Zagreb, Croatia (Hybrid)
At Ericsson Nikola Tesla, we don’t just follow technology—we shape it. With nearly 3000 professionals, mostly from STEM fields, we’re a powerhouse of innovation built on over 75 years of experience. As the region’s leading R&D center and a leading exporter of software development services, we blend deep expertise with bold ideas—lighting the way toward a more connected, secure, and intelligent future. Beyond our cutting-edge ICT solutions in the telecom sector, we’re also shaping the future in healthcare, transport, public services, and multimedia. Our innovative technologies make a real difference—enhancing everyday life and delivering meaningful value to communities.
As an Application Security Specialist, you will be responsible for identifying, validating and reducing technical security risks across infrastructure, networks and applications. This role combines vulnerability assessments, targeted penetration testing and application‑level security controls to provide a realistic view of exposure and enforce effective risk reduction. You will work hands‑on with technical data and real systems.
Location: Zagreb
What you’ll be doing:
- Perform continuous vulnerability assessments across infrastructure, network and application layers
- Analyze findings, validate exploitability and eliminate false positives
- Conduct targeted penetration testing to confirm real attack paths and impact
- Identify recurring weakness patterns and systemic security issues
- Validate vulnerabilities through manual testing, traffic analysis and application-level security controls
- Use application protection technologies (e.g. WAFs, API security gateways and runtime controls) to support vulnerability validation and risk reduction
- Assess and prioritize security issues based on exploitability, exposure, business impact and application criticality
- Work closely with infrastructure, network and application teams on remediation
- Verify the effectiveness of security fixes, compensating controls and mitigation measures
- Maintain clear technical documentation, risk assessments and application security reports
- Contribute to the continuous improvement of application security testing, vulnerability management and security governance processes
We are looking for:
- Bachelor’s degree in ICT, Cybersecurity, or a related technical field
- Hands‑on experience in vulnerability assessment and management
-
Good understanding of:
- Operating systems (Linux/UNIX, Windows)
- Networking fundamentals and common attack vectors
- Application architectures and common web application vulnerabilities
-
Experience with:
- Vulnerability scanning tools
- Manual validation and testing techniques
- Application‑level security controls (e.g. WAFs or similar mechanisms)
- Ability to assess exploitability in real enterprise environments
- Strong investigative and analytical mindset
- Ability to clearly communicate technical risks to different audiences
Would be considered a plus:
- Experience performing penetration testing (infrastructure and/or application focused)
- Experience operating or tuning application security controls in production environments
- Familiarity with OWASP Top 10 and modern application attack techniques
- Understanding of security standards and frameworks (ISO 27001, NIST)
- Experience working with remediation tracking and risk registers
- Prior experience in SOC, network security or infrastructure roles
- Relevant certifications (OSCP, CEH, GWAPT or similar)
We offer:
You won’t just work on cutting-edge technology—you’ll be part of a team that values your ideas, supports your growth, and makes sure you enjoy the journey along the way. Here’s what you can look forward to:
- Smooth start – a company laptop, and a mobile phone with great plan.
- Flexibility – hybrid work and flexible hours that fit your lifestyle.
- Career growth – level up with mentoring, scholarships, and continuous learning.
- Performance rewards – annual awards, performance-based bonuses, innovation incentives, and a holiday allowance.
- Commute covered – full reimbursement for public transportation.
- Beyond basic health – regular medical check-ups, supplementary and additional health insurance, and well-being programs.
- Family support – 2000 EUR newborn gift, kindergarten subsidy, and extra days off for family needs.
- Referral reward – earn a bonus for bringing great talent.
- Meal perks – 100 EUR monthly meal allowance and access to our on-site restaurant in Zagreb.
- Life beyond work – join sports, cultural, and community activities.
- Active lifestyle – stay active with a partially subsidized Multisport card and access to the ENT Health Hub, our on-site fitness space with exercise equipment in Zagreb.
- Time to recharge – enjoy compensatory time off during the Christmas holidays.
- And much more.
Please submit your application, including your CV, written in either Croatian or English. Any personal projects (on GitHub or similar) are also welcome.
Croatian citizenship or a work permit for Croatia is mandatory.
Candidates will be evaluated and contacted after passing the initial screening.