Regístrate para acceder a todas las funciones de nuestro servicio
  • Búsqueda de ofertas de trabajo
  • Favoritas
  • Crear CV
    Nuevo
  • Salario
  • Alertas de empleo

AI-Enhanced Penetration Tester

AXA Group

About the job

Join us as an AI-Enhanced Penetration Tester to revolutionize cybersecurity with cutting-edge AI/ML techniques. Conduct advanced assessments, automate vulnerabilities, and proactively defend against complex threats. Innovate, analyze, and strengthen digital defenses in a dynamic, forward-thinking environment!

Job purpose

We are seeking a highly skilled and forward-thinking individual to elevate our cybersecurity posture by applying Artificial Intelligence and Machine Learning techniques to traditional penetration testing, attack surface monitoring, and vulnerability assurance. The primary purpose of this role is to enhance the efficiency, depth, and proactive capabilities of our offensive security operations. You will be instrumental in identifying complex vulnerabilities, simulating advanced cyberattacks, and providing data-driven insights that directly contribute to AXA's robust security and digital posture, ensuring effective controls are in place and aligned with our Group Security Corporate function's mandate for advanced assurance and monitoring.

Main missions

As our AI-Enhanced Penetration Tester, your key missions will include:

  • Conduct Advanced Penetration Tests: Perform detailed security assessments and penetration tests across a wide range of traditional systems, including web applications, APIs, network infrastructure, cloud environments (AWS, Azure, GCP), and internal systems.
  • Integrate AI into Pentesting Workflows: Research, evaluate, and implement AI/ML tools and techniques to augment and automate various stages of the penetration testing lifecycle, such as:
    • Intelligent Reconnaissance for advanced OSINT, asset discovery, and mapping complex attack surfaces.
    • Automated Vulnerability Discovery using AI/ML for smarter fuzzing, code analysis (SAST/DAST), and identifying logical flaws.
    • Exploit Generation Assistance leveraging AI to assist in developing sophisticated exploits and bypasses.
    • Threat Modeling & Attack Path Analysis utilizing AI to analyze system architecture and predict likely attack vectors.
    • Payload Generation & Obfuscation employing AI to create highly effective and evasive payloads.
    • Behavioral Anomaly Detection to identify suspicious activities during tests.
  • Continuous Attack Surface Monitoring (ASM): Utilize AI-driven tools and techniques to continuously monitor and map the organization's dynamic attack surface, identifying new assets, services, and potential entry points. Proactively detect changes that could introduce new risks or expand the attack surface.
  • Vulnerability Landscape Assurance: Leverage AI and data analytics to perform assurance activities on the overall vulnerability landscape. This includes:
    • Validating the effectiveness of vulnerability scanning tools.
    • Analyzing vulnerability data to identify trends, prioritize remediation efforts, and assess the true risk posture.
    • Performing re-verification of remediated vulnerabilities using AI-assisted methods to ensure closure and prevent recurrence.
    • Providing data-driven insights into the efficacy of security controls.
  • Tool Development & Customization: Develop custom scripts, tools, and integrate AI/ML models to enhance existing penetration testing platforms and create novel offensive security capabilities.
  • Reporting & Remediation: Document detailed findings, including proof-of-concept exploits, risk assessments, and clear, actionable recommendations for remediation to development and operations teams.
  • Research & Innovation: Stay at the forefront of AI advancements in cybersecurity, actively research new attack techniques, and explore emerging AI/ML applications for offensive security.

Expected skills & experience

We are looking for someone with the following experience and skills:

Experience

  • Required:
    • 3+ years of hands-on experience in penetration testing, ethical hacking, or offensive security roles.
    • Proven experience or strong demonstrable interest in applying AI/ML concepts and tools to cybersecurity challenges.
  • Preferred:
    • Experience with specific AI-powered security tools for vulnerability scanning, threat intelligence, attack surface management, or code analysis.
    • Experience in developing or customizing AI/ML models for offensive security tasks (e.g., natural language processing for social engineering, anomaly detection for network traffic, predictive modeling for vulnerabilities).
    • Active participation in the security community (e.g., CTFs, conferences, open-source contributions related to AI in security).

