tools (e.g., Veracode, SonarQube, GitHub Advanced Security, IaC scanning, etc.). Secure Cloud Infrastructure, specifically AWS and Azure. Scripting and automation using Python and Bash. Certifications: OSCP or CREST/TIGER Scheme. Strong communication skills and the ability to explain security issues to technical and non-technical stakeholders. Desirable Experience delivering assessments under the CHECK scheme (e.g., as More ❯
Stratford-upon-avon, Warwickshire, United Kingdom Hybrid / WFH Options
Ccl Solutions Group
expects high standards. Please understand this is not an entry level role it is essential that you have: CHECK Team Leader certification (Cyber Scheme Team Leader - INF or CREST CCT-INF). Minimum of 2 years delivering CHECK engagements as a CTL. At least 3 years of hands-on penetration testing experience in enterprise environments. Deep understanding of More ❯
Newcastle Upon Tyne, Tyne and Wear, North East, United Kingdom Hybrid / WFH Options
GoDefend Limited
GoDefend is seeking a Penetration Tester with over three years of hands-on experience in offensive security. Youll join a growing, fast-paced cyber security team where your technical expertise and strong client-facing skills will directly contribute to our More ❯
planning and executing complex, threat-driven penetration tests. Excellent communication skills for articulating technical findings and threat insights clearly. Strong organizational skills to manage multiple engagements effectively. Current CREST CRT certification or higher is required. Eligibility for SC Clearance is required. Desirable Skills: Experience with Breach Attack Simulation tools and threat-informed vulnerability management. Knowledge of Risk Management … with cloud security reviews (AWS, Azure, GCP) considering cloud-specific threats. Familiarity with ISO 27001 audits and threat-informed compliance practices. Additional certifications such as CISM, CISSP, ECSA, CREST CCT are advantageous. Who we are: We're a global business empowering local teams with exciting work that makes a difference. Our portfolio spans consulting, applications, cloud, and infrastructure More ❯
box testing. Familiar with tools like Kali, Burp Suite, Metasploit, Nmap, Nessus, and Qualys. Knowledge of AWS, Azure, or Google Cloud platform security. At least 2 certifications from: CREST CRT, OSCP, OSCE, or CCT. Desirable Extras: Experience with CI/CD security and container technologies like Docker. Knowledge of Red Team operations, CobaltStrike, bug bounty programs, or IoT More ❯
City of London, London, Grange, United Kingdom Hybrid / WFH Options
Applause IT Recruitment Ltd
box testing. Familiar with tools like Kali, Burp Suite, Metasploit, Nmap, Nessus, and Qualys. Knowledge of AWS, Azure, or Google Cloud platform security. At least 2 certifications from: CREST CRT, OSCP, OSCE, or CCT. Desirable Extras: Experience with CI/CD security and container technologies like Docker. Knowledge of Red Team operations, CobaltStrike, bug bounty programs, or IoT More ❯
knowledge across the team. Act as a trusted technical advisor to clients. What You’ll Bring Experience: 5+ years in penetration testing. Senior-level certifications (e.g. CRESTCertified Tester or Cyber Scheme Team Leader). Strong client-facing experience. Able to obtain UK security clearance. Skills & Knowledge: Skilled in tools like Nessus, Nmap, BurpSuite, Metasploit. Proficient in More ❯
CHECK Senior Infrastructure Penetration Tester PGI is a global consultancy that helps organisations build digital resilience. We deploy our people to implement solutions on behalf of clients or to support them in developing their capabilities. Our Penetration Testers work with More ❯
Predatech is a CREST-accredited penetration testing organisation focused on delivering high-quality technical security. We’re based in Manchester and are a cyber security partner to over 250 organisations across the UK, including some of the largest companies in the world. We’re growing fast and are searching for more great people to join us. If you … team. This role is perfect for a penetration tester who is keen to lead testing engagements for a range of interesting clients. Key responsibilities include: Leading and delivering CREST-accredited penetration testing engagements. Providing high-quality reporting and communicating findings to clients. Conducting security research and creating technical content to help inform and educate. Assisting with the continuous … experience covering one or more of the following domains: external network, internal network, web application, mobile application testing, red teaming and social engineering. Holding at least an OSCP, CREST CRT or equivalent certification. Strong technical ability and attention to detail. Excellent written and verbal communication skills. Good organisation and time management ability. In addition, the following would be More ❯
