Senior Penetration Tester mnemonic is looking for experienced candidates who combine deep technical expertise with business understanding and strong communication skills. Have you worked for several years with security o…
Skills: Penetration Testing, Vulnerability Analysis, Web Application Security, API Security, Mobile App Security
Sundbybergs kommun, Stockholm County, Sweden · On-site
Mid level
Are you in the beginning of your career and want a solid start to your security journey? By starting in mnemonic's Security Operation Center (SOC) in Sweden, you'll learn from the best while actually contributing to maki…
Sign up with Clera and we'll reach out the moment a role actually fits you — no more spraying applications into the void.
Full-time
bachelor degree
Competitive Salary, Share Program, Bonus Scheme, Pension Coverage, Insurance Coverage, Professional Training
Posted 15d ago
~40 hrs/week
Responsibilities
Lead and perform advanced penetration tests across web applications, cloud environments, and complex infrastructure. Act as a trusted advisor to customers by providing strategic advice on secure architecture and mentoring internal teams.
Requirements
Requires a higher technical education and significant experience in penetration testing, cloud security, or development. Candidates must possess strong communication skills and the ability to independently execute complex security assessments.
Full job description
Senior Penetration Tester
mnemonic is looking for experienced candidates who combine deep technical expertise with business understanding and strong communication skills.
Have you worked for several years with security or within related disciplines, and want to further develop your professional profile and take a leading role as a trusted advisor within the security profession?
Maybe you have already worked as a penetration tester for a number of years and are looking for greater professional challenges and responsibility. You might also be a developer passionate about secure solutions and building your own testing tools, a cloud or infrastructure specialist with experience from complex IT environments, a technical architect involved in major development or migration projects, or a security analyst who solves “Capture the Flag” competitions as a hobby. Be it applications, cloud platforms or infrastructure, you fundamentally understand how technology works, you pick things apart and put them back together afterwards, and work hands-on to solve demanding problems in creative ways.
As a Senior Penetration Tester, you will combine hands-on technical expertise with strategic understanding, act as a technical authority in projects, and contribute to strengthening both our customers and our internal professional environment.
You will be working with
You will get the opportunity to work with a wide range of tasks, for example:
Lead and perform advanced vulnerability analyses and penetration tests of web applications, APIs, mobile apps, cloud environments and complex infrastructure.
Analyse code and architecture to identify design weaknesses, systemic risk and high-impact attack paths.
Provide concrete and strategic advice on secure architecture and solution design across application, cloud and on-prem environments.
Assess and secure high-risk areas in cloud deployments, such as Identity and Access Management (IAM), network segmentation and logging.
Test and advise on containerised and modern architectures, including Kubernetes, microservices and serverless solutions.
Develop and improve internal tooling, scripts and automation to ensure efficient, repeatable and high-quality security testing.
Establish and mature routines for efficient handling of vulnerabilities and secure operation.
Contribute as a senior resource in projects, procurement processes and security reviews.
Act as a trusted advisor for customers, facilitate technical discussions, and contribute to mentoring and knowledge sharing internally and externally.
What you will bring
We are looking for someone that:
Has completed higher technical education, preferably within security or related disciplines.
Has relevant experience within penetration testing, security testing, development, cloud or infrastructure security.
Has the ability to independently scope, execute and conclude complex security assessments.
Enjoys working hands-on with technology, picking things apart to understand how they work.
Works structurally and independently, and takes clear ownership of deliveries and quality.
Has the ability to clearly communicate complex technical information to both technical and non-technical stakeholders, verbally and in writing.
Has good communication skills in English, both verbally and written.
Has consultancy experience and understands the customer perspective.
