Careers

Think like a hacker, act like an engineer

We are a senior-only cybersecurity team helping European organizations find and fix what attackers would. If that sounds like your kind of work, we should talk.

Why SoCyber

A small team doing serious work

Since 2018 we have partnered with more than 130 organizations across regulated and security-sensitive sectors. We keep the team senior, the engagements hands-on, and the bureaucracy low.

Senior-only

No juniors on engagements. You own real work, with named clients, from day one.

Real-world, not labs

Live production environments and measurable outcomes, not contrived exercises.

Room to grow

Research time, certifications, conference talks, and a voice on the podcast.

Where we work

The sectors we secure

  • Fintech
  • Banking
  • Retail & e-commerce
  • Government
  • Critical infrastructure
  • Healthcare
Open positions

Roles we are hiring for

  • Governance, Risk and Compliance (GRC) Expert

    • Full-time, permanent
    • Hybrid
    • Sofia, Bulgaria
    • Mid-level to Senior-level

    Lead risk assessments, audit preparation and framework readiness across ISO 27001, NIS2, DORA and PCI DSS, as a primary client contact on GRC engagements.

    View role
  • Business Development Manager

    • Full-time, permanent
    • Hybrid
    • Sofia, Bulgaria
    • Senior-level

    Own the full sales cycle for a senior-only cybersecurity team, from lead generation to close, working alongside the technical and marketing teams.

    View role
  • Penetration Tester

    • Full-time, permanent
    • Hybrid, project-dependent
    • Sofia, Bulgaria
    • Senior-level

    Test the full spectrum of digital and physical infrastructure for leading organizations worldwide, from web and API through to networks and systems.

    View role

Applications go to careers@so-cyber.com.

Don't see your role? We still want to hear from you.

Send us a note about what you do and the kind of work you want. The best people rarely fit a job ad.

Copy / Ask AI