Penetration Tester

Lovable
Stockholm
Workplace: OnsiteFull timeFunction: CybersecurityExperience: 5+ yearsSkills: ["Communication","Teamwork","Problem-solving","Reporting","Collaboration"]

Penetration tester role focused on offensive security across Lovable’s web, mobile, APIs, cloud infrastructure, and AI pipelines. You’ll hunt vulnerabilities, break AI-enabled systems, translate complex findings into prioritized reports for engineering, and raise the security bar through internal red teaming and threat modelling in a fast-moving, ownership-driven environment from Stockholm.

Loading

Loading job details...

Preparing the role view and application actions.

FursaFursa
Lovable
Lovable
4 months ago

Penetration Tester

✓ Verified Job

Canonical indexed version, validated from employer's careers page.

Source: Company careers pageValidated by: Fursa AI
Last checked: 8 hours agoStatus: Live

Job Summary

Penetration tester role focused on offensive security across Lovable’s web, mobile, APIs, cloud infrastructure, and AI pipelines. You’ll hunt vulnerabilities, break AI-enabled systems, translate complex findings into prioritized reports for engineering, and raise the security bar through internal red teaming and threat modelling in a fast-moving, ownership-driven environment from Stockholm.
Location: Stockholm
Workplace: Onsite
Employment Type: Full time
Job Function: Cybersecurity

Key Responsibilities

  • •Plan and execute penetration tests across Lovable's web platform, mobile surface, APIs, cloud infrastructure, and AI pipelines.
  • •Probe LLM integrations for prompt injection, jailbreaks, data leakage, and novel attack vectors unique to AI-generated code in live products.
  • •Identify systemic vulnerabilities introduced when millions of users create and deploy real applications on Lovable.
  • •Collaborate with engineering to prioritise, remediate, and verify fixes, closing the loop between discovery and resolution.
  • •Lead internal red team exercises, contribute to threat modelling, and embed an attacker’s mindset across the engineering culture

Key Requirements

  • •5+ years of hands-on penetration testing across web, mobile, APIs, and cloud infrastructure
  • •Deep expertise in offensive security techniques: OWASP, MITRE ATT&CK, exploit development, privilege escalation, and lateral movement
  • •Experience attacking AI-native products or LLM-integrated systems, including prompt injection, model abuse, and data exfiltration vectors
  • •Strong understanding of cloud environments (GCP, AWS, Cloudflare) and the attack surfaces they introduce
  • •Ability to translate complex findings into clear, prioritised reports that engineering teams can act on immediately
Experience:5+ yearsCybersecurity
Skills:CommunicationTeamworkProblem-solvingReportingCollaboration
Languages:English
Tech Stack:ReactTypeScriptGolangRustCloudflareGCPAWSTerraformClickhouseFirestoreSpannerBigQuery

Company Brief

Lovable
Lovable builds a conversational AI platform that lets users create apps and websites by chatting with AI, automating full‑stack development and integrations to rapidly produce production-ready software.
Industry: Developer Tools
Company Size: Medium (51 to 250 employees)
Revenue: USD 100M to 250M
Growth: Scaleup
Valuation: Unicorn (USD 1B+)
Funding: Series B
Headquarters: Stockholm, Sweden
Founded: 2023
WebsiteLinkedInGlassdoor