472,959open jobs
15,801companies
69,246added this week
Browse all
Location
Remote/Hybrid
Seniority
Senior · 3+ years exp
Overview
Company
Impact
Profile match
Mindbox is a technology company that builds customer data and marketing automation platforms for retailers, financial institutions and consumer brands. Its products unify customer records across sales channels, run loyalty programmes and personalised campaigns, and increasingly apply machine learning to segmentation and next-best-offer decisions rather than leaving marketers to define rules by hand. Operating from Warsaw and serving clients across central and eastern Europe, it competes with the marketing clouds of the large enterprise software vendors by offering deeper local integration and a lower implementation burden.

At Mindboxwe connect top IT talents with technology projects for leading enterprises across Europe.

We are seeking an experienced Penetration Testing Specialist to join our global Cybersecurity team. You will be responsible for conducting and leading penetration tests across multiple technology domains - including infrastructure, applications, web services, and mobile platforms - while ensuring the organization operates within defined risk appetite.

This role goes beyond testing; you will proactively identify vulnerabilities, articulate risks in business terms, and advocate risk mitigation strategies. As a subject matter expert, you will collaborate with engineering teams, business stakeholders, and global security groups to improve security posture, influence best practices, and mentor junior testers.

Sounds like your kind of challenge?

Responsibilities

  • Flexible cooperation model
  • Hybrid work setup - 6 days from the office per month
  • Collaborative team culture - work alongside experienced professionals eager to share knowledge
  • Continuous development - access to training platforms and growth opportunities
  • Comprehensive benefits - including Interpolska Health Care, Multisport card, Warta Insurance, and more
  • High quality equipment - laptop and essential software provided

Requirements

  • Lead and perform manual penetration testing across diverse environments - infrastructure, custom applications, web services, APIs, and mobile platforms (iOS and Android).
  • Own the design, execution, and documentation of penetration testing engagements, ensuring high-quality deliverables.
  • Translate highly technical findings into clear, actionable business risk statements.
  • Conduct source code and configuration reviews where applicable.
  • Maintain an objective, risk-based approach in line with the organization’s Cybersecurity and compliance frameworks.
  • Provide guidance, supervision, and mentoring to junior team members.
  • Continuously improve security testing processes, tools, and methodologies to increase quality and efficiency.
  • Collaborate with global stakeholders to ensure compliance with internal standards and regulatory requirements.

Note:Detailed project information will be shared during the recruitment process.

Benefits

  • Strong experience in penetration testing, with at least 3+ years of hands-on experience.
  • Demonstrated expertise in testing web applications, infrastructure, and mobile technologies using both manual and automated methods.
  • Knowledge across key pentesting domains: application, network, and/or mobile.
  • Understanding of platform security models for iOS and Android and associated mobile security risks.
  • Excellent TCP/IP knowledge and understanding of security implications at multiple protocol layers.
  • Ability to analyze and explain security vulnerabilities and cryptographic principles from first principles.
  • Proven programming or scripting skills for test automation and exploit development.
  • Critical thinking and strong ability to articulate issues and recommendations to both technical and non-technical audiences.
  • Strong organizational skills with the ability to work independently or lead testing engagements.

Nice to have:

  • Familiarity with common vulnerabilities in financial applications and highly regulated environments.
  • Awareness of application security scanning tools (e.g., SAST, DAST, MAST).
  • Relevant certifications (e.g., OSCP, OSWE, CREST, GPEN) - not mandatory but highly valued.

Joining this project you’llbecome part of Mindbox - a tech-driven company where consulting, engineering, and talent meet to build meaningful digital solutions. We’llback you up every step of the way, accelerate your development, and ensure your skills make a difference.

Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
472,959 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account
Free forever. No card. Under a minute.

Recommended for you based on this role

Similar stack
Same company
In your city
Full Stack Developer 7 hours ago
Remote/Hybrid
JavaScript
Kotlin
SQL
Frontend
React.js
Apply
Analityk Systemowy 1 day ago
Remote/Hybrid
JavaScript
Java
TypeScript
SQL
Databases
Apache Kafka
Frontend
Angular
Management
Confluence
Jira
Apply
Java Developer 1 day ago
In office
Java
SQL
Java
Spring Framework
Spring Boot
DevOps
CI/CD
Docker
Apply
QA/Manual Tester 2 days ago
Remote/Hybrid
SQL
DevOps
Rest API
GCP
Azure
CI/CD
AWS
Analytics
Microsoft Excel
Management
Confluence
Apply
In office
Design
Adobe Photoshop
Figma
Apply
See all jobs
This is one of many
472,959 more open roles from verified company boards, updated every day.