Junior Offensive Security Engineer

1 settimana fa


Milano, Lombardia, Italia Satispay A tempo pieno

Junior Offensive Security Engineer

About Satispay

Satispay was born to revolutionise everyday payments – making them simple, fair, and accessible to everyone. Now, the focus has moved even further, aiming to shape the future of money.

We're a movement empowering millions of people, driven by a shared purpose to tackle big challenges. And we're just getting started. We move quickly, think boldly, and trust each other to challenge the norm, learning and growing as we go.

If you're looking for more than just your next job – if you want to build something impactful with a talented team – you're in the right place.

Role Overview

As a Junior Offensive Security Engineer, you'll support our team in securing our cloud infrastructure, mobile, and web applications. This is a growth-oriented role where you will learn to identify vulnerabilities and help enhance our detection and mitigation strategies.
Here's what your day-to-day will look like:

  • Penetration testing – Perform penetration testing on mobile (iOS & Android) and web applications. Under the guidance of a senior engineer, you'll use tools like Frida to bypass security controls and analyze app behavior at runtime.

  • Code and architectural review – Develop the ability to review source code for logic flaws, collaborating with developers to implement secure design patterns, and assisting in reviewing cloud infrastructure for full security coverage.

  • Scripting & automation – Develop scripts to automate repetitive testing tasks, create proof-of-concept exploits, and parse tool results to help the team move faster.

  • Collaborate on defense – Work closely with the rest of the Security team to test monitoring capabilities, participate in attack simulations, and help improve overall detection strategies.

  • Documentation and Reporting – Write technical reports of findings and help document remediation steps for development teams.

Expect challenges, collaboration, and the freedom to bring your ideas to life. Things change quickly here, so be ready to adapt, take initiative, and shape your role as we grow.

Who we're looking for

We need a problem-solver who loves teamwork and gets things done. If you're curious and ready for real ownership, you'll fit in Does this sound like you?

  • Strong Foundations – Good knowledge of information security basics, networking, web application architecture, and familiarity with common web vulnerabilities (SQL injection, XSS, IDOR, race conditions).

  • Hands-on Experience – 0–2 years of experience. This could be from internships, university projects, active CTF participation, bug bounties, or personal research.

  • Curious Mindset – You don't just want to run a tool; you want to figure out how business logic can be bypassed and understand the "why" behind each vulnerability.

  • Scripting Skills – Ability to read and write code in at least one scripting language (e.g., Python) for task automation and creating simple proof-of-concepts.

  • Interest in Mobile Security – A strong interest in learning how to secure Android and iOS apps. Any exposure to Frida or Objection is a great starting point.

  • Soft Skills – Clear communication, eagerness to learn, and proven capability of working collaboratively in a team environment.

Nice-to-have:

  • Previous contributions to open-source security tools or published CVEs/advisories.

  • Cybersecurity certifications (e.g., eJPT, OSCP, PortSwigger certifications).

  • Experience with standard penetration testing tools such as Burp Suite and Nmap.

  • Familiarity with AWS or other cloud environments.

Don't worry if you don't tick every box. We believe in the power of different viewpoints and strengths. Your unique perspective is important as we build something special. If you're passionate and can make a difference, we truly encourage you to apply.

Our benefits & perks

We believe high commitment, effort, and impact deserve to be highly rewarded and supported. That's why we created Satispay CareAbout, our way of making sure you're supported in your well-being, growth, and finances:

CareAbout health & wellbeing

  • Unlimited paid time off

  • Psychological support & mental health webinars with Serenis

  • Flexible hybrid working system

  • Extended parental leave

  • Childcare leave

  • Health Coverage

CareAbout growth & development

  • Professional development programmes

  • Internal mobility program

  • Language classes with Preply

  • Internal workshops & training

CareAbout financial support

  • Stock Option Plan (with additional grants often provided based on performance)

  • International relocation support

  • Competitive salary

  • Flexible Benefit budget

  • Meal vouchers

Our selection process

Our selection process is tailored to each role and includes at least a call with our Talent Acquisition Team, a technical evaluation, and a final in-person meeting. Your recruiter will share more insights during your first meeting with us

Equal-Opportunity Employer

At Satispay, we're proud to be an equal-opportunity employer. We celebrate diversity and inclusion, welcoming individuals of all backgrounds. This opportunity is open to everyone, regardless - for instance - of race, colour, religion, sex, gender identity, sexual orientation, and national origin. Join us in a workplace where everyone belongs

Learn more about us

Curious if our way of working clicks with yours? Our values and pillars aren't just fancy words on a page - they really shape everything we do. Explore them here.

Sounds like your kind of place?

Awesome We'd love to hear your story.

