16 sep
|
GMV
|
Tres Cantos
Overview
Todas las habilidades, cualificaciones y experiencia relevantes que necesitará un candidato seleccionado se enumeran en la siguiente descripción.
As a Senior Pentester, you will lead offensive security assessments and design realistic attack scenarios using MITRE ATT&CK;, guiding audit projects for organizations aiming to understand vulnerabilities before real attackers exploit them. You will work across web, mobile, network, cloud, AD, and AI-based systems, and participate in Red Team and Purple Team exercises to boost detection and response. You will translate findings into practical mitigation and contribute to risk-focused reports for technical and business audiences. This role offers collaboration with cross-functional teams and a chance to shape security practices at scale.
Compensaciones / Beneficios
hybrid work model
remote work up to 8 weeks/year
adaptable working hours
relocation package
training opportunities
wellbeing program
Responsabilidades
Lead penetration tests in complex corporate environments
Participate in Red Team exercises and apply evasion against EDR, XDR, WAF, and AVs
Identify vulnerabilities,
assess impact and propose mitigations
Develop or adapt offensive tools and automations (Python, Bash, PowerShell)
Produce technical and executive risk-focused reports
Present findings to technical and business audiences
Manage audit projects, including scope, timelines and deliverables
Requisitos principales
5+ years in penetration testing (web, mobile, network, cloud, AD, Wi-Fi)
Experience in Red Team operations
Advanced knowledge of Burp Suite, Nmap, Metasploit or C2 frameworks
Automation of offensive tasks via scripting xqbhyrx (Python, Bash, PowerShell)
Experience producing technical and executive risk reports
Strong communication and clear presentation of results
Experience managing cybersecurity or technical audit projects
Offensive certifications (OSCP, OSEP, OSWE, eCPPT, CRTP or equivalent)
Knowledge of PTES, MITRE ATT&CK;, OWASP
Experience assessing security in AI/LLM-based systems (OWASP Top 10 for LLMs)
Strong communication
Independent leadership
Cross-functional collaboration
Burp Suite
Nmap
Metasploit
📌 Senior pentester (Tres Cantos)
🏢 GMV
📍 Tres Cantos