Head of Security Testing @ Sportradar

2 weeks ago


Warsaw, Czech Republic Sportradar Full time

YOUR PROFILE:  Minimum of 10 years in offensive security, penetration testing, or related cybersecurity experience.  Proven experience in leading a team, with a track record of managing penetration testing or offensive security functions.  Strong expertise in conducting complex penetration tests and vulnerability assessments, ideally in a dynamic, fast-paced environment.  Hands-on experience with industry-standard security tools and frameworks, such as OWASP, MITRE ATT&CK, and various penetration testing tools (e.g., Burp Suite, Metasploit, and others).  Deep understanding of modern threat landscapes, attack methodologies, and countermeasures.  Excellent communication skills, capable of articulating technical security issues to stakeholders at all levels.  Head of Security Testing Company Description We’re the world’s leading sports technology company, at the intersection between sports, media, and betting. More than 1,700 sports federations, media outlets, betting operators, and consumer platforms across 120 countries rely on our know-how and technology to boost their business. Job Description WORK TYPE: Hybrid THE ROLE:  As the Head of Security Testing at Sportradar, you will lead and inspire a specialized global team of penetration testers responsible for identifying, evaluating, and mitigating vulnerabilities across our technology stack. Reporting to the VP, Information Security Advisory & Testing, you will play a critical role in advancing our offensive security capabilities, providing strategic leadership, and ensuring the highest standards of security testing across our global infrastructure.  THE CHALLENGE:  Lead a Talented Team. Manage a team of +4 skilled penetration testers, providing mentorship, direction, and support to drive technical excellence. Strategic Planning. Define the security testing strategy, setting priorities and objectives aligned with Sportradar’s security framework. Advanced Penetration Testing. Oversee complex penetration tests, vulnerability assessments, and red team exercises across our systems, applications, and networks. Risk Assessment & Mitigation. Identify and evaluate security risks, working closely with cross-functional teams to mitigate identified vulnerabilities effectively. Stakeholder Engagement. Act as the primary point of contact for offensive security matters, collaborating with internal and external stakeholders to promote a secure development lifecycle. Third Party Management. Manage external companies that provide security services to Sportradar group. Compliance and Reporting. Support regulatory and compliance requirements, generating reports and metrics to communicate findings to technical and non-technical stakeholders. Innovation & Thought Leadership. Stay abreast of the latest security threats, attack techniques, and industry advancements to drive innovative security solutions within the team. Desirable Skills:  Technical certifications such as OSCE, GPEN, or equivalent are highly advantageous. Knowledge of secure development practices, particularly within CI/CD environments. Familiarity with compliance standards and frameworks. Experience in conducting red team exercises and adversary simulation. OUR OFFER:  A collaborative environment with colleagues from all over the world (Engineering offices in Europe, Asia and US) including various social events and teambuilding. Flexibility to manage your workday and tasks with autonomy. A balance of structure and autonomy to tackle your daily tasks. Vibrant and inclusive community, including Women in Tech and Pride groups which welcome all participants. Global Employee Assistance Programme. Calm and Reulay app (leading well-being apps designed to support focus, quality rest, mindfulness, and long-term mental resilience). Online training videos. Flexible working hours. While we appreciate the flexibility and benefits of working from home, we strongly believe that coming together in person fosters stronger connections, encourages collaboration, and drives innovation—both as individuals and as a company. The energy, shared ideas, and team support we experience in the office strengthen the foundation of our success and culture. For this reason, we are an office-first business operating on a hybrid model, with team members working in the office three days a week to build relationships, exchange ideas, and grow together.  ,[Lead a Talented Team. Manage a team of +4 skilled penetration testers, providing mentorship, direction, and support to drive technical excellence.  , Strategic Planning. Define the security testing strategy, setting priorities and objectives aligned with Sportradar’s security framework.  , Advanced Penetration Testing. Oversee complex penetration tests, vulnerability assessments, and red team exercises across our systems, applications, and networks.  , Risk Assessment & Mitigation. Identify and evaluate security risks, working closely with cross-functional teams to mitigate identified vulnerabilities effectively.  , Stakeholder Engagement. Act as the primary point of contact for offensive security matters, collaborating with internal and external stakeholders to promote a secure development lifecycle.  , Third Party Management. Manage external companies that provide security services to Sportradar group.   , Compliance and Reporting. Support regulatory and compliance requirements, generating reports and metrics to communicate findings to technical and non-technical stakeholders.  , Innovation & Thought Leadership. Stay abreast of the latest security threats, attack techniques, and industry advancements to drive innovative security solutions within the team.  ] Requirements: Security, Testing, Boost, Cybersecurity, OWASP, Burp Suite, Communication skills, REST API Tools: Jira, Confluence, GitHub, SharePoint, GIT, Agile, Scrum. Additionally: Flexible working hours, Sport subscription, Training budget, Private healthcare, Flat structure, Small teams, International projects, Free coffee, Canteen, Bike parking, Playroom, Free snacks, Free beverages, Free lunch, Free parking, In-house trainings, In-house hack days, Modern office, Startup atmosphere, No dress code.



