Home/Careers/Penetration Tester

Careers · IT Security

Penetration Tester

Test web and mobile applications, infrastructure and cloud environments for banks, fintech companies and public institutions. You run the engagement end to end: scope, testing, report in language the board understands, and re-tests after the fixes.

IT Security · offensiveKatowice / remoteRemote

What we expect

Who we are looking for

  • Commercial experience in penetration testing (min. 2 years) — web, infrastructure or mobile
  • Practical knowledge of OWASP Top 10, ASVS and the PTES methodology
  • Ability to exploit a finding and to explain its business impact, not just its CVSS score
  • Comfortable with Burp Suite, nmap, Metasploit and your own scripts (Python, Bash or Go)
  • Reports written in Polish and English that a client can act on without a translator
  • OSCP, eWPTX, CRTO or a similar certification — or a portfolio of CVEs, write-ups and CTF results

What we offer

Terms of employment

Engagements in regulated environments: DORA, NIS2, MiCA, TIBER-EU (TLPT) — not only WordPress sites

Time booked in the schedule for research, tooling and CVE work

Certification budget (OSCP, OSEP, CRTO) with study time during working hours

A lab environment and licenses for professional tools

Fully remote work with occasional on-site tests at client premises

Employment contract or B2B contract, rate depending on experience

Recruitment

Three stages, two weeks at most

1. CV or profileSend your CV or a link to your profile to the address behind the “Apply” button. We reply to everyone — within five business days.
2. InterviewOne conversation with the person you will work with every day — about tasks, expectations and terms, no riddles.
3. DecisionA concrete offer or concrete feedback. We prepare the formal paperwork within a week of the decision.