Unlock Full Resume Report

New offer - be the first one to apply!

September 2, 2026

Cybersecurity Engineer - Red Team Operation

Senior • On-site

Warsaw, Poland

Flexible working hours in a 4/1 hybrid model, with start times between 7:00 a.m. and 9:00 a.m., plus 30 days of occasional remote work.

Annual bonus based on individual performance and company results.

The team is based in Warsaw and Poznań.

About the job

Massive Scale & Security Challenges

Secure, test and optimize a cloud and on-premises environment handling thousands of requests per minute. This is high-availability, high-performance security engineering in practice.

Modern Tech Stack

Work with specialized offensive and defensive security tools, automated SAST/DAST pipelines, C2 frameworks and cryptography. The role also covers security of production-used AI models.

True Ownership & Autonomy

Join an autonomous team with ownership of security services, from threat modeling and attack simulation to deployment of protective guardrails.

Complex Architectural Puzzles

Solve engineering problems involving distributed systems and novel AI vulnerabilities that protect a large real-time marketplace.

Red Team Operations (RedSec)

Focus on realistic, hands-on attack simulations rather than theoretical assessments. Independently design Assume Breach scenarios, develop custom offensive tooling to bypass modern EDR/XDR, operate dedicated Red Team infrastructure aligned with the MITRE ATT&CK framework, and introduce AI-assisted techniques to improve reconnaissance efficiency.

Requirements

  • Value high-quality security reviews and substantive discussions on software engineering and security best practices.
  • Be open to developing soft skills, applying a growth mindset, participating in retrospectives and collaborating across teams.
  • Be ready to adopt and secure AI technologies, including AI coding and security assistants.
  • Find effective, business-enabling solutions to security requirements.
  • Continuously develop knowledge in a rapidly shifting threat landscape.
  • English at B2 level or higher and Polish at C1 level or higher.
  • Demonstrate independence and end-to-end ownership of offensive engagements, from scoping and preparation through execution, reporting and remediation guidance.
  • Have hands-on experience managing Red Team operational environments, including C2 frameworks, redirectors and supporting infrastructure.
  • Develop custom payloads, loaders and exploitation scripts to bypass modern EDR/XDR with minimal reliance on public tools.
  • Execute operations across the MITRE ATT&CK framework in cloud and on-premises environments, including lateral movement, persistence and evasion.
  • Use automation and AI-assisted techniques to improve reconnaissance efficiency and innovate offensive tactics.
  • Possess deep expertise in manual network and web application exploitation and end-to-end sociotechnical/phishing assessments.

Benefits

  • Well-located offices with fully equipped kitchens, bicycle parking and green terraces, plus modern work tools including raised desks, ergonomic chairs and interactive conference rooms.
  • Choice of a 16-inch or 14-inch MacBook Pro, or a Dell computer with Windows, with necessary accessories.
  • Cafeteria-plan benefits, including medical, sports and lunch packages, insurance and purchase vouchers.
  • Employer-funded English classes related to the job.
  • Training budget, inter-team tourism, hackathons and an internal learning platform.
  • One additional day off for volunteering.
  • Social events, including Spin Kilometers, Family Day, Fat Thursday and Advent of Code.

Additional information

  • Work with a collaborative team of specialists who share knowledge and experience.
  • Receive autonomy in team organization, continuous development opportunities and responsibility for selecting technologies and creating solutions.
  • Use modern AI tools to automate repetitive tasks and focus on complex threat analysis, advanced security automation and secure architecture.
  • Work at scale with more than 1,000 microservices, an open-source data bus handling 300K+ requests per second, a service mesh handling 1M+ requests per second, tens of petabytes of data and production machine learning.

Similar jobs you might like