Junior Offensive Security Engineer
Satispay · Milan, Italy, IT
Checked against ashby — still accepting applications.
- Location
- Milan, Italy, IT
- Type
- Full-time
- Posted
- 2026-08-11
- Applies via
- ashby
About us
Traditional banking has never really given you control over your financial life. Satispay exists to change that: to empower people through finance.
That means making financial services easy and accessible for over 6.5M users. We started with payments, then benefits, investing, cards... and we’re not done. Not even close.
We follow the same logic every time: find a real problem, solve it properly, then look for the next one. The destination? To build the most loved financial platform in the world.
If you own outcomes rather than tasks, stay close to what users need, and refuse to wait for someone else to fix what's broken — you'll find people here who work exactly in the same way. And together, you'll build something worth being proud of.
What you'll be doing
As our Junior Offensive Security Engineer, you'll support our security team in securing our cloud infrastructure, mobile, and web applications.
Here's what that looks like in practice:
- Penetration Testing - Perform penetration testing on mobile (iOS & Android) and web applications, using tools like Frida under senior guidance to bypass controls and analyze runtime behavior.
- Code and Architectural Review - Review source code for logic flaws, collaborate with developers on secure design patterns, and assist in reviewing cloud infrastructure.
- Scripting & Automation - Develop scripts to automate testing tasks, create proof-of-concept exploits, and parse tool results to optimize testing workflows.
- Collaborate on Defense - Work closely with the rest of the Security team to test monitoring capabilities, participate in attack simulations, and improve detection strategies.
- Documentation and Reporting - Write technical reports of findings and document remediation steps for development teams.
Who we're looking for
This role needs someone who is a problem-solver, loves teamwork, and gets things done with high curiosity and readiness for real ownership.
- Strong Foundations - Good knowledge of information security basics, networking, web application architecture, and common web vulnerabilities (e.g., SQL injection, XSS, IDOR, race conditions).
- Hands-on Experience - 0–2 years of experience from internships, university projects, active CTF participation, bug bounties, or personal research.
- Curious Mindset - Driven to figure out how business logic can be bypassed and understand the "why" behind each vulnerability.
- Scripting Skills - Ability to read and write code in at least one scripting language (e.g., Python) for task automation and simple proof-of-concepts.
- Interest in Mobile Security - Strong interest in securing Android and iOS apps, with exposure to Frida or Objection as a great starting point.
- Soft Skills - Clear communication, eagerness to learn, and proven capability of working collaboratively in a team environment.
- Bonus Points - Previous contributions to open-source security tools, published CVEs, cybersecurity certifications (e.g., eJPT, OSCP, PortSwigger), or familiarity with AWS/cloud and standard tools (Burp Suite, Nmap).
Don't worry if you don't tick every box. We believe in the power of different viewpoints and strengths. Your unique perspective is important as we build something special: if you're passionate and can make a difference, we truly encourage you to apply.
CareAbout: how we support your impact
We move fast, and evolution never stops. It’s a fun ride, but it can be challenging. To make sure our people truly thrive, we’re committed to making their lives easier, both in the office and out in the world.
That’s why we created CareAbout:
- ❤️ Health: private insurance for you and your family, psychological support with Serenis, mental health workshops.
- 💰 Financial resources: Stock Option Plan, meal vouchers, relocation support if you’re moving countries.
- ⚙️ Growth and development: professional development programs, internal mobility, language courses with Preply.
- 🌱 Flexibility: unlimited PTO, hybrid working policy*, flexible working hours.
- 👨👩👧 Family: enhanced parental leave, additional leave for child sickness.
*We embrace three days per week in-office (Tuesday and Thursday + 1 of your choice), with the option to request extra remote time.
Salary: €38,000 - €54,000 gross per annum
This range is set using objective, gender-neutral criteria for the role's core requirements. However, we do not believe in putting a ceiling on talent. The final compensation package is tailored according to your unique experience and expertise. If your skills go beyond the standard profile, apply anyway so we can discuss a package that reflects your true value.
Equal opportunity employer
At Satispay, we're proud to be an equal opportunity employer. We celebrate diversity and inclusion, welcoming individuals of all backgrounds. This opportunity is open to everyone, regardless - for instance - of race, colour, religion, sex, gender identity, sexual orientation, and national origin.
Join us in a workplace where everyone belongs!
Learn more about us
Curious what it's actually like here? Our values and pillars shape how we work every day: explore them here https://www.satispay.com/en-it/work-at-satispay/.
#LI-HYBRID
#LI-DNI
By submitting this application, I acknowledge that I have read and understood the content of the Privacy Policy https://www.satispay.com/en-it/legal-hub/privacy-policy/candidates/
Stop retyping the same form
Upload a CV once. Otto fills in this application and the next forty.
Try Free Now →