Technical skills

  • Deep Penetration Testing Expertise: Strong understanding of traditional penetration testing methodologies, tools (e.g., Burp Suite, Nmap, Metasploit, Nessus), and common vulnerabilities (e.g., OWASP Top 10, CWE).
  • Programming Proficiency: Expert-level proficiency in Python is essential, with experience in developing scripts, automation, and integrating APIs.
  • AI/ML Fundamentals: Solid understanding of core AI/ML concepts, algorithms, and data science principles (e.g., supervised/unsupervised learning, deep learning, NLP).
  • Cloud Security: Experience with security assessments in cloud environments (AWS, Azure, GCP).
  • Operating Systems: Proficient with Linux, Windows, and macOS environments.
  • Networking: Strong understanding of TCP/IP, network protocols, and common network security controls.
  • Preferred Technical Knowledge:
    • Familiarity with common ML frameworks (e.g., TensorFlow, PyTorch, Scikit-learn) for understanding how to integrate or leverage them.
    • Experience with large language models (LLMs) and their potential applications in offensive security (e.g., prompt engineering for attack generation, code analysis).
  • Certifications (Preferred): Relevant security certifications such as OSCP, OSWE, OSCE, GXPN, GPEN, CEH.

Soft skills / transversal skills

  • Analytical Skills: Exceptional problem-solving abilities, with a creative and innovative mindset to identify and exploit complex vulnerabilities, and to analyze large datasets for security insights.
  • Communication: Excellent written and verbal communication skills, with the ability to clearly articulate technical findings, risks, and recommendations to diverse technical and non-technical audiences.
  • Collaboration & Knowledge Sharing: Ability to work closely with other security engineers, developers, and infrastructure teams to communicate findings, foster a culture of secure development, and mentor junior team members on AI-enhanced techniques.
  • Continuous Learning: A strong drive for continuous learning and development in the rapidly evolving fields of AI and cybersecurity.

Where will you be in the organization?

The division

You will join the Group Security division, defining the security standards to be applied by AXA entities, and holding overarching responsibility for safeguarding the security of the entire AXA Group, covering information security, physical security & safety, operational resilience, and crisis management with ability to take necessary actions to safeguard unacceptable risk.

Throughout AXA Group, the security community represents composed of 1500 security professionals, working daily to protect our customers, operations, assets, brand and people. To achieve this, we have set up a holistic security approach based on three converged disciplines: Cyber Defense, Physical Security and Operational Resilience.

Our main missions:

  • Monitor the Security evolving Threat Landscape
  • Defines and maintains the Group-wide security strategy, sets Security standards and instructions, and associatedtooling, and enforces consistent implementation across entities Agrees the local security objectives with the CEOs, cascades objectives to CSOs & CIOs, governs local securitybudgets and investments and enforces delivery through the dual reporting lines between local CSOs and GroupCorporate CSOs Runs Security operations (including detection & management of cyber incidents) and drives Security products,services and reportingaligned to entity needs to operate effectively and drive efficiencies
  • Assures security of IT processes and products, monitors security posture and escalates any deterioration of riskposture to relevant committees

The department / team

You will be part of the Assurance and Monitoring Team which aims at enabling risk-based, evidence-driven security decisions across the Group by providing independent assurance, and actionable posture insights that protect business value and support regulatory trust.

What we offer

We bring together the expertise, cultural diversity and creativity of over 8,000 employees worldwide and we’re committed to equal opportunities in all aspects of employment (gender, LGBT+, disabled persons, or people of different origins) and to promoting Diversity & Inclusion by creating a work environment where all employees are treated with dignity and respect, and where individual differences are valued.

About the entity

AXA is becoming a sustainable tech-led company and at AXA Group Operations we are one of the major catalysts for this transformation.

We set the tone by triggering and empowering the evolution of our insurance business model through technology and innovation, driving its concrete implementation globally at speed, with a high quality of advisory and execution.

We are present across 17 countries with committed, highly qualified teams. We leverage technology, data, sourcing, security and investment allocation in a global way, but also achieve economies of scale and synergies when necessary.

