System Penetration Testing Engineer
WE ARE LOOKING FOR System Penetration Testing Engineer

Are you passionate about cybersecurity and possess an insatiable curiosity for finding vulnerabilities before the bad guys do? We're on the hunt for a skilled and motivated System Penetration Testing Engineer to join our dynamic security team. In this role, you'll play a crucial part in safeguarding our organization's digital assets by simulating real-world attacks and identifying weaknesses in our systems, networks, and applications. If you thrive in a challenging environment and have a knack for thinking like an attacker, we want to hear from you!

We are seeking a System Penetration Testing Engineer to join our customer project team. The successful candidate will be responsible for conducting security and compliance testing for internet-connected device, ensuring adherence to requirements and identifying vulnerabilities through comprehensive penetration testing.

Key Responsibilities

  • Design, develop, and execute security testing strategies for hardware and software components.
  • Vulnerability Identification and Exploitation: Leveraging both manual and automated techniques, you'll uncover security flaws and attempt to exploit them in a controlled manner to assess their potential impact.
  • Perform white-box and gray-box penetration testing to identify security vulnerabilities related to device hardware, firmware and network interfaces.
  • Deep-Dive Vulnerability Analysis: Identifying and exploiting vulnerabilities specific to IoT, such as insecure firmware, weak authentication/authorization, insecure JTAG/UART interfaces, and vulnerabilities in wireless protocols (Zigbee, Z-Wave, BLE, LoRaWAN, Wi-Fi, etc.).
  • Hardware Hacking and Reverse Engineering: Performing hands-on analysis of IoT devices, including teardowns, side-channel analysis, fault injection, and firmware extraction and reverse engineering to uncover hidden flaws.
  • Security Tool and Technique Development: You may be involved in developing and refining custom scripts, tools, and methodologies to enhance our penetration testing capabilities.
  • Collaborate with development teams to review security architecture, identify weaknesses and recommend mitigation strategies.

Required Qualifications

  • Bachelor's or Master’s degree in Computer Science, Cybersecurity, Electrical Engineering, or related field.
  • Proven experience in security testing of hardware and software devices, especially in IoT or internet-connected products.
  • Strong knowledge of security standards, protocols and best practices.
  • Proficiency with hardware hacking tools (e.g., JTAG debuggers, UART interfaces, logic analyzers, SDRs).
  • Deep knowledge of common IoT communication protocols (MQTT, CoAP, AMQP) and wireless technologies (BLE, Zigbee, Z-Wave, Wi-Fi).
  • Experience with penetration testing tools for networks, web apps, and mobile apps (e.g., Metasploit, Burp Suite, Nmap, Wireshark, Frida, Ghidra).Familiarity with EU RED compliance.
  • Understanding of networking, wireless communication and embedded systems security.

Certifications (Preferred but not always required):

  • Industry-recognized certifications such as OSCP (Offensive Security Certified Professional), CEH (Certified Ethical Hacker), PenTest+, or GIAC certifications (GPEN, GWAPT) can strengthen your application.
Post Date
2025-05-27
Job Type
-
Employment type
Full-time
Category
Engineering, Information Technology
Level
Mid-Senior
Country
Finland
Industry
IT Services , IT Consulting ,
Unikie*******