Penetration Testing Engineer/ 1

Inetum

Sign In to Apply

Pay not listed

  • Hybrid
  • Full-time
  • Warsaw, Masovian Voivodeship, Poland
  • 5d ago

Job Description

We are seeking a highly skilled and experienced Senior IT Support Engineer specializing in Offensive Security to join Information Security team. The ideal candidate will have a strong background in penetration testing, security assessments, and infrastructure security audits. This role involves identifying architectural weaknesses, planning and executing penetration tests, and conducting comprehensive security reviews across various environments.

Key Responsibilities:

  1. Penetration Testing & Security Assessments:

    • Conduct penetration tests of internal infrastructure, environments, and Internet-facing web applications.
    • Perform authentication, authorization, business logic, and API security assessments.
    • Identify, validate, and document security vulnerabilities based on industry standards such as OWASP Top 10 and MITRE ATT&CK.
  2. Infrastructure Security Audits:

    • Assess network, system, and application security controls.
    • Conduct security reviews of cloud-native and distributed architectures, in-house cloud architectures, and physical security of company sites.
    • Audit complex enterprise infrastructures including Kubernetes environments, OpenStack platforms, Apache Kafka ecosystems, Active Directory, Microsoft Entra ID, WAN and LAN network infrastructures, Linux and Windows server environments, and hybrid cloud and on-premise architectures.
  3. Reporting & Documentation:

    • Report and present findings, risk assessments, and remediation recommendations to technical and management stakeholders.
    • Document penetration tests, security assessments, and audit results.
  4. Red Team Engagements:

    • Plan and execute internal red team engagements simulating realistic threat actor behavior.
    • Conduct attack path analysis, privilege escalation assessments, social engineering, credential compromise, and lateral movement scenarios.
  5. Security Improvement & Collaboration:

    • Support remediation activities and security architecture improvements.
    • Collaborate with system owners, platform teams, and developers to address identified weaknesses.
    • Participate in security architecture reviews and technical design discussions.
    • Work closely with IT, network, and application teams to identify security gaps and recommend improvements.
  6. Methodology & Tooling Development:

    • Develop and maintain testing methodologies, attack playbooks, and automation scripts.
    • Contribute to the continuous improvement of offensive security capabilities and tooling.
  7. Compliance & Awareness:

    • Support compliance requirements such as ISO 27001, NIS2, and industry-specific security frameworks.
    • Provide technical expertise for security-related projects and initiatives.
    • Contribute to security awareness by sharing attack techniques, lessons learned, and best practices


  • Degree in Computer Science, IT Security, or a comparable qualification.
  • Several years of experience in Information Security, Offensive Security, Penetration Testing, or Red Teaming.
  • Hands-on experience conducting penetration tests against heterogeneous Enterprise Infrastructure environments, including:
    • Active Directory Security/Microsoft Entra ID
    • Network - LAN/WAN/WLAN
    • Windows, Mac, and Linux
    • Web Applications (In-House and public-facing)
    • APIs
    • (In-House) Cloud Security (OpenStack, Kubernetes, containerized environments)
    • Cloud Security (AWS, Azure, M365)
  • Strong understanding of modern attack techniques and adversary tactics.
  • Practical knowledge of common penetration testing methodologies and frameworks.
  • Strong analytical skills and problem-solving abilities.
  • Experience creating technical reports and presenting findings to stakeholders.
  • Team player with good communication skills.


Hybrid work model:  3 days from the office, 2 days of home office.

Office locations: Warszawa, Poznan, Lublin

During employment, we conduct a background check

Fluent communication skills in English and Polish (minimum B2 level), both written and spoken.

We hereby inform you that Inetum Polska sp. z o.o. has implemented an internal reporting (whistleblowing) procedure. The content of the procedure and the possibility to submit an internal report are available at:

https://inetum.whispli.com/speakup?locale=pl