Track This Job
Add this job to your tracking list to:
- Monitor application status and updates
- Change status (Applied, Interview, Offer, etc.)
- Add personal notes and comments
- Set reminders for follow-ups
- Track your entire application journey
Save This Job
Add this job to your saved collection to:
- Access easily from your saved jobs dashboard
- Review job details later without searching again
- Compare with other saved opportunities
- Keep a collection of interesting positions
- Receive notifications about saved jobs before they expire
AI-Powered Job Summary
Get a concise overview of key job requirements, responsibilities, and qualifications in seconds.
Pro Tip: Use this feature to quickly decide if a job matches your skills before reading the full description.
Are you passionate about cybersecurity and possess an insatiable curiosity for finding vulnerabilities before the bad guys do? We're on the hunt for a skilled and motivated System Penetration Testing Engineer to join our dynamic security team. In this role, you'll play a crucial part in safeguarding our organization's digital assets by simulating real-world attacks and identifying weaknesses in our systems, networks, and applications. If you thrive in a challenging environment and have a knack for thinking like an attacker, we want to hear from you!
We are seeking a System Penetration Testing Engineer to join our customer project team. The successful candidate will be responsible for conducting security and compliance testing for internet-connected device, ensuring adherence to requirements and identifying vulnerabilities through comprehensive penetration testing.
Key Responsibilities
- Design, develop, and execute security testing strategies for hardware and software components.
- Vulnerability Identification and Exploitation: Leveraging both manual and automated techniques, you'll uncover security flaws and attempt to exploit them in a controlled manner to assess their potential impact.
- Perform white-box and gray-box penetration testing to identify security vulnerabilities related to device hardware, firmware and network interfaces.
- Deep-Dive Vulnerability Analysis: Identifying and exploiting vulnerabilities specific to IoT, such as insecure firmware, weak authentication/authorization, insecure JTAG/UART interfaces, and vulnerabilities in wireless protocols (Zigbee, Z-Wave, BLE, LoRaWAN, Wi-Fi, etc.).
- Hardware Hacking and Reverse Engineering: Performing hands-on analysis of IoT devices, including teardowns, side-channel analysis, fault injection, and firmware extraction and reverse engineering to uncover hidden flaws.
- Security Tool and Technique Development: You may be involved in developing and refining custom scripts, tools, and methodologies to enhance our penetration testing capabilities.
- Collaborate with development teams to review security architecture, identify weaknesses and recommend mitigation strategies.
- Bachelor's or Master’s degree in Computer Science, Cybersecurity, Electrical Engineering, or related field.
- Proven experience in security testing of hardware and software devices, especially in IoT or internet-connected products.
- Strong knowledge of security standards, protocols and best practices.
- Proficiency with hardware hacking tools (e.g., JTAG debuggers, UART interfaces, logic analyzers, SDRs).
- Deep knowledge of common IoT communication protocols (MQTT, CoAP, AMQP) and wireless technologies (BLE, Zigbee, Z-Wave, Wi-Fi).
- Experience with penetration testing tools for networks, web apps, and mobile apps (e.g., Metasploit, Burp Suite, Nmap, Wireshark, Frida, Ghidra).Familiarity with EU RED compliance.
- Understanding of networking, wireless communication and embedded systems security.
- Industry-recognized certifications such as OSCP (Offensive Security Certified Professional), CEH (Certified Ethical Hacker), PenTest+, or GIAC certifications (GPEN, GWAPT) can strengthen your application.