Junior Offensive Security Engineer

hace 7 días


Milano, España Satispay A tiempo completo

Join to apply for the Junior Offensive Security Engineer role at Satispay. About Satispay Satispay was born to revolutionise everyday payments – making them simple, fair, and accessible to everyone. Now, the focus has moved even further, aiming to shape the future of money. We’re a movement empowering millions of people, driven by a shared purpose to tackle big challenges. And we’re just getting started. We move quickly, think boldly, and trust each other to challenge the norm, learning and growing as we go. If you’re looking for more than just your next job – if you want to build something impactful with a talented team – you’re in the right place. Role Overview As a Junior Offensive Security Engineer, you’ll support our team in securing our cloud infrastructure, mobile, and web applications. This is a growth‑oriented role where you will learn to identify vulnerabilities and help enhance our detection and mitigation strategies. What Your Day‑to‑Day Will Look Like Penetration testing – Perform penetration testing on mobile (iOS & Android) and web applications. Under the guidance of a senior engineer, you’ll use tools like Frida to bypass security controls and analyze app behavior at runtime. Code and architectural review – Develop the ability to review source code for logic flaws, collaborating with developers to implement secure design patterns, and assisting in reviewing cloud infrastructure for full security coverage. Scripting & automation – Develop scripts to automate repetitive testing tasks, create proof‑of‑concept exploits, and parse tool results to help the team move faster. Collaborate on defense – Work closely with the rest of the Security team to test monitoring capabilities, participate in attack simulations, and help improve overall detection strategies. Documentation and Reporting – Write technical reports of findings and help document remediation steps for development teams. Expect challenges, collaboration, and the freedom to bring your ideas to life. Things change quickly here, so be ready to adapt, take initiative, and shape your role as we grow. Who We’re Looking For Strong Foundations – Good knowledge of information security basics, networking, web application architecture, and familiarity with common web vulnerabilities (SQL injection, XSS, IDOR, race conditions). Hands‑on Experience – 0–2 years of experience. This could be from internships, university projects, active CTF participation, bug bounties, or personal research. Curious Mindset – You don’t just want to run a tool; you want to figure out how business logic can be bypassed and understand the “why” behind each vulnerability. Scripting Skills – Ability to read and write code in at least one scripting language (e.g., Python) for task automation and creating simple proof‑of‑concepts. Interest in Mobile Security – A strong interest in learning how to secure Android and iOS apps. Any exposure to Frida or Objection is a great starting point. Soft Skills – Clear communication, eagerness to learn, and proven capability of working collaboratively in a team environment. Nice‑to‑have Previous contributions to open‑source security tools or published CVEs/advisories. Cybersecurity certifications (e.g., eJPT, OSCP, PortSwigger certifications). Experience with standard penetration testing tools such as Burp Suite and Nmap. Familiarity with AWS or other cloud environments. Don’t worry if you don’t tick every box. We believe in the power of different viewpoints and strengths. Your unique perspective is important as we build something special. If you’re passionate and can make a difference, we truly encourage you to apply. Our Benefits & Perks We believe high commitment, effort, and impact deserve to be highly rewarded and supported. That’s why we created Satispay CareAbout, our way of making sure you’re supported in your well‑being, growth, and finances:



  • Milano, España Satispay A tiempo completo

    A leading payments technology company in Milan is seeking a Junior Offensive Security Engineer to enhance cloud and application security. You will conduct penetration testing, collaborate with developers on secure designs, and automate testing processes. Ideal candidates are problem solvers with knowledge of security basics and scripting skills. Join a...


  • Milano, España Satispay A tiempo completo

    A fintech company in Milan is seeking a Junior Offensive Security Engineer to enhance secure practices across their cloud infrastructure and applications. You will conduct penetration testing, review code for vulnerabilities, and automate testing tasks. Ideal candidates possess a strong foundation in cybersecurity, scripting skills, and a keen interest in...


  • Milano, España Satispay A tiempo completo

    Junior Offensive Security Engineer About Satispay Satispay was born to revolutionise everyday payments – making them simple, fair, and accessible to everyone. Now, the focus has moved even further, aiming to shape the future of money. We’re a movement empowering millions of people, driven by a shared purpose to tackle big challenges. And we’re just...


  • Milano, España Canonical A tiempo completo

    Join to apply for the Staff Security Operations Engineer role at Canonical 3 days ago Be among the first 25 applicants We have opened several senior/staff Security Operations Engineer (SOC) positions, creating a new team reporting to the CISO. We are looking for a range of experience in these positions - at the high end we are looking for deep experience...


  • Milano, España LHH A tiempo completo

    Network Security Engineer Join LHH as a Network Security Engineer. Responsibilities installazione, configurazione e utilizzo di software proprietari di sicurezza presso i clienti; lavoro diretto su infrastrutture di rete reali, spesso critiche; collaborazione continua con figure di cybersecurity, ricerca e sviluppo, non semplicemente con help desk o...

  • Security Engineer

    hace 7 días


    Milano, España Gruppo Gecal Informatica - Altair Systems A tiempo completo

    Il Gruppo GECAL INFORMATICA Srl e ALTAIR SYSTEMS , società di consulenza informatica che opera nel settore IT dal 1985, su tutto il territorio nazionale ed internazionale, per ampliamento del team cerca un* Security Engineer Responsabilità principali : Microsoft Security Stack Microsoft Sentinel : Configurazione, manutenzione e ottimizzazione della...


  • Milano, España ECIT SpA A tiempo completo

    Chi siamo?Siamo una società dinamica, giovane e flessibile.Offriamo servizi e soluzioni altamente qualificati a partner e Clienti di livello Enterprise grazie ad un team smart composto da tecnici pluricertificati in grado di comprendere e soddisfare le esigenze che i progetti richiedono.I nostri ingredienti vincenti sono la passione per quello che facciamo,...

  • Cloud Security

    hace 7 días


    Milano, España Cluster Reply A tiempo completo

    In Cluster Reply troverai un ambiente dinamico, orientato alla crescita e alla sperimentazione, con accesso a formazione avanzata e ad una rete globale di specialisti. Qui accompagnerai i nostri clienti nel loro percorso di trasformazione digitale e, soprattutto, nella nuova fase della AI Security. Siamo un'azienda del gruppo Reply focalizzata su consulenza,...

  • Penetration Tester

    hace 7 días


    Milano, España CryptoNet Labs - A DIGITAL360 Company A tiempo completo

    Cryptonet Labs è una realtà imprenditoriale che affianca i clienti nella creazione di un sistema informativo sicuro, e che oggi è parte del Gruppo DIGITAL360 , pioniere in due innovativi ambiti di business in fortissima crescita a livello mondiale : ConsulTech: la rivoluzione tecnologica della consulenza, MarTech: la trasformazione digitale del marketing...

  • Security Engineer

    hace 7 días


    Milano, España Gruppo Gecal Informatica - Altair Systems A tiempo completo

    Un'azienda di consulenza IT è alla ricerca di un Security Engineer esperto per gestire e ottimizzare i sistemi di sicurezza. La posizione è fullremote e richiede esperienza comprovata con Microsoft Sentinel e Defender. Le principali funzioni includono la configurazione di piattaforme di sicurezza, manutenzione di firewall e auditoria della sicurezza....