donator JOBS

IT و برنامه‌نویسی

کار از راه دور: Offensive Security Engineer

Sporty Group

از اروپادورکاریEurope
درخواست

این پیوند شما را به آگهی اصلی می‌برد. Donator درخواست نمی‌گیرد.

پوستر برای اشتراک‌گذاری
منتشر شده: (14 روز پیش)فعال: تا 19 سپتامبر 2026

کار از راه دور: Offensive Security Engineer، دسته «IT و برنامه‌نویسی»

این آگهی را Sporty Group برای موقعیت Offensive Security Engineer منتشر کرده است. این موقعیت در دسته «IT و برنامه‌نویسی» جای می‌گیرد و به‌طور کامل دورکاری است. شرکت داوطلبانی را استخدام می‌کند که در اروپا ساکن‌اند.

کارفرما رقمی اعلام نکرده است و این موضوع در مصاحبه روشن می‌شود. آگهی درباره ساعت کاری هیچ شرطی نگذاشته است.

این موقعیت از یک بررسی خودکار گذشته است: آگهی‌هایی که مجوز کار خارجی، اسپانسر ویزا، تابعیت مشخص یا سکونت در کشوری معین می‌خواهند، به این فهرست نمی‌رسند.

در یک نگاه

شرکت
Sporty Group
دسته
IT و برنامه‌نویسی
چه کسی می‌تواند درخواست بدهد
از هر کشور اروپا
شکل همکاری
به‌طور کامل دورکاری
نوع همکاری
تمام‌وقت
زمان انتشار
10 اوت 2026 (14 روز پیش)
فعال
تا 19 سپتامبر 2026
منبع
Jobicy

موقعیت‌های تازه در ایمیل: IT و برنامه‌نویسی

تابلو روزی چند بار به‌روز می‌شود. فقط وقتی می‌نویسیم که موقعیت تازه و بررسی‌شده‌ای منتشر شده باشد. نه اسپم، نه نیاز به حساب کاربری.

قبلاً عضو شده‌اید؟ مدیریت تنظیمات

توضیح کارفرما

About the role Mission Strengthen Sporty’s offensive security posture by proactively testing and identifying vulnerabilities across our external perimeter, standalone virtual private servers (VPS), physical office infrastructure, and endpoint defenses. The Offensive Security Engineer owns the security testing, continuous perimeter monitoring, and reconnaissance across all Sporty Group external domains, websites, public IP blocks, and DNS configurations. This role works closely with IT, Network Engineering, SOC, and Security teams to convert external discovery, adversary emulation on EDR/XDR systems, and exploitation insights into tuned perimeter controls, firewall rules, and robust defensive guardrails. What you'll be doing

* Monitor, map, and test Sporty’s entire external attack surface, including all Sporty Group external domains, subdomains, websites, and public IP addresses.

* Conduct adversary emulation exercises against internal and office endpoints to validate the effectiveness of EDR, XDR, and SOC monitoring platforms.

* Evaluate the security posture of physical office hardware, corporate network equipment, and internal edge infrastructure.

* Perform scoped offensive testing on external-facing web applications and limited, public-facing API endpoints.

* Translate external discovery, DNS security posture, network access control weaknesses, and EDR emulation findings into repeatable defensive checks.

* Support our Purple Team validate that EDR policies, perimeter controls, firewall rules, and network segmentation work as expected.

* Document multi-stage network or system exploitation chains to provide practical, reproducible remediation blueprints for infrastructure and SOC teams.

* Support IT and Network analysts with clear vulnerability descriptions, triage steps, severity logic, and escalation guidance.

* Improve external asset tracking, perimeter health records, and exposure trend mapping.

* Track external vulnerability gaps, emulation success rates, remediation times, asset health, and perimeter exposure.

What you'll bring

* Experience in offensive security, perimeter penetration testing, network security assessments, or adversary emulation.

