Offensive Cyber Security Engineer

Damia Group

Not Interested
Bookmark
Report This Job

profile Job Location:

Porto - Portugal

profile Monthly Salary: Not Disclosed
Posted on: 6 days ago
Vacancies: 1 Vacancy

Job Summary

Sodexo is currently hiring a Offensive Cyber Security Engineer to join their amazing team
About the company:Sodexo is a global leader in quality of life services founded in France in 1966. The company operates in over 50 countries offering a wide range of services that include:On-site Services: Catering cleaning maintenance and facilities & Rewards Services: Meal cards gift cards mobility solutions and employee & Home Services: Concierge home care and childcare (less prominent).Sodexo focuses on improving quality of life for employees students patients and others across various sectors including corporate offices schools healthcare defense and remote sites.
Sodexo in Portugal
Sodexo has been present in Portugal since 1996. Core Services Employee Benefits & Rewards: Well known for offering meal cards likeSodexo Refeição Pass as well as gift cards and fuel -site Services: Catering and facilities management in corporate healthcare and educational Clients: Includes multinational corporations public institutions and local in Portugal: Helping improve employee well-being and organizational performance through tailored workplace and benefits solutions.
About the role/What youll do:
As an Offensive Cyber Security Engineer you will join Sodexos Global Information Cyber Security team operating within the internal Security Architecture & Engineering this highly technical role you will act as an ethical attacker continuously identifying validating and helping remediate critical risks across Sodexos global cloud application and corporate environments.
Your work blends advanced threat modeling with fullscope red team operations and realworld adversary emulation.
Your responsibilities include:
1. Threat Modeling & Security Analysis
  • Lead structured threat modeling using STRIDE attack trees MITRE ATT&CK mapping.
  • Analyze new features applications and architectural changes in collaboration with global/local engineering teams.
2. Red Team & Breach Simulation Operations
  • Plan and execute sophisticated red team engagements and breach & attack simulation (BAS) campaigns.
  • Conduct persistent stealthy operations resembling advanced threat actors.
  • Execute assumebreach scenarios across endpoints cloud workloads identities and external attack surfaces.
  • Perform physical social engineering and hybrid attacks when required.
3. Cloud Migration & Workload Security
  • Assist regions/BUs in migrating and deploying workloads to Sodexo public cloud environments.
  • Analyze business and IT requests impacting cloud security and propose mitigation measures.
3. Adversary Emulation & Tooling Development
  • Run automated and manual adversary emulation using tools like:
  • Covenant Sliver Cobalt Strike Caldera Infection Monkey Stratus Red Team Atomic Red Team.
  • Develop custom tools payloads and C2 infrastructure to bypass EDR/XDR and cloud-native detections.
5. Remediation Guidance & Detection Engineering Support
  • Deliver actionable remediation guidance and collaborate directly with blue teams.
  • Contribute to detection engineering by producing threat intelligence detection logic and attack playbooks.
  • Track the evolving attack surface and organizational crown jewel exposure. V 0.3 PDF
6. Leadership & Mentorship
  • Mentor junior offensive security team members.
  • Raise offensive security awareness across Sodexo.
Education & Experience
  • BS in Computer Science Information Security or equivalent (MS preferred).
  • 5 years of handson offensive security experience (red teaming penetration testing).
  • Proven experience leading fullscope red team operations especially in Azure environments.
  • Fluent English and French(Plus)
Technical Skills
  • Deep understanding of threat modeling methodologies (STRIDE attack trees MITRE ATT&CK).
  • Strong scripting/development skills: Python Go PowerShell Bash.
  • Experience creating/redesigning offensive security tooling.
  • Proficiency with C2 frameworks: Cobalt Strike Sliver Covenant.
  • Deep knowledge of Kubernetes IAM CI/CD security and modern application architectures.
  • Strong OSINT social engineering and physical security attack capabilities.
Soft Skills

Required Experience:

IC

Sodexo is currently hiring a Offensive Cyber Security Engineer to join their amazing teamAbout the company:Sodexo is a global leader in quality of life services founded in France in 1966. The company operates in over 50 countries offering a wide range of services that include:On-site Services: Cater...
View more view more

About Company

Company Logo

The best tech recruitment agency in Portugal! We find & deliver the best tech talent with a focus on amazing recruitment experiences.

View Profile View Profile