Responsibilities
The Security Testing Specialist will be responsible for:
- Plan and perform ethical hacking engagements and full-scope penetration tests (web, API, infrastructure, cloud when applicable)
- Conduct and automate vulnerability scans, analyse results, prioritise risks
- Perform source code reviews, identify insecure coding patterns, and recommend remediation
- Support the Secure SDLC, identifying weaknesses early in the lifecycle
- Produce detailed security assessment reports, test plans, and scripts
- Analyse root causes of security defects and propose corrective actions
- Contribute to security architecture evaluations and compliance testing
- Collaborate with developers, architects, and stakeholders to ensure secure design and implementation
Technical Skills and Tools
Ethical Hacking & Development (Newly Mandatory per Client Feedback)
- CEH (Certified Ethical Hacker) or equivalent certification
- Strong development experience (e.g., Python, Java, C#, or similar)
- Proven experience in secure coding and source code review
- Solid understanding of application architectures and common coding vulnerabilities
Penetration Testing & Security Tools
- Hands-on experience with:
- o Burp Suite, OWASP ZAP, Metasploit
- o Nessus, Qualys, OpenVAS
- Scripting languages: Python, Bash, PowerShell
- OS expertise: Linux and Windows
- Web & API security: REST, SOAP, JSON, XML
- Strong knowledge of:
- o OWASP Top 10
- o Secure SDLC
- o DevSecOps practices
- Desirable:
- o Knowledge of cloud security controls (Azure, AWS, GCP)
- o Experience with SIEMs and log analysis
- o Familiarity with compliance frameworks: ISO 27001, NIST, CIS
Qualifications and Experience
- Minimum 5 years of experience in cybersecurity testing
- University degree in IT, engineering, or equivalent experience
- CEH certification is required
- Certifications such as OSCP, GIAC, CISSP are advantageous
- Strong reporting and documentation skills in English
- Experience in European Institutions or large public-sector IT environments is a plus
Key Skills
Ranked by relevance
Related Jobs
3 roles aligned with this opportunity
DevSecOps Expert
2026-05-28
Full Stack Software Engineer (f/m/d)
2026-05-21
DevOps Engineer (all genders)
2026-05-28
- Posted
- Jan 20, 2026
- Type
- Contract
- Level
- Mid-Senior
- Location
- Luxembourg
- Company
- ThoughtLabs Belgium
Industries
Categories
Related Jobs
3 roles aligned with this opportunity
DevSecOps Expert
2026-05-28
Full Stack Software Engineer (f/m/d)
2026-05-21
DevOps Engineer (all genders)
2026-05-28