Senior Pentester M/F
Senior mission for elite PenTester: infra, apps & critical systems (cloud, ICS, SCADA). Hybrid Brussels. Join to exploit, secure & shape the future of cybersecurity with full freedom & impact!
Consort Group has been helping companies leverage their data and infrastructure for over 30 years. It draws on the expertise of two leaders, Consortis and Consortia, and places people and social responsibility at the heart of its values.
Committed to the success of its clients, the Consort Belgium team embodies the values and shares the expertise of Consort Group in Brussels, the surrounding area, and throughout Belgium. With 45 employees, it has been offering a range of infrastructure and application solutions since 2016, delivered by local teams and supported, when necessary, by the group's skills and resources.
Senior Penetration Tester M/F
Job description :
Carry out penetration testing missions on infrastructures and applications in order to identify vulnerabilities, weaknesses and validate technical and business security measures.
Analyze and exploit vulnerabilities on Windows, Linux, cloud, ICS/SCADA, APIs, web applications and fat clients.
Conduct security assessments on architectures (µ-services, ESB/API gateway, hybrid topologies).
Apply cautious to aggressive methodologies (discovery, enumeration, exploitation, DoS) with prior approval.
Review secure application development practices and inter-applicative flows.
Produce detailed penetration test reports and recommendations.
Contribute to red team exercises including EDR evasion and custom C2 channel implementation.
Support fraud-prevention validation by testing business processes.
- Technical environment: Windows, Linux, Solaris, Azure, hybrid cloud, ICS/SCADA, APIs, ESB, web application servers, Microsoft SQL/Oracle DB, middleware, scripting (Bash, Python, PowerShell), Java, .NET.
- Expected deliverables: Detailed pentest reports, vulnerability analysis, remediation recommendations.
- Start date: ASAP
- Location: Brussels (city center)
Required profile:
You have 10+ years of proven experience in penetration testing (infrastructure and applications) and at least 5 years of experience in critical infrastructures (ICS/SCADA).
You are passionate about cyber security and have solid experience as a penetration tester within regulated industries (finance, critical infrastructures, cloud).
In order to carry out this assignment successfully, you must be proficient in:
Technologies:
- Operating systems (Windows, Linux, Solaris)
- Cloud services and architectures (Azure, hybrid topologies, interconnectivity)
- ICS/SCADA protocols and proprietary systems
- Network technologies and protocols (Ethernet, Wi-Fi, Bluetooth, fibre channel
- Secure application development (Java, .NET)
- Scripting (Bash, Python, PowerShell)
- Reverse engineering and advanced exploitation
Methodologies: OWASP Testing Guide, NIST SP 800-115, Red Team operations, Vulnerability mapping and exploitation methodologies
Business knowledge:
Critical infrastructures’ cyber risk management
Fraud prevention controls validation
OSEE, OSCE, OSCP or equivalent strongly desired
Are you :
Communicative and able to report clearly
Independent and rigorous in execution
Discreet and ethical
Curious and constantly learning
Do you recognize yourself in this ad and think you are the ideal candidate?
Then send us your resume and tell us more about yourself!
Joining us means:
- Becoming part of a team that is attentive to your onboarding
- Enjoying close management
- Accessing a training platform available 24/7
- Adhering to our inclusion policy: Hand'In Cap policy
- Move Up program with United Heroes to promote sports and well-being
The recruitment process at Consort Group:
- An initial phone call with one of our recruitment officers
- An HR interview with the recruitment officer you first spoke to and a business engineer to discuss the role, the team structure and their day-to-day work, and internal projects in more detail
- A meeting with one of our technical ambassadors may be offered, or you may be asked to take a technical test
- And finally, a final meeting with the Consort operations manager and/or the manager responsible for the role
- Department
- Consortis - Infra & Support
- Role
- Pentester - Ethical Hacker
- Locations
- Bruxelles
- Remote status
- Hybrid
- Yearly salary
- €1
- Famille de Métiers
- Sécurité/CyberSécurité
