Medior Penetration Tester
JOIN OUR TEAM
At Levi Nine we are passionate about what we do. We love our work and together in a team we are smarter and stronger. We work in a dynamic and challenging environment with talented and forward-thinking people who are part of creative and innovative teams. We are looking for skilled team players who make change happen. Are you one of these players?
PROJECT DESCRIPTION:
Our partner, ABN AMRO Clearing, is a global leader in the domain of clearing, offering access to a wide range of listed instruments on markets across the globe.
IT is at the heart of their organization with more than 30 different product teams and 10 different platform teams that are trying to build the best products & services for their customers.
Their presence in important financial centers like Amsterdam, Chicago, Sydney, Singapore, Tokyo Hong Kong, London, Sao Paulo, Frankfurt and Iasi, allows them to effectively serve clients worldwide and maintain close proximity to their diverse customer base.
THE ROLE INVOLVES:
You will be part of the internal security testing team within our partner's organization.
Inside the team, we work together in an informal way, and we provide a lot of variety and opportunities to keep developing yourself.
The organization is moving to an agile way of working where speed, productivity, agility and innovative power come first. For you as a Penetration Tester, this means an interactive and inspiring way of working together across the team and with different departments around the globe.
Responsibilities:
As a Penetration Tester you execute penetration tests across AACB's Clearing information assets, spanning web and API, infrastructure and a range of other technologies.
Your work directly contributes to improving the overall security posture of the bank by identifying gaps in prevention, detection and response capabilities, while continuing to develop your offensive security expertise.
You identify vulnerabilities, report them clearly and advise on remediation.
You stay informed on the latest developments in offensive security and actively share knowledge with your colleagues.
You contribute to improving the maturity and coverage of our service offering, working under the guidance of senior team members on more complex engagements.
TECHNICAL PLAYGROUND:
You have 2-3 years of relevant penetration testing experience.
You have experience with penetration testing methodologies across multiple asset types such as web, API, network and infrastructure.
You hold the OSCP certification, or you are close to taking the exam.
You have solid, hands-on experience testing web applications and APIs (OWASP Top 10, authentication/authorization flaws, injection, business logic issues).
You have working experience with relevant tooling (Metasploit, Burp Suite, Nmap etc.).
You have hands-on or proven experience conducting security assessments on Linux and Windows environments, including network and host-level testing, Active Directory and common network services.
You have experience with scripting languages (e.g. Python, Bash, PowerShell).
You have the ability to translate technical risks into business risks and vice versa.
NICE TO HAVE:
Additional certifications (eWPTX, CPTS or similar).
You enjoy playing CTFs and publishing your write-ups.
You have confirmed CVEs affecting commercial and/or open-source software.
University degree in Computer Science, Software Engineering, or a related field.
SOFT SKILLS:
Fluent in English, with strong written and verbal communication skills.
You are pragmatic and analytical and have good assertive communication and social skills.
You take ownership of your own and team's delivery and have a proactive attitude.
Strong engineering instincts and a solid understanding of computer science principles.
Excellent problem-solving and troubleshooting abilities.
Passion for continuous learning and self-improvement in a fast-evolving tech landscape.
Curious and results-driven mindset.
Open to giving and receiving feedback constructively.
- Location
- Iasi
- Remote status
- Hybrid
- Technologies
- Penetration Testing, Metasploit, Burp Suite, Cybersecurity, OCSP, OWASP
- Seniority level
- Medior
Iasi
About Levi9 Romania
Levi9 is a nearshore technology service provider with around 1000 employees and 50+ customers. We specialize in custom made business IT – 95% of our work is on the revenue side of our customers. This is where time to market, high productivity, stable team velocity, and great quality through automation, agility, intensive interaction and understanding matter most.