  • Warsaw, Czech Republic Box Inc. Full time

    Who you are: Experienced security engineer with 5+ years in application security, DevSecOps, or security tooling, ideally with exposure to AI/ML security challenges. Deep understanding of AI agent architectures, generative AI models, and associated security risks such as prompt injection, adversarial attacks, and autonomous decision-making vulnerabilities....


  • Warsaw, Czech Republic RemoDevs Full time

    Required Skills & Qualifications 7–8+ years in QA, automation, and team leadership. Strong background in manual and automated testing. Skilled in Selenium WebDriver, Playwright, and Cypress. Experience with API testing (Postman, REST Assured) and mobile testing (Android, iOS). Knowledge of performance testing (JMeter). Good understanding of SDLC and QA...


  • Warsaw, Czech Republic Winged IT Full time

    At least 6 years of experience with Java (version 17 and up); Framework knowledge: Spring Framework (Spring Boot, Spring MVC), Hibernate or JPA; Tools: Docker and CI/CD tools (e.g., Jenkins, GitLab); Databases: Strong SQL skills with hands-on experience in relational databases; Testing: Proficiency in unit testing (JUnit, Mockito) and integration testing...


  • Warsaw, Czech Republic RemoDevs Full time

    Requirements Strong skills in Node.js and JavaScript (ES6+). Experience with Express.js or similar frameworks. Good understanding of async programming and event-driven design. Knowledge of REST APIs, WebSockets, and GraphQL. Experience with databases like MongoDB, PostgreSQL, or MySQL. Familiar with Git or other version control systems. Strong...


  • Remote, Warsaw, Czech Republic AVENGA (Agencja Pracy, nr KRAZ: 8448) Full time

    6+ years of professional experience in Android development Proficiency in Kotlin and solid knowledge of Java Strong understanding of Android SDK, Jetpack libraries, and Android architecture components (MVVM, LiveData, ViewModel) Knowledge of Coroutines and Flow for asynchronous programming Experience with Jetpack Compose Experience with RESTful APIs and MQTT...


  • Warsaw, Czech Republic Spyrosoft Full time

    Hands-on experience with Kubernetes and Linux OS. Proven experience in software engineering in a fast-paced, delivery-focused environment. A strong emphasis on automation and cloud-native design principles. Solid technical and analytical background. Proficiency in Go programming language (experience with TypeScript or JavaScript is a plus). Experience with...


  • Warsaw, Czech Republic RemoDevs Full time

    4+ years of experience working as a software engineer Strong knowledge of MS Entity Framework Skilled in C#, ASP.NET, .NET MVC, and web APIs Experience in designing SQL Server schemas, stored procedures, and tables Familiar with MVC (Model-View-Controller) architecture Knowledge of how ASP.NET Core applications work Experience with automated testing tools...


  • Warsaw, Czech Republic Winged IT Full time

    Kafka Expertise: Demonstrate in-depth knowledge of Kafka, including its configuration, traffic management, and the production/consumption of topics; Node.js, TypeScript, and Jest Proficiency: Utilize deep understanding and hands-on experience with Node.js, TypeScript, and Jest for building and testing applications; Database Mastery: Showcase expert-level...


  • Warsaw, Czech Republic RemoDevs Full time

    Front-End Good knowledge of React.js, Redux, TypeScript, HTML5, CSS3, and JavaScript (ES6+). Understanding of state management and component-based architecture. Experience with design libraries like Material-UI, Bootstrap, or Tailwind CSS. Back-End Strong skills in Java, Spring Boot, Hibernate, JPA, and REST APIs. Experience...


  • Warsaw, Czech Republic Bayer Full time

    Bachelor’s degree in computer science, Software Engineering, Information Technology or a related field 7+ years experience as a DevOps engineer. Excellent experience with Composable Architecture principles, especially on an API first strategy. Excellent proficiency with the AWS cloud platform with focus on infrastructure as code using Hashicorp Terraform....