Signalling Security Specialist
Summary
Telecom signalling security analyst combining customer-facing delivery with hands-on execution of signalling security audits and operational support for proprietary telecom security products (PTM, PTA, VKB).
About the Role
As a Telecom Signalling Security Analyst, you will combine customer-facing delivery with hands-on technical execution in sensitive telecom environments.
You will:
- Support and operate P1 Security solutions in production contexts (notably PTM and VKB).
- Conduct signalling security audits using proprietary tooling (notably PTA) and deliver rigorous, professional reports and presentations to customers.
This is a profile-focused role: we are looking for someone who can cover both audit delivery and operational support.
Our teams are remote-first, with a preference for candidates who can overlap working hours with Central European Time.
Tasks
Key Responsibilities
-
Customer delivery & communication
-
Act as a technical point of contact for customers: scoping, updates, and delivery.
-
Deliver presentations, training, and debrief sessions.
-
Signalling Security Audits (PTA)
-
Contribute to audit scoping (objectives, perimeter, constraints, timelines, deliverables).
-
Prepare safe execution plans and operational safeguards.
-
Execute signalling security audits using PTA and associated tooling in a controlled manner.
-
Analyze results, validate findings, and assess exploitability/root cause.
-
Draft professional technical reports in English and present findings to customers.
-
PTM operations & IT support (ticket management)
-
Provide IT support for the PTM IDS in the context of customer ticket workflows.
-
Troubleshoot and maintain PTM deployments, including Linux and virtualization layers.
-
Operate and improve day-to-day tooling/scripts used for investigations, maintenance, and deployments.
-
Collaboration & continuous improvement
-
Work closely with Engineering and R&D to improve tooling, detection quality, and operational processes.
-
Maintain clear internal documentation and handover notes.
Requirements
Required Skills & Qualifications
-
Technical writing (English): ability to draft professional, structured technical reports and slide decks
-
Client communication: strong verbal communication skills for presenting and interacting directly with customers.
-
Telecom core & roaming security: solid understanding of telecom core architecture, roaming concepts, and where signalling security fits in real operator environments.
-
Signalling protocols & call flows (hands-on): ability to read and reason about SS7/SIGTRAN, Diameter, LTE/IMS and GTP-C call flows, and connect traces/observations to concrete security findings.
-
Standards-driven audit mindset: familiarity with GSMA Fraud & Security standards (notably FS.11, FS.19, FS.20) and ability to translate requirements into test cases, evidence collection, and actionable remediation.
-
Roaming signalling security: mastery of roaming signalling attacks and call flows.
-
Linux / terminal: comfortable using a terminal and basic Linux commands.
-
Scripting
-
Python: Proficiency in "quick scripting" mode : Ability to develop one-off analysis or testing scripts. No expectations regarding software architecture or code maintainability
-
Bash / shell scripting: ability to write and maintain scripts for operational needs.
-
Virtualization / operations: experience with Linux + ESXi / VM operations (deployment, troubleshooting, maintenance) is a plus
-
Soft skills: customer centered, autonomy, high level of rigor, proactive mindset (ability to propose solutions).
Hiring Process
- Initial contact call (10–20 minutes)
- Call with the hiring manager (30 minutes)
- Capability assessment (role-specific exercise)
- Final interview with C-Level and directors (30 minutes)