.
Principal Penetration Tester
  • Kraków
Principal Penetration Tester
Kraków, Kraków, Lesser Poland Voivodeship, Polska
HSBC Service Delivery (Polska) Sp. z o.o.
4. 9. 2024
Informacje o stanowisku

technologies-optional :


  • HTML
  • XML
  • JavaScript
  • JSON
  • REST

about-project :


  • Principal Penetration Tester is responsible for providing subject matter expertise in Penetration Testing to support wider Cyber Security efforts and organization. The successful candidate will operate as part of a global/regional team within the Cybersecurity organization to provide expertise, oversight and assurance around security process, controls, standards and regulatory requirements.

responsibilities :


  • Perform highly technical/analytical security assessments of custom mobile applications, widely understood infrastructure and networks, web services and APIs. This covers manual penetration testing, source code and configuration review.
  • Clearly and professionally document root cause and risk analysis of all findings.
  • Adhere to the security testing process and raise any gaps or opportunities for improvement with manager.
  • Work closely with the DevOps teams to ensure that the security testing requirements are met and help automate repetitive tasks.
  • Develop understanding of business functionality and apply testing methodology as appropriate to technologies and risks
  • Code and demonstrate basic proof-of-concept exploits of vulnerabilities when required.
  • Assist with coordination of security testing projects according to a structured process, including writing test plans, test cases and test reports.
  • Advise on vulnerability remediation, control implementation and secure development practices.

requirements-expected :


  • Solid hands on experience in penetration testing and senior overall experience in IT industry.
  • Solid understanding of the platform security models for iOS and Android platforms.
  • Ability of critical thinking, clearly articulating identified issues and their consequences and comfortably hold a conversation on cyber security aspects with both technical and non-technical audience.
  • Strong written and verbal communication skills in English language - used for all formal communication.
  • Maintain a wide breadth of penetration testing and/or leadership management skills to a significant degree of depth.
  • Understand the business context/significance of technical penetration testing findings.
  • Consistently output superior quality of deliverables.
  • Poses an entrepreneurial attitude to excel in loosely defined scenarios.

offered :


  • Competitive salary
  • Annual performance-based bonus
  • Additional bonuses for recognition awards
  • Multisport card
  • Private medical care
  • Life insurance
  • One-time reimbursement of home office set-up (up to 800 PLN)
  • Corporate parties & events
  • CSR initiatives
  • Nursery discounts
  • Financial support with trainings and education
  • Social fund
  • Flexible working hours
  • Free parking (Cracow office)

benefits :


  • sharing the costs of sports activities
  • private medical care
  • sharing the costs of professional training & courses
  • life insurance
  • remote work opportunities
  • flexible working time
  • integration events
  • corporate sports team
  • doctor’s duty hours in the office
  • retirement pension plan
  • corporate library
  • no dress code
  • coffee / tea
  • parking space for employees
  • leisure zone
  • extra social benefits
  • employee referral program
  • opportunity to obtain permits and licenses
  • charity initiatives
  • family picnics
  • extra leave
  • In-office gym

  • Praca Kraków
  • Tester Kraków
  • Kraków - Oferty pracy w okolicznych lokalizacjach


    111 387
    20 584