Security Testing Specialist

il y a 16 heures


Luxembourg, Luxembourg Qualco Temps plein

At Quento, the ICT arm of the Qualco Group, we deliver comprehensive and innovative solutions across AI, Digital Engineering, Cloud, and Cybersecurity, helping businesses accelerate digital transformation. With a presence in Greece, Luxembourg, and Belgium, and backed by the expertise of the Qualco Group, we combine deep technical knowledge with strategic partnerships to support business growth.

Quento Technologies seeks a highly motivated and experienced Security Testing Specialist to prepare and execute analysis of the applications from a security point of view. At Quento, we empower our people to innovate and lead in delivering transformative ICT solutions to our clients worldwide. Our high-performing, dynamic, and collaborative environment fosters professional growth at every stage. As a Security Testing Specialist, you will be responsible for including an analysis of the available documentation source code, of the architecture, and penetration testing.

Responsibilities:

  • Analysis of documentation (both from the project and generated internally) and code and other information, also but not only with tools, preparation and execution of penetration testing, and analysis and assessment of the results;
  • Depending on the processes and procedures of the Contracting Authority, coordinate inside the team and with project and application teams, organizing technical meetings to elicit information, escalating to the responsible team leader and/or the statutory staff responsible if necessary;
  • Provide as needed, required and possible, following its processes and procedures, relevant technical security input, also based on specific experience in the environment of the organiztion, to activities like e.g. technical evolution and maintenance in operations of platform used for the security checks, DevSecOps;
  • Assess the findings, also during the process, alerting immediately the responsible team leader and/or the statutory staff directly responsible, when that may be necessary following the processes and procedures;
  • Prepare reports on the results of the technical security analysis and assessment, and communicate them to statutory staff responsible according to the processes and procedures;
  • Report to the specifically assigned Team Leader and the statutory staff responsible on possible technical challenges, actual and future, for the work of the team, and contribute as and if needed to their analysis, and to proposals to address them;
  • Should the processes and procedures of the organization foresee the possibility of other type of exercises with more reduce scope and/or as follow-up, do them and provide the necessary reporting;
  • Participate in meetings as required, at the start of, end of, and eventually during the security testing process;
  • Ensuring that all activities and duties comply fully with regulatory requirements, including the Group Anti-Bribery and Corruption Policy.
Requirements
  • University degree in Computer Science, Engineering, or a relevant discipline;
  • Minimum 3 years of experience in the IT field as developer and/or in roles with technical security responsibilities;
  • Excellent experience with application testing with a white-box approach;
  • Experience in implementation of security measures and/or security auditing;
  • Experience in activities and environments requiring to work with sensitive information, with different information labels and handling rules;
  • Experience in analysis and in redaction of documents for, and contacts with, technical and non-technical people (advantageous if in a context of security);
  • Good knowledge of security and vulnerability management practices, preferably including relevant framework, best practices and standards (e.g. NIST SP800, ISO 27001, OWASP, hardening guidelines);
  • Good general ICT knowledge, e.g. networking, operating system, firewalls, web applications servers, programming and code quality tools, virtualisation, runtimes;
  • Good knowledge of vulnerability and security analysis tools and platforms (e.g. Nessus, Burp, Kali-Linux);
  • Good knowledge of development practices and knowledge of secure coding;
  • Understanding of cloud services, and of the different types and configuration of "cloud" services and applications potentially involving or not "cloud";
  • Understanding of good design principles for distributed architecture using services;
  • Certification according to CEH, or equivalent certification is required;
  • Very good knowledge of English (Level C1) or very good knowledge of French (Level C1). Knowledge of both languages, one at C1 level and the other at B2 level in any configuration, is required.
Benefits

This role is an on - site opportunity in Luxembourg.

CV submitted in English.

Your race, gender identity and expression, age ethnicity or disability make no difference in Quento we want to attract, develop, promote, and retain the best people based only on their ability and behavior.

Disclaimer: Quento collects and processes personal data in accordance with the EU General Data Protection Regulation (GDPR). We are bound to use the information provided within your job application for recruitment purposes only and not to share these with any third parties. For more details on the processing of your personal data during the Recruitment procedure, please be informed in the Recruitment Notice, before the submission of your application.

