tools (e.g., Veracode, SonarQube, GitHub Advanced Security, IaC scanning, etc.). Secure Cloud Infrastructure, specifically AWS and Azure. Scripting and automation using Python and Bash. Certifications: OSCP or CREST/TIGER Scheme. Strong communication skills and the ability to explain security issues to technical and non-technical stakeholders. Desirable Experience delivering assessments under the CHECK scheme (e.g., as More ❯
Stratford-upon-avon, Warwickshire, United Kingdom Hybrid / WFH Options
Ccl Solutions Group
expects high standards. Please understand this is not an entry level role it is essential that you have: CHECK Team Leader certification (Cyber Scheme Team Leader - INF or CREST CCT-INF). Minimum of 2 years delivering CHECK engagements as a CTL. At least 3 years of hands-on penetration testing experience in enterprise environments. Deep understanding of More ❯
Leeds, Yorkshire, United Kingdom Hybrid / WFH Options
Eames Consulting Group Ltd
Experience delivering reports aligned to PTES, OWASP, NIST, or OSSTMM standards. Exceptional communicator who can translate complex technical issues for diverse audiences. Proven certifications like OSCP, eCPPT, CRTO, Crest CPSA/CRT , or equivalent. Bonus Points Red team, purple team, or adversary emulation experience. Programming/Scripting skills (Python, PowerShell, Bash). Cloud pentesting experience (AWS, Azure, GCP … . Familiarity with threat modelling or risk-based vulnerability assessments. Advanced certifications such as OSCE, OSEP, OSWE, CRTP, Crest CRT/CCT . Join us if you want to make a real impact, tackle diverse challenges, and grow within a dynamic, client-focused security team. Eames Consulting is acting as an Employment Agency in relation to this vacancy. More ❯
planning and executing complex, threat-driven penetration tests. Excellent communication skills for articulating technical findings and threat insights clearly. Strong organizational skills to manage multiple engagements effectively. Current CREST CRT certification or higher is required. Eligibility for SC Clearance is required. Desirable Skills: Experience with Breach Attack Simulation tools and threat-informed vulnerability management. Knowledge of Risk Management … with cloud security reviews (AWS, Azure, GCP) considering cloud-specific threats. Familiarity with ISO 27001 audits and threat-informed compliance practices. Additional certifications such as CISM, CISSP, ECSA, CREST CCT are advantageous. Who we are: We're a global business empowering local teams with exciting work that makes a difference. Our portfolio spans consulting, applications, cloud, and infrastructure More ❯
one of the following certifications: CSTL/CCT, OSCP, OCWE, or relevant equivalent. Excellent communication and technical report writing skills. UK SC clearance. Relevant security certifications (e.g. OSCP, CREST, Cyber Scheme). Right to work in the UK (we are unable to provide VISA sponsorship). Equality Instil is an equal opportunity employer and values diversity at our More ❯
CHECK Senior Infrastructure Penetration Tester PGI is a global consultancy that helps organisations build digital resilience. We deploy our people to implement solutions on behalf of clients or to support them in developing their capabilities. Our Penetration Testers work with More ❯
with tools such as Kali, Burp Suite, Nmap, Nessus, Metasploit Knowledge of cloud platform testing (AWS, Azure, GCP) Strong reporting and client communication skills Relevant qualifications such as CREST CRT, OSCP, OSCE, or CCT Desirable: Familiarity with CI/CD environments and containerisation Programming and scripting knowledge Red Team or bug bounty experience Experience with CobaltStrike, IoT, or More ❯
in this role We would be interested to talk further if you hold any of the following qualifications: - CHECK Team Leader (CTL) - CHECK Team Member (CTM) - CRESTCertified Simulated Attack Specialist (CCSAS) - CRESTCertified Tester (CCT). Sometimes known as CRESTCertified Infrastructure Tester (CCT Inf) or CRESTCertified … Team Leader (QSTL) - Crest Registered Tester (CRT) - Cyber Scheme Team Member (CSTM) - TigerScheme Qualified Security Team Member (QSTM) - CREST Practitioner Security Analyst (CPSA) - Offensive Security Certified Professional (OSCP) #LI-JS2 Together, as owners, let's turn meaningful insights into action. Life at CGI is rooted in ownership, teamwork, respect and belonging. Here, you'll reach More ❯
for mobile platforms. Strong proficiency in Burp Suite, MobSF, Frida, and related mobile security tools. Skilled in scripting and exploit development using Python, Bash, or PowerShell. CHECK and CREST certifications such as OSCP, OSEP, CREST CPSA/CRT, or GIAC GMOB are highly desirable. More ❯
