About the Role
Penetration Testing Senior Lead – Cybersecurity Expert
Krakow
Hybrid
CEH
CISSP
DAST
IAST
Java
Kotlin
Objective C
OWASP MASVS
OWASP MSTG
Python
SAST
SWIFT
English
Mid-Level, Senior
Banking, Corporate Banking, Investment Banking
Penetration Tester
Ignite the future of cybersecurity — lead innovative penetration testing initiatives that safeguard digital assets!
Krakow-based opportunity with hybrid work model.
As a Penetration Testing Senior Lead, you will be working for our client, a global leader in cybersecurity research and offensive security. Your expertise will help build advanced security assessment capabilities, guide teams through complex engagements, and shape strategic defenses against evolving cyber threats. This role offers a unique chance to influence cybersecurity standards on a global scale while advancing your leadership and technical skills in a vibrant international environment.
Your main responsibilities:
Lead and manage penetration testing projects across diverse technologies, environments, and systems to deliver actionable security insights.
Collaborate with regional and global Penetration Testing Leads to standardize processes, align strategies, and share best practices worldwide.
Mentor and develop team members, encouraging technical excellence and professional growth within a collaborative culture.
Oversee the entire testing lifecycle — from scoping and planning to execution and comprehensive reporting.
Act as the primary point of contact for complex issues or client concerns, ensuring high satisfaction levels.
Contribute to the continuous improvement of penetration testing methodologies and technical documentation.
Stay current with emerging cyber threats, security trends, and testing tools to maintain a cutting-edge security posture.
Work closely with internal stakeholders to proactively assess and address security risks, fostering a security-aware organization.
You're ideal for this role if you have:
At least 5 years of demonstrable hands-on experience in penetration testing.
Strong understanding of platform security models for iOS and Android.
Expertise in mobile application security, web security, and infrastructure testing.
Proficiency in manual and automated testing methods, and familiarity with SAST, DAST, IAST tools.
Programming/scripting skills (e.g., Java, Kotlin, Objective C, Swift) is a plus.
Excellent communication skills in English (fluent level).
Ability to lead teams independently, with strong time-management and problem-solving capabilities.
It is a strong plus if you have:
Relevant certifications in cybersecurity (e.g., OSCP, CISSP, CEH).
Experience with secure application development, reverse engineering, or cloud security.
Knowledge of industry standards such as OWASP MASVS and MSTG.
Tech Stack
CEHCISSPJavaKotlinObjective-CPythonSASTDASTIASTOWASP MASVS/MSTGmobile security