London, South East, England, United Kingdom Hybrid / WFH Options
Circle Recruitment
Principal Offensive Security Consultant £100k Location: Hybrid (2 days per month in London) Salary: £80,000 - £100,000 + benefits Are you a Senior Offensive Security Consultant or Principal Penetration Tester ready to take the next step into Red Teaming and Adversarial Simulation This is your opportunity to join an agile, rapidly growing UK cyber security consultancy where you … to research and tooling that truly make an impact. About the Role As a Senior/Principal Offensive Consultant , you'll lead complex technical engagements that go beyond standard penetrationtesting - focusing on advanced exploitative infrastructure testing , Active Directory compromise , and assumed breach assessments . You'll work directly with clients to scope, plan, and deliver high … impact projects, while helping to expand the organisation's Red Team and adversarial simulation services . Key Responsibilities: Lead and deliver high-level infrastructure and Active Directory penetrationtesting engagements. Conduct advanced exploitative testing , lateral movement analysis, and privilege escalation within real-world environments. Support presales activity - crafting scopes, proposals, and technical solutions aligned with client objectives. More ❯
Japan. Our team of hands-on experts helps a blue chip client base of global OEMs and suppliers secure next-generation vehicles and mobility solutions through cybersecurity-by-design, testing and validation, competitive benchmarking and cutting-edge research and development. You will join at an exciting phase in our journey, with an opportunity to play a key role in … and experience An exciting opportunity to apply your technical cybersecurity expertise on cutting-edge projects with leading automotive clients. In this hands-on engineering role, you will apply advanced penetrationtesting, benchmarking, PoC development and security engineering techniques to evaluate and strengthen the resilience of next-generation automotive technologies. You will conduct in-depth assessments of diverse systems … a key role in shaping the security of future mobility solutions worldwide. The Role The position is predominantly lab-based, with responsibilities including: Planning and executing a variety of penetrationtesting projects on vehicle components and associated telematics infrastructure including whole vehicles. Performing technical benchmarking of components, systems and vehicles. Developing cybersecurity proof-of-concepts. Providing cybersecurity recommendations More ❯
Japan. Our team of hands-on experts helps a blue chip client base of global OEMs and suppliers secure next-generation vehicles and mobility solutions through cybersecurity-by-design, testing and validation, competitive benchmarking and cutting-edge research and development. You will join at an exciting phase in our journey, with an opportunity to play a key role in … and experience An exciting opportunity to apply your technical cybersecurity expertise on cutting-edge projects with leading automotive clients. In this hands-on engineering role, you will apply advanced penetrationtesting, benchmarking, PoC development and security engineering techniques to evaluate and strengthen the resilience of next-generation automotive technologies. You will conduct in-depth assessments of diverse systems … a key role in shaping the security of future mobility solutions worldwide. The Role The position is predominantly lab-based, with responsibilities including: Planning and executing a variety of penetrationtesting projects on vehicle components and associated telematics infrastructure including whole vehicles. Performing technical benchmarking of components, systems and vehicles. Developing cybersecurity proof-of-concepts. Providing cybersecurity recommendations More ❯
London, South East, England, United Kingdom Hybrid / WFH Options
Context Recruitment Limited
Penetration Tester - Leading Managed Services Provider Remote based. Salary: Up to 60k, depending on experience. A leading Managed Services Provider are seeking to recruit a technically skilled Cyber Security/Penetration Tester. This is a fantastic opportunity to join a well-established organisation delivering high-quality security services to enterprise clients across the UK. As a Penetration Tester, you will be responsible for conducting manual penetrationtesting across both application and infrastructure layers. You will contribute to secure build reviews, advise on secure design practices, and provide technical insight to both internal teams and clients. Key Responsibilities Perform manual penetrationtesting of web applications and infrastructure Conduct security build reviews across common … and concise technical reports for a range of stakeholders Collaborate with internal teams and clients to support remediation and secure development Required Skills and Experience Proven experience in manual penetrationtesting (application and infrastructure) Strong understanding of TCP/IP and core networking principles Extensive experience testing web-based applications Familiarity with secure configuration and build reviews More ❯
SR2 | Socially Responsible Recruitment | Certified B Corporation™
