3 days ago
Deloitte is a worldwide leader in Professional Services with a presence in more than 150 countries and territories. Since 2018, Deloitte has been operating its Alexander Competence Center in Thessaloniki with satellites in the cities of Patras, Heraklion, and Ioannina - which are model hubs of expertise, training, and innovation, specializing in cutting-edge exponential technologies, in which professionals undergo immersive experiences, continuous learning, gaining practical insights and hands-on training that empower them to navigate the complexities of the digital landscape.
Deloitte is an ideal working environment for both young and senior professionals who want to take the next step in their careers, offering them a supportive and international working environment that leverages their expertise and potential. Its corporate culture is based on trust and collaboration and ensures diversity and inclusion so that everyone feels part of a great team.
• Lead and deliver penetration testing and offensive security assessments across web applications, APIs, mobile applications, infrastructure, networks, cloud platforms, and other complex enterprise environments.
• Perform hands-on vulnerability identification, validation, and exploitation, assessing technical risk and business impact in line with agreed scope and rules of engagement.
• Apply recognized security methodologies and frameworks such as OWASP, NIST, PTES, and MITRE ATT&CK throughout the assessment lifecycle.
• Prepare clear, actionable reports and present findings to technical and non-technical stakeholders, supporting clients in prioritizing and tracking remediation activities.
• Mentor junior team members, review technical outputs, and contribute to the continuous improvement of offensive security methodologies, tools, and delivery quality.
• Academic background in Information Technology, Computer Science, Cybersecurity, Computer Engineering, Data Science, Business Informatics, Engineering, or other relevant IT-related disciplines.
• Minimum 3 years of professional experience in penetration testing, offensive security, vulnerability assessment, red teaming, or similar cybersecurity roles.
• OSCP certification is required.
• Hands-on experience across several penetration testing domains, such as web applications, APIs, mobile applications, infrastructure, networks, cloud platforms, operating systems, servers, containerized environments, wireless networks, or thick clients.
• Strong knowledge of offensive security methodologies, vulnerability exploitation techniques, and security frameworks such as OWASP, NIST, MITRE ATT&CK, and related industry standards.
• Experience with offensive security tools such as Burp Suite, Nmap, Metasploit, Nessus, BloodHound, Impacket, Cobalt Strike, or equivalent tools.
• Proficiency in scripting and code analysis, for example with Python, Bash, PowerShell, C#, or other relevant languages used for automation, testing, and tooling.
• Strong reporting, communication, and client-facing skills, with the ability to produce clear deliverables and interact effectively with technical teams and senior stakeholders.
• Excellent command of the Greek and English language.
• Additional relevant certifications such as OSEP, OSWE, CPTS, CRTO, GPEN, GWAPT, eWPTX, eCPPT, CARTP, or BSCP will be considered a strong asset.
• Knowledge of Italian or other languages will be considered a plus