Junior Penetration Tester

ThreatScene
Πλήρης απασχόληση
Αθήνα

ThreatScene is redefining cybersecurity by delivering advanced solutions to safeguard public bodies, enterprises, the defence sector, maritime, and critical infrastructure. We empower organisations to navigate the cyber landscape confidently, ensuring resilience against evolving threats. At ThreatScene, we're building a secure, compliant, and resilient digital ecosystem.  

 

We are looking for a Junior Penetration Tester to join our offensive security team. This role is suitable for someone at the early stage of their penetration testing career, with a strong technical foundation, curiosity, and a willingness to learn from experienced consultants. 


You will support security assessments across web applications, APIs, infrastructure, cloud environments, mobile applications, and wireless networks. You will work closely with senior penetration testers, contribute to client reports, and develop your skills across a range of offensive security disciplines. 

Occasional short-term travel within Greece may be required for on-site client engagements. 


Key Responsibilities 

As a Junior Penetration Tester, you will: 

  • Conduct penetration testing and vulnerability assessment activities under the guidance of senior team members. 
  • Support testing across web applications, APIs, microservices, mobile applications, cloud environments, internal and external infrastructure, and Wi-Fi networks. 
  • Assist with technical assessments, including application security testing, configuration reviews, source code review, and thick client security testing where appropriate. 
  • Document security findings clearly, including the affected systems, risk level, technical impact, evidence, and recommended remediation steps. 
  • Prepare technical client reports and executive-level summaries, clearly communicating findings, risks, evidence, and recommended remediation actions. 
  • Work with senior consultants to help clients understand and improve their overall security posture. 
  • Develop and refine internal testing checklists, methodologies, scripts, and supporting tools. 
  • Participate in research into offensive security techniques, emerging vulnerabilities, tools, and threat trends. 
  • Continue developing practical security skills through training, labs, Capture the Flag competitions, and hands-on research. 


Requirements 

  • Bachelor’s degree in Cybersecurity, Information Technology, Computer Science, or a related field. 
  • 0 to 1 years of professional experience in penetration testing, vulnerability assessment, or a closely related security role. 
  • Foundational knowledge of web application, API, infrastructure, cloud, and mobile security concepts. 
  • Basic understanding of common vulnerabilities, exploitation techniques, and remediation approaches. 
  • Familiarity with application security testing, including areas such as authentication, authorisation, input validation, session management, and business logic flaws. 
  • Some exposure to source code review, thick client security testing, or security configuration reviews. 
  • Proficiency in at least one programming or scripting language, such as Python, C, C++, C#, or Go. 
  • Strong analytical, technical, and problem-solving skills. 
  • Clear written and verbal communication skills, with the ability to explain technical findings to both technical and non-technical audiences. 
  • Ability to work independently on defined tasks, while also collaborating effectively as part of a team. 
  • A strong interest in offensive security and a commitment to continuous learning. 


Preferred Qualifications and Experience 

  • Master’s degree in Cybersecurity, Information Security, Computer Science, or a related field. 
  • Hands-on experience with platforms such as Hack The Box, TryHackMe, PortSwigger Web Security Academy, or similar practical training environments. 
  • Participation in Capture the Flag competitions or security research activities. 
  • Relevant certifications such as eJPT, PNPT, OSCP, GPEN, GWAPT, CRTP, CRTE, or similar. 
  • Experience writing scripts or small tools to automate security testing tasks. 
  • Exposure to cloud security testing, mobile application testing, wireless security, or internal infrastructure assessments. 
  • Familiarity with common security tools used for reconnaissance, vulnerability discovery, exploitation, and reporting. 


What We Are Looking For 

We are looking for someone who is technically curious, detail-oriented, and eager to grow as a penetration tester. You do not need to be an expert in every area listed, but you should be comfortable learning quickly, asking good questions, and applying structured testing methods under supervision. 

This role offers the opportunity to build practical experience across multiple areas of offensive security while working alongside experienced consultants. 


 

We’re building the future of cyber — from compliance to resilience. 

Πώς να εφαρμόσει

Για να υποβάλετε αίτηση για αυτήν την εργασία θα πρέπει να εξουσιοδοτήσετε στον ιστότοπό μας. Εάν δεν έχετε ακόμα λογαριασμό, εγγραφείτε.

Δημοσιεύστε ένα βιογραφικό