Romania - Senior Penetration Tester

2 days ago


Bucharest, Bucureşti, Romania Booking Holdings Full time 60,000 - 120,000 per year

Role Description:

Booking Holdings Romania is a Center of Excellence based in Bucharest, Romania and was created to support the increasing business demands of the Booking Holdings Brands. The Center of Excellence provides access to specialized and highly skilled talent, leading industry best practices, and collaboration opportunities across all of our Brands.

As part of our Booking Holdings Romania team, you will have the opportunity to be a part of the world's leading provider of online travel, with a mission of making it easier for everyone to experience the world through five-primary consumer facing brands: , Priceline, Agoda, KAYAK and OpenTable.

The Senior Penetration Tester defines and leads the execution of highly technical and specialized engagements and designs new techniques of testing based on the evolution of industry best practices over time. They are both performing hands-on technical testing without requiring supervision and are coordinating teams of testers to ensure that the engagement objectives are met. They strengthen Booking Holdings brands security posture by proactively identifying vulnerabilities and security control gaps in our systems and applications.

The Senior Penetration Tester provides critical input to the group's brands with the development of the security assurance strategic plan based on subject matter expertise to increase the impact and value added through this area of focus. The Senior Penetration Tester also helps further grow the security assurance area by mentoring other team members and members of other technical non-pentester communities within the Booking Holdings group. The Senior Penetration Tester has strong stakeholder management skills that enable effective communication of technical information to multi-level (up to CISO/CSO level), technical and non-technical audiences within the broader Booking Holdings organization.

This role provides a hybrid way of working with an onsite presence of 2 days/week.

Key Job Responsibilities and Duties

  • Plan and organize any externally and internally performed security assurance activities
  • Coordinate security assurance engagements executed by external testers
  • Execute security assurance engagement testing
  • Document and formally report the outcomes of the security assurance activities both to a technical and non-technical audience
  • Align with Booking Holdings on the overall security assurance landscape for the Group
  • Coordinate and support the contractual relationship and alignment with external security assurance vendors
  • Align business testing needs with timely and relevant threat information and verify the organization's security posture against them
  • Perform other duties as assigned
  • Research and innovate, regularly research and learn new TTPs, and apply this knowledge to update testing methodology and tools.
  • Understand breach and attack simulation solutions, working with them to automate control validation and effectiveness.
  • Liaise with security teams to mature prevention, detection, and response capabilities
  • Mentor and support junior teammates

Role Qualifications and Requirements

  • 5+ years of experience in information security
  • 5+ years of relevant hands-on experience in security assurance testing and engagement management
  • Expertise in at least one of the following areas: (Web) application security, infrastructure security, mobile security
  • Excellence in communicating business risk and remediation requirements from assessments
  • Excellent stakeholder management skills
  • Proficient in scripting languages such as Python, PowerShell, Bash, and Ruby and be able to create scripts that automate security testing processes, enhance efficiency, and uncover vulnerabilities.
  • Competent with testing frameworks and tools
  • Understanding of OWASP, the MITRE ATT&CK framework and the software development lifecycle (SDLC).
  • Analytical and problem-solving mindset.
  • Highly organized and efficient
  • Experience in offensive tactics
  • Software development experience
  • One or more of the following certifications: OSCP, OSCE, GPEN, GWAPT, CEH, CISSP or a similar recognized certification in your domain of expertise

Benefits & Perks

  • Contributing to a high scale, complex, world renowned product and seeing real-time impact of your work on millions of travelers worldwide
  • Working in a fast-paced and performance driven culture
  • Technical, behavioral and interpersonal competence advancement via on-the-job opportunities, experimental projects, hackathons, conferences and active community participation
  • Competitive compensation and benefits package
  • Vast amounts of data to validate your ideas and the opportunity to experiment with real users

Booking Holdings is proud to be an equal opportunity workplace and is an affirmative action employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, gender, gender identity or expression, sexual orientation, national origin, genetics, disability, age, or veteran status. We strive to move well beyond traditional equal opportunity and work to create an environment that allows everyone to thrive.



