.
Penetration Tester
  • Warsaw
Penetration Tester
Warszawa, Warsaw, Masovian Voivodeship, Polska
NOMIOS POLAND SPÓŁKA Z OGRANICZONĄ ODPOWIEDZIALNOŚCIĄ
22. 1. 2025
Informacje o stanowisku

technologies-expected :


  • Cobalt Strike
  • Empire
  • BloodHound
  • AWS
  • Microsoft Azure
  • Google Cloud Platform

technologies-optional :


  • Python
  • PowerShell
  • Bash

about-project :


  • We are looking for an experienced Penetration Tester to join our cybersecurity team and take a leading role in conducting advanced penetration tests that simulate real-world attack scenarios.
  • This position focuses on testing external services through:
  • Insider Attack Simulation – Assessing the security posture against internal threats.
  • Adversary Emulation – Mimicking tactics, techniques, and procedures (TTPs) used by Advanced Persistent Threats (APTs), such as FIN3.
  • Cloud Assessment – Performing penetration testing on cloud environments to identify and mitigate risks.

responsibilities :


  • Conduct penetration tests on external services, aligning with real-world threat models and APT methodologies.
  • Develop and execute comprehensive attack scenarios covering domains, infrastructure, and identity components.
  • Collaborate with internal teams to simulate and analyze adversary behavior using frameworks like MITRE ATT&CK.
  • Document findings and provide actionable remediation guidance to stakeholders.
  • Stay updated on emerging threats and penetration testing techniques to enhance testing methodologies.
  • Assist in threat modeling and red teaming exercises.
  • Ensure compliance with industry standards and regulatory requirements.

requirements-expected :


  • Proven experience in penetration testing with a focus on adversary emulation and real-world attack simulation.
  • Strong understanding of cybersecurity domains, including infrastructure, identity management, and cloud environments.
  • Hands-on experience with tools such as Cobalt Strike, Empire, BloodHound, and cloud-native security solutions.
  • Familiarity with APT attack tactics, techniques, and procedures, such as those used by FIN3 and other advanced threat groups.
  • Deep knowledge of cloud security best practices across platforms like AWS, Azure, and Google Cloud.
  • Certifications such as OSCP, OSWE, OSEP, or similar are highly valued.
  • Excellent problem-solving skills and the ability to think like an adversary.
  • Strong communication and reporting skills.

offered :


  • A dynamic work environment with opportunities to contribute to cutting-edge cybersecurity operations.
  • Clear growth paths to roles like Incident Responder, Threat Hunter, or Cybersecurity Architect.
  • Access to ongoing training and certifications to support your professional development.
  • Balance between professional and personal life — 30 days of Paid Time Off yearly.
  • Participation in industry conferences to stay up-to-date with the latest trends and innovations.
  • Competitive bonuses linked to individual and team performance.

  • Praca Warszawa
  • Tester Warszawa
  • Warszawa - Oferty pracy w okolicznych lokalizacjach


    83 474
    14 829