Overview As a Pentesting Engineer at GMV, you will conduct pen-testing and security assessments across web, mobile, network, and cloud environments, including AI models. You will engage in Red Team exercises to simulate real attacks and Purple Team collaborations to strengthen detection and response. You report vulnerabilities and propose mitigations while aligning with IT and security teams to enforce best practices. The role offers hybrid work, international mobility, and a mission-driven environment focused on defense and threat remediation.
Compensaciones / Beneficios Hybrid working model
Teleworking up to 8 weeks/year
Versátil start/finish times
Relocation package
Competitive compensation with reviews
Wellbeing program (health, dental, mental health, training)
Responsabilidades Perform penetration tests on web applications, mobile apps, networks, Wi‐Fi, cloud environments, and AI models
Participate in Red Team exercises to simulate attacks and Purple Team activities with defensive teams
Identify vulnerabilities and provide actionable remediation recommendations
Collaborate with IT and cybersecurity teams to implement security best practices
Requisitos principales Cybersecurity or related degree with hands-on pentesting experience in networks, web/mobile apps, cloud (AWS, Azure, GCP), Active Directory, and wireless networks
Experience in Red Team exercises including planning, executing simulated attacks, evasion, persistence, and exploitation
Scripting skills (Python, Bash, PowerShell) for automation of offensive tasks
Knowledge of PTES, MITRE ATT&CK;, OWASP (asset)
Team collaboration
Strong communication
Problem solving
Penetration testing
Cloud environments (AWS, Azure, GCP)
Active Directory
📌 AWS Engineer (Madrid)
🏢 GMV
📍 Madrid