LI-Hybrid
  • Security Testing Specialist

    il y a 16 heures


    Luxembourg, Luxembourg Qualco Temps plein

    At Quento, the ICT arm of the Qualco Group, we deliver comprehensive and innovative solutions across AI, Digital Engineering, Cloud, and Cybersecurity, helping businesses accelerate digital transformation. With a presence in Greece, Luxembourg, and Belgium, and backed by the expertise of the Qualco Group, we combine deep technical knowledge with strategic...


  • Luxembourg, Luxembourg The White Team Temps plein 455 € - 480 €

    Cybersecurity Compliance Specialist at Luxembourg (On site) for the European CommissionJob role: Cybersecurity Compliance Specialist that will be part of a Eurostat team within the European Commission. Languages: English (C1) MANDATORY, French (B1) or other EU language will be advantage. Location: Luxembourg (on site) Rate: €/dayMANDATORY: EU Citizens...

  • Security Test Specialist

    il y a 5 jours


    Luxembourg, Luxembourg Apiux Tech Temps plein

    Ubicación: Luxemburgo Modalidad de trabajo: Híbrido (2 días presenciales)Descripción del proyecto:Buscamos un/a Security Test Specialist con experiencia sólida en pruebas de penetración y gestión de vulnerabilidades, que garantice la seguridad y resiliencia de los sistemas a través de una gestión proactiva y un enfoque orientado al riesgo.La...


  • Luxembourg, Luxembourg COSMOTE GLOBAL SOLUTIONS NV Temps plein

    COSMOTE Global Solutions, as a member of OTE Group of Companies, is an ICT Systems Integrator delivering a broad range of ICT Solutions and Services.CGS provides a broad range of ICT Services focusing on: Cloud, Data Centre operations, Networking, Cybersecurity, BI and Data Warehouse, Big Data, Service Desk, Proactive Monitoring, Operations and Support,...

  • Senior Security GRC Lead

    il y a 4 jours


    Luxembourg, Luxembourg Ant Group Temps plein

    Description Ant International strives to become the most trusted digital services connector to achieve sustainable growth of global commerce. With a focus on Travel, Trade, Technology, and Talent, Ant International is committed to enhancing the digital mindset and capacities of businesses worldwide. Through fostering collaborative efforts with partners, we...

  • IT Security Officer

    il y a 4 jours


    Luxembourg, Luxembourg Cronos Europa Temps plein

    The IT Security Process Specialist is responsible for designing, implementing, and maintaining security processes that ensure the protection of the company's information systems. This role focuses on developing governance frameworks, improving operational security workflows, and ensuring compliance with internal and external security standards. The...


  • Luxembourg, Luxembourg Groupe Emile Weber Temps plein

    Are you the person everyone calls when there's a network issue — and the one who stays up to date on the latest security threats? If so, we want you on our team.We're looking for an IT Security Administrator who loves keeping systems secure and networks running smoothly. This is a hands-on role where you'll configure firewalls, monitor threats, keep our...


  • Luxembourg, Luxembourg Groupe Emile Weber Temps plein

    Are you the person everyone calls when there's a network issue — and the one who stays up to date on the latest security threats? If so, we want you on our team.We're looking for an IT Security Administrator who loves keeping systems secure and networks running smoothly. This is a hands-on role where you'll configure firewalls, monitor threats, keep our...

  • Security Manager

    il y a 5 jours


    Luxembourg, Luxembourg Pinkerton Temps plein

    Overview170+ Years Strong. Industry Leader. Global Impact.At Pinkerton, the mission is to protect our clients. To do this, we provide enterprise risk management services and programs specifically designed for each client. Pinkerton employees are one of our most important assets and critical to the delivery of world-class solutions. Bonded together, we share...


  • Luxembourg, Luxembourg Luxair Temps plein

    For our department IT Security within General Services, we are looking for a (an):Information Security Officer (m/f/x)Description:As Information Security Officer you will activelycontribute to maintaining and strengthening Luxair group's information securityposture.Drivenby a strong interest in cybersecurity, you will actively support the Head of...