Belfast, Northern Ireland, United Kingdom Hybrid / WFH Options
Ocho
such as BurpSuite Pro, Nmap, Nessus, and Metaspolit. Experienced in using Kali Linux and the associated penetration testing tool suite Nice to Have: Relevant security certifications (e.g. OSCP, CREST, Cyber Scheme.) UK SC clearance Package: £50k-£80k salary D.O.E Bonus Hybrid working (2 days onsite - Belfast office) 25 + 11 stat - annual leave Private Health Enhanced Pension scheme More ❯
London, England, United Kingdom Hybrid / WFH Options
LT Harper - Cyber Security Recruitment
and reporting skills ✔ A hacker mindset and the drive to stay ahead of evolving threats ✔ Clear and demonstrable understanding of penetration testing and red-teaming including NCSC and CREST accredited schemes Why This Role? Tackle engagements you won’t find elsewhere — including national defence and critical infrastructure Join a collaborative, friendly team that supports your development Flexibility to More ❯
and reporting skills ✔ A hacker mindset and the drive to stay ahead of evolving threats ✔ Clear and demonstrable understanding of penetration testing and red-teaming including NCSC and CREST accredited schemes Why This Role? 🔥 Tackle engagements you won’t find elsewhere — including national defence and critical infrastructure 🤝 Join a collaborative, friendly team that supports your development 🌐 Flexibility to More ❯
box testing. Familiar with tools like Kali, Burp Suite, Metasploit, Nmap, Nessus, and Qualys. Knowledge of AWS, Azure, or Google Cloud platform security. At least 2 certifications from: CREST CRT, OSCP, OSCE, or CCT. Desirable Extras: Experience with CI/CD security and container technologies like Docker. Knowledge of Red Team operations, CobaltStrike, bug bounty programs, or IoT More ❯
City of London, London, Grange, United Kingdom Hybrid / WFH Options
Applause IT Recruitment Ltd
box testing. Familiar with tools like Kali, Burp Suite, Metasploit, Nmap, Nessus, and Qualys. Knowledge of AWS, Azure, or Google Cloud platform security. At least 2 certifications from: CREST CRT, OSCP, OSCE, or CCT. Desirable Extras: Experience with CI/CD security and container technologies like Docker. Knowledge of Red Team operations, CobaltStrike, bug bounty programs, or IoT More ❯
plus. Experience in writing technical proposals along with other teams to deliver robust statement of works for client sign off. CERTIFICATIONS: CCNP/CCNA is nice to have. CREST/OSCP is nice to have. Microsoft and/or other cloud providers. ISO 27001 Lead auditor is a nice to have. SKILLS: Working knowledge of cloud security architecture More ❯
Penetration Tester – CREST CRT Certified Location: Remote, UK Job Type: Full-time/Permanent Reporting to: Software Engineering Manager (QA Automation) Join TLScontact – Secure the Future of Global Visa & Immigration Services! At TLScontact , we specialize in delivering seamless and secure visa and immigration solutions for governments and travelers worldwide. Security is at the heart of our digital … . Strong problem-solving skills with high attention to detail. Excellent communication skills to collaborate with technical and non-technical teams. English fluency (B2 level or higher) . CREST Registered certification required . Why TLScontact? Global Impact – Work on security solutions that protect sensitive visa and immigration data. Innovative Environment – Be part of a tech-driven organization committed More ❯
work at home and at client sites across the UK. Required qualifications to be successful in this role - CHECK Team Leader (CTL) - CHECK Team Member (CTM) - CRESTCertified Simulated Attack Specialist (CCSAS) - CRESTCertified Tester (CCT). Sometimes known as CRESTCertified Infrastructure Tester (CCT Inf) or CRESTCertified … Team Leader (QSTL) - Crest Registered Tester (CRT) - Cyber Scheme Team Member (CSTM) - TigerScheme Qualified Security Team Member (QSTM) - CREST Practitioner Security Analyst (CPSA) - Offensive Security Certified Professional (OSCP) #LI-JS2 Together, as owners, let's turn meaningful insights into action. Life at CGI is rooted in ownership, teamwork, respect and belonging. Here, you'll reach More ❯
Milton Keynes, Buckinghamshire, United Kingdom Hybrid / WFH Options
RSM
pentesting tools including Kali Linux, Burpsuite, Nessus and other industry standard tools. Hold or working towards an industry recognised certification including CompTIA PenTest+; CHECK, CREST; Offensive Security Certified Professional (OSCP) etc. Relevant experience within a cyber security role. Familiar with technology trends and cyber threats. What we can offer you: We recognise that our people are our More ❯
London, England, United Kingdom Hybrid / WFH Options
KPMG UK
