-
Cyberr®

Penetration Tester

Cyberr®
Poland · Full-time · Mid-Senior

Penetration Tester


About the Role

We are looking for a skilled and curious Penetration Tester to join our security team. You will be responsible for simulating real-world attacks against our clients' infrastructure, applications, and people helping them find and fix vulnerabilities before malicious actors do. You'll work across a variety of engagements, from black-box network assessments to red team operations, and produce clear, actionable reports for both technical and executive audiences.


Key Responsibilities


  • Plan and execute penetration tests across web applications, APIs, internal/external networks, cloud environments, and mobile applications.
  • Conduct red team exercises including social engineering, phishing simulations, and physical security assessments.
  • Identify, exploit, and document vulnerabilities in a controlled and responsible manner.
  • Produce high-quality written reports detailing findings, risk ratings, and remediation recommendations.
  • Present results to both technical teams and non-technical stakeholders.
  • Stay current with the latest attack techniques, CVEs, and security research.
  • Contribute to internal tooling, playbooks, and methodology development.
  • Optionally support clients through remediation and re-testing cycles.


Required Skills & Experience


  • 2+ years of hands-on penetration testing experience (commercial or demonstrable equivalent).
  • Proficiency with industry-standard tools: Burp Suite, Metasploit, Nmap, Nessus/OpenVAS, Cobalt Strike or similar C2 frameworks, Bloodhound/SharpHound, Impacket.
  • Strong understanding of OWASP Top 10 and common web application vulnerabilities.
  • Experience with Active Directory attacks (Kerberoasting, Pass-the-Hash, lateral movement).
  • Familiarity with at least one scripting/programming language (Python, Bash, PowerShell).
  • Ability to write clear, structured, professional pentest reports in English.
  • Knowledge of common compliance frameworks (ISO 27001, NIS2, DORA, PCI-DSS) is a plus.


Nice to Have


  • Certifications such as OSCP, OSEP, CEH, CREST CRT/CCT, or equivalent.
  • Experience with cloud penetration testing (AWS, Azure, GCP).
  • Mobile application testing (Android/iOS).
  • Contributions to open-source security tools or CVE disclosures.
  • Experience in OT/ICS or embedded systems security.


Key Skills

Ranked by relevance

penetration testing cloud embedded systems active directory metasploit burp suite embedded python owasp bash oscp nmap aws ceh dss
Login to Apply
Posted
May 26, 2026
Type
Full-time
Level
Mid-Senior
Location
Poland
Company
Cyberr®

Industries

Software Development

Categories

Information Technology

Related Jobs

3 roles aligned with this opportunity

View all jobs
View Job Details
leverbox
Related

DevOps Engineer (AWS) con orientación Backend

2026-05-27

Full-time
Mid-Senior
Argentina
Software Development
Engineering
View Job Details
Canva
Related

Senior Software Engineer (Infrastructure)

2026-05-27

Full-time
Mid-Senior
Australia
Software Development
Information Technology
View Job Details
Canva
Related

Senior Software Engineer (Golang, Kubernetes) - Cloud Compute Team

2026-05-27

Full-time
Mid-Senior
Australia
Software Development
Information Technology