
Omegapoint Stockholm AB · Göteborg
VILL DU BIDRA TILL EN TRYGGARE DIGITAL FRAMTID? Nu söker vi en erfaren penetrationstestare som vill vara med och stärka våra kunders digitala säkerhet tills...
Nu söker vi en erfaren penetrationstestare som vill vara med och stärka våra kunders digitala säkerhet tillsammans med några av
Nordens vassaste säkerhetsexperter.
Som penetrationstestare hos oss blir du en del av vårt säkerhetsteam, där din nyfikenhet och ditt tekniska sinne får utrymme.
Göteborgsområdet. Vissa uppdrag kan kräva säkerhetsprövning.
Hos oss får du inte bara ett jobb - du får en miljö som aktivt stöttar din utveckling.
Vi samarbetar med andra penetrationstestare inom koncernen och hjälper till att kvalitetssäkra Omegapoints egna leveranser.
Dessutom ges det utrymme att delta på interna och externa event, från internationella säkerhetskonferenser till att hyra en stuga
för att hacka tillsammans.
Det finns även förutsättningar att bedriva säkerhetsforskning, vars resultat publiceras på
vår säkerhetsblogg securityblog.omegapoint.se.
Något som regelbundet resulterar i registrerade CVE:er och att våra experter listas på organisationer så som AWS, Microsoft och
EU:s "Hall of Fame" för vårt säkerhetsarbete.
Vi provar kontinuerligt nya saker och utmanar hur vi jobbar. Tillsammans utvecklas vi fort och gillar att ha kul på resan.
Vi söker dig som har några års erfarenhet av penetrationstester, främst inom webbapplikationer. Du har erfarenhet av att tolka och
förstå kod och göra tester manuellt där verktyg endast används som stöd.
Erfarenhet av systemutveckling är meriterande men inget krav.
Du har ett genuint intresse för säkerhet, teknik och lärande, och kan resonera kring OWASP Top 10, samt ge råd och
rekommendationer med lämpliga åtgärder för att åtgärda problem och stärka säkerheten i de granskade systemen.
Våra kunder har höga krav på dokumentation så du behöver vara van att dokumentera och rapportera ditt arbete, på svenska och/eller
engelska.
💬 Meriterande
Omegapoint grundades 2001 och är idag Nordens ledande konsultbolag inom cybersäker digitalisering. Vår vision är enkel: en framtid
där vi fullt ut kan lita på tekniken.
Vi är över 800 konsulter i Sverige och vi brinner för att kombinera teknisk spetskompetens med en kultur av lärande, generositet
och omtanke.
På Omegapoint sätter vi din kompetens i centrum och ger dig alla förutsättningar för ett utvecklande och varierat jobb:
ligga i framkant.
både utmanande och roliga projekt.
sjukvårdsförsäkring.
Men viktigast av allt – vi har en kultur där vi utvecklas tillsammans, delar kunskap och har riktigt roligt längs vägen.
Ansök redan idag! Eller skicka ett meddelande till carin.hellberg@omegapoint.se och berätta lite om dig själv. Vi gillar nyfikna
människor mer än perfekta CV:n 🙌
Har du frågor om rollen? Hör av dig till samma mejladress som ovan - vi svarar gärna!
