Skills: • Technical IT security knowledge • Pentests infrastructures and applications OffSite and OnSite • IT infrastructures incl. AD and network architectures • Web applications, Web APIs according to OWASP WSTG / OWASP ASVS • Apps according to OWASP MSTG / OWASP MASVS and IoT • Programming and scripting skills: Python, Bash • System administration ==> Fit on the console in Linux and Windows • OSCP Certification ==> Nice to Have • High Hack The Box or Capture the flag rank • Optional: IT Security in Cloud Services Azure and AWS • Optional: ISO 27001 • Very good knowledge of German, also in writing • Main Tasks: • Pentests infrastructures and applications OffSite and OnSite • IT infrastructures incl. AD and network architectures • Web applications, Web APIs according to OWASP WSTG / OWASP ASVS • Apps according to OWASP MSTG / OWASP MASVS and IoT • Implementation of phishing campaigns • Whitebox assessments and security code reviews • Workshops on technical IT security topics • Preparation of final reports and execution of final presentations • Possible additional optional tasks: • Implementation and realization of technical measures, such as • Redesign network infrastructure • Patch Management • Vulnerability Management • Physical security inspection and testing • Development of safety concepts • Identity & Access Management • Cloud Security Concept • Awareness concep