Mid Cybersecurity Engineer - Red Team Operation

Hybrid

About this role

Important things for you

 

  • Flexible working hours in the hybrid model (4/1) - working hours start between 7:00 a.m. and 9:00 a.m. We also have 30 days of occasional remote work.

  • Annual bonus based on your annual performance and company results.

  • Our team is based in Warsaw and Poznań.

 

About the job

 

  • Massive Scale & Security Challenges: Secure, test and optimize a world-class, cloud and on-prem environment handling thousands of requests per minute. This is high-availability, high-performance security engineering in practice.

  • Modern Tech Stack: Work within an advanced ecosystem where core technologies include specialized offensive and defensive security tools, automated SAST/DAST pipelines, C2 frameworks and cutting-edge cryptography. We are also pioneering the security of production-used AI models.

  • True Ownership & Autonomy: We live by a "you build it, you run it" philosophy. You'll join an autonomous team with full ownership of your security services - from threat modeling and attack simulation to deploying protective guardrails.

  • Complex Architectural Puzzles: From securing distributed systems to tackling novel AI vulnerabilities, you'll solve complex engineering problems that directly protect a massive, real-time marketplace.

Skills required

 

  • Demonstrate high independence and a self-driven approach – you are capable of taking full, end-to-end ownership of offensive engagements (from scoping and initial preparation, through execution, to final reporting and remediation guidance);

  • Have hands-on experience managing Red Team operational environments, including Command & Control (C2) frameworks, redirectors, and supporting infrastructure;

  • Can develop custom payloads, loaders, and exploitation scripts (bypassing modern EDR/XDR) with minimal reliance on public tools;

  • Are keen on leveraging automation and AI-assisted techniques to improve reconnaissance efficiency and innovate offensive tactics.

  • Are skilled in executing operations across the MITRE ATT&CK framework (lateral movement, persistence, evasion) in cloud and on-prem environments.

  • Possess deep expertise in manual network/web application exploitation and conducting end-to-end sociotechnical/phishing assessments.

  • Want to be proud of the impact they make; they value high-quality security reviews and engage in substantive discussions on software engineering and security best practices;

  • Are open to developing soft skills and embracing a growth mindset through active participation in team retrospectives and cross-team collaborations;

  • Are excited about adopting and securing AI technologies, being ready to incorporate AI coding and security assistants into their daily work to maximize efficiency;

  • Can look for effective, business-enabling solutions to the security requirements set by our ecosystem;

  • Want to constantly develop and update their knowledge in a rapidly shifting threat landscape;

  • Know English at at least B2 level.

 

Your main responsibilities:

 

  • Take full, independent ownership of offensive engagements from initial scoping and preparation, through execution, to final reporting and remediation guidance.

  • Own, design, deploy, and maintain the Red Team operational environment, including Command & Control (C2) frameworks, redirectors, and supporting infrastructure.

  • Develop and maintain an internal library of custom payloads, loaders, and exploitation scripts designed to bypass modern EDR/XDR detections with minimal reliance on public frameworks.

  • Execute offensive operations across on-premises and cloud environments aligned with the MITRE ATT&CK framework (including initial access, lateral movement, persistence, evasion, and exfiltration).

  • Plan and conduct end-to-end social engineering and phishing campaigns, including pretext development and the technical setup of landing pages and tracking infrastructure.

  • Apply deep expertise in manual network exploitation, web application security, and custom exploit development when automated tools are insufficient, ensuring high-quality security reviews.

  • Actively test internal detection, monitoring, and response capabilities (operated by the Blue Team and CSIRT) to identify gaps, logic flaws, and bypass opportunities.

  • Leverage automation and AI-assisted techniques to improve reconnaissance efficiency, reduce manual overhead, and innovate offensive tactics.

 

Join the Cybersecurity team! You will have a unique chance to safeguard one of the most visible and high-scale platforms in the region. High performance, engineering best practices and a great atmosphere in the team guaranteed!

What's in it for you:

 

  • Well-located offices (with e.g. fully equipped kitchens, bicycle parking, terraces full of greenery) and excellent work tools (e.g., raised desks, ergonomic chairs, interactive conference rooms).