Are you passionate about ethical hacking and eager to develop the skills that keep modern applications safe? Do you dream of finding the weaknesses others miss — and helping organisations fix them before attackers do? If so, we have the perfect opportunity for you! ABOUT THE INTERNSHIP Our Application Security & Penetration Testing Internship is designed for ambitious individuals who want to explore the exciting world of offensive security and gain hands-on experience. This program offers the chance to work on real client engagements, learn industry-standard testing methodologies, and collaborate with experienced security consultants. WHAT YOU'LL LEARN As an intern, you will: Test modern web applications, APIs and mobile apps for real security weaknesses. Learn how professional penetration tests are planned, executed and reported. Turn technical findings into clear, practical advice that clients can act on. Gain hands-on experience with the tools and methodologies used on live engagements. This internship is designed for individuals eager to dive deep into application security and apply their curiosity to problems that matter. Every vulnerability you help find and every report you help write makes a real system secure and safer for the people who depend on it. WHY JOIN US? Hands-on experience with state-of-the-art security tools and technologies. Guidance and mentorship from seasoned penetration testers. Opportunity to work on real-world client engagements that make an impact. A collaborative and supportive environment where questions are always welcome. WHO WE'RE LOOKING FOR We welcome interns who: Have a strong interest in cybersecurity and ethical hacking. Have a solid grasp of web technologies, networking, and Linux or Windows OS. You don't need to be an expert, but we expect you to be very comfortable working in these environments. Good knowledge of mobile app development (iOS/Android) and APIs. Good knowledge of any major cloud technologies/platforms (AWS/Azure/GCP). Have some awareness of common application vulnerabilities, such as the OWASP Top 10. Exposure to web application penetration testing, API security testing, or mobile application security through academic projects or self-learning. Have tried their hand at CTFs or practice labs such as Hack The Box, TryHackMe or PortSwigger Web Security Academy, or personal projects or home labs. Good programming/scripting experience, for example, Python or Bash, is a bonus. Strong analytical and problem-solving skills with the ability to think creatively, eager to learn and solve complex problems. Are ready to contribute ideas and collaborate with a dynamic team. Approach security work with care, discretion and a strong ethical mindset. HOW TO APPLY Send your resume and a cover letter explaining why you're excited about penetration testing and why you are an ideal candidate for the role. It is recommended to include any personal security projects, CTF write-ups or lab platform profiles you have worked on. Applications are open until 31st August 2026. Don't miss this chance to kickstart your career in offensive security! Join us, and let's build a safer digital world together! Please note: This is an unpaid, full-time, 6-month onsite internship starting September 2026 at our offices in Lindholmen, Gothenburg.
At HiQ, every challenge is an invitation to explore new possibilities. We’re looking for someone who thrives on the thrill of discovery, who sees every system as a puzzle waiting to be solved, and who finds energy in the pursuit of safer, smarter digital solutions. As part of our Pentest team, you’ll be at the heart of our mission to build secure applications and environments for some of the most exciting organizations in the Nordics. Your days will be filled with hands-on penetration testing, creative problem-solving, and the freedom to dive deep into the latest tools and techniques. Whether you’re orchestrating a Red Team engagement or probing the intricacies of cloud security, you’ll have the autonomy to shape your own approach, while always knowing that a team of passionate experts has your back. You’ll work with Burp Suite, Nmap, Wireshark, and a host of other tools, sometimes in the cloud, sometimes on-prem, always at the cutting edge. Your experience with Active Directory and scripting will come to life as you navigate complex environments, uncover vulnerabilities, and help our clients see their systems through a new lens. If you’ve cracked hashes, explored mobile app security, or sharpened your skills in CTFs, you’ll find plenty of opportunities to push your expertise even further. WHAT YOU BRING * At least 5 years of practical experience in penetration testing or Red Team operations * Deep familiarity with industry-standard tools such as Burp Suite, Nmap, and Wireshark * Strong background in assessing and securing web applications * Proven experience performing Active Directory and broader network security assessments * Understanding of modern cloud platforms and architectures * Scripting skills that enable you to automate workflows and develop new solutions * Relevant education and/or certifications (e.g., OSCP, OSCE, AWS/Azure Security) * Excellent communication skills, with the ability to clearly document and articulate vulnerabilities and recommendations * Swedish citizenship, as HiQ carries out security-classified assignments that may require it BONUS SKILLS * Experience with hash cracking * Knowledge of mobile application security * Knowledge in cloud security * Networking know-how * Capture the Flag participation * Insights into computer forensics Here, learning is woven into the fabric of every project. Whether you’re pursuing new certifications, experimenting with the latest exploits, or sharing insights with colleagues, you’ll find endless room to grow. We celebrate curiosity and initiative, if you spot an opportunity to make something better, you’ll have the freedom and support to make it happen. You’ll be trusted to run penetration tests independently, but you’ll never be alone. Collaboration is second nature here: ideas bounce, knowledge flows, and everyone’s voice matters. You’ll document your findings with clarity, communicate risks with empathy, and help guide clients toward stronger, more resilient solutions. If you’re ready to join a team where your passion for security is matched only by your drive to learn and create, we’d love to meet you. Ready to take the next step? Apply now and let’s build something extraordinary together.
