Logo for Var Group

Senior Offensive Security Analyst

Role overview

Qualifications

  • Degree in Computer Science, Telecommunications Engineering or equivalent
  • Over 5 years of experience in offensive security, Red Team or pentesting
  • Advanced knowledge in scripting (Python, Bash, PowerShell)
  • B2+ English proficiency

Responsibilities

  • Design and execute Red Team campaigns and adversary emulation exercises
  • Conduct advanced penetration tests on networks, web applications, APIs, APPs and cloud environments
  • Analyze and exploit complex vulnerabilities including privilege escalation and lateral movements
  • Collaborate with Blue Team and engineering teams to improve defensive posture

Key facts

Hard skills

Other skills

  • Collaboration

About the company

Var Group logo

Var Group

Var Group, www.vargroup.it, with a 480 million euros turnover as of 30 April 2021, more than 2700 employees in 23 offices throughout Italy, 8 foreign offices in France, Spain, Germany, Romania, Switzerland, Austria and China, is one of the main partners for innovation in the ICT sector. It supports Italian businesses’ competitiveness, offering dedicated solution to major Italian sectors: Manufacturing, Food & Wine, Industrial Mechanics, Automotive, Fashion, Furniture, Retail & Mass Distribution. Var Group constantly renews its offering thanks to continuous research activity and close collaboration with Start-ups and University Centers. Companies have to face increasingly complex challenges and they must be able to count on innovative and specialized solutions. Var Group’s offering draws its strength from the deep knowledge of business processes and the integration of several elements. It is the result of the work carried out by several Business Units focusing on projects development in terms of: Business & Industry Solutions, Digital Cloud, Digital Industries, Digital Process Engineering, Customer Experience, Digital Security, Business Technology Solutions, Smart Services, Data Science. Var Group is fully owned by Gruppo Sesa S.p.A., a leading Italian Group in the field of value-added IT solutions for business segment. The parent company Sesa S.p.A. is listed on the STAR segment of the MTA market of the Italian Stock Exchange.

Company details

Company size1001 - 5000

Your match analysis

See how your profile stacks up against this role.

We compared the job requirements to your profile to show where you're strong and where you fall short.

Job description

Nos encontramos en la búsqueda de un/a Senior Offensive Security Analyst para que se sume a nuestro equipo de Ethical Hacking.

✨ Cual será tu misión?

Serás responsable de planificar, ejecutar y supervisar pruebas de seguridad ofensiva avanzadas (Red Team, pentesting, simulaciones de adversarios, etc.) con el fin de identificar vulnerabilidades y evaluar la resiliencia de los sistemas frente a amenazas reales 💥

🔮 ¿Qué buscamos?

  • Grado en Informática, Ingeniería de telecomunicaciones o equivalente.
  • Tener formaciones y/o certificaciones específicas en ciberseguridad/seguridad ofensiva serán un nice-to-have (OSCP, OSEP, OSCE, CRTO, eCPTX, eCPTXv2 o similar).
  • Más de 5 años de experiencia en seguridad ofensiva, Red Team o pentesting, seguridad en la nube (Azure, AWS, GCP), análisis de seguridad en APIs REST y GraphQL, criptografía aplicada y protocolos de seguridad, aplicaciones móviles y ejercicios de RedTeam.
  • Experiencia comprobada en pentesting y análisis de vulnerabilidades.
  • Conocimientos avanzados en scripting (Python, Bash, PowerShell).
  • Dominio de herramientas como Burp Suite, Nessus, Metasploit, MobSF, Nmap, etc.
  • Familiaridad con frameworks como OWASP WSTG, CIS Benchmarks y NIST.
  • Conocimiento avanzado en seguridad de redes, sistemas operativos (Windows/Linux) y aplicaciones web.
  • Ingles: B2+. (We'll check your level at the interview, so be prepared to talk🗣)

🎯 ¿Qué retos y tareas puedes encontrar en este puesto?

  • Diseñar y ejecutar campañas de Red Team y ejercicios de emulación de adversarios.
  • Realizar pruebas de penetración avanzadas en redes, aplicaciones web, APIs, APPs y entornos cloud.
  • Analizar y explotar vulnerabilidades complejas, incluyendo escalada de privilegios y movimientos laterales.
  • Colaborar con equipos Blue Team y de ingeniería para mejorar la postura defensiva.
  • Elaborar informes técnicos y ejecutivos con hallazgos, evidencias y recomendaciones.
  • Asesorar sobre medidas de mitigación y endurecimiento de sistemas.
  • Participar en la formación interna sobre técnicas ofensivas y tendencias de ciberataques.

💼 ¿Qué ofrecemos?

  • Tipo de contrato: Indefinido a tiempo completo.
  • Ubicación: España y/o Andorra (modelo hibrido de trabajo)
  • Modalidad de trabajo: hibrida en Andorra o 100% remoto desde España.
  • Participación en un proyecto innovador, donde puedes aportar tu talento de forma autónoma y dinámica 💥
  • Salario: flexible según experiencia del perfil.
  • Plan de Compensación Flexible: tarjeta comida, tarjeta transporte, seguro médico y formación.
  • Conciliación de la vida laboral y familiar: flexibilidad horaria.

¿Crees que tienes lo que buscamos? Apply now 🦾

*Valoramos positivamente las solicitudes de personas con certificado de discapacidad igual o mayor al 33%, en cumplimiento de la legislación vigente, Ley General de Derechos de las Personas con Discapacidad y de su inclusión social (LGD). Igualmente, en nuestro objetivo de invertir la tónica de nuestro sector y fomentar el equilibro en nuestro equipo ofensivo, animamos a potenciales candidatas a aplicar a nuestra vacante para que podamos considerar el mayor número de candidaturas de este género*

Apply once. Then go straight to the hiring manager.

After you apply, unlock the direct contact details of the people who actually make the call. A quick follow-up makes you 5x more likely to land an interview.

MR

Marcus Rivera

Chief Revenue Officer

m.rivera@company.com
linkedin.com/in/marcusrivera
Unlocked after you apply
·

Security Analyst Related jobs

Other jobs at Var Group

Premium

Reach out to the hiring manager directly.

Gain access to the contact details of the hiring managers who actually decide, and reach out to network with them directly. That, plus more when you upgrade:

  • Full match report with fit score and gaps
  • Career diagnostics on how recruiters read you
  • Curated company matches and warm intros
  • 48h early access to new roles

Cancel anytime.