Offensive Security Engineer

Sporty Group
Europe
Workplace: RemoteFull timeFunction: CybersecuritySkills: ["Documentation","Collaboration"]

Strengthen Sporty’s offensive security posture by proactively testing and mapping the external attack surface, from domains, websites, public IP blocks, and DNS configurations to VPS and physical office infrastructure. Perform adversary emulation and scoped offensive testing of web apps and public APIs, then translate findings into repeatable defensive checks, perimeter controls, firewall rules, and remediation blueprints. Partner with IT, Network Engineering, SOC, and the Purple Team to validate controls and improve exposure tracking.

Loading

Loading job details...

Preparing the role view and application actions.

FursaFursa
Sporty Group
Sporty Group
2 months ago

Offensive Security Engineer

✓ Verified Job

Canonical indexed version, validated from employer's careers page.

Source: Company careers pageValidated by: Fursa AI
Last checked: 9 hours agoStatus: Live

Job Summary

Strengthen Sporty’s offensive security posture by proactively testing and mapping the external attack surface, from domains, websites, public IP blocks, and DNS configurations to VPS and physical office infrastructure. Perform adversary emulation and scoped offensive testing of web apps and public APIs, then translate findings into repeatable defensive checks, perimeter controls, firewall rules, and remediation blueprints. Partner with IT, Network Engineering, SOC, and the Purple Team to validate controls and improve exposure tracking.
Location: Europe
Workplace: Remote
Employment Type: Full time
Job Function: Cybersecurity

Key Responsibilities

  • •Monitor, map, and test Sporty’s external attack surface, including domains, subdomains, websites, public IPs, and DNS configurations.
  • •Conduct adversary emulation exercises against internal and office endpoints to validate EDR/XDR and SOC monitoring effectiveness.
  • •Evaluate the security posture of physical office hardware, corporate network equipment, and internal edge infrastructure.
  • •Perform scoped offensive testing on external-facing web applications and limited public-facing API endpoints, and convert findings into defensive checks.
  • •Support Purple Team validation, document exploitation chains, and improve external asset tracking and exposure trend mapping.

Pay and Benefits

Perks:Remote WorkPaid LeaveEquipmentAnnual Bonus

Key Requirements

  • •Experience in offensive security, perimeter penetration testing, network security assessments, or adversary emulation.
  • •Strong understanding of external asset discovery, DNS configuration vulnerabilities, and public IP network routing.
  • •Practical experience auditing and testing Linux and Windows environments and underlying network services.
  • •Ability to perform adversary emulation and bypass techniques against modern EDR/XDR solutions.
  • •Strong scripting skills in Python, PowerShell, Bash, or similar, plus strong documentation skills.
Skills:DocumentationCollaboration
Languages:English
Tech Stack:Kali LinuxNmapShodanCensysMasscanAmassDigDNS testing toolsWiresharkBurp SuiteOWASP ZAPMicrosoft Defender XDRCrowdStrike FalconSentinelOneAtomic Red TeamCalderaPythonPowerShellBashVPS environments

Company Brief

Sporty Group
Operates an online retail platform offering sports apparel, equipment, and accessories across multiple sports categories, targeting consumers and amateur athletes with a range of brands and direct-to-consumer products.
Industry: E-commerce
Website