Expert Penetration Tester

2 tygodni temu


Warszawa, Mazovia, Polska Nordea Bank Pełny etat

Job ID: 21921

Would you like to legally hack into the bank? We are now looking for an IT Security Penetration Tester / Ethical Hacker to help us protect the bank.

In Nordea, we're harnessing the power of technology to reinvent the future of banking. A tech revolution is underway – and you can make an impact. Though we're a Nordic bank, we're also one of the largest IT employers in Tricity and Warsaw. Working with international teams in an inspiring working environment, you'll have lots of opportunities to expand your skills

About this opportunity

Welcome to the Cyber Security Testing Team. We add value by de-risking the bank and early detecting security issues in the IT infrastructure and applications. As the IT Security Penetration Tester, you'll play a valuable role in Security Testing process and threat hunting activities in order to enlist and prioritize all security issues which can disturb services or weaken the bank reputation.

What you'll be doing:

Penetration tests of IT solutions used in bank Performing Vulnerability assessment Being actively involved in expansion of capabilities of Security Testing Team Writing and/or reviewing Security Test Reports Protecting the Bank

You will join 10 professionals in the Internal Security Testing Team inside Cyber Security area. The role is based in Tricity or Warsaw. Our organization follows a hybrid work structure where employees collaborate in the office and work remotely from home.

Who you are

Collaboration. Ownership. Passion. Courage. These are the values that guide us in being at our best — and that we imagine you share with us.

To succeed in this role, we believe that you:

Are eager to constantly learn new things and share this knowledge with others Are creative out-of-the-box thinker, self-motivated and persistent Can work independently, as well as in the team

Your experience and background:

5+ years' experience in penetration testing / red teaming / purple teaming Knowledge of penetration testing tools (e.g. Burp Suite, Metasploit, Nmap, Wireshark, IDA Pro) Knowledge of common operating systems Windows/Linux (Kali distribution) Knowledge about networking routing, network separation, lateral movement etc. Some development skills, at least at level of understanding the code written in one of the common programming languages (Java, C, Python, C# etc.) Ability to explain complicated things in simple language Familiarity with industry standards like – OWASP TOP10, OWASP ASVS, OWASP MSTG, OSSTMM Ability to assess vulnerabilities severity based on the CVSS Ability to write PoC exploit and demonstrate the exploitation mechanics Own CVE, bug bounty awards Specialization in at least two of the following:
Web application security Infrastructure penetration testing Cloud security assessments Reverse engineering Code review Good English skills (written and spoken) IT Security Certifications like OSCP, OSWE, OSEP, OSED, GPEN, GXPN, WAPT, WAPTX, MASPT, CRTP, CRTE will be the additional asset

Nice to have:

Experience with OSINT / CTF's GitHub profile with self-written tools Blogs / publications on Cybersecurity topics / Conference talks

If this sounds like you, get in touch

Next steps

At Nordea, we know that an inclusive workplace is a sustainable workplace. We deeply believe that our diverse backgrounds, experiences, characteristics and traits make us better at serving customers and communities. So please come as you are.

Please include permit for processing personal data in CV as following:

In accordance with art a and b. Regulation (EU) 2016/679 of the European Parliament and of the Council of 27 April 2016 on the protection of natural persons with regard to the processing of personal data and on the free movement of such data, and repealing Directive 95/46/EC (General Data Protection Regulation) hereinafter 'GDPR'. I agree to have: my personal data, education and employment history proceeded for the purposes of current and future recruitment processes in Nordea Bank Abp.

The administrator of your personal data is: Nordea Bank Abp operating in Poland through its Branch, address: Aleja Edwarda Rydza Śmiglego 20, Łodź. Your personal data will be processed for the recruitment processes in Nordea Bank Abp. You have a right to access your personal data, right to rectify and right to delete. Disclosing the personal data in the scope specified by the provisions of Polish Labour Code from 26 June 1974 and executive acts are mandatory. Providing personal data is necessary to conduct the recruitment processes. The request for the deletion of your personal data means resignation from further participation in recruitment processes and causes the immediate removal of your application. Detailed information concerning processing of your personal data can be found at:

We reserve the right to reply only to selected applications.