others and provided expert-level guidance. You may have worked as a CHECK Team Leader, led adversary simulation teams, or assessed others for recognised exam bodies such as CREST or OSCP. This is a contract position working remotely, with occasional meetings or workshops as required. The role is a 12 month initial contract (inside IR35) & can be mostly … in operational environments. A background in technical QA - reviewing, validating, and improving the output of other testers. Experience as an assessor or contributor to recognised exam bodies (e.g. CREST, OSCP, GIAC) is highly desirable. Got your attention? If you believe that you have the skills and experience for the role - then please get in touch. We also offer More ❯
Cheltenham, Gloucestershire, South West, United Kingdom Hybrid / WFH Options
Yolk Recruitment
others and provided expert-level guidance. You may have worked as a CHECK Team Leader, led adversary simulation teams, or assessed others for recognised exam bodies such as CREST or OSCP. This is a contract position working remotely, with occasional meetings or workshops as required. The role is a 12 month initial contract (inside IR35) & can be mostly … in operational environments. A background in technical QA - reviewing, validating, and improving the output of other testers. Experience as an assessor or contributor to recognised exam bodies (e.g. CREST, OSCP, GIAC) is highly desirable. Got your attention? If you believe that you have the skills and experience for the role - then please get in touch. We also offer More ❯
Milton Keynes, Buckinghamshire, United Kingdom Hybrid / WFH Options
RSM
pentesting tools including Kali Linux, Burpsuite, Nessus and other industry standard tools. Hold or working towards an industry recognised certification including CompTIA PenTest+; CHECK, CREST; Offensive Security Certified Professional (OSCP) etc. Relevant experience within a cyber security role. Familiar with technology trends and cyber threats. What we can offer you: We recognise that our people are our More ❯
London, England, United Kingdom Hybrid / WFH Options
CGI
in this role We would be interested to talk further if you hold any of the following qualifications: - CHECK Team Leader (CTL) - CHECK Team Member (CTM) - CRESTCertified Simulated Attack Specialist (CCSAS) - CRESTCertified Tester (CCT). Sometimes known as CRESTCertified Infrastructure Tester (CCT Inf) or CRESTCertified … Team Leader (QSTL) - Crest Registered Tester (CRT) - Cyber Scheme Team Member (CSTM) - TigerScheme Qualified Security Team Member (QSTM) - CREST Practitioner Security Analyst (CPSA) - Offensive Security Certified Professional (OSCP) #LI-JS2 Together, as owners, let’s turn meaningful insights into action. Life at CGI is rooted in ownership, teamwork, respect and belonging. Here, you’ll reach More ❯
as Cross Domain Solutions Testing (https://www.ncsc.gov.uk/blog-post/ncsc-cross-domain-industry-pilot-stage-2) and are members of all current NCSC and CREST testing schemes - as a result we conduct interesting and challenging work that isn’t on offer elsewhere. Our team is made up of skilled individuals at different stages in More ❯
South Croydon, London, United Kingdom Hybrid / WFH Options
LA International Computer Consultants Ltd
and vulnerabilities (incl. threat vectors) and current IT and security best practice approaches. Passion for security testing and continual development within this area. Related Industry accreditations such as CREST, Offensive Security, SANS/GIAC or equivalent recognised qualifications with relevant IT Security experience Experience at managing and/or conducting a wide range of testing in different environments More ❯
Penetration Tester – CREST CRT Certification ESSENTIAL! Location: Remote, UK Job Type: 3 Month Contract Join TLScontact – Secure the Future of Global Visa & Immigration Services! At TLScontact , we specialize in delivering seamless and secure visa and immigration solutions for governments and travelers worldwide. Security is at the heart of our digital transformation, and we are looking for a Security … . Strong problem-solving skills with high attention to detail. Excellent communication skills to collaborate with technical and non-technical teams. English fluency (B2 level or higher) . CREST Registered certification required . Why TLScontact? Global Impact – Work on security solutions that protect sensitive visa and immigration data. Innovative Environment – Be part of a tech-driven organization committed More ❯
London, England, United Kingdom Hybrid / WFH Options
ESK Recruitment LTD
the business grows What We’re Looking For: 2+ years of experience as a Penetration Tester Strong skills in manual web application testing OSCP or equivalent certifications (e.g. CREST, CRT) Comfortable communicating directly with clients and founders Based in the UK What’s On Offer: Competitive salary Remote-first working model The opportunity to shape a high-quality More ❯