Network Security Engineer Network Security/PenetrationTesting/CREST/CSTL/API Testing/Config Reviews/Infrastructure/Outside IR35/West London We’re seeking an experienced Network Security Engineer to support a major multi-phase security testing project. You’ll conduct penetration tests, configuration reviews, and infrastructure assessments, contributing to … a high-profile programme of work extending into next year. Required Strong background in network and infrastructure security. Experience performing penetrationtesting, configuration reviews, and API testing. Knowledge of “classic” CHECK-style testing methodologies. CREST, CSTL or CTL certification (Team Member or Team Leader level). Ability to deliver high-quality reports and communicate technical findings clearly. … Hands-on experience across infrastructure, networking, and external testing. Desirable Experience working within CHECK or other accredited testing schemes. Strong understanding of secure network architecture and hardening practices. Previous consultancy or project-based testing experience. Contract Details Outside IR35 West London (on-site presence required for majority of testing) 0-hours contract – project-based work, phase by More ❯
SR2 | Socially Responsible Recruitment | Certified B Corporation™
Network Security Engineer Network Security/PenetrationTesting/CREST/CSTL/API Testing/Config Reviews/Infrastructure/Outside IR35/West London We’re seeking an experienced Network Security Engineer to support a major multi-phase security testing project. You’ll conduct penetration tests, configuration reviews, and infrastructure assessments, contributing to … a high-profile programme of work extending into next year. Required Strong background in network and infrastructure security. Experience performing penetrationtesting, configuration reviews, and API testing. Knowledge of “classic” CHECK-style testing methodologies. CREST, CSTL or CTL certification (Team Member or Team Leader level). Ability to deliver high-quality reports and communicate technical findings clearly. … Hands-on experience across infrastructure, networking, and external testing. Desirable Experience working within CHECK or other accredited testing schemes. Strong understanding of secure network architecture and hardening practices. Previous consultancy or project-based testing experience. Contract Details Outside IR35 West London (on-site presence required for majority of testing) 0-hours contract – project-based work, phase by More ❯
analyse the global threat landscape to identify emerging risks, adversary tactics, and trends relevant to the organization's business and technology environment Collaborate with Red Team, Blue Team, and PenetrationTesting teams to integrate threat intelligence into testing scenarios using Breach & Attack Simulation (BAS) platforms and enhance defensive strategies Act as a liaison between threat intelligence and … intelligence and offensive security operations Ad hoc requests from your line manager Cyber Security Analyst Ideal Candidate: At least 5 years of experience in threat intelligence, cybersecurity operations, or penetrationtesting Ability to collaborate across technical teams, including Red/Blue teams and SOC Familiarity with threat intelligence platforms (TIPs), SIEMs, and threat data enrichment tools Experience using … Breach and Attack Simulation (BAS) platforms Strong understanding of adversary tactics, techniques, and procedures (TTPs), MITRE ATT&CK framework, and threat modelling Hands-on experience with penetrationtesting tools such as Metasploit Framework, Burp Suite, Kali Linux, and Pentera Experience producing threat reports and briefings Business level fluency in English Japanese, Cantonese, Mandarin language would be advantageous due More ❯
SR2 | Socially Responsible Recruitment | Certified B Corporation™
Infrastructure Penetration Tester | CHECK | CREST | CSTL/CTL | Networking | Config Reviews | API Testing | Contract Pen Testing | Infrastructure | External & Internal Networks | SR2 is partnered with a leading security consultancy on a significant multi-phase testing programme, and we’re looking for an experienced Infrastructure Penetration Tester to join the team. This role will focus on delivering … hands-on penetrationtesting across external and internal networks, reviewing system configurations, and identifying vulnerabilities within critical infrastructure. You’ll work alongside a small team of experienced testers to support a major client undergoing large-scale change, ensuring their environment is secure and compliant. Key Responsibilities: Conduct comprehensive external and internal infrastructure penetration tests , starting with perimeter … systems and moving into internal networks Perform configuration reviews across servers, firewalls, routers, and network devices Execute API security testing to assess authentication, data access, and integration risks Deliver “old-school” CHECK-style network and infrastructure testing in line with industry standards Produce detailed technical reports outlining vulnerabilities, exploitation paths, and remediation guidance Collaborate with the project lead More ❯
SR2 | Socially Responsible Recruitment | Certified B Corporation™