#LI-Hybrid


  • Senior Penetration Tester

    2 tygodni temu


    Warszawa, Mazovia, Polska C.h. Robinson Pełny etat

    C.H.Robinson is seeking a Senior Penetration Tester - Red Team to join our Warsaw office and global team.This role will focus primarily on Application Security , with a strong emphasis on penetration testing.You will lead and develop red team exercises, playing a key role in our ongoing efforts to implement comprehensive red teaming practices.Your...

  • Senior Penetration Tester

    2 tygodni temu


    Warszawa, Mazovia, Polska C.H. Robinson Pełny etat

    C.H. Robinson is in search of a Senior Penetration Tester - Red Team to join their team in Warsaw and worldwide. This role will primarily focus on Application Security, with a strong emphasis on penetration testing. The chosen candidate will lead red team exercises, playing a crucial part in implementing comprehensive red teaming practices. The...

  • Penetration Tester

    2 tygodni temu


    Warszawa, Mazovia, Polska Sportradar Pełny etat

    We're the world's leading sports technology company, at the intersection between sports, media, and betting. More than 1,700 sports federations, media outlets, betting operators, and consumer platforms across 120 countries rely on our know-how and technology to boost their business.Job DescriptionAbout Sportradar:Sportradar is a globally recognized...

  • Senior Penetration Tester

    2 tygodni temu


    Warszawa, Mazovia, Polska ACAISOFT POLAND Sp. Z O.o. Pełny etat

    Technologies-expected : API penetration testing Burp Suite OWASP Wireshark about-project : Work with us on a project for a U.S.fintech client that is the largest provider of home plans in the real estate market.We are developing various applications, and platforms in the area of handling real estate insurance processes.We are looking for a specialist who can...


  • Warszawa, Mazovia, Polska ING Pełny etat

    We are looking for you, if you:are passionate about the field of Cybercrime resilience, secure coding practices, secure design and advanced security testing techniques,have the hands on experience with testing devices, infrastructure or cloud, networks and applications (including testing web applications and APIs, mobile applications is a plus) and/or...


  • Warszawa, Mazovia, Polska Bosch Group Pełny etat

    Senior Cyber Security OT/IoT Penetration Tester [BGSW] Bosch Group Moving stories and inspiring interviews. Experience the meaning of "invented for life" by Bosch completely new. Visit our international website. View company page AsBosch we shape the future by inventing high-quality technologies and services that spark enthusiasm and enrich people's...

  • SAP Security Expert

    2 tygodni temu


    Warszawa, Mazovia, Polska Bosch Group Pełny etat

    SAP Security Expert / Penetration Testing Process Coordinator Bosch Group Moving stories and inspiring interviews. Experience the meaning of "invented for life" by Bosch completely new. Visit our international website. View company page At Bosch, we shape the future by inventing high-quality technologies and services that spark enthusiasm and enrich...


  • Warszawa, Mazovia, Polska Bosch Group Pełny etat

    Bosch Group Moving stories and inspiring interviews. Experience the meaning of "invented for life" by Bosch completely new. Visit our international website. View company page AsBosch we shape the future by inventing high-quality technologies and services that spark enthusiasm and enrich people's lives.Our promise to our associates is rock-solid: we enjoy...

  • IT Tester

    2 tygodni temu


    Warszawa, Mazovia, Polska b2bnetwork Pełny etat

    Detailed description of work task to be carried outExperienced Manual Tester in E2E Integration Testing with Requirement Analysis, Test Preparation, Test Execution, SQL, Oracle, Analytical Skills, Trouble shooting, Test Data Prep, API, Mainframe, Clear on STLC and SDLC process , Agile WOW. Quick Learner and proactive in assigned tasks and ready to take up...


  • Warszawa, Mazovia, Polska Localizationacademy Pełny etat

    TransPerfect is a leading provider of bespoke and flexible videogame services, offering a wide range of solutions including translation, functional and localization game testing, certification testing, focus group and playtesting, player support and community management, cybersecurity and penetration testing, tool development, art design, game writing, GDPR...


