Senior Embedded Penetration tester

44 - 55 USDNet per hour - B2B
Security

Senior Embedded Penetration tester

Security
Postępu 15, Warszawa +4 Locations

Spyrosoft

Full-time
B2B
Senior
Remote
44 - 55 USD
Net per hour - B2B

Job description

Tech stack:

  • Secure boot, firmware security, OTA updates

  • Cryptography (AES, RSA, ECC) & hardware security (TPM, HSM, TrustZone)

  • Embedded interfaces & protocols: CAN, LIN, Modbus, BLE, Wi-Fi, TCP/IP

  • Penetration testing on embedded targets: JTAG, UART, SPI, I²C

  • Cloud IoT platforms & secure communication: AWS/Azure/GCP IoT, TLS/DTLS, MQTT(S)

  • Secure code review (C/C++, Rust, Python) & DevSecOps / CI/CD security


Requirements:

  • Proven experience performing advanced penetration testing on embedded systems, IoT devices, and cloud-connected architectures

  • Strong background in identifying, exploiting, and documenting security weaknesses across a broad range of environments

  • Deep understanding of embedded security attack vectors: side-channel attacks, fault injection, firmware tampering, replay attacks, MITM

  • Experience with vulnerability scanning, fuzzing, exploit development, and hardware-level security assessment

  • Solid knowledge of secure communication protocols, cryptography, secure boot mechanisms, and secure firmware design

  • Ability to translate complex technical findings into clear, actionable recommendations for both technical and non-technical stakeholders

  • Familiarity with risk assessment frameworks such as ISO 21434, IEC 62443, ISO 27005

  • Understanding of data protection requirements (GDPR / HIPAA) in cloud-integrated IoT ecosystems

  • Experience with secure SDLC, DevSecOps, and CI/CD security practices

  • Strong analytical, problem-solving, and communication skills

  • Relevant certifications such as OSCP, GPEN, CompTIA PenTest+ (highly valued)


Main responsibilities:

Senior Penetration Tester with a proven track record of successfully identifying and exploiting security weaknesses across a wide range of systems and environments. The ideal candidate will have deep expertise in advanced penetration testing methodologies, tools, and reporting, with strong analytical and problem-solving skills. Experience in embedded systems security is highly desirable and will be considered a significant advantage. This role requires excellent communication skills to translate technical findings into clear, actionable recommendations for stakeholders.

Tech stack

    Polish

    B2

    English

    B2

    Secure Boot

    advanced

    firmware security

    advanced

    OTA updates

    advanced

    Embedded interfaces & protocols

    advanced

    Cloud IoT platforms & secure communication

    advanced

    Secure code review (C/C++, Rust, Python)

    advanced

    Cryptography (AES, RSA, ECC)

    regular

    hardware security (TPM, HSM, TrustZone)

    regular

    Penetration testing on embedded targets

    regular

    DevSecOps / CI/CD security

    regular

Office location

Published: 10.12.2025

About the company

Spyrosoft

Spyrosoft is an authentic, cutting-edge software engineering company, established in 2016. We have been included in the Financial Times ranking of 1000 fastest growing companies for three consecutive years: 2021, 2022 an...

Company profile

Senior Embedded Penetration tester

44 - 55 USDNet per hour - B2B
Summary of the offer

Senior Embedded Penetration tester

Postępu 15, Warszawa
Spyrosoft
44 - 55 USDNet per hour - B2B
By applying, I consent to the processing of my personal data for the purpose of conducting the recruitment process. Informujemy, że administratorem danych jest SpyroSoft S.A. z siedzibą w 50-141 Wrocław, pl. Nowy Targ 28 (dalej jako "administrator").... MoreThis site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.