At AXA Group Operations, we want to be recognized in three fields of action:

  • State-of-the-art Data Technology to drive customer experience
  • State-of-the-art Procurement & Sourcing to drive efficiency and better manage risks
  • High-Performing Global Team for stronger partnerships with AXA entities

About AXA

As a world-leading insurance company, we act for human progress by protecting what matters. With 153,000 employees in 54 countries working for 105 million customers, we’ve created a truly dynamic and vibrant community. Inclusion and diversity link closely with our values, and together we’re nurturing a culture of respect, for each other, for our customers and the communities around us. Join AXA and you’ll feel like you belong, are included and can thrive. You’ll be able to shape the way you work and truly grow your potential as you seek out new opportunities, push boundaries and benefit people in critical moments of their life. This is your chance to build the tomorrow you want. Know you can.

#J-18808-Ljbffr

Oferta de empleo publicada 2 horas atrás
Ofertas similares que pueden interesarteSegún la AI-Enhanced Penetration Tester en Madrid
  •  ...AXA Group is seeking an AI-Enhanced Penetration Tester to elevate our cybersecurity posture. You will apply AI/ML to traditional penetration testing, conduct advanced assessments, and automate vulnerability discovery across web apps, APIs, networks, and cloud environments... 
    Ofertas de empleo recomendadas

    AXA Group

    Madrid
    2 horas atrás
  •  ...negocio centradas en la inteligencia artificial (AI-Centric), modernizamos infraestructuras de TI y desarrollamos...  ...a alcanzar todo su potencial. Buscamos un/a Penetration Tester con experiencia realizando pruebas de penetración y evaluación técnica de vulnerabilidades en... 
    Ofertas de empleo recomendadas
    Aprendiz
    Trabajar en la oficina
    Desde casa
    Remoto
    Trabajo híbrido
    Jornada intensiva
    Horario flexible

    GFT TECHNOLOGIES SE

    Alcobendas, Comunidad de Madrid
    17 horas atrás
  • de 42000 a 70000 €/año

     ...fulfil its mission to make the world more resilient. As the Penetration Tester, you will improve and develop the strategy of penetration...  ...testing tools (Burp Suite, nmap, Qualys, etc.) Exposure to AI/LLM security concepts or a strong interest in learning about securing... 
    Ofertas de empleo recomendadas
    Tiempo completo
    Desde casa
    Trabajo híbrido

    Swiss Re - Schweizerische Rückversicherungs-Gesellschaft

    Madrid
    1 día atrás
  •  ...Senior Pentester to design realistic attack scenarios and lead offensive security assessments across web, mobile, network, cloud, and AI-based systems. You will collaborate with Red Team and Blue Team professionals to strengthen threat detection and response... 
    Ofertas de empleo recomendadas
    Trabajo híbrido

    GMV Spain

    Madrid
    4 días atrás
  •  ...GFT TECHNOLOGIES SE busca un/a Penetration Tester con experiencia en pruebas de penetración y evaluación de vulnerabilidades en aplicaciones, redes y sistemas. Se trabajará en un entorno híbrido en España y se realizará reporting técnico y ejecutivo con evidencias y recomendaciones... 
    Ofertas de empleo recomendadas
    Trabajo híbrido

    GFT TECHNOLOGIES SE

    Alcobendas, Comunidad de Madrid
    17 horas atrás
  • ## Penetration TesterApplylocations: Madrid Areatime type: Full timeposted on: Posted Todayjob requisition id: JR10426813****Job Description:****Missions & Responsabilités ● Conduct penetration testing on networks, applications, infrastructure and industrial systems. ●... 
    Empleo permanente
    Contrato
    Horario flexible

    Airbus

    Madrid
    2 días atrás
  •  ...Airbus is seeking a Penetration Tester to work in Madrid. The role involves conducting penetration testing on various systems, reporting results, and providing recommendations for security improvements. Candidates should possess at least 3 years of experience in penetration... 

