Senior Penetration Tester @ HSBC Technology Poland

1 day ago


Kraków, Czech Republic HSBC Technology Poland Full time

What you need to have to succeed in this role

  • Be subject matter expert in at least 1 of penetration testing domains (i.e. infrastructure/apps/mobile).
  • At least 5 years of prior demonstrable hands-on experience in penetration testing.
  • Solid understanding of the platform security models for iOS and Android platforms.
  • Excellent understanding of platform-specific security risks, common vulnerabilities for mobile applications, common risks in financial applications.
  • Practical knowledge of penetration testing of widely understood infrastructure, web and mobile technologies, using manual and automated testing methods.
  • Excellent TCP/IP knowledge and understanding of security implications/issues.
  • Strong web application testing experience.
  • Proven programming/scripting skills.
  • Ability to explain security functionality from first principles.
  • Ability to adapt and apply information to new scenarios and technologies.
  • Strong understanding of applied use of cryptography in application development.

Your career opportunity

This job role is responsible for providing subject matter expertise in Penetration Testing to support wider Cyber Security efforts and organization. The successful candidate will operate as part of a global/regional team within the Cybersecurity organization to provide expertise, oversight and assurance around security process, controls, standards and regulatory requirements.

If your CV meets our criteria, you should expect the following steps in the recruitment process:

  • Online behavioural test
  • Telephone screen
  • Job interview with the hiring manager
,[Perform highly technical/analytical security assessments of custom mobile applications, widely understood infrastructure and networks, web services and APIs. , Work closely with the DevOps teams to ensure that the security testing requirements are met and help automate repetitive tasks., Develop understanding of business functionality and apply testing methodology as appropriate to technologies and risks., Code and demonstrate basic proof-of-concept exploits of vulnerabilities when required., Assist with coordination of security testing projects according to a structured process, including writing test plans, test cases and test reports., Assess product release risk and complexity and identify potential misuse scenarios through review of business requirements and design specifications., Assist with tracking, remediation, and risk acceptance for identified security vulnerabilities., Assist in planning, test execution and vulnerability mitigation. , Run evaluations of new security testing technologies and provide recommendations., Monitor security industry information sources and keep abreast of events, research, and developments., Identify opportunities to improve our processes, quality of the work and efficiencies.] Requirements: Testing, Security, iOS, Android, Automated testing, TCP/IP Additionally: Training budget, Private healthcare, Flat structure, International projects, Multisport card, Monthly remote work subsidy, Psychological support, Conferences, PPK option, Annual performance based bonus, Integration budget, International environment, Small teams, Employee referral bonus, Mentoring, Workstation reimbursement, Company share purchase plan, Childcare support programme, Bike parking, Playroom, Shower, Canteen, Free coffee, Free beverages, Free parking, In-house trainings, In-house hack days, No dress code, Modern office, Knowledge sharing, Garden, Massage chairs, Kitchen.

  • Kraków, Czech Republic HSBC Technology Poland Full time

    What you need to have to succeed in this role Highly experienced tester with excellent communication skills Hands on experience of end-to-end testing within a complex environment across multiple applications Strong, theoretical, and practical knowledge of API and Database testing Define project level functional and non-functional test approaches. Define,...


  • Kraków, Czech Republic HSBC Technology Poland Full time

    What you need to have to succeed in this role Should have strong analytical, problem-solving capabilities, business analysis and leadership skills. Self-motivated and should be able to work independently. Strong communication skills Possess excellent domain knowledge Cybersecurity Industry level certifications is an advantage. Proven proficiency in both...


  • Kraków, Czech Republic HSBC Technology Poland Full time

    What you need to have to succeed in this role Excellent in Ansible Automation Platform (AAP), including deployment, configuration management at senior level is a must, proficiency in developing and managing **Ansible playbooks**, roles, and workflows Experience with Kubernetes/Docker is a must, as well with containerization and orchestration tools HashiCorp...


  • Kraków, Czech Republic HSBC Technology Poland Full time

    What you need to have to succeed in this role Excellent experience in the Data Engineering Lifecycle. You will have created data pipelines which take data through all layers from generation, ingestion, transformation and serving. Senior stakeholder management skills.  Experience of modern Software Engineering principles and experience of creating well...


  • Kraków, Czech Republic HSBC Technology Poland Full time

    What you need to have to succeed in this role Demonstrated experience running highly sensitive projects. Participation in the Cyber Security industry. Understanding of analysis of common operating system, such as Linux, Windows, Google Android and iOS. Demonstrated experience in third party vulnerability disclosure. Demonstrated experience in software...


  • Kraków, Czech Republic HSBC Technology Poland Full time

    What you need to have to succeed in this role Demonstrated strong written and verbal communication, especially with senior stakeholders in Business & IT, and ability to build meaningful working relationships Demonstrated track record of successful delivery of infrastructure projects within the agreed cost and timelines Ability to work in an unstructured and...


  • Kraków, Czech Republic HSBC Technology Poland Full time

    What you need to have to succeed in this role 10+ years of experience in a DevOps role within an agile delivery environment. Experience designing and building highly scalable and resilient platforms and applications, including multisite resilience, load balancing, automatic failover, active-active implementations of application servers and database and...


  • Kraków, Czech Republic HSBC Technology Poland Full time

    What you need to have to succeed in this role Bachelor’s degree in computer science, Engineering, or a related field with proven experience as a senior mobile developer or technical lead. Extensive experience with both iOS (Swift, Objective-C) and Android (Java, Kotlin) development. Strong knowledge of mobile UI design principles, patterns, and best...


  • Kraków, Czech Republic HSBC Technology Poland Full time

    What you need to have to succeed in this role Min. 12+ year experience of transformation and software developments with minimum 2 years of Agile methodology. Demonstrable business banking knowledge in one or more of the following domains: Sustainability, Regulatory, Products or Risks. Strong delivery record on enterprise level services and products and...


  • Kraków, Czech Republic HSBC Technology Poland Full time

    Must have skills: Knowledge of cloud-based infrastructure platforms, good understanding of using an object orientated programming language, Practical experience with Postman / Insomnia (REST API), Practical knowledge about DB (SQL/ MongoDB), Working experience with Java, Experience with Maven, or Gradle, Jenkins, GitHub, Splunk, Selenium, BDD and Gherkin...