#LI-Hybrid

#LI-GA1



  • Milano, Lombardia, Italia Satispay A tempo pieno

    About SatispaySatispay was born to revolutionise everyday payments – making them simple, fair, and accessible to everyone. Now, the focus has moved even further, aiming to shape the future of money.We're a movement empowering millions of people, driven by a shared purpose to tackle big challenges. And we're just getting started. We move quickly, think...

  • Offensive Security

    3 giorni fa


    Milano, Lombardia, Italia AGM SOLUTIONS A tempo pieno

    AGM Solutions si occupa di studiare ed implementare soluzioni tecnologiche ed innovative offrendo servizi per ICT Governance, ICT Security & GDPR Compliance.Siamo un'azienda certificata Great Place To Work, Siamo alla ricerca, per un nostro importante cliente su Milano, di un* Offensive Security, in modalità ibrida su Milano.Responsabilità...

  • security engineer

    3 giorni fa


    Milano, Lombardia, Italia ECIT SpA A tempo pieno

    Chi siamo?Siamo una società dinamica, giovane e flessibile che opera da oltre 10 anni nel campo dell'Information & Communication Technology.Offriamo servizi e soluzioni altamente qualificati a partner e Clienti di livello Enterprise grazie ad un team smart composto da tecnici pluricertificati in grado di comprendere e soddisfare le esigenze che i progetti...

  • Security Engineer

    1 settimana fa


    Milano, Lombardia, Italia Jumpit Srl A tempo pieno

    Unisciti a JUMPIT: Innovazione, Persone e Crescita nel Cuore della Digital TransformationJumpit, nata nel 2019 come startup innovativa con l'obiettivo di guidare la trasformazione digitale di grandi aziende e istituti bancari. Fin dall'inizio abbiamo collaborato con le principali multinazionali ICT, offrendo soluzioni tecnologiche su misura e un servizio di...


  • Milano, Lombardia, Italia Cool Technology SRLS A tempo pieno

    Siamo alla ricerca di un/unaJunior Cyber Security Specialistda inserire a supporto delle attività operative di sicurezza informatica.La risorsa lavorerà a stretto contatto con ilSOCe con il team infrastrutturale, contribuendo al monitoraggio e alla gestione degli aspetti di security dell'ambiente IT.Il ruolo è pensato per una personajunior, proattiva e...


  • Milano, Lombardia, Italia Tron Group Holding A tempo pieno

    Siamo alla ricerca di una risorsa junior\middle da inserire su attività dimonitoraggio e gestione infrastrutture Network/Security per azienda cliente leader nella consulenza ICT.Responsabilità principaliMonitoraggio dell'infrastruttura di rete e sicurezzaConfigurazione e troubleshooting di apparati di reteSupporto nella configurazione di switch, router e...

  • Network Security Engineer

    1 settimana fa


    Milano, Lombardia, Italia Herzum A tempo pieno

    Ti diamo il benvenuto in Herzum | ora parte di catworkxSiamo molto più di una società di consulenza IT: siamo innovatori, pionieri e partner di eccellenza. Oggi iniziamo un nuovo capitolo come parte del gruppo catworkx, uno dei principali Atlassian Platinum Partner al mondo, con una forte presenza in Europa.Fondata a Chicago nel 2000, Herzum è cresciuta...


  • Milano, Lombardia, Italia ECIT SpA A tempo pieno

    Chi siamo?Siamo una società dinamica, giovane e flessibile.Offriamo servizi e soluzioni altamente qualificati a partner e Clienti di livello Enterprise grazie ad un team smart composto da tecnici pluricertificati in grado di comprendere e soddisfare le esigenze che i progetti richiedono.I nostri ingredienti vincenti sono la passione per quello che facciamo,...


  • Milano, Lombardia, Italia ADENTIS Italia A tempo pieno

    CHI SIAMOADENTIS Italiaè un gruppo europeo di consulenza ingegneristica e operativa facente parte del GruppoMoOngy.Presente in 14 paesi europei con oltre8.500dipendenti, abbiamo aperto, da quattro anni, la prima sede italiana a Milano e, vista la continua crescita, stiamo rafforzando e ampliando il nostro team con persone che condividano gli stessi valori...

  • Network Security Engineer

    2 settimane fa


    Milano, Lombardia, Italia LHH A tempo pieno

    Per conto di un nosto Partner, realtà italiana ma con una forte capillarità sul territorio Europeo, stiamo cercando due Network Engineer. L'azienda è tra i leader nello sviluppo di soluzioni proprietarie in ambito cybersecurity, con un approccio fortemente orientato alla ricerca applicata e alla protezione digitale avanzata, con una visione...