The Security Factory logo

Medior Penetration Tester

The Security Factory Niel, Flanders, Belgium

onsitefull-time
Posted Oct 8, 2025Apply by Jan 28, 2026

Role & seniority: Medior Infrastructure Penetration Tester

Stack/tools: Networks, firewalls, Windows/Linux servers, Active Directory, cloud environments; testing tools such as Nmap, Burp Suite, Nessus, Metasploit (or similar)

Top 3 responsibilities

  • Conduct penetration tests and vulnerability assessments on infrastructure components (networks, AD, servers, cloud)

  • Identify, exploit, and document vulnerabilities; produce detailed technical reports and executive summaries

  • Contribute to methodologies/tools and support red team/purple team exercises; assist knowledge sharing

Must-have skills

  • 2+ years hands-on penetration testing/red teaming

  • Strong networking, OS, and security controls knowledge

  • Proficiency with Nmap, Burp Suite, Nessus, Metasploit (or similar); practical AD security, privilege escalation, lateral movement

  • Solid report writing and communication abilities; fluent in Dutch and English

Nice-to-haves

  • Relevant certifications (OSCP, CRTP, eJPT, CPTS, GPEN)

  • Independent work and collaborative/team environment experience

  • Location & work type: Flexible; remote/hybrid options with working-from-home arrangements; Netherlands-focused requirement implied by Dutch language preference

Full Description

Medior Infrastructure Pentester

We are looking for a Medior Infrastructure Penetration Tester to join our growing security team. In this role, you will perform hands-on penetration tests and security assessments of networks, servers, Active Directory, web applications and cloud environments. You will identify and exploit vulnerabilities, prepare high-quality reports, and help our clients strengthen their overall security posture. Working alongside experienced penetration testers, you’ll have the opportunity to further develop your skills while contributing to challenging and diverse projects.

Key Responsibilities

Perform penetration tests and vulnerability assessments on infrastructure components (e.g., networks, firewalls, Windows/Linux servers, Active Directory, cloud environments). Identify, exploit, and document security vulnerabilities while maintaining professional and ethical standards. Prepare detailed technical reports and clear executive summaries tailored to technical and non-technical audiences. Contribute to the development of methodologies, tools, and internal knowledge sharing. Support red team and purple team exercises when required.

Your profile

You are fluent in both Dutch and English. +2 years of hands-on experience in penetration testing or red teaming. Strong understanding of networking protocols, operating systems, and security controls. Experience with tools such as Nmap, Burp Suite, Nessus, Metasploit, or similar. Practical knowledge of Active Directory security, privilege escalation, and lateral movement techniques. Solid report writing and communication skills. Relevant certifications are a plus (e.g., OSCP, CRTP, eJPT, CPTS, GPEN). Strong ethical mindset and ability to work independently as well as in a team.

What we offer

A pleasant working atmosphere. Competitive salary and benefits package. Opportunities to work on diverse and challenging penetration testing projects. Professional development support, including training and certifications. A collaborative team environment that values innovation and knowledge sharing. Flexible working arrangements (working from home).

Are you ready to make your biggest hobby your dream job? Contact us now!

First name (required)

Last name (required)

Your Email (required)

Phone number (required)

Message

Your resume (PDF - max 5MB)

Please leave this field empty. Show more Show less

Penetration TestingVulnerability AssessmentsNetworking ProtocolsOperating SystemsSecurity ControlsActive Directory SecurityPrivilege EscalationLateral Movement TechniquesReport WritingCommunication SkillsNmapBurp SuiteNessusMetasploitOSCPCPTSmulti-location

Cookies & analytics consent

We serve candidates globally, so we only activate Google Tag Manager and other analytics after you opt in. This keeps us aligned with GDPR/UK DPA, ePrivacy, LGPD, and similar rules. Essential features still run without analytics cookies.

Read how we use data in our Privacy Policy and Terms of Service.