About the job
Join Our Mission
At Mollie, we believe that businesses deserve a seamless financial experience. Since our inception in 2004, we have dedicated ourselves to simplifying payments and money management for every business across Europe.
With over 250,000 companies relying on our comprehensive platform to handle payments, manage finances, and grow according to their needs, we focus on delivering a user-friendly, scalable solution designed with real businesses in mind.
As one of the fastest-growing fintech companies in Europe, our team of over 900 Mollies across more than 12 locations is the driving force behind our success. Our culture prioritizes speed, purpose, and a genuine commitment to our customers. Whether you're solving complex problems, developing innovative products, or exploring the potential of AI to enhance productivity, you'll have the freedom to innovate and the trust to execute.
If you're eager to advance your career, shape the future of fintech, and contribute to a dynamic, high-achieving team, we invite you to apply.
Your Role
As an Offensive Security Engineer, you will play a crucial role in safeguarding Mollie’s platform and the businesses that rely on it. By adopting an attacker’s mindset, you will work collaboratively with our teams to strengthen security.
Your responsibilities will include proactively identifying and validating vulnerabilities across our products and infrastructure. You will work closely with Product Engineering, Security Engineering, and Security Operations to ensure that security issues are addressed from discovery through to resolution and verification, facilitating rapid deployment without compromising security, resilience, or customer trust.
Your Deliverables
Effective Penetration Testing: Design and execute security assessments on web applications, APIs, cloud services, and internal systems, focusing on realistic attack vectors and business consequences.
Validation and Prioritization of Vulnerabilities: Verify exploitability, minimize false positives, and assist teams in understanding the severity and remediation strategies.
Conducting Attack Simulations: Collaborate with SecOps and Security Engineering to facilitate exercises such as detection validation, incident simulations, and phishing scenarios to enhance preparedness.
Enhancing Offensive Methodologies and Tools: Refine playbooks, testing methodologies, and automation processes to scale offensive security practices across various teams and technologies.
Promoting Security through Collaboration: Work closely with engineering teams to provide guidance, support fixes, retest vulnerabilities, and elevate secure development practices.

