We are looking for an experienced and hands-on Senior Penetration Tester to support a high-impact international cybersecurity program. In this role, you'll work closely with a specialized security team to perform advanced penetration testing activities on critical infrastructure and applications, helping strengthen the digital resilience of complex environments.
Your responsibilities
- Conduct comprehensive web, infrastructure, and application-level penetration testing (COTS, Gots, custom-built systems)
- Participate in kick-off and review meetings with technical and executive stakeholders
- Produce clear and structured technical reports (executive summaries, technical findings, and remediation plans)
- Brief both technical and high-level audiences, including decision-makers, on the outcomes of your testing
- Identify, exploit, and report vulnerabilities and architectural security weaknesses
- Support responsible disclosure processes in case of zero-days or sensitive discoveries
- Contribute to security design reviews and ensure compliance with internal policies and international standards
- Collaborate proactively with internal and external security stakeholders
- Continuously track emerging technologies and threats relevant to penetration testing
- Follow agile methodologies in 1-week sprints, reporting on progress and deliverables
Your profile
- Bachelor's degree in IT or equivalent field OR 10+ years of relevant hands-on experience.
- At least 3 years of experience in:
- Penetration testing (web apps, IT infrastructure, protocols)
- Network/system administration (Unix, Windows)
- Vulnerability assessments, exploit development, malware behavior
- Strong scripting skills (e.g., Python, PowerShell, Bash)
- Deep technical knowledge in authentication protocols, application security, cryptography, and secure architecture
- Ability to evaluate security risks and propose effective mitigations
- Proven ability to communicate findings to both technical and non-technical stakeholders
- Excellent written and spoken English (working language)
-
Must hold a valid NATO Secret security clearance. Unfortunately, candidates without this clearance cannot be considered due to the nature of the mission
Certifications (a plus):
- OSCP, OSCE, Oswe, GPEN, GWAPT, Crest, GXPN, or equivalent
- Knowledge of risk analysis methodologies (e.g., EBIOS, Octave, etc.)
- Experience in military, governmental, or international environments is a strong asset
Join a team where your expertise directly contributes to protecting vital operations and infrastructure.
Apply now and take the next step in your cybersecurity career with ABAKUS IT-solutions.
We're excited to hear from you!