Security Pentester – IoT & Cloud Security
Digital
Security
- Location
- Brussels, Brussels-Capital
- Work type
- Consultancy
- Work model
- Fulltime, On-site
Our client, a major organization in the public safety sector, is looking for a specialist to secure their IoT platform. The role involves identifying and documenting vulnerabilities across a complex ecosystem of connected devices, network infrastructure, and cloud environments to ensure data integrity and availability.
Responsibilities
- Analyze technical architectures and data flows to identify critical assets and attack surfaces.
- Perform penetration tests (black, grey, and white box) on IoT devices, edge computing, and gateways.
- Evaluate cloud security posture across platforms like Azure, AWS, or GCP, focusing on IAM and containerization.
- Conduct security assessments of web applications, APIs, and mobile platforms following OWASP standards.
- Test firmware, hardware interfaces, and communication protocols for embedded systems.
- Produce detailed technical reports and executive summaries including risk levels and remediation guidance.
- Validate the effectiveness of security fixes through retesting and support technical teams during implementation.
Requirements
- 5+ years of experience in offensive security and penetration testing.
- You bring expertise in penetration testing methodologies, geolocated exploitation, and lateral movement.
- You possess deep knowledge of IoT security including firmware analysis and hardware interfaces such as UART, JTAG, or SWD.
- You have experience with cloud security on Azure, AWS, or GCP, specifically with IAM, Kubernetes, and CI/CD pipelines.
- You're proficient in web application and API security using OWASP frameworks and protocols like OAuth 2.0, SAML, or JWT.
- You bring technical mastery of network protocols including MQTT, RTSP, TLS/mTLS, and PKI.
- You have hands-on experience with offensive tools such as Burp Suite, Metasploit, Nmap, and Wireshark.
- You possess scripting skills in Python, PowerShell, or Bash for security automation.
- You're an effective communicator capable of mentoring colleagues and presenting results to management.
- You have an active knowledge of Dutch, French, and English.
Nice to Haves
- Possession of certifications such as OSCP, OSWE, OSEP, GPEN, or SEC556.
- Higher degree in Computer Science, Cybersecurity, or Telecommunications.
Offer
- Start date: 01/11/2026
- Duration: 2 months
- Work regime: Full-time
- Location: Brussels
- Working model: Onsite
- Contract: open to both permanent employees and freelancers
# 102959
Chat with Alex
Not sure if this job is right for you? Chat with Alex, our AI career coach, and discover the vacancies that match your profile.
)