donator JOBS

IT y programación

Offensive Security Engineer - vacante remota

Sporty Group

Desde EuropaRemotoEurope
Postular

El enlace lleva al anuncio original. Donator no recibe candidaturas.

Publicada: (hace 14 días)Activa hasta: hasta el 19 de septiembre de 2026

Offensive Security Engineer - IT y programación, remoto

La empresa Sporty Group busca cubrir el puesto de Offensive Security Engineer. La vacante pertenece al área de IT y programación y es totalmente remota. La empresa contrata a personas que residen en Europa.

La empresa no publicó ninguna cifra, eso se aclara en la entrevista. Sobre el horario, el anuncio no pone ninguna condición.

Esta vacante pasó una revisión automática: los anuncios que exigen un permiso de trabajo extranjero, patrocinio de visa, una nacionalidad concreta o residencia en un país determinado no entran en la lista.

En resumen

Empresa
Sporty Group
Área
IT y programación
Quién puede postular
Desde cualquier país de Europa
Modalidad
Totalmente remoto
Tipo de contrato
Tiempo completo
Publicada
10 de agosto de 2026 (hace 14 días)
Activa
hasta el 19 de septiembre de 2026
Fuente
Jobicy

Vacantes nuevas por correo: IT y programación

El tablón se actualiza varias veces al día. Escribimos solo cuando aparece una vacante nueva ya verificada. Nada de spam y no hace falta cuenta.

¿Ya está suscrito? Gestionar sus preferencias

Descripción de la empresa

About the role Mission Strengthen Sporty’s offensive security posture by proactively testing and identifying vulnerabilities across our external perimeter, standalone virtual private servers (VPS), physical office infrastructure, and endpoint defenses. The Offensive Security Engineer owns the security testing, continuous perimeter monitoring, and reconnaissance across all Sporty Group external domains, websites, public IP blocks, and DNS configurations. This role works closely with IT, Network Engineering, SOC, and Security teams to convert external discovery, adversary emulation on EDR/XDR systems, and exploitation insights into tuned perimeter controls, firewall rules, and robust defensive guardrails. What you'll be doing

* Monitor, map, and test Sporty’s entire external attack surface, including all Sporty Group external domains, subdomains, websites, and public IP addresses.

* Conduct adversary emulation exercises against internal and office endpoints to validate the effectiveness of EDR, XDR, and SOC monitoring platforms.

* Evaluate the security posture of physical office hardware, corporate network equipment, and internal edge infrastructure.

* Perform scoped offensive testing on external-facing web applications and limited, public-facing API endpoints.

* Translate external discovery, DNS security posture, network access control weaknesses, and EDR emulation findings into repeatable defensive checks.

* Support our Purple Team validate that EDR policies, perimeter controls, firewall rules, and network segmentation work as expected.

* Document multi-stage network or system exploitation chains to provide practical, reproducible remediation blueprints for infrastructure and SOC teams.

* Support IT and Network analysts with clear vulnerability descriptions, triage steps, severity logic, and escalation guidance.

* Improve external asset tracking, perimeter health records, and exposure trend mapping.

* Track external vulnerability gaps, emulation success rates, remediation times, asset health, and perimeter exposure.

What you'll bring

* Experience in offensive security, perimeter penetration testing, network security assessments, or adversary emulation.

* Strong understanding of external asset discovery, DNS configuration vulnerabilities, and public IP network routing.

* Practical experience auditing and testing Linux and Windows environments and underlying network services.

* Ability to perform adversary emulation and bypass techniques against modern EDR/XDR solutions.

* Familiarity with testing physical office network hardware, routers, switches, firewalls, and workplace IT systems.

* Ability to turn external exposures and technical network risks into clear, actionable fixes for IT and Security teams.

* Experience with core web vulnerabilities and limited, scoped testing of modern API interfaces.

* Strong scripting ability in Python, PowerShell, Bash, or similar to automate perimeter mapping, emulation workflows, and asset discovery.

* Good understanding of scanning, reconnaissance, and interception tools.

* Strong documentation skills.

Technology Expertise Any of the following: Kali Linux toolset, Nmap, Shodan, Censys, Masscan, Amass, Dig/DNS testing tools, Wireshark, Burp Suite, OWASP ZAP, Microsoft Defender XDR, CrowdStrike Falcon, SentinelOne, Atomic Red Team, Caldera, Python, PowerShell, Bash, VPS environments (Linux/Windows Server OS), Firewalls, Routers, Git, Jira, Confluence What's in it for you

* Sporty is a remote-first company in pursuit of sustainability

* A competitive salary plus individual performance-based bonuses every quarter

* 28 days paid annual leave

* Core working hours of 10am-3pm in your local time zone, with flexibility outside of these hours

* Referral bonuses and flash bonuses

* Top-of-the-line equipment

* Annual company retreats that provide opportunities to connect and collaborate with colleagues from around the world

Interview Process:

* Remote video screening with our Talent Acquisition Team

* Online assessment via Hackerrank

* Remote video interview with Team Members (60 Mins)

* Final discussion with the hiring manager (60 mins)

If you're interested, we encourage you to apply. Every application is reviewed by a member of our team, and we aim to respond within 48 hours.

El texto se conserva en el idioma original de la empresa, porque en ese mismo idioma se postulará usted.

Esta vacante se publicó en Jobicy. Anuncio original (Jobicy)

Preguntas frecuentes sobre esta vacante

¿Puedo postularme al puesto de Offensive Security Engineer desde donde vivo?

Sí. Para esta vacante, Sporty Group acepta candidatos de cualquier país de Europa, así que usted no necesita un permiso de trabajo de otro país. El anuncio pasó una revisión automática: si la empresa hubiera exigido un permiso de trabajo, patrocinio de visa o residencia en un país determinado, no estaría en este tablón.

¿Qué remuneración se indica?

Para esta vacante, Sporty Group no publicó ninguna cifra. La mayoría de los anuncios remotos no publica un monto: se acuerda en la entrevista.

¿Cómo me postulo?

Usted se postula directamente ante la empresa, a través del anuncio original publicado en Jobicy. Donator no recibe candidaturas, no cobra comisión y no guarda ningún CV.

¿Qué tipo de vacante es esta?

Un puesto totalmente remoto en el área de IT y programación. Los anuncios híbridos y todo lo que exija presencia en la oficina no se publican en este tablón.

Certificados gratuitos para esta vacante

Los certificados gratuitos que más peso tienen en esta área. Cada uno está verificado en la propia página del proveedor.

Todos los certificados gratuitos: IT and cloud

Vacantes similares

Empleo remoto: Offensive Security Engineer | Donator