EU remote
Offensive Security Engineer / Penetration Tester
About this role
About Genesis Genesis is an ecosystem of product IT companies building globally innovative products. Products created within the Genesis ecosystem have been downloaded over 1 billion times in total. Genesis is one of Europe's leading tech teams: ranked the best employer by Forbes in 2023 and 2026, and the top IT employer by the DOU community in 2024 and 2025. About the team and the role Our Offensive Security Team is five engineers delivering penetration testing to external clients, alongside our Application Security, Infrastructure Security and Dark Web Monitoring service lines.
You'll own engagements yourself: scoping, testing, reporting and the client conversation that follows, with the Team Lead and fellow engineers reviewing your findings rather than managing your calendar. Demand for our testing services keeps growing, and we're raising the technical bar across all four platforms instead of depending on individual specialists. In your first months you'll deliver client engagements end-to-end and build our internal methodology for AWS cloud security assessment.
Within a year you'll be the team's reference point on at least one platform, and the AI agents you build will be covering the recon and enumeration phases of our tests. What you'll be doing: Deliver end-to-end penetration tests of Web and Mobile applications, Active Directory and cloud environments — from scoping and recon through exploitation and post-exploitation to evidence collection and retest; Validate findings from our Application Security and Infrastructure Security services and triage automated scan output: eliminate false positives, confirm exploitability and real business impact, assign accurate risk ratings; Write client-facing technical reports in English — reproduction steps, evidence, business-impact framing and practical remediation guidance; Communicate directly with clients: kick-off calls, status updates, report walkthroughs, remediation Q&A and retest agreement; Build automation and internal tooling that shortens the recon, enumeration, and active scanning phases, including AI-agent-based workflows; Create and maintain the internal methodology, testing checklists and knowledge base for our Offensive Security service lines; Research new attack techniques, evaluate tooling and share what you find with the team.