-
VASS

Senior ICT Security Testing Specialist

VASS
France · Full-time · Not Applicable

Role: Senior ICT Security Testing Specialist

Location: VASS STRASBOURG

А global digital transformation company with a team of more than 4,900 global players in 26 countries – in Europe, America and Asia, working together to put organizations at the forefront of innovation by bringing together talent, knowledge and technology.

Our approach is based on conscious technology, through which we create positive environments and meaningful opportunities, always in our own way, making the complex simple.

VASS BeNeLux, in partnership with the European Commission, is currently seeking an Expert Senior ICT Security Testing Specialist to work from the European Commission.

The role:

  • Define security configuration and operations standards for security systems and applications, including policy assessment and compliance tools, network security appliances and hostbased security systems;
  • Develop and validate baseline security configurations for operating systems, applications and networking and telecommunications equipment;
  • Perform internal and external technical control and vulnerability assessments to identify control weaknesses and assess the effectiveness of existing controls and recommend remedial action;
  • Perform source code reviews;
  • Perform network and application penetration testing (Black box, Grey box and White box);
  • Define detailed security architecture;
  • Perform technical security audits and ethical hacking;
  • Perform log analysis and security monitoring;
  • Perform IT infrastructure/ Application Security configuration reviews;
  • Design and implement technical security mechanisms and technologies;
  • Design and develop technical security standards and procedures;
  • Prepare presentations for the senior management and the system owner on the security posture and the testing results.



You have:

  • Minimum 4 years of relevant education (master or equivalent) after the secondary school.
  • Minimum 6 years of relevant professional experience in IT Security.
  • Security best practice guidelines (ISO 27001, NIST, SANS Top 20 OWASP, etc.);
  • Good practice in the secure configuration of servers, network devices and applications;
  • Networking protocols and application communications;
  • Network analysis tools;
  • Securing Unix and Windows operating systems;
  • Securing middleware and applications;
  • Network penetration testing;
  • Web application penetration testing;
  • Vulnerability assessments;
  • Forensic image collection and analysis;
  • Manage/deploy the following security technologies: Firewalls; IDS/IPS - Intrusion detection/Prevention Systems, SIEM – Security information and



event management; IAM – Identity and access management; APT – Advanced Persistent threat detection; DLP – Data loss prevention; VA –

Vulnerability Analysis and mitigation; PKI – Public key infrastructure; Virtual environments; Endpoint security; Mobile security; Communications and

data encryption ; Remote access methods; Backup and disaster recovery methodologies; Patch management technologies and processes; Wireless

protocols and services;

  • Open Web Application Security Protocol (OWASP) and secure software development standards;
  • Perform security code reviews;
  • Security monitoring, threat detection and incident response;
  • Proactively and iteratively search through networks and applications to detect and isolate advanced threats that evade existing security solutions



(Cyber threat hunting);

  • Security operations engineering (e.g. implementation of defensive measures, threat intelligence production);
  • Linux administration, TCP/IP, Network Security;
  • Security configuration reviews of IT Infrastructure and security devices, OS, Databases etc.;
  • Certified Information Systems Security Professional with Information Systems Security Architecture Professional concentration (CISSP-ISSAP);
  • Certified Information Security Manager (CISM);
  • Certified Information Systems Auditor (CISA);
  • OSCP, OSCE, GPEN, CEH, CCNA, CCNP.
  • Knowledge of cyber security policies and standards deriving from the European Commission



If you want to join a dynamic company where technological challenges will be found in your day to day we are waiting for you in the great VASS team.

And we encourage you to be the best version of yourself: Transformative, Creative, Honest, Vibrant!

At VASS we take action every day to achieve a favourable environment that facilitates and promotes equal opportunities, non-discrimination, diversity and inclusion of all people. We select our talent based on business needs, skills and merits. 🌟

Key Skills

Ranked by relevance

owasp identity and access management penetration testing network security patch management security audits cyber security firewalls cissp linux ccna oscp unix nist siem ceh
Login to Apply
Posted
Jun 17, 2026
Type
Full-time
Level
Not Applicable
Location
Strasbourg
Company
VASS

Industries

IT Services IT Consulting

Categories

Quality Assurance

Related Jobs

3 roles aligned with this opportunity

View all jobs
View Job Details
Toast
Related

Senior Principal Software Engineer, AI Agents

2026-06-16

Full-time
Not Applicable
Ireland
Software Development
Quality Assurance
View Job Details
Nortal
Related

QA Specialist

2026-06-15

Full-time
Mid-Senior
Estonia
IT Services
Quality Assurance
View Job Details
Work Life Group NL
Related

License Management and Build QA for NATO with security clearance

2026-06-13

Full-time
Not Applicable
Norway
IT Services
Quality Assurance