  • Warszawa, Mazovia, Polska Sportradar Pełny etat

    Job DescriptionJob Description: All software and systems contain defects or vulnerabilities in them. This role is concerned with the management of vulnerabilities that are known about, so to ensure an effective remediation strategy is in place to avoid them being exploited by threat actors.The Senior Security Vulnerability Analyst role in Sportradar's Attack...

  • DevSecOps Architect

    2 tygodni temu


    Warszawa, Mazovia, Polska Mettler Toledo AG Pełny etat

    We are seeking a specialized DevSecOps Architect to join our team.The successful candidate will play a key role in the development and implementation of a comprehensive cyber security strategy for our organization, with a focus on integrating security into our DevOps processes and ensuring the protection of our data and systems from cyber-attacks and data...


  • Warszawa, Mazovia, Polska Sportradar Pełny etat

    We're the world's leading sports technology company, at the intersection between sports, media, and betting. More than 1,700 sports federations, media outlets, betting operators, and consumer platforms across 120 countries rely on our know-how and technology to boost their business.Job DescriptionJob Description:All software and systems contain defects or...


  • Warszawa, Mazovia, Polska Appfire Pełny etat

    Senior Security Engineer @ Appfire Warsaw, Masovian Voivodeship Senior Security Engineer @ Appfire Warszawa Warsaw, Masovian Voivodeship, Polska Job DescriptionAppfire is seeking a highly skilled Senior Security Engineer to join our Appfire Information Security team. This Senior Security Engineer role will report to our CISO and work within our Security...


  • Warszawa, Mazovia, Polska Goldman Sachs Pełny etat

    Business Unit Overview Led by the Chief Information Security Officer (CISO), Technology Risk secures Goldman Sachs against hackers and other cyber threats. We are responsible for detecting and preventing attempted cyber intrusions against the firm, helping the firm develop more secure applications and infrastructure, developing software in support of our...


  • Warszawa, Mazovia, Polska Experis ManpowerGroup Sp. z o.o. Pełny etat

    The Software Vulnerability ML Engineer is responsible for improving analysis of possible software defects and vulnerabilities through the application of machine learning to complex applications using available security – relevant data.They should possess a solid background in ML and be experienced in data visualization for conveying analytic results to...


  • Warszawa, Mazovia, Polska ZF Group Pełny etat

    Req ID Warsaw, Poland About the team Product categories are at the heart of the ZF Aftermarket strategy and organization when it comes to product sales, profitability, and market penetration. The category Control Systems is thriving and one of the global leaders in braking. We are recruiting a best-in-class global expert and leader in the field of braking...


  • Warszawa, Mazovia, Polska Goldman Sachs Group, Inc. Pełny etat

    Business Unit OverviewLed by the Chief Information Security Officer (CISO), Technology Risk secures Goldman Sachs against hackers and other cyber threats. We are responsible for detecting and preventing attempted cyber intrusions against the firm, helping the firm develop more secure applications and infrastructure, developing software in support of our...


  • Warszawa, Mazovia, Polska Jobs via eFinancialCareers Pełny etat

    Application Security Engineer - Security Engineering - Vice President - Warsaw Application Security Engineer - Security Engineering - Vice President - WarsawGoldman Sachs Warsaw, Poland Posted 3 months ago Permanent Competitive Application Security Engineer - Security Engineering - Vice President - Warsaw Business Unit OverviewLed by the Chief Information...

  • Architekt Rozwiązań It

    2 tygodni temu


    Warszawa, Mazovia, Polska It Connect Sp. Z O.o. Sp. K. Pełny etat

    Technologies-expected : REST Swagger Open API Docker Kubernetes Google Cloud Platform about-project : Rozwój oraz utrzymanie grupy systemów odpowiedzialnych za proces sprzedażowy dla klientów indywidualnych oraz niższych segmentów klientów biznesowych.W ramach projektu rozwijany jest system commerce SAP Hybris wraz z otaczającą go chmurą...