Penetration Tester
GFT Technologies·Sant Cugat del Vallès, Spain
What they ask for
Have the right to work in Spain
No sponsorship mentioned, and this kind of work is rarely sponsored in Spain.
Speak native-level Spanish
Listed as a requirement in the ad.
Work in English
English is required, per the ad.
Work on-site in Sant Cugat del Vallès
No relocation package mentioned.
Pulled from the advert automatically — the full ad is what counts.
About the role
GFT is a pioneering company in digital transformation. We design business solutions centered on artificial intelligence (AI-Centric), modernize IT infrastructures, and develop next-generation core systems for leaders in the banking, insurance, and industrial sectors. In close collaboration with our clients, we push boundaries to help them reach their full potential.
What you'll do
- Execute penetration tests on web applications, internal networks, and wireless environments.
- Identify, validate, and prioritize technical vulnerabilities.
- Prepare technical and executive reports with evidence and recommendations.
- Collaborate with defensive teams to explain findings and support remediation efforts.
- Stay up to date on exploitation techniques and emerging vulnerabilities.
What are we looking for?
We are looking for a Penetration Tester with experience conducting penetration tests and technical vulnerability assessments on applications, networks, and systems.
Requirements
- Experience with Burp Suite, Metasploit, and exploitation tools.
- Knowledge of web, network, and system vulnerabilities.
- Ability to produce technical and executive reporting.
- Scripting with Python, PowerShell, or Bash.
- High level of technical English.
Desired skills
- OSCP certification is highly valued, along with CEH, GPEN, or GWAPT.
- Experience in defensive cybersecurity environments or defense operations.
- Knowledge of post-exploitation and hardening.
Personal competencies
- Proactive attitude and focus on continuous improvement.
- Ability to work collaboratively in multidisciplinary teams.
- Good communication skills with both technical and non-technical profiles.
- Autonomy, responsibility, and results orientation.
- Ability to learn and adapt to new environments and technologies.
At GFT, we consider diversity to be one of our fundamental pillars and we promote an inclusive work environment based on cooperation and mutual respect. We offer equal opportunities to all people regardless of their race, cultural background, sex, age, sexual orientation, gender identity, disability, or religious beliefs. GFT has and has registered an Equality Plan that includes the measures to be adopted with the aim of achieving equal treatment and opportunities between women and men within the company and eliminating, if any, discrimination based on sex.
Join our global team!
About the role
GFT es una compañía pionera en transformación digital. Diseñamos soluciones de negocio centradas en la inteligencia artificial (AI-Centric), modernizamos infraestructuras de TI y desarrollamos sistemas core de nueva generación para líderes del sector bancario, asegurador e industrial. En estrecha colaboración con nuestros clientes, desafiamos los límites para ayudarles a alcanzar todo su potencial.
What you'll do
- Ejecutar pruebas de penetración en aplicaciones web, redes internas y entornos wireless.
- Identificar, validar y priorizar vulnerabilidades técnicas.
- Elaborar informes técnicos y ejecutivos con evidencias y recomendaciones.
- Colaborar con equipos defensivos para explicar hallazgos y apoyar la remediación.
- Mantenerse actualizado/a sobre técnicas de explotación y nuevas vulnerabilidades.
¿Qué estamos buscando?
Buscamos un/a Penetration Tester con experiencia realizando pruebas de penetración y evaluación técnica de vulnerabilidades en aplicaciones, redes y sistemas.
Requisitos
- Experiencia con Burp Suite, Metasploit y herramientas de explotación.
- Conocimiento de vulnerabilidades web, redes y sistemas.
- Capacidad para elaborar reporting técnico y ejecutivo.
- Scripting con Python, PowerShell o Bash.
- Nivel alto de inglés técnico.
Skills deseados
- Certificación OSCP muy valorada, además de CEH, GPEN o GWAPT.
- Experiencia en entornos de ciberseguridad defensiva o defensa.
- Conocimientos de post-explotación y hardening.
Competencias personales
- Actitud proactiva y orientación a la mejora continua.
- Capacidad para trabajar de forma colaborativa en equipos multidisciplinares.
- Buenas habilidades de comunicación con perfiles técnicos y no técnicos.
- Autonomía, responsabilidad y orientación a resultados.
- Capacidad de aprendizaje y adaptación a nuevos entornos y tecnologías.
En GFT consideramos que la diversidad es uno de nuestros pilares fundamentales y promovemos un entorno de trabajo inclusivo basado en la cooperación y el respeto mutuo. Ofrecemos igualdad de oportunidades a todas las personas sin tener en cuenta su raza, origen cultural, sexo, edad, orientación sexual, identidad de género, discapacidad o creencias religiosas. GFT dispone y ha registrado un Plan de Igualdad que recoge las medidas a adoptar con el objetivo de alcanzar en la empresa la igualdad de trato y de oportunidades entre mujeres y hombres y a eliminar, si es que la hay, la discriminación por razón de sexo.
¡Únete a nuestro equipo global!
This job was automatically translated to English, .
About the company
GFT Technologies
IT Services and IT Consulting