Think like a hacker, act like an engineer
We are a senior-only cybersecurity team helping European organizations find and fix what attackers would. If that sounds like your kind of work, we should talk.
A small team doing serious work
Since 2018 we have partnered with more than 130 organizations across regulated and security-sensitive sectors. We keep the team senior, the engagements hands-on, and the bureaucracy low.
Senior-only
No juniors on engagements. You own real work, with named clients, from day one.
Real-world, not labs
Live production environments and measurable outcomes, not contrived exercises.
Room to grow
Research time, certifications, conference talks, and a voice on the podcast.
The sectors we secure
- Fintech
- Banking
- Retail & e-commerce
- Government
- Critical infrastructure
- Healthcare
Roles we are hiring for
- View role
Governance, Risk and Compliance (GRC) Expert
- Full-time, permanent
- Hybrid
- Sofia, Bulgaria
- Mid-level to Senior-level
Lead risk assessments, audit preparation and framework readiness across ISO 27001, NIS2, DORA and PCI DSS, as a primary client contact on GRC engagements.
- View role
Business Development Manager
- Full-time, permanent
- Hybrid
- Sofia, Bulgaria
- Senior-level
Own the full sales cycle for a senior-only cybersecurity team, from lead generation to close, working alongside the technical and marketing teams.
- View role
Penetration Tester
- Full-time, permanent
- Hybrid, project-dependent
- Sofia, Bulgaria
- Senior-level
Test the full spectrum of digital and physical infrastructure for leading organizations worldwide, from web and API through to networks and systems.
Applications go to careers@so-cyber.com.
Don't see your role? We still want to hear from you.
Send us a note about what you do and the kind of work you want. The best people rarely fit a job ad.