About the role
Run pen-tests, architect secure-by-default systems, and ship compliance work (GDPR, ISO 27001, EU AI Act) for boutique studios + scale-ups. Mostly hands-on (audits, threat models) with some advisory.
What you'll need
4+ years offensive security or secure architecture OWASP Top 10 fluency, comfortable with SSRF / IDOR / SSO attack patterns Written clear audit reports for non-security stakeholders Nice-to-have: OSCP/CRTP/AWS Security Specialty Nice-to-have: GDPR or ISO 27001 lead-auditor experience
What you get
Fully remote EU Unlimited PTO Certification budget (1.5k EUR/year) Quarterly off-site (last one was Lisbon)
Apply for this role
Takes 2 minutes. Resume optional but helpful.