Are you looking for an exciting new opportunity? Join a trusted security and compliance partner offering comprehensive services including GRC consulting, CREST-accredited penetration testing, and an industry-leading vulnerability management service. As the number one Global Service Partner of Vanta, the company has a proven track record of helping hundreds of businesses from tech startups to global … Deep understanding of adversary simulation, lateral movement, and offensive tooling Capable of producing clear, actionable reports for both technical and executive stakeholders Desirable skills: Certifications such as OSCP, CREST, CHECK, or Cyber Scheme (CCT highly preferred) Experience with Cobalt Strike, PowerShell Empire, and custom tooling Familiarity with MITRE ATT&CK and threat simulation frameworks Salary: Up to More ❯
if every box isn’t ticked, applications are welcome, as related opportunities may also be available: Possesses industry-recognised certifications such as CTM, CSTM, CTL, CSTL, OSCP, or CREST/Cyber Scheme qualifications. Brings specialist knowledge in one or more areas of penetration testing – this could include mobile app security, cloud environments, operational technology (OT), or specific sectors … internal training initiatives, enhancing infrastructure and tooling, or helping plan and execute client engagements. Keen to deliver and evolve high-quality ethical hacking training as part of a CREST-accredited programme. Thrives in problem-solving environments, with excellent analytical skills and a curiosity-driven mindset. Enjoys working collaboratively with diverse stakeholders, bringing adaptability and energy to a fast More ❯
if every box isn’t ticked, applications are welcome, as related opportunities may also be available: Possesses industry-recognised certifications such as CTM, CSTM, CTL, CSTL, OSCP, or CREST/Cyber Scheme qualifications. Brings specialist knowledge in one or more areas of penetration testing – this could include mobile app security, cloud environments, operational technology (OT), or specific sectors … internal training initiatives, enhancing infrastructure and tooling, or helping plan and execute client engagements. Keen to deliver and evolve high-quality ethical hacking training as part of a CREST-accredited programme. Thrives in problem-solving environments, with excellent analytical skills and a curiosity-driven mindset. Enjoys working collaboratively with diverse stakeholders, bringing adaptability and energy to a fast More ❯
London, England, United Kingdom Hybrid / WFH Options
Anson McCade
if you also have: Python scripting skills for tooling or automation Experience or awareness of Operational Technology (OT) environments Familiarity with internal exploitation tools and techniques Certifications like CREST CTM/CTL/CSTM, Cyber Scheme Practitioner, or OSCP (lapsed certs accepted if skills are current) What to expect: A small, high-trust team (2–3 testers) operating More ❯
if you also have: Python scripting skills for tooling or automation Experience or awareness of Operational Technology (OT) environments Familiarity with internal exploitation tools and techniques Certifications like CREST CTM/CTL/CSTM, Cyber Scheme Practitioner, or OSCP (lapsed certs accepted if skills are current) 🧠 What to expect: A small, high-trust team (2–3 testers) operating More ❯
Reading, Berkshire, United Kingdom Hybrid / WFH Options
FSP Retail Team
multi award-winning workplace, recognized by Best Companies as Best Company To Work For in the UK, Tech, and the South East in 2023. We are ISO27001 and ISO9001 certified by UKAS, a CREST approved penetration testing and SOC company, and hold IASME Cyber Essentials Certification and Cyber Essentials Plus certification. Learn more about our awards here More ❯
East London, London, United Kingdom Hybrid / WFH Options
Anson Mccade
or the ability to go through SC clearance Any SecOps related certification (including security vendor certificates) A understanding and demonstration of penetration testing and red-tanning (NCSC and CREST accredited schemes) Strong technical background in computing, networks and programming Excellent communication skills A genuine interest to work for multi-national clients in the security field. Further desirables, but More ❯
as Cross Domain Solutions Testing (https://www.ncsc.gov.uk/blog-post/ncsc-cross-domain-industry-pilot-stage-2) and are members of all current NCSC and CREST testing schemes - as a result we conduct interesting and challenging work that isn’t on offer elsewhere. Our team is made up of skilled individuals at different stages in … contributing to proposals and participating in client presentations. What will you need to do it? Clear and demonstrable understanding of penetration testing and red-teaming including NCSC and CREST accredited schemes. Proven experience of successfully managing and delivering testing Proven experience working within the UK cyber security industry Demonstrable understanding and practical application of information security principles Strong More ❯