远程工作雷达

渗透测试团队负责人

Penetration Tester Team Lead

开发工程限定地区(需当地身份)日间重叠约 2 小时,需偶尔早起或晚睡
公司Terra Security
薪资未公开
工作地点Poland
地域资格限定地区(需当地身份)
时区要求日间重叠约 2 小时,需偶尔早起或晚睡
用工类型Contractor
发布时间今天
数据来源Himalayas
前往 Himalayas 查看并投递 →
注意地域限制:该职位明确限定在 Poland 招聘。如果你是位于中国大陆的求职者,通常需要当地工作身份才能投递,或需与雇主确认是否接受独立合同(Contractor)形式合作。
作息提示:日间重叠约 2 小时,需偶尔早起或晚睡。

Terra Security 提供基于代理的 AI 驱动的持续渗透测试,与代码变更和不断变化的攻击面保持同步,结合经过训练的 AI 代理群组与人工监督,确保安全性和控制力。财富 500 强企业信任 Terra,以确保网络、AI、内部应用、API、移动设备、网络和云环境中的每个攻击面都得到覆盖。
Terra 正在成为下一个突破性的网络安全公司,目前已筹集 3800 万美元资金,其中包括由 Felicis Ventures 领投的 3000 万美元 A 轮融资,Dell Technologies Capital、Silicon Valley CISO Investments(SVCI)、SYN Ventures、LAMA Partners、Underscore VC 和 Capital One Ventures 等机构也参与了投资。
作为渗透测试团队负责人,你将在我们的全球扩张中发挥关键作用,负责在欧洲组建并领导一支新的渗透测试团队。你将结合深厚的技术专长与领导能力,弥合自动化 AI 效率与高层次人类创造力之间的差距。这是在一家从根本上改变安全评估方式的公司中塑造高绩效团队的独特机会。
你将负责
· 在欧洲招募、指导和管理世界级的渗透测试团队,培养技术卓越和持续学习的文化。
· 主导复杂的 Web 应用和 API 渗透测试,为我们的 AI 驱动的评估提供“人在回路中”的监督。
· 与我们的工程团队紧密合作,将 AI 工具集成到日常自动化工作流中,通过现实世界的漏洞利用逻辑增强“蜂群”能力。
· 审核并最终确定高质量的安全报告,确保技术发现准确,并为不同利益相关者提供可操作的修复建议。
· 与客户合作,传达安全发现的业务影响,并引导他们完成复杂的修复策略。
· 通过开发和优化内部测试方法和自定义漏洞利用技术,始终保持对威胁态势的领先。
要求
· 5 年以上 Web 应用和 API 渗透测试的实际经验。
· 有管理、指导或领导技术安全团队的实绩。
· 深入了解 OWASP Top 10、常见攻击方法和漏洞利用技术。
· 熟练掌握 TCP、HTTP 以及各种客户端/服务器端语言。
· 对 Burp Suite、Caido 等行业标准安全测试工具具有专家级使用经验。
· 高度责任心,具备良好的沟通能力和团队协作精神。

查看英文原文

Description
Terra Security provides agentic AI-powered continuous penetration testing aligned to code changes and evolving attack surfaces, combining a swarm of trained AI agents with human supervision for safety and control. Fortune 500 organizations trust Terra to ensure every attack surface is covered across the web, AI, internal apps, APIs, mobile, networks, and the cloud.
Terra is on track to become the next breakout cybersecurity company with $38 million raised to date, including a $30 million Series A led by Felicis Ventures with participation from Dell Technologies Capital, Silicon Valley CISO Investments (SVCI), SYN Ventures, LAMA Partners, Underscore VC, and Capital One Ventures.
Summary
As a Penetration Tester Team Lead, you will play a pivotal role in our global expansion by building and leading a new penetration testing team in Europe. You will blend deep technical expertise with leadership to bridge the gap between automated AI efficiency and high-level human ingenuity. This is a unique opportunity to shape a high-performance team within a company that is fundamentally changing how security assessments are performed.
What You’ll Do

  • Help recruit, mentor, and manage a world-class team of penetration testers across Europe, fostering a culture of technical excellence and continuous learning.
  • Lead complex web application and API penetration tests, providing "human-in-the-loop" oversight to our AI-driven assessments.
  • Work closely with our engineering team to integrate AI tools into daily automation workflows, enhancing the "swarm" with real-world exploit logic.
  • Review and finalize high-quality security reports, ensuring technical findings are accurate and remediation guidance is actionable for diverse stakeholders.
  • Partner with customers to communicate the business impact of security findings and guide them through complex remediation strategies.
  • Stay ahead of the threat landscape by developing and refining internal testing methodologies and custom exploitation techniques.

Requirements

  • 5+ years of hands-on experience in Web Application and API Penetration Testing.
  • Proven experience managing, mentoring, or leading technical security teams.
  • Deep knowledge of the OWASP Top 10, common attack methodologies, and exploitation techniques.
  • Proficiency with TCP, HTTP, and various client-side/server-side languages.
  • Expert-level experience with Burp Suite, Caido, and other industry-standard security testing utilities.
  • High-level English proficiency (fluent written and verbal) with a knack for writing clear, high-quality technical reports.

Advantage

  • Strong coding skills (Python, Go, or Bash) for scripting, automation, or secure software development.
  • Practical experience using AI tools to enhance security workflows and automation.
  • Experience engaging directly with clients to translate technical risk into business logic.
  • Professional certifications such as CREST, OSWA/OSWE, or GPEN.

Please note that this position is for candidates based in Poland and is offered as an Independent Contractor (B2B) engagement.
Originally posted on Himalayas

本页面信息整理自 Himalayas,版权归原发布方所有。职位可能随时关闭,投递请以原始页面为准。 本站只做信息聚合展示,不参与招聘流程,也不向求职者收取任何费用。

该公司其他在招职位

营销活动负责人

Terra SecurityUnited StatesFull Time今天
市场运营限定地区(需当地身份)

品牌设计师

Terra SecurityUnited StatesFull Time今天
设计市场运营限定地区(需当地身份)

渗透测试员

Terra SecurityPolandContractor今天
开发工程限定地区(需当地身份)日间重叠约 2 小时,需偶尔早起或晚睡

← 返回全部职位