as Cross Domain Solutions Testing (https://www.ncsc.gov.uk/blog-post/ncsc-cross-domain-industry-pilot-stage-2) and are members of all current NCSC and CREST testing schemes - as a result we conduct interesting and challenging work that isn’t on offer elsewhere. Our team is made up of skilled individuals at different stages in More ❯
as Cross Domain Solutions Testing (https://www.ncsc.gov.uk/blog-post/ncsc-cross-domain-industry-pilot-stage-2) and are members of all current NCSC and CREST testing schemes - as a result we conduct interesting and challenging work that isn’t on offer elsewhere. Our team is made up of skilled individuals at different stages in More ❯
Predatech is a CREST-accredited penetration testing organisation focused on delivering high-quality technical security. We’re based in Manchester and are a cyber security partner to over 250 organisations across the UK, including some of the largest companies in the world. We’re growing fast and are searching for more great people to join us. If you … team. This role is perfect for a penetration tester who is keen to lead testing engagements for a range of interesting clients. Key responsibilities include: Leading and delivering CREST-accredited penetration testing engagements. Providing high-quality reporting and communicating findings to clients. Conducting security research and creating technical content to help inform and educate. Assisting with the continuous … experience covering one or more of the following domains: external network, internal network, web application, mobile application testing, red teaming and social engineering. Holding at least an OSCP, CREST CRT or equivalent certification. Strong technical ability and attention to detail. Excellent written and verbal communication skills. Good organisation and time management ability. In addition, the following would be More ❯
if every box isn’t ticked, applications are welcome, as related opportunities may also be available: Possesses industry-recognised certifications such as CTM, CSTM, CTL, CSTL, OSCP, or CREST/Cyber Scheme qualifications. Brings specialist knowledge in one or more areas of penetration testing – this could include mobile app security, cloud environments, operational technology (OT), or specific sectors … internal training initiatives, enhancing infrastructure and tooling, or helping plan and execute client engagements. Keen to deliver and evolve high-quality ethical hacking training as part of a CREST-accredited programme. Thrives in problem-solving environments, with excellent analytical skills and a curiosity-driven mindset. Enjoys working collaboratively with diverse stakeholders, bringing adaptability and energy to a fast More ❯
if every box isn’t ticked, applications are welcome, as related opportunities may also be available: Possesses industry-recognised certifications such as CTM, CSTM, CTL, CSTL, OSCP, or CREST/Cyber Scheme qualifications. Brings specialist knowledge in one or more areas of penetration testing – this could include mobile app security, cloud environments, operational technology (OT), or specific sectors … internal training initiatives, enhancing infrastructure and tooling, or helping plan and execute client engagements. Keen to deliver and evolve high-quality ethical hacking training as part of a CREST-accredited programme. Thrives in problem-solving environments, with excellent analytical skills and a curiosity-driven mindset. Enjoys working collaboratively with diverse stakeholders, bringing adaptability and energy to a fast More ❯
framework; • Knowledge of how modern solutions are designed and deployed across different platforms; • Ability to program or script in your preferred language. • Relevant security qualifications (such as OSCP, CREST CRT, OSWE, CCT APP); • Experience leading penetration testing projects and acting as a lead technical point of contact. NICE TO HAVE • Knowledge of assessing cloud and/or hybrid … years of industry experience, we help to protect our customers from current and emerging security threats. We provide a full spectrum of cyber security services including CREST-certified penetration testing, 24/7 threat monitoring, compliance support and security training to help organisations protect against today's evolving threat landscape. Please note that as part of the More ❯
if you also have: Python scripting skills for tooling or automation Experience or awareness of Operational Technology (OT) environments Familiarity with internal exploitation tools and techniques Certifications like CREST CTM/CTL/CSTM, Cyber Scheme Practitioner, or OSCP (lapsed certs accepted if skills are current) 🧠 What to expect: A small, high-trust team (2–3 testers) operating More ❯