#1 Job Board for tech industry in Europe

Pentester
Testing

Pentester

Type of work
Undetermined
Experience
Mid
Employment Type
B2B, Permanent
Operating mode
Office
StepStone Services

StepStone Services

StepStone is a global organization and one of the most successful online job board businesses in Europe. Our goal is always to create perfect matches – help companies find just the right employees and present candidates just the offers they are looking for.StepStone Services is a StepStone Group global IT Development Center located in Warsaw (we have almost 300 employees), supporting organization in application development and IT support for our web services across Europe, South Africa, Central America. All the software that runs our websites is developed in-house.

Tech stack

    Pentesting

    advanced

    Communication Skills

    advanced

    Security

    regular

Job description

StepStone is a global organization and one of the most successful online job board businesses in Europe. Our goal is always to create perfect matches – help companies find just the right employees and present candidates just the offers they are looking for.

StepStone Services is a StepStone Group global IT Development Center located in Warsaw (we have almost 300 employees), supporting organization in application development and IT support for our web services across Europe, South Africa, Central America. All the software that runs our websites is developed in-house.

Purpose & Overall Relevance for the Organization
 
The Security auditor / pentester will be responsible for assessing and testing the security of our applications, infrastructure and WAF. As part of the Security Operations Team, the candidate will work closely with his direct manager to identify vulnerabilities/misconfigurations within our systems and report on them.

What you’ll be doing:

  • Pentesting different segments, mobile apps, webapps, infrastructure and our WAF.
  • Work closely with development teams to address reported findings.
  • Work closely with architects and security team to implement safeguards.
  • Implement security tools and processes to automate continuous assessment.
  • Work closely with management to establish and deliver consistent technical direction and report security alerts which have been addressed and which not.
  • Validate incidents created from the SIEM.


What we offer:

  • Wide variety of tech stack
  • Cloud and on-prem infrastructure
  • Possibility to performed red-teaming exercises
  • Development path and trainings.

What we need:

  • Minimum 3 years performing pentests.
  • GPEN , OSCP, OSWE,OSEP certifications preferred.
  • Not mandatory but equivalent knowledge is requested.
  • Demonstrated knowledge