The company HRromus conducts the selection of candidates for the position of Penetration Tester (Internal) / Security Auditor (Red-Team analyst, Red Team Engineer in the interests of the client company Audit & Consulting!The company Audit & Consulting, which provides services in the field of information security. As part of our activities, we perform both penetration testing (pentest) and consulting support for clients in matters of protecting their IT infrastructure.What will have to be doneCon
The company HRromus conducts the selection of candidates for the position of Penetration Tester (Internal) / Security Auditor (Red-Team analyst, Red Team Engineer in the interests of the client company Audit & Consulting!
The company Audit & Consulting, which provides services in the field of information security. As part of our activities, we perform both penetration testing (pentest) and consulting support for clients in matters of protecting their IT infrastructure.
What will have to be done
- Conducting external and internal technical pentests of web applications, servers, networks.
- Physical pentest — checking the protection of premises, access control, bypassing security systems, testing procedures for entering the building (social engineering, tailgating, testing locks and video surveillance systems).
- Performing approach tests whitebox, greybox and blackbox (from full access to the code and infrastructure to completely "blind" testing without prior information).
- Security audit of the customer's IT infrastructure, detection of vulnerabilities and preparation of reports with recommendations.
- Consulting customers on the design and improvement of protection systems.
- Participation in Red Team operations and insider attack simulations.
What we are we expect
Required: - Experience in the field of information security from 1 year.
- Knowledge of testing methods and methodologies (OWASP, PTES, NIST).
- Skills in working with tools: Burp Suite, Nmap, Metasploit, Wireshark, SQLmap, etc.
- Understanding network protocols, system architecture and security principles data.
- Ability to compile technical reports and provide practical recommendations.
- Knowledge of English (reading technical documentation and communication with international customers).
It will be an advantage: - Availability of certificates (OSCP, CEH, CISSP, CPTE).
- Experience with Linux systems.
- Programming/scripting (Python, Bash, PowerShell).
- Experience in conducting Red Team operations and physical pentest.
- Knowledge of cloud security (AWS, Azure, GCP).
We offer - Competitive salary (negotiated individually).
- Flexible work schedule; possibility of working remotely or in a comfortable office.
- Training and certification at the expense companies.
- Participation in interesting projects in various industries (finance, telecom, production, public sector).
- A friendly team of professionals ready to share experience.
https://hr.romus.com.ua/jobs/vakansiia-audytor-z-bezpeky-pentester/