* Strong understanding of external asset discovery, DNS configuration vulnerabilities, and public IP network routing.

* Practical experience auditing and testing Linux and Windows environments and underlying network services.

* Ability to perform adversary emulation and bypass techniques against modern EDR/XDR solutions.

* Familiarity with testing physical office network hardware, routers, switches, firewalls, and workplace IT systems.

* Ability to turn external exposures and technical network risks into clear, actionable fixes for IT and Security teams.

* Experience with core web vulnerabilities and limited, scoped testing of modern API interfaces.

* Strong scripting ability in Python, PowerShell, Bash, or similar to automate perimeter mapping, emulation workflows, and asset discovery.

* Good understanding of scanning, reconnaissance, and interception tools.

* Strong documentation skills.

Technology Expertise Any of the following: Kali Linux toolset, Nmap, Shodan, Censys, Masscan, Amass, Dig/DNS testing tools, Wireshark, Burp Suite, OWASP ZAP, Microsoft Defender XDR, CrowdStrike Falcon, SentinelOne, Atomic Red Team, Caldera, Python, PowerShell, Bash, VPS environments (Linux/Windows Server OS), Firewalls, Routers, Git, Jira, Confluence What's in it for you

* Sporty is a remote-first company in pursuit of sustainability

* A competitive salary plus individual performance-based bonuses every quarter

* 28 days paid annual leave

* Core working hours of 10am-3pm in your local time zone, with flexibility outside of these hours

* Referral bonuses and flash bonuses

* Top-of-the-line equipment

* Annual company retreats that provide opportunities to connect and collaborate with colleagues from around the world

Interview Process:

* Remote video screening with our Talent Acquisition Team

* Online assessment via Hackerrank

* Remote video interview with Team Members (60 Mins)

* Final discussion with the hiring manager (60 mins)

If you're interested, we encourage you to apply. Every application is reviewed by a member of our team, and we aim to respond within 48 hours.

متن به زبان اصلی کارفرما نگه داشته شده است، چون درخواست را هم به همان زبان می‌فرستید.

این آگهی شغلی در Jobicy منتشر شده است. آگهی اصلی (Jobicy)

پرسش‌های پرتکرار درباره این موقعیت

می‌توانم از جایی که زندگی می‌کنم برای «Offensive Security Engineer» درخواست بدهم؟

بله. برای این آگهی، Sporty Group داوطلب از هر کشور اروپا می‌پذیرد، پس مجوز کار کشوری دیگر لازم ندارید. آگهی از یک بررسی خودکار گذشته است: اگر کارفرما مجوز کار، اسپانسر ویزا یا سکونت در کشوری معین می‌خواست، روی این تابلو نمی‌آمد.

چه دستمزدی اعلام شده است؟

برای این آگهی، Sporty Group هیچ دستمزدی منتشر نکرده است. بیشتر آگهی‌های دورکاری عددی نمی‌دهند و این موضوع در مصاحبه روشن می‌شود.

چطور درخواست بدهم؟

شما مستقیماً به کارفرما درخواست می‌دهید، از راه آگهی اصلی که در Jobicy منتشر شده است. Donator درخواست نمی‌گیرد، کمیسیون نمی‌خواهد و رزومه‌ای نگه نمی‌دارد.

این چه نوع آگهی‌ای است؟

یک موقعیت به‌طور کامل دورکاری در دسته «IT و برنامه‌نویسی». آگهی‌های ترکیبی و هر چیزی که حضور در دفتر بخواهد روی این تابلو منتشر نمی‌شود.

گواهی‌نامه‌های رایگان برای این موقعیت

سنگین‌ترین گواهی‌نامه‌های رایگان این حوزه. هر کدام روی صفحه خود ارائه‌دهنده بررسی شده است.

همه گواهی‌نامه‌های رایگان دسته «IT and cloud»

موقعیت‌های مشابه

کار از راه دور: Offensive Security Engineer | Donator