
Senior Penetration Tester
Full Job Description
Senior Penetration Tester – Cybersecurity & Embedded Systems
Knorr Bremse seeks a Senior Penetration Tester to lead high-impact security assessments of embedded systems, firmware, and connected products. Your role will involve identifying, evaluating, and mitigating critical security vulnerabilities through hands-on penetration testing, technical security audits, and SBOM-based vulnerability analysis. Collaborate with the Product Security Engineering team to enhance product resilience, align with KB’s vulnerability management processes, and ensure compliance with security requirements.
Key Responsibilities:
- Perform penetration testing and technical security assessments for embedded systems, software, and components.
- Leverage vulnerability monitoring platforms (e.g., Dependency-Track) to analyze and remediate security gaps.
- Assess vulnerabilities using CVSS methodology, document findings, and provide actionable mitigation recommendations for internal teams and customers.
- Support the integration of vulnerability management into CI/CD pipelines, creating SBOMs, and ensuring secure product lifecycle alignment.
- Work independently on targeted, self-driven projects to improve security posture.
- Consult globally with KB colleagues on technical security topics.
- Provide 24/7 on-call support (1 week every 6 weeks) to address critical incidents.
Qualifications:
- 3-7 years of experience in penetration testing, embedded systems, and cybersecurity.
- Proven expertise in testing firmware, embedded devices, and connected products.
- Strong background in IT infrastructure and software development.
- Experience with CI/CD security, vulnerability management, and secure coding practices.
- Familiarity with CVSS scoring and threat modeling methodologies.
Company
Knorr Bremse
Knorr Bremse: Innovating Secure Mobility SolutionsKnorr Bremse, a global leader in railway and transport technology, specializes in designing, manufacturing, and servicing braking systems, signaling, ...