  • Bucharest, Bucureşti, Romania Booking Holdings Full time 60,000 - 120,000 per year

    Booking Holdings Romania is a Center of Excellence based in Bucharest, Romania and was created to support the increasing business demands of the Booking Holdings Brands. The Center of Excellence provides access to specialized and highly skilled talent, leading industry best practices, and collaboration opportunities across all of our Brands.As part of our...

  • Penetration Tester

    4 days ago


    Bucharest, Bucureşti, Romania Data Core Systems, Romania Full time 120,000 - 360,000 per year

    We are looking for a skilled and experienced Penetration Tester to join our dynamic team. This individual will play a key role in identifying vulnerabilities, exploiting weaknesses, and securing systems in highly sensitive and regulated environments, particularly in banking and financial services. The ideal candidate will have good experience in penetration...


  • Bucharest, Bucureşti, Romania Cegeka Full time 90,000 - 120,000 per year

    Our mission is to help people integrate technology into everyday life and to enable innovation through technology. We offer software development and infrastructure solutions, with advanced competences in Blockchain, Artificial Intelligence and Machine Learning. All our offices (in Western Europe or nearshore, in CEE) are located within the boundaries of the...


  • Bucharest, Bucureşti, Romania NTT DATA Full time €30,000 - €60,000 per year

    NTT DATA strives to hire exceptional, innovative and passionate individuals who want to grow with us. If you want to be part of an inclusive, adaptable, and forward-thinking organization, apply now At NTT DATA we know that with the right people on board, anything is possible. The quality, integrity, and commitment of our employees have been key factors in...


  • Bucharest, Bucureşti, Romania Cyrex Full time 60,000 - 80,000 per year

    Cyrex is a native security and software development company. We're focused on building the next generation of top-notch software for web, mobile, and native. Coupled with our extensive background in ethical hacking and cyber crime, we've established ourselves as a trusted partner to over 700 clients worldwide. Serving clients of all size, from startups to...


  • Bucharest, Bucureşti, Romania Booking Holdings (NASDAQ: BKNG) Full time €40,000 - €80,000 per year

    Booking Holdings Romania is a Center of Excellence based in Bucharest, Romania and was created to support the increasing business demands of the Booking Holdings Brands. The Center of Excellence provides access to specialized and highly skilled talent, leading industry best practices, and collaboration opportunities across all of our Brands.As part of our...


  • Bucharest, Bucureşti, Romania Booking Holdings (NASDAQ: BKNG) Full time €40,000 - €80,000 per year

    Booking Holdings Romania is a Center of Excellence based in Bucharest, Romania and was created to support the increasing business demands of the Booking Holdings Brands. The Center of Excellence provides access to specialized and highly skilled talent, leading industry best practices, and collaboration opportunities across all of our Brands.As part of our...


  • Bucharest, Bucureşti, Romania Booking Holdings Full time 120,000 - 240,000 per year

    Role Description:Booking Holdings Romania is a Center of Excellence based in Bucharest, Romania and was created to support the increasing business demands of the Booking Holdings Brands. The Center of Excellence provides access to specialized and highly skilled talent, leading industry best practices, and collaboration opportunities across all of our...


  • Bucharest, Bucureşti, Romania EPAM Systems Full time €30,000 - €60,000 per year

    We are looking for an experiencedSenior Automation Testerwith a strong Java background to lead and execute testing strategies while ensuring high-quality code delivery.As part of our Agile Scrum team, you will collaborate with multiple stakeholders to design and implement advanced test automation frameworks while contributing hands-on to both manual and...

  • DPI Tester

    4 days ago


    Bucharest, Bucureşti, Romania Enea AB Full time €15,000 - €30,000 per year

    Protocol Plugin Tester Student – Qosmos DPI TechnologyLocation:Bucharest or Craiova, Romania (Hybrid/Remote flexibility)Department:DPI Development CenterCompany:Enea Qosmos DivisionInternship Duration:6 months – 1 year (with possibility of full-time employment)Internship OverviewThis internship is an excellent opportunity for students in Computer Science...