- Salary
- €40k – €50k
- Location
- Frascati, IT, Italy
- Closing date
- Today
- Source
- Workday
Description
Do you want to be part of a business that genuinely values entrepreneurialism, innovation and individual accountability? We focus on our customers and are proud of the difference our technology makes. We partner with some of the biggest manufacturing companies in the world and our technical innovations are used to enhance well-known brands across multiple industries.
Do you have a true passion for the Pharmaceutical or Electronic industries and for delivering the best solutions for our customers?
We’re looking for a Penetration Tester that will take care of the preparation and execution of the tests necessary to verify the compliance of the software related cyber security. In addition he/ she has to prepare the documentation of each test delivered.
What you will do:
- Vulnerability assessments: perform the assessment
- Penetration testing: manual and automated test
- Threat Modeling: conduct threat modeling to identify potential security threats, assess risks, and define appropriate mitigation strategies.
- SAST/DAST analysis: to analysis, validate and triage and with developers and cyber security team the findings
- Vulnerability validation and security reporting: to ensure compliance with cybersecurity requirements.
- Planning and implementation of testing strategies: Define detailed plans to test the various functionalities of the software for cyber security side
- Identification and documentation of malfunctions: Detect bugs and issues, documenting them accurately to facilitate their resolution
- Execution of automated and manual tests: Use specific tools to automate tests or perform manual tests when necessary.
- Preparation of test reports: Provide detailed documentation on the tests performed and the results obtained
Key Requirements:
Required Technical Skills:
- Security Testing and Vulnerability Assessment: Experience in identifying, validating and documenting software vulnerabilities and security risks.
- Manual and Tool-Based Penetration Testing: Ability to perform security assessments using both manual techniques and industry-standard penetration testing tools.
- Static and Dynamic Application Security Testing (SAST/DAST): Experience using source code analysis and dynamic testing methodologies to identify security vulnerabilities throughout the software development lifecycle.
- Vulnerability Risk Assessment: Knowledge of CVSS (Common Vulnerability Scoring System) methodology for vulnerability classification, prioritization and risk evaluation.
- Secure Development Lifecycle: Understanding of security integration within Agile, DevSecOps and CI/CD environments.
- Security Reporting: Ability to produce clear technical reports detailing findings, risk levels, remediation recommendations and validation results.
Nice to Have:
- Knowledge of public security advisories, CVE databases and vulnerability disclosure processes.
- Experience reviewing and understanding public CTF (Capture The Flag) writeups and security research publications.
- Familiarity with the MITRE ATT&CK framework and adversarial techniques.
- Security certifications such as OSCP (Offensive Security Certified Professional), CEH (Certified Ethical Hacker), GPEN (GIAC Penetration Tester) or equivalent certifications.
- Experience with common security testing tools such as Burp Suite, OWASP ZAP, Nessus, Nmap, Metasploit or similar.
- Knowledge of programming languages: Familiarity with languages such as Java, Python, or C# facilitates understanding code and creating automated test scripts.
- Knowledge of development methodologies: Understanding of Agile and DevSecOps frameworks to effectively integrate into modern development processes. Knowing of Scrum method is a plus, to integrates their tests into CI/CD (Continuous Integration/Delivery) processes, contributing in real-time to code quality.
- Knowledge of Operating Systems: Microsoft, Linux and RTOS as well as industrial automation programming languages SCADA and PLC is considered a plus.
- In addition to these, skills in scripting, use of version control systems like Git, and familiarity with virtualization environments are highly valued.
- Degrees in Electrical, Computer Science, Biomedical, Telecommunications and Automation Engineering may be taken into consideration.
- ISTQB (International Software Testing Qualifications Board) certification is a plus.
We offer permanent contract with a competitive salary package in the range of €40,000 – €50,000 gross annual salary, based on experience and seniority, along with a diverse range of benefits designed to support our employees' physical and emotional well-being.
Join us and be yourself. Inclusion is our ambition!
Particle Measuring Systems is an equal opportunity employer, offering a safe and inclusive work environment, based on mutual respect and the appreciation of uniqueness, guaranteeing equal employment opportunities to all qualified candidates to unleash their full potential.
Our recruiting team is looking forward to getting to know you!
Particle Measuring Systems (PMS) specializes in viable and nonviable particle counters and particle counting solutions that measure and monitor contamination levels in clean and controlled environments. Since 1972, our knowledgeable and experienced team has been developing innovative technologies to advance the cleanroom monitoring industry. Led by our technology which provides accurate and reliable results and information for our clients, Particle Measuring Systems is one of the world’s leading companies and manufacturers for particle counting instruments, and molecular and microbial monitoring.
#LI-GG1