Relevant certifications
Offensive Security Certified Professional (OSCP)
GIAC Penetration Tester (GPEN), GIAC Web Application Penetration Tester (GWAPT)
Certified Cloud Security Professional (CCSP), Certificate of Cloud Security Knowledge (CCSK)
Security certifications for AWS, Azure or Google Cloud Platform (GCP)
CISSP, CISA
What we can offer
An informal and pleasant working environment that provides opportunities for growth, influence and variations in tasks
Competitive salary, share program and bonus scheme that promotes a long-term employment outlook, including attractive pension and insurance coverage
Opportunities for relevant professional training (courses) and conferences
We place a strong emphasis on workplace well-being and teambuilding through social activities, events and trips with colleagues. In addition, we have an inclusive environment that promotes work-life balance and accommodates to families. All our offices are centrally located.
A workplace that has been ranked as one of the best in Europe for a number of years. In Norway we have been amongst the top 10 workplaces for 10 years in a row.
Removing the guesswork from cybersecurity | Oslo | Stavanger | Trondheim | Stockholm | Copenhagen | Utrecht | London
Industry
Computer and Network Security
Company size
201-500 employees
Founded
2000
Headquarters
Oslo
LinkedIn followers
12,192
With offices in Oslo, Stavanger, Trondheim, Stockholm, Copenhagen, Utrecht and London, we deliver cybersecurity services across Europe. mnemonic helps businesses manage their security risks, protect their data and defend against cyber threats.
We're a cybersecurity service provider offering clear answers and pathways to complex security challenges.
We've been a reliable provider of effective defence against advanced cyber threats for more than 20 years, and offer a complete and complementary range of IT and information security services. As an independent company, we always base our recommendations on facts and recommend the optimal solution for our customers.
Our expert team consisting of close to 350 security consultants, product specialists, threat researchers, incident responders and ethical hackers. Combined with our proprietary security platform, this ensures we stay ahead of advanced cyberattacks and protect our customers from evolving threats.
Offices: Henrik Ibsens gate 100, Oslo, 0255, NO · Solaveien 88, Sandnes, 4316, NO · Vasagatan 14 a, Sundbyberg, 172 61, SE · Uncommon, 34-37 Liverpool Street, London, England EC2M 7PP, GB · 541 Jefferson Ave, Redwood City, California 94063, US
IT Security Professional Services24x7 Managed Security Services24x7 Security MonitoringIT Security Product SalesManaged Detection and ResponseIncident ResponseThreat IntelligenceGovernanceRisk and ComplianceSecurity Testing
Removing the guesswork from cybersecurity | Oslo | Stavanger | Trondheim | Stockholm | Copenhagen | Utrecht | London
Industry
Computer and Network Security
Company size
201-500 employees
Founded
2000
Headquarters
Oslo
LinkedIn followers
12,192
With offices in Oslo, Stavanger, Trondheim, Stockholm, Copenhagen, Utrecht and London, we deliver cybersecurity services across Europe. mnemonic helps businesses manage their security risks, protect their data and defend against cyber threats.
We're a cybersecurity service provider offering clear answers and pathways to complex security challenges.
We've been a reliable provider of effective defence against advanced cyber threats for more than 20 years, and offer a complete and complementary range of IT and information security services. As an independent company, we always base our recommendations on facts and recommend the optimal solution for our customers.
Our expert team consisting of close to 350 security consultants, product specialists, threat researchers, incident responders and ethical hackers. Combined with our proprietary security platform, this ensures we stay ahead of advanced cyberattacks and protect our customers from evolving threats.
Offices: Henrik Ibsens gate 100, Oslo, 0255, NO · Solaveien 88, Sandnes, 4316, NO · Vasagatan 14 a, Sundbyberg, 172 61, SE · Uncommon, 34-37 Liverpool Street, London, England EC2M 7PP, GB · 541 Jefferson Ave, Redwood City, California 94063, US
IT Security Professional Services24x7 Managed Security Services24x7 Security MonitoringIT Security Product SalesManaged Detection and ResponseIncident ResponseThreat IntelligenceGovernanceRisk and ComplianceSecurity Testing