IT Security Specialist (red team)
Warszawa, Poznań, Wrocław, Kraków, Toruń, Poland
Allegro
Opis oferty pracy
What will you do in your job
- You will be responsible for conducting penetration tests of Allegro applications, systems and infrastructure
- Your tasks will include recommending areas that need to be verified and preparing technical attack scenarios
- You will be responsible for creating reports after the tests, which will describe the risk level and recommendations for identified vulnerabilities
- Together with the defensive team (blue), you will develop detection and prevention mechanisms for identified threats
- You will support engineering teams in implementing solutions to mitigate the identified threats
- You will be responsible for carrying out social engineering attacks on company employees in order to raise their cyber-awareness
We are looking for people who
- Are able to independently plan and carry out complex tasks
- Have experience in conducting penetration tests, including tools and techniques used to identify weaknesses in IT systems
- Have operational experience from working in “red” teams (preferred)
- They are able to report the results of their work and translate the identified risk into a business context
- Follow global standards and use them in practice, among others: OWASP, MITRE ATT&CK.
- Have experience in effective cooperation between Red and Blue teams
- Have experience in working in security teams working with the use of "agile" methodologies
What we offer
- A hybrid work model that you will agree on with your leader and the team. We have well-located offices (with fully equipped kitchens and bicycle parking facilities) and excellent working tools (height-adjustable desks, interactive conference rooms)
- Annual bonus up to 10% of the annual salary gross (depending on your annual assessment and the company's results)
- A wide selection of fringe benefits in a cafeteria plan – you choose what you like (e.g. medical, sports or lunch packages, insurance, purchase vouchers)
- English classes that we pay for related to the specific nature of your job
- Laptop with m1 processor, 32GB RAM, SSD - a 16” or 14” MacBook Pro or corresponding Dell with Windows (if you don’t like Macs), two monitors and all other gadgets that you should need
- Working in a team you can always count on — we have on board top-class specialists and experts in their areas of expertise
- A high degree of autonomy in terms of organizing your team’s work; we encourage you to develop continuously and try out new things
- Hackathons, team tourism, training budget and an internal educational platform, MindUp (including training courses on work organization, means of communications, motivation to work and various technologies and subject-matter issues)
Why is it worth working with us
- As an active member of the Team, you will have a significant impact on the technical security of the largest Polish e-commerce
- You will have an impact on the organization of the Team's work, we encourage you to constantly develop and try new things
- You will get the opportunity to work with excellent security specialists and engineers https://allegro.tech/
- Once a year you can take advantage of the opportunity to work in a different team (so-called team tourism)
- You will become a participant (if you wish, also a speaker) during internal events such as Allegro Tech Meeting and/or during external meetings or meetups
- We provide stable employment based on an employment contract
Send in your CV and see why it is #goodtobehere
* Salary range is an estimate based on our salary survey 💰
Tags: Agile E-commerce MITRE ATT&CK OWASP Red team Vulnerabilities Windows
Perks/benefits: Career development Gear Lunch / meals Salary bonus Team events
More jobs like this
Explore more InfoSec / Cybersecurity career opportunities
Find even more open roles in Ethical Hacking, Pen Testing, Security Engineering, Threat Research, Vulnerability Management, Cryptography, Digital Forensics and Cyber Security in general - ordered by popularity of job title or skills, toolset and products used - below.
- Open Electronic Warfare Advanced Tactical Trainer jobs
- Open Security Operations Analyst jobs
- Open Senior SOC Analyst jobs
- Open Senior Information Security Engineer jobs
- Open Analyste CERT / Incident Responder senior (H/F) jobs
- Open SOC Analyst jobs
- Open Staff Product Security Engineer jobs
- Open Information Systems Security Officer (ISSO) jobs
- Open Manager Pentest H/F jobs
- Open Ethical hacker / Pentester H/F jobs
- Open Analyste CERT / Incident Responder junior (H/F) jobs
- Open IT Security Analyst jobs
- Open Security Operations Engineer jobs
- Open Senior Cybersecurity Engineer jobs
- Open Staff Security Engineer jobs
- Open Cyber Security Specialist jobs
- Open IT Security Specialist jobs
- Open Infosec Risk Manager jobs
- Open Cyber Program Manager jobs
- Open o365 Security Architect jobs
- Open Cybersecurity Specialist jobs
- Open Staff Information Security Engineer jobs
- Open Cyber Hunt SME jobs
- Open Information System Security Officer (ISSO) jobs
- Open Senior Security Operations Engineer jobs
- Open Agile-related jobs
- Open SIEM-related jobs
- Open GCP-related jobs
- Open Clearance-related jobs
- Open Risk assessment-related jobs
- Open ISO 27001-related jobs
- Open Pentesting-related jobs
- Open Analytics-related jobs
- Open Java-related jobs
- Open IAM-related jobs
- Open Security assessment-related jobs
- Open DevOps-related jobs
- Open CISM-related jobs
- Open Vulnerability management-related jobs
- Open Kubernetes-related jobs
- Open APIs-related jobs
- Open Malware-related jobs
- Open Forensics-related jobs
- Open Threat intelligence-related jobs
- Open SaaS-related jobs
- Open DevSecOps-related jobs
- Open CI/CD-related jobs
- Open Cryptography-related jobs
- Open CISA-related jobs
- Open Encryption-related jobs