Security Pentester – IoT & Cloud Security
Security Pentester voor IoT & Cloud Security bij een grote organisatie in de publieke veiligheidssector, fulltime on-site in Brussel, 2 maanden.
- Locatie
- Brussel, BE
- Werkvorm
- op locatie
Mogelijk warme-stoelsignaal. Oordeel onzeker; geen bewijs dat al een kandidaat is gekozen.
De startdatum of korte looptijd valt op. Dit kan ook passen bij spoed, tijdelijke vervanging of afwijkende brongegevens; datums alleen bewijzen geen voorselectie. Dit is een aanwijzing, geen bewijs van een vooraf gekozen kandidaat.
Eisen
- Deep knowledge of IoT security including firmware analysis and hardware interfaces such as UART, JTAG, or SWD
- Effective communicator capable of mentoring colleagues and presenting results to management
- Active knowledge of Dutch, French, and English
- Experience with cloud security on Azure, AWS, or GCP, specifically with IAM, Kubernetes, and CI/CD pipelines
- Technical mastery of network protocols including MQTT, RTSP, TLS/mTLS, and PKI
- Expertise in penetration testing methodologies, geolocated exploitation, and lateral movement
- Proficient in web application and API security using OWASP frameworks and protocols like OAuth 2.0, SAML, or JWT
- 5+ years of experience in offensive security and penetration testing
- Scripting skills in Python, PowerShell, or Bash for security automation
- Hands-on experience with offensive tools such as Burp Suite, Metasploit, Nmap, and Wireshark
Wensen
- Possession of certifications such as OSCP, OSWE, OSEP, GPEN, or SEC556
- Higher degree in Computer Science, Cybersecurity, or Telecommunications
Volledige omschrijving
Our client, a major organization in the public safety sector, is looking for a specialist to secure their IoT platform. The role involves identifying and documenting vulnerabilities across a complex ecosystem of connected devices, network infrastructure, and cloud environments to ensure data integrity and availability.
Responsibilities: Analyze technical architectures and data flows to identify critical assets and attack surfaces. Perform penetration tests (black, grey, and white box) on IoT devices, edge computing, and gateways. Evaluate cloud security posture across platforms like Azure, AWS, or GCP, focusing on IAM and containerization. Conduct security assessments of web applications, APIs, and mobile platforms following OWASP standards. Test firmware, hardware interfaces, and communication protocols for embedded systems.
Produce detailed technical reports and executive summaries including risk levels and remediation guidance. Validate the effectiveness of security fixes through retesting and support technical teams during implementation.
Requirements: 5+ years of experience in offensive security and penetration testing. Expertise in penetration testing methodologies, geolocated exploitation, and lateral movement. Deep knowledge of IoT security including firmware analysis and hardware interfaces such as UART, JTAG, or SWD. Experience with cloud security on Azure, AWS, or GCP, specifically with IAM, Kubernetes, and CI/CD pipelines. Proficient in web application and API security using OWASP frameworks and protocols like OAuth 2.0, SAML, or JWT.
Technical mastery of network protocols including MQTT, RTSP, TLS/mTLS, and PKI. Hands-on experience with offensive tools such as Burp Suite, Metasploit, Nmap, and Wireshark. Scripting skills in Python, PowerShell, or Bash for security automation. Effective communicator capable of mentoring colleagues and presenting results to management. Active knowledge of Dutch, French, and English.
Nice to haves: certifications such as OSCP, OSWE, OSEP, GPEN, or SEC556; higher degree in Computer Science, Cybersecurity, or Telecommunications.
Offer: Start date 01/11/2026, duration 2 months, full-time, location Brussels, onsite, contract open to both permanent employees and freelancers.
Je CV en reacties
Voeg een CV toe om de eisen naast jouw ervaring te bekijken.
Je reageert zelf bij de bron. Leg hieronder vast wanneer je je reactie hebt verstuurd.
Bewaar de broker en datum in Mijn reacties.