<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="https://www.w3.org/2005/Atom" xmlns:content="https://purl.org/rss/1.0/modules/content/"><channel><title>modzero / Jobs</title><link>https://modzero.com/en/jobs/</link><description>Recent content on modzero</description><language>en</language><lastBuildDate>Thu, 12 Mar 2026 00:00:01 +0100</lastBuildDate><atom:link href="https://modzero.com/en/jobs/index.xml" rel="self" type="application/rss+xml"/><item><title>Senior Cybersecurity Professional - Offensive Security (Red Team)</title><link>https://modzero.com/en/jobs/red-teamer/</link><pubDate>Thu, 12 Mar 2026 00:00:01 +0100</pubDate><guid>https://modzero.com/en/jobs/red-teamer/</guid><description>We are looking for a senior offensive security professional with a focus on red teaming, custom tooling, and deep technical assessments across a broad range of domains — from Web and Cloud to AI and Active Directory environments.</description><content:encoded><![CDATA[<h2 id="about-us">About us</h2>
<p>modzero is a privately held company specializing in deep technical security assessments, with offices in Switzerland and Germany. We focus on complex security challenges and maintain high technical standards in everything we do.
Our team brings together decades of experience across different generations of security professionals. What unites us is a shared curiosity, a strong technical mindset, and the drive to understand how systems fail - and how to secure them.</p>
<h2 id="your-role">Your role</h2>
<ul>
<li>Lead and execute advanced offensive security assessments, including complex red team engagements.</li>
<li>Design and develop custom tooling and frameworks to support sophisticated client engagements.</li>
<li>Drive the ongoing development and improvement of our custom red team agent and supporting capabilities.</li>
<li>Shape and maintain our internal red team infrastructure, including environments such as our Active Directory lab.</li>
<li>Perform in-depth penetration tests and technical security assessments across domains including Web, Mobile, Cloud, AI, and Cryptography.</li>
<li>Contribute to the broader security community through original research, blog posts, vulnerability disclosures, and conference presentations.</li>
</ul>
<h2 id="your-profile">Your profile</h2>
<p>You are an experienced offensive security professional who enjoys tackling complex technical challenges and pushing the boundaries of your expertise. You bring both deep technical knowledge and the curiosity to continuously explore new attack techniques and technologies.</p>
<h3 id="ideally-you-bring">Ideally, you bring</h3>
<ul>
<li>Several years of hands-on experience in offensive security, including conducting red team engagements.</li>
<li>Strong familiarity with command-and-control and post-exploitation frameworks (e.g., Cobalt Strike, Mythic, or similar platforms).</li>
<li>Solid understanding of Active Directory and modern identity and access management environments such as Azure AD / Entra ID.</li>
<li>The ability to develop custom tooling, exploits, or proof-of-concept code (e.g., in Python, PowerShell, or similar languages).</li>
<li>Experience documenting complex technical findings in clear, structured, and reproducible reports.</li>
<li>Strong communication skills in German and English, both written and spoken.</li>
<li>A curious and self-driven mindset with the willingness to explore unfamiliar systems and attack surfaces.</li>
</ul>
<h3 id="nice-to-have">Nice to have</h3>
<ul>
<li>Experience with developing red team tooling or implants, including techniques for evasion and defensive bypass.</li>
<li>Familiarity with modern endpoint detection and response (EDR) systems and methods for detection evasion.</li>
<li>Relevant offensive security certifications (e.g., CRTO, OSED, OSCP, OSEP, or similar).</li>
<li>Experience with physical red teaming techniques (e.g., facility access, hardware implants, or on-site attack scenarios).</li>
<li>Interest in emerging attack surfaces such as AI systems, LLM applications, or agentic workflows.</li>
<li>Experience contributing to security research, vulnerability disclosure, or conference presentations.</li>
</ul>
<h2 id="what-we-offer">What we offer</h2>
<ul>
<li>A permanent full-time position in an independent and privately held security company.</li>
<li>Flexible working arrangements, including remote work and offices in Winterthur and Berlin.</li>
<li>A focused, highly technical environment where you can focus on challenging security work rather than compliance-driven consulting.</li>
<li>A small, experienced team that values collaboration, knowledge sharing, and technical depth.</li>
<li>Opportunities to work on diverse and complex security assessments across a wide range of industries.</li>
<li>Time and support for internal knowledge exchange, research activities, and security publications.</li>
<li>Support for professional development, training, and relevant certifications.</li>
</ul>
<h2 id="if-this-sounds-like-your-kind-of-challenge-wed-love-to-hear-from-you">If this sounds like your kind of challenge, we&rsquo;d love to hear from you!</h2>
<p>Send us a short introduction about yourself, your career path so far, your experiences, including any certificates and references (CV).</p>
<p><span class="dom m2">.orezd</span>

 - <a href="/files/jobs_modzero.com.asc">PGP Key ID: 0xEADF873922416024 ⤓</a></p>
]]></content:encoded></item><item><title>Cybersecurity Professional - Penetration Testing &amp; Security Assessments</title><link>https://modzero.com/en/jobs/penetration-tester/</link><pubDate>Thu, 12 Mar 2026 00:00:00 +0100</pubDate><guid>https://modzero.com/en/jobs/penetration-tester/</guid><description>We are looking for a hands-on penetration tester and security assessor with experience across web, mobile, cloud, and infrastructure environments. You focus on challenging security work rather than compliance-driven consulting.</description><content:encoded><![CDATA[<h2 id="about-us">About us</h2>
<p>modzero is a privately held company specializing in deep technical security assessments, with offices in Switzerland and Germany. We focus on complex security challenges and maintain high technical standards in everything we do.
