- Company Name
- BOULANGER
- Job Title
- [ALTERNANCE] - Cybersecurity Engineer - RedTeam (H/F)
- Job Description
-
Job title: Cybersecurity Engineer - Red Team (Internship)
Role Summary: Deliver offensive security activities within the CyberDefense team, supporting both defensive and offensive operations. Contribute to automated scanning strategy, penetration testing, remediation follow‑up, RedTeam research, and cyber‑technical reviews of new projects to reduce attack surface.
Expectations:
- Execute tasks autonomously while collaborating cross‑functionally.
- Continue self‑directed learning on offensive platforms and emerging tools.
- Communicate findings and recommendations clearly in written reports.
- Demonstrate C1 level written English; basic oral English proficiency (B1–B2).
Key Responsibilities:
1. Define and tune Qualys/Nessus scan scope, planning, and prioritisation.
2. Conduct web, internal/external, Active Directory, and cloud penetration tests; deliver impact proof and actionable mitigations.
3. Analyse external pentest campaign results, validate scoring/risk, confirm proof‑of‑concept, and support remediation (re‑testing, stakeholder coaching).
4. Drive RedTeam R&D: refine tools, templates, automation, and experience capitalisation for higher quality, reproducibility.
5. Advise on cyber technical aspects of projects (architecture review, security requirements, hardening, control validation) to secure production deployments.
Required Skills:
- Proficiency in Python, PowerShell; familiarity with Java, JavaScript, Node.js, Go.
- Experience with Azure, GCP, AWS, Windows, Linux, macOS.
- Tools: Qualys, Nessus, Burp Suite, Akamai, Fasterize, other vulnerability scanners.
- Strong offensive security mindset; comfortable with try‑hackme, rootme, hackthebox practice.
- Autonomous work style with effective communication to multidisciplinary stakeholders.
Required Education & Certifications:
- BSc or equivalent in Computer Science / Information Technology; currently enrolled in a Master’s or advanced training in cybersecurity.
- Pursuing or holding security certifications (CJCA, CEH, CPTS, OSCP, Lab Pro HTB) is advantageous.