    Airbus

    Madrid
    2 días atrás
  •  ...Swiss Re is seeking a hands-on Penetration Tester in Madrid to strengthen and execute security assessments of web applications, APIs, and infrastructure, coordinating remediations with internal teams and external partners. You will join the Penetration Testing team within... 
    Trabajar en la oficina
    Desde casa
    Trabajo híbrido

    Swiss Re - Schweizerische Rückversicherungs-Gesellschaft

    Madrid
    1 día atrás
  •  ...responsible approach toward risk management. Our Chief Data & Artificial Intelligence Officer (CDAIO) division is building a world-class AI & Data team to make a difference in the lives of over 170 million people worldwide, through one of the largest banks in the world. We... 
    Práctica
    Remoto
    Trabajo híbrido
    Horario flexible
    Trabajo por turnos

    Banco Santander SA

    Boadilla del Monte, Comunidad de Madrid
    17 horas atrás
  •  ...Santander SA seeks a Chief Information Security Officer - Tech Risk & Cybersecurity to lead cyber risk governance and secure Data & AI platforms in Madrid, with a strong focus on risk management, regulatory alignment, and executive collaboration. You will drive security... 
    Trabajo híbrido
    Horario flexible

    Banco Santander SA

    Boadilla del Monte, Comunidad de Madrid
    17 horas atrás
  •  ...cybersecurity, cloud and high performance computing, Atos Group is committed to a secure and decarbonized future and provides tailored AI-powered, end-to-end solutions for all industries. Atos Group is the brand under which Atos SE (Societas Europaea) operates. Atos SE... 
    Trabajo híbrido

    Atos SE

    Madrid
    1 día atrás
  • 24000 €/año

    deysa en Madrid busca un administrador de sistemas para gestionar la red de sus 5 centros. El candidato mantendrá la infraestructura de red, supervisará servidores y dispositivos para garantizar conectividad segura. Se requiere experiencia mínima de 3 años, dominio de...

    deysa

    Madrid
    2 días atrás
  • Una empresa de consultoría tecnológica en Madrid busca un Administrador de Jboss con experiencia en despliegue y operación de aplicaciones web en entornos Windows y Linux. Se requiere un mínimo de 5 años de experiencia y conocimientos en gestión de certificados y troubleshooting...

    Itfreelances

    Madrid
    3 días atrás
  • Únete a Inetum para participar en la transformación tecnológica y digital de las principales organizaciones nacionales e internacionales. Estamos comprometidos con generar un impacto positivo en nuestros clientes, sus procesos y tecnología, pero también en ti. Por...

    Inetum

    Madrid
    2 horas atrás
  • Fortinet seeks a Professional Services Consultant to work with clients remotely and onsite on medium-to-high complexity engagements in Madrid. You will focus on implementing Fortinet firewall and other security products, and optimizing and operating these services. The...
    Remoto
    Horario flexible

    Zoomcar

    Madrid
    1 día atrás
  • Lognext is seeking an IT Risk Officer to join our team supporting a multinational leader in the banking sector. You will combine technical knowledge of IT infrastructure with risk assessment to bridge production and cybersecurity teams. The ideal candidate has strong ...

    Lognext

    Madrid
    2 días atrás
  • At Lognext we have been accompanying companies and teams for more than 18 years to identify and implement the technology necessary to advance, making their challenges and objectives our own and getting closer to their reality. Therefore, being a NEXTER means that your ...
    Trabajar en la oficina
    Remoto

    Lognext

    Madrid
    2 días atrás
  • OPINATOR busca un Gestor de Tecnología para supervisar y gobernar la función tecnológica, la plataforma SaaS y la seguridad/compliance. Coordinarás IT interno, proveedores y la implantación de IA a través de un enfoque orientado a costes y rendimiento. La posición requiere...