  • A 16" or 14" MacBook Pro or corresponding Dell with Windows (if you don't like Macs) and all the necessary accessories.

  • A wide selection of fringe benefits in a cafeteria plan - you choose what you like (e.g., medical, sports or lunch packages, insurance, purchase vouchers).

  • English classes that we pay for related to the specific nature of your job.

  • A training budget, inter-team tourism (see more here), hackathons, and an internal learning platform where you will find multiple trainings. 

  • An additional day off for volunteering, which you can use alone, with a team, or with a larger group of people connected by a common goal. 

  • Social events for Allegro people - Spin Kilometers, Family Day, Fat Thursday, Advent of Code, and many other occasions we enjoy.


And that's just the beginning! You can read more about the benefits here.

 

#goodtobehere means that:

 

  • You will join a team you can count on - we work with top-class specialists who have knowledge- and experience-sharing in their DNA.

  • You will love our level of autonomy in team organization, the space for continuous development, and the opportunity to try new things. You get to choose which technology solves the problem and you are responsible for what you create.

  • You will be equipped with modern AI tools to automate repetitive tasks, allowing you to focus on analyzing complex threats, developing advanced security automation, and refining secure architectures.

  • You will meet the Allegro Scale, which starts with over 1000 microservices, an open-source data bus (Hermes) with 300K+ rps, a Service Mesh with 1M+ rps, tens of petabytes of data, and production-used machine learning. 

  • You will become part of Allegro Tech - We speak at industry conferences, cooperate with tech communities, run our own blog (it's been over 10 years!), record podcasts, lead guilds, and we organize our own internal conference - the Allegro Tech Meeting. We create solutions we love (and can) to talk about! 

 

Send us your CV and… see you at Allegro!

 

Company at a glance

Allegro is the most popular shopping platform in Poland and the largest e-commerce platform of European origin.
We operate a marketplace model which means that customers can buy whatever they need from over 135,000 merchants, who can list an unlimited number of offers on our platform.

We offer products in all key categories including Automotive, Fashion, Home&Garden, Electronics, Books and Collectibles, Kids or Health and Beauty. Each month, 22 million customers visit our platform, which is equivalent to almost 80% of all Internet users in Poland. They can choose from over 250m offers at the most attractive prices with maximum convenience including fast and free deliveries under the Allegro Smart! programme, modern financial services (Allegro Pay), as well as Poland’s widest 50k pickup points network.

In 2019 we celebrated the 20th anniversary of Allegro in Poland.
For over two decades, we have been serving consumers and promoting the idea of entrepreneurship in one of the most innovative areas of the economy. We have come a long way from an auction site for private individuals looking for a modern alternative to their local flea market. Today, we are a vibrant international marketplace platform for professional sellers and a must-have sales channel for top international brands and retailers.

We currently employ more than 7000 employees and each of us ranks among the best experts in their field. Whether it’s in Technology, Customer Experience, Commerce, Delivery Experience or many other teams, we’re all proud to say that Allegro employs the best people on the market and all of us are ready to admit that it’s #goodtobehere.

ESG Report 2022: https://allegro.pl/zobacz/esg

Career at Allegro: https://jobs.allegro.eu/ Allegro Tech: https://allegro.tech/

Brand Journal: magazyn.allegro.pl

Support & help: pomoc.allegro.pl // facebook.com/allegro

Founded1999
Team Size5,001-10,000 employees
WorkspaceHybrid
IndustryTechnology, Information and Internet
Location
Warsaw, Masovian Voivodeship, Poland

Top Benefits

  • Flexible working hours
  • Annual performance bonus
  • Occasional remote work (30 days)
  • Fully equipped offices
  • High-end hardware (MacBook Pro or Dell)
  • Cafeteria plan (Medical, Sports, Lunch packages, Insurance, Purchase vouchers)
  • Paid English classes
  • Training budget
  • Inter-team tourism
  • Hackathons
  • Internal learning platform
  • Volunteering day off
  • Social events

Tired of cold applications?

Sign up with Clera and we'll reach out the moment a role actually fits you — no more spraying applications into the void.

Know someone who'd be great for this?