Minimum 8 years of experience in the field of IT security-related functions with at least 5 years in penetration testing area.
Proven experience in penetration testing or ethical hacking with at least one certificate from this area (OSCP, CEH, GPEN, CRTP, CRTE or similar).
Proficiency with tools such as Burp Suite, Metasploit, Nmap, Wireshark, Nessus, etc.
Familiarity with scripting languages (e.g., Python, Bash, PowerShell).
Knowledge of network protocols, operating systems (Windows/Linux), and cloud environments.
Strong understanding of common vulnerabilities (e.g., OWASP Top 10, CVEs).
German or English language at B2/C1 level.
Ability to provide technical advice, guidance, and recommendations to management and other technical specialists on critical information concerning security issues.
Extensive knowledge of current security threats, techniques, and landscape.
Dedication and self-driven desire for research and learning more about the information security landscape and incident response.
Will to follow processes and procedures while maintaining the flexibility to “think outside the box.
Your responsibilities
Conduct penetration tests on web applications, networks, and systems to identify vulnerabilities.
Simulate real-world attacks to assess the security posture of the organization.
Document findings and provide actionable recommendations to improve security.
Collaborate with development, infrastructure, and security teams to remediate vulnerabilities.
Stay up-to-date with the latest security threats, tools, and techniques.