Stay at the forefront of AI advancements in cybersecurity, actively research new attack techniques, and explore emerging AI/ML applications for offensive security.



Expected skills & experienceWe are looking for someone with the following experience and skills: ExperienceRequired:3+ years of hands-on experience in penetration testing, ethical hacking, or offensive security roles. Proven experience or strong demonstrable interest in applying AI/ML concepts and tools to cybersecurity challenges.

Experience with specific AI-powered security tools for vulnerability scanning, threat intelligence, attack surface management, or code analysis. natural language processing for social engineering, anomaly detection for network traffic, predictive modeling for vulnerabilities).Technical skillsDeep Penetration Testing Expertise: Strong understanding of traditional penetration testing methodologies, tools (e.g., Expert-level proficiency in Python is essential, with experience in developing scripts, automation, and integrating APIs. Solid understanding of core AI/ML concepts, algorithms, and data science principles (e.g., Cloud Security: Experience with security assessments in cloud environments (AWS, Azure, GCP).Proficient with Linux, Windows, and macOS environments.

Networking: Strong understanding of TCP/IP, network protocols, and common network security controls. TensorFlow, PyTorch, Scikit-learn) for understanding how to integrate or leverage them. prompt engineering for attack generation, code analysis).Ability to work closely with other security engineers, developers, and infrastructure teams to communicate findings, foster a culture of secure development, and mentor junior team members on AI-enhanced techniques. A strong drive for continuous learning and development in the rapidly evolving fields of AI and cybersecurity.

The divisionYou will join the Group Security division, defining the security standards to be applied by AXA entities, and holding overarching responsibility for safeguarding the security of the entire AXA Group, covering information security, physical security & safety, operational resilience, and crisis management with ability to take necessary actions to safeguard unacceptable risk. Throughout AXA Group, the security community represents composed of 1500 security professionals, working daily to protect our customers, operations, assets,



brand and people.

Cyber

Defense, Physical Security and Operational Resilience. Monitor the Security evolving Threat Landscape Defines and maintains the Group-wide security strategy, sets Security standards and instructions, and associatedtooling, and enforces consistent implementation across entities Agrees the local security objectives with the CEOs, cascades objectives to CSOs & CIOs, governs local securitybudgets and investments and enforces delivery through the dual reporting lines between local CSOs and GroupCorporate CSOs Runs Security operations (including detection & management of cyber incidents) and drives Security products,services and reporting aligned to entity needs to operate effectively and drive efficienciesAssures security of IT processes and products, monitors security posture and escalates any deterioration of riskposture to relevant committeesThe department / team You will be part of the Assurance and Monitoring Team which aims at enabling risk-based, evidence-driven security decisions across the Group by providing independent assurance, and actionable posture insights that protect business value and support regulatory trust. What we offerWe bring together the expertise, cultural diversity and creativity of over 8,000 employees worldwide and we're committed to equal opportunities in all aspects of employment (gender, LGBT+, disabled persons, or people of different origins) and to promoting Diversity & Inclusion by creating a work environment where all employees are treated with dignity and respect, and where individual differences are valued.

About the entity AXA is becoming a sustainable tech-led company and at AXA Group Operations we are one of the major catalysts for this transformation. We set the tone by triggering and empowering the evolution of our insurance business model through technology and innovation, driving its concrete implementation globally at speed, with a high quality of advisory and execution. We are present across 17 countries with committed, highly qualified teams.

We leverage technology, data, sourcing, security and investment allocation in a global way, but also achieve economies of scale and synergies when necessary. State-of-the-art Data Technology to drive customer experienceState-of-the-art Procurement & Sourcing to drive efficiency and better manage risksHigh-Performing Integral Team for stronger partnerships with AXA entitiesAbout AXAAs a world-leading insurance company, we act for human progress by protecting what matters.

📌 Information Security - Penetration Tester (Madrid)
🏢 Axa Group
📍 Madrid

Postulate a este anuncio

Muestra tus habilidades a la empresa, rellenar el formulario y deja un toque personal en la carta, ayudará el reclutador en la elección del candidato.

Suscribete a esta alerta:

Recibe por email las nuevas ofertas de trabajo para: information security - penetration tester (madrid) / madrid

Suscribete a esta alerta:

Recibe por email las nuevas ofertas de trabajo para: information security - penetration tester (madrid) / madrid