    OPINATOR

    Madrid
    17 horas atrás
  •  ...identity, CI/CD pipelines and software supply-chain security. You have experience with threat modelling, security architecture, penetration testing and vulnerability management. You are confident engaging senior stakeholders, auditors and regulators, and can... 
    Tiempo completo

    Straumann Group

    Madrid
    1 día atrás
  •  ...digital: Cloud Infrastructure & Modernization | FinOps | Data & AI | Cybersecurity | SAP on Azure | Business Applications: Power...  ...Esto incluye la realización de auditorías técnicas y pruebas de penetración para identificar riesgos y proponer soluciones correctivas. Responsabilidades... 
    Indefinido
    Empleo permanente
    Remoto
    Turno de tarde

    Aliando

    Madrid
    Hace 2 meses
  • S2 Grupo, empresa de ciberseguridad con presencia internacional, busca un SysAdmin para unirse al equipo. Queremos alguien con experiencia en asegurar entornos Windows, gestionar herramientas de seguridad y administrar infraestructuras virtualizadas, manteniendo backups...
    Empleo permanente

    S2 Grupo

    Madrid
    2 días atrás
  • Aubay Spain busca un Administrador de Sistemas en entornos Linux con al menos 5 años de experiencia para unirse a un equipo transversal que da soporte a diferentes áreas de la compañía. El foco está en gestión de vulnerabilidades, actualización de parches y control de...

    Aubay Spain

    Madrid
    2 días atrás
  • Plexus Tech busca un Administrador/a de Sistemas Linux para asegurar la disponibilidad y rendimiento de sus plataformas en producción. Trabajarás en entornos con Red Hat, Docker y herramientas de automatización, gestionando incidencias y fortalecimiento de la seguridad...

    Plexus Tech

    Madrid
    1 día atrás
  • IOT Lenses en Madrid busca un profesional con sólida experiencia en administración de sistemas y ciberseguridad para reforzar la seguridad, disponibilidad y escalabilidad de la infraestructura híbrida (on‑premise y cloud). Trabajarás con Active Directory, Entra ID, Microsoft...
    Trabajo híbrido

    IOT Lenses

    Madrid
    17 horas atrás
  • S2 Grupo busca un Administrador de Sistemas Linux con perfil mixto para diseñar y gestionar infraestructuras y aplicaciones basadas en máquinas virtuales, contenedores Docker y Kubernetes. Trabajarás junto a equipos de desarrollo, DevOps y soporte de infraestructuras para...

    S2 Grupo

    Madrid
    17 horas atrás
  • ISDEFE busca un/a Consultor/a de Ciberseguridad para trabajar en proyectos de seguridad de la información y cumplimiento normativo. Se requiere experiencia en administración electrónica, ENS y estándares ISO 27001/2, así como capacidad para redactar informes ejecutivos...

    ISDEFE

    Madrid
    2 días atrás
  • Babel Group. busca un Consultor GRC de Ciberseguridad para unirse a su equipo en expansión. El candidato ideal debe contar con al menos 10 años de experiencia y titulaciones relacionadas, además de certificaciones en auditoría de sistemas de seguridad. Ofrecemos un ...
    Remoto

    Babel Group.

    Madrid
    2 días atrás
  • Allego is seeking a Network Development Manager to drive the expansion of its ultra-fast charging network across Spain. You will report to the Director of Network Development and collaborate with our Network Planning, Legal, Delivery and Operations teams. This role ...

    Allego B.V.

    Madrid
    3 días atrás
  • Atalanta busca incorporar al equipo de Ciberseguridad en la área de seguridad perimetral para trabajar en proyectos con soluciones como Cloudflare, Zscaler, Fortinet, entre otras. Te unirás a un equipo que prioriza crecimiento profesional, ofrece modalidad híbrida (2 ...
    Trabajar en la oficina
    Trabajo híbrido

    Atalanta | Cybersecurity & Digital

    Madrid
    2 días atrás
  • Gestagua, perteneciente al Grupo SAUR, busca incorporar en Madrid un/a Técnico/a de Modelización Hidráulica. Serás responsable de construir, calibrar y evaluar modelos de redes de saneamiento y abastecimiento, así como de analizar el rendimiento con telemetría e IoT. ...
    Empleo permanente

    Gestión y Técnicas del Agua S.A. (Gestagua)

    Madrid
    2 días atrás

¿Quieres recibir más ofertas?

Suscríbete y recibe ofertas similares para AI-Enhanced Penetration Tester. ¡Entérate antes que nadie!