Infrastructure Penetration Tester | CHECK | CREST | CSTL/CTL | Networking | Config Reviews | API Testing | Contract Pen Testing | Infrastructure | External & Internal Networks | SR2 is partnered with a leading security consultancy on a significant multi-phase testing programme, and we’re looking for an experienced Infrastructure Penetration Tester to join the team. This role will focus on delivering … hands-on penetrationtesting across external and internal networks, reviewing system configurations, and identifying vulnerabilities within critical infrastructure. You’ll work alongside a small team of experienced testers to support a major client undergoing large-scale change, ensuring their environment is secure and compliant. Key Responsibilities: Conduct comprehensive external and internal infrastructure penetration tests , starting with perimeter … systems and moving into internal networks Perform configuration reviews across servers, firewalls, routers, and network devices Execute API security testing to assess authentication, data access, and integration risks Deliver “old-school” CHECK-style network and infrastructure testing in line with industry standards Produce detailed technical reports outlining vulnerabilities, exploitation paths, and remediation guidance Collaborate with the project lead More ❯
london (city of london), south east england, united kingdom
WillHire
environment . Key Responsibilities Assist in monitoring and analyzing network traffic, logs, and system alerts to identify potential threats Perform vulnerability assessments and help implement remediation strategies Participate in penetrationtesting and report exploitable weakens Assist with hardening of systems, identity & access management, and secure configuration of cloud assets Research emerging cyber threats, malware trends, and document recommended … Science, IT, or related fields Strong understanding of networking basics, OSI model, TCP/IP, firewalls, VPNs, IDS/IPS Familiarity with Linux & Windows system administration commands Knowledge of penetrationtesting tools (Nmap, Wireshark, Burp Suite, Metasploit, etc.) Fundamentals of cryptography, authentication protocols & OWASP Top 10 Critical thinking, attention to detail, and a proactive learning mindset Nice to More ❯
London, South East, England, United Kingdom Hybrid / WFH Options
Digital Waffle
Job Title: Senior Penetration Tester (Infrastructure Focus) Location: London (Hybrid/Flexible) Salary: Up to £80,000 + Bonus + Benefits Employment Type: Permanent Overview We are seeking an experienced Senior Penetration Tester with a strong background in infrastructure security testing to join a growing offensive security team. The ideal candidate will have deep technical expertise, the … role in strengthening the organisation's security posture by conducting infrastructure-focused assessments, mentoring junior testers, and influencing remediation strategies. Key Responsibilities Deliver internal and external network and infrastructure penetration tests , including on-premises and cloud-hosted environments Perform testing of Windows & Linux infrastructure, Active Directory, network services, and security appliances Conduct vulnerability exploitation , privilege escalation, and lateral … debriefs Contribute to tooling, methodology enhancement, and internal research initiatives Stay up-to-date with emerging vulnerabilities, exploits, and attacker techniques Required Skills & Experience 3-5+ years' professional penetrationtesting/offensive security experience Strong understanding of enterprise infrastructure, AD security, networking, and protocols Proficiency with tools such as Nmap, Nessus, Metasploit, BloodHound, Burp Suite, Kali/ More ❯
London, South East, England, United Kingdom Hybrid / WFH Options
Client Server Ltd
well as carrying out manual reviews to discover any issues with customer infrastructure and web applications. You'll be pro-active and will have the opportunity within Red Team testing to try anything and everything to outmanoeuvre the defenders and gain access to customer networks. WFH Policy: There's a remote interview/onboarding process and the ability to … top tier world university - Computer Science, Engineering, Physics or Mathematics; MSc or PhD advantageous You're OSCP or CRT certified You have commercial experience with Offensive Security, Red Team testing or Penetrationtesting You have a keen interest in Cyber Security and understanding of key concepts and protocols You can code with any OO programming language (e.g. More ❯
Introduction Wipro is looking for a Penetration tester to join our QET team. As the Penetration tester, you will be responsible for coordinating and executing end-to-end penetrationtesting (Pentest) projects, working closely with a dynamic team to deliver high-quality security assessments and documentation. About Wipro Wipro is an exciting organization to work for. … salary, a generous benefits package, training and development opportunities, up to 6% employer contributory pension, and a quarterly bonus. Your Responsibilities Coordinate with the team to scope and execute penetration tests end-to-end, producing clear documentation. Apply working knowledge of Jira, ServiceNow (SNOW), and Confluence to manage and track security projects. Operate effectively in a regulatory compliance environment. … Conduct API testing and work with network technologies and cloud solutions. Ensure all activities align with security clearance requirements. Mandatory Skills Firewalls technologies, Web Application Protection (WAP), and OWASP standards. Regulatory frameworks such as CAF, NIST, and NCSC. Cloud platforms, Linux OS, OpenShift, and Kubernetes. Must be SC cleared or able to obtain SC clearance. Desirable Skills API testingMore ❯
