Job code
IRC301150
Published on 29 Juli 2026

Senior Penetration Testing Engineer IRC301150

Function

IT Security

Experience

3-5 years

Location

Poland - Krakow

Skills

Application Security, Penetration Testing and Reporting, Security

Work Model

Hybrid

Apply

Description

An enterprise technology group is building a dedicated security validation team focused on vulnerability assessment and security testing across the group’s products and systems. The team runs structured testing campaigns: penetration testing, vulnerability discovery and triage, secure code review, and building automated test suites to make the process repeatable at scale.

The team also gets early access to specialized AI models and evaluates how they can accelerate security testing – an area we’re actively investing in, though the core of the work remains hands-on security engineering. Scope covers internal systems as well as business-unit products across the group, agreed campaign by campaign. The team starts small and scales into a permanent capability.

Requirements

Overall

4+ years in cybersecurity, security testing, or software engineering with a strong security focus
Structured, methodical approach to testing – able to plan and document, not just test ad-hoc
Good written English – reporting is a significant part of the role

Must have

Hands-on experience in vulnerability assessment and penetration testing (web, API, network, or infrastructure)
Secure code review experience
Solid coding skills (Python preferred) for automation, tooling and test scripts
Experience writing automated tests and building them into repeatable suites
Strong understanding of vulnerability classes (OWASP Top 10, CWE) and CVE/CVSS triage
Familiarity with standard security tooling (e.g. Burp Suite, Nmap, SAST/DAST scanners)

Nice to have

Experience applying AI/LLMs to security work – highly desirable
Vulnerability management processes and tooling
Cloud security (AWS/Azure/GCP) or OT/embedded/product security background
CI/CD security integration
Certifications: OSCP, CEH, CISSP, or similar

Job responsibilities

Perform vulnerability assessments and penetration testing against applications, services and infrastructure
Conduct secure code and configuration reviews
Triage and validate findings; assess severity, eliminate false positives, support remediation
Write and maintain automated security tests and tooling
Design test plans, execute testing campaigns, document and report results
Evaluate AI-assisted approaches to security testing and help integrate what works into the workflow

What we offer

Empowering Projects: With 500+ clients spanning diverse industries and domains, we provide an exciting opportunity to contribute to groundbreaking projects that leverage cutting-edge technologies. As a team, we engineer digital products that positively impact people’s lives.

Empowering Growth: We foster a culture of continuous learning and professional development. Our dedication is to provide timely and comprehensive assistance for every consultant through our dedicated Learning & Development team, ensuring their continuous growth and success.

DE&I Matters: At GlobalLogic, we deeply value and embrace diversity. We are dedicated to providing equal opportunities for all individuals, fostering an inclusive and empowering work environment.

Career Development: Our corporate culture places a strong emphasis on career development, offering abundant opportunities for growth. Regular interactions with our teams ensure their engagement, motivation, and recognition. We empower our team members to pursue their career goals with confidence and enthusiasm.

Comprehensive Benefits: In addition to equitable compensation, we provide a comprehensive benefits package that prioritizes the overall well-being of our consultants. We genuinely care about their health and strive to create a positive work environment.

Flexible Opportunities: At GlobalLogic, we prioritize work-life balance by offering flexible opportunities tailored to your lifestyle. Explore relocation and rotation options for diverse cultural and professional experiences in different countries with our company.

About GlobalLogic

GlobalLogic, a Hitachi Group Company, is a trusted digital engineering partner to the world’s largest and most forward-thinking companies. Since 2000, we’ve been at the forefront of the digital revolution – helping create some of the most innovative and widely used digital products and experiences. Today we continue to collaborate with clients in transforming businesses and redefining industries through intelligent products, platforms, and services.

Apply Now

The gender information on this form helps us understand the makeup of our applicant pool in this key area, and to continuously improve our efforts to make our workforce more inclusive.

Drag and drop your file here or click here to upload

Only .docx, .rtf, .pdf formats allowed to a max size of 5 MB.

Alternately you can include your Linkedin profile