Our team brings together decades of experience across different generations of security professionals. What unites us is a shared curiosity, a strong technical mindset, and the drive to understand how systems fail - and how to secure them.</p>
<h2 id="your-role">Your role</h2>
<ul>
<li>Conduct in-depth penetration tests and technical security assessments across a variety of environments.</li>
<li>Assess the security of web applications, APIs, mobile applications, cloud environments, and infrastructure systems.</li>
<li>Identify vulnerabilities, misconfigurations, and realistic attack paths in complex systems.</li>
<li>Contribute throughout the entire project lifecycle, from technical preparation and scoping to reporting and presenting findings to clients.</li>
<li>Produce clear, structured, and reproducible reports that help clients understand risks and remediation strategies.</li>
<li>Collaborate closely with colleagues to exchange knowledge and contribute to the development of internal methodologies, tools, and lab environments.</li>
</ul>
<h2 id="your-profile">Your profile</h2>
<p>You are an experienced security professional who enjoys analyzing complex systems and understanding how vulnerabilities can be exploited in realistic scenarios. You combine strong technical skills with a structured and curious approach to security analysis.</p>
<h3 id="ideally-you-bring">Ideally, you bring</h3>
<ul>
<li>Several years of hands-on experience in IT security, including penetration testing or technical security assessments.</li>
<li>Solid knowledge in one or more areas such as web applications, APIs, mobile applications, cloud environments, Active Directory, or network infrastructures.</li>
<li>Experience working with common penetration testing tools and methodologies.</li>
<li>The ability to analyze technical issues precisely and document findings in clear, structured reports.</li>
<li>Experience developing small tools, scripts, or proof-of-concepts (e.g., in Python, PowerShell, or Bash).</li>
<li>Strong communication skills in German and English.</li>
</ul>
<h3 id="nice-to-have">Nice to have</h3>
<ul>
<li>Experience with cloud security, particularly in Microsoft or hybrid environments.</li>
<li>Familiarity with secure code review or deeper technical application analysis.</li>
<li>Interest or experience in areas such as cryptography, AI security, or modern application architectures.</li>
<li>Relevant offensive security certifications (e.g., OSCP, OSEP, CRTO, GPEN, or similar).</li>
<li>Experience interacting directly with clients and presenting technical findings.</li>
<li>Interest in sharing knowledge within the team and continuously developing your technical expertise.</li>
</ul>
<h2 id="what-we-offer">What we offer</h2>
<ul>
<li>A permanent full-time position in an independent and privately held security company.</li>
<li>Flexible working arrangements, including remote work and offices in Winterthur and Berlin.</li>
<li>A focused, highly technical environment where you can focus on challenging security work rather than compliance-driven consulting.</li>
<li>A small, experienced team that values collaboration, knowledge sharing, and technical depth.</li>
<li>Opportunities to work on diverse and complex security assessments across a wide range of industries.</li>
<li>Time and support for internal knowledge exchange, research activities, and security publications.</li>
<li>Support for professional development, training, and relevant certifications.</li>
</ul>
<h2 id="if-this-sounds-like-your-kind-of-challenge-wed-love-to-hear-from-you">If this sounds like your kind of challenge, we&rsquo;d love to hear from you.</h2>
<p>Send us a short introduction about yourself, your career path so far, and your experience, including any certifications and references (CV).</p>
<p><span class="dom m2">.orezd</span>

 - <a href="/files/jobs_modzero.com.asc">PGP Key ID: 0xEADF873922416024 ⤓</a></p>
]]></content:encoded></item></channel></rss>