Introduction Wipro is looking for a Penetration tester to join our QET team. As the Penetration tester, you will be responsible for coordinating and executing end-to-end penetrationtesting (Pentest) projects, working closely with a dynamic team to deliver high-quality security assessments and documentation. About Wipro Wipro is an exciting organization to work for. … salary, a generous benefits package, training and development opportunities, up to 6% employer contributory pension, and a quarterly bonus. Your Responsibilities Coordinate with the team to scope and execute penetration tests end-to-end, producing clear documentation. Apply working knowledge of Jira, ServiceNow (SNOW), and Confluence to manage and track security projects. Operate effectively in a regulatory compliance environment. … Conduct API testing and work with network technologies and cloud solutions. Ensure all activities align with security clearance requirements. Mandatory Skills Firewalls technologies, Web Application Protection (WAP), and OWASP standards. Regulatory frameworks such as CAF, NIST, and NCSC. Cloud platforms, Linux OS, OpenShift, and Kubernetes. Must be SC cleared or able to obtain SC clearance. Desirable Skills API testingMore ❯
development of cyber security strategies and roadmaps Technical proficiency in a wide range of cyber risk management services, including cyber threat, risk and control assessments, secure software development practices, penetrationtesting, vulnerability assessments, among others Sound knowledge of applicable laws, compliance regulations, and industry standards as it relates to privacy, security, and compliance Sound knowledge of applicable frameworks More ❯
development of cyber security strategies and roadmaps Technical proficiency in a wide range of cyber risk management services, including cyber threat, risk and control assessments, secure software development practices, penetrationtesting, vulnerability assessments, among others Sound knowledge of applicable laws, compliance regulations, and industry standards as it relates to privacy, security, and compliance Sound knowledge of applicable frameworks More ❯
Strong knowledge across core domains such as cloud, infrastructure, networks, and secure software development Expertise in enterprise security operations, risk management, and governance Excellent stakeholder communication skills Experience with penetrationtesting, application security testing, and red teaming Security certifications (e.g. CISSP, CISM, GIAC) are highly valued Desirable: Knowledge of DevSecOps and securing CI/CD pipelines Familiarity More ❯
Strong knowledge across core domains such as cloud, infrastructure, networks, and secure software development Expertise in enterprise security operations, risk management, and governance Excellent stakeholder communication skills Experience with penetrationtesting, application security testing, and red teaming Security certifications (e.g. CISSP, CISM, GIAC) are highly valued Desirable: Knowledge of DevSecOps and securing CI/CD pipelines Familiarity More ❯
london (city of london), south east england, united kingdom
Elmax Search
Strong knowledge across core domains such as cloud, infrastructure, networks, and secure software development Expertise in enterprise security operations, risk management, and governance Excellent stakeholder communication skills Experience with penetrationtesting, application security testing, and red teaming Security certifications (e.g. CISSP, CISM, GIAC) are highly valued Desirable: Knowledge of DevSecOps and securing CI/CD pipelines Familiarity More ❯
Lead or support incident response activities: investigation, containment, eradication, recovery, and reporting. Conduct root cause analysis and implement security hardening improvements. Vulnerability & Risk Management Run regular vulnerability scans and penetrationtesting activities; track remediation of findings. Evaluate risks and recommend security enhancements or compensating controls. Maintain asset inventories and ensure patching and configuration baselines are followed. Security Governance More ❯
Oversee advanced DLP and insider risk management to protect critical IP. Partner with IT and Operations to ensure resilience in the event of cyber incidents or infrastructure outages. Coordinate penetrationtesting, red team exercises, and remediation activities. Partner with IT and DevOps teams to embed secure-by-design principles into systems, applications, and IaC. Oversight of the Incident More ❯
oxford district, south east england, united kingdom
Vertex Search
Oversee advanced DLP and insider risk management to protect critical IP. Partner with IT and Operations to ensure resilience in the event of cyber incidents or infrastructure outages. Coordinate penetrationtesting, red team exercises, and remediation activities. Partner with IT and DevOps teams to embed secure-by-design principles into systems, applications, and IaC