Spektrum have a wide range of exciting opportunities in several global locations. We are always looking to add great new talent to our team and look forward to hearing from you. Spektrum supports apex purchasers (NATO, UN, EU, and National Government and Defence) and their Tier 1 supplier ecosystem with a wide range of specialist services. We provide our clients with professional services, specialised aerospace and defence sales, delivery, and operational subject matter expertise. We are looking for personnel to join our team and support key client projects. ---------------------------------------------------------------------------------------------------------------------------------- Who we are supporting The NATO Communication and Information Agency (NCIA) is responsible for providing secure and effective communications and information technology (IT) services to NATO's member countries and its partners. The agency was established in 2012 and is headquartered in Brussels, Belgium. The NCIA provides a wide range of services, including: * Cyber Security: The NCIA provides advanced cybersecurity solutions to protect NATO's communication networks and information systems against cyber threats. * Command and Control Systems: The NCIA develops and maintains the systems used by NATO's military commanders to plan and execute operations. * Satellite Communications: The NCIA provides satellite communications services to enable secure and reliable communications between NATO forces. * Electronic Warfare: The NCIA provides electronic warfare services to support NATO's mission to detect, deny, and defeat threats to its communication networks. * Information Management: The NCIA manages NATO's information technology infrastructure, including its databases, applications, and servers. Overall, the NCIA plays a critical role in ensuring the security and effectiveness of NATO's communication and information technology capabilities. The program Assistance and Advisory Service (AAS) The NATO Communications and Information Agency (NCI Agency) is NATO’s principal C3 capability deliverer and CIS service provider. It provides, maintains and defends the NATO enterprise-wide information technology infrastructure to enable Allies to consult together under Article IV, and, when required, stand together in the face of attack under Article V. To provide these critical services, in the modern evolving dynamic environment the NCI Agency needs to build and maintain high performance-engaged workforce. The NCI Agency workforce strategically consists of three major categorise's: NATO International Civilians (NIC)'s, Military (Mil), and Interim Workforce Consultants (IWC)'s. The IWCs are a critical part of the overall NCI Agency workforce and make up approximately 15 percent of the total workforce. ---------------------------------------------------------------------------------------------------------------------------------- Role ID – C004912 Role Duties and Responsibilities * Lead and/or be part of the Red/Blue Team during NATO military exercises. * Provide Web, infrastructure and application-level penetration testing. * Provide security design reviews to ensure compliance with NATO policies and directives. * Provide security consultancy and advice to projects, plans, and other entities. * Build and sustain effective communications with different stakeholders; specifically, the NCIA Configuration Control Board. * Security Accreditation Boards, NATO Security Accreditation Authorities, and NCI Agency organization units supporting accreditation processes. * Brief at both executive and technical levels on security reports and testing outcome, including at flag officer level. * In co-ordination with the Head of the Penetration testing Cell, ensure proactive collaboration and coordination with internal and external stakeholders. Essential Skills, Experience and Certifications * Extensive knowledge and experience (more than 3 years) in the following areas: o Web application penetration testing. o IT infrastructure penetration testing. o Network security architecture design. o Assessing security vulnerabilities within OS, software, protocols & networks. o Researching and evaluating security products & technologies. o Knowledge in system and network administration of UNIX and Windows systems. o Use of penetration testing tools, techniques, and recognized testing methodologies. o Scripting skills in at least one of the following: Perl, Python, Ruby, shell (bash, ksh, csh). o Technical knowledge in system and network security, authentication and security protocols, cryptography, application security, as well as malware infection techniques and protection technologies. o Ability to evaluate risks and formulate mitigation plans. o Proven ability to write clear and structured technical reports including executive summary, technical findings and remediation. Working Location * On-site. Normal Office Conditions. 10 days travel is foreseen for this position Working Policy: The Hague, Netherlands. Travel: Some travel to other NATO sites may be required Security Clearance: Valid National or NATO Secret personal security clearance We never know what new opportunities might be just over the horizon. If this opportunity isn't for you, please feel free to send us your resume anyway and be the first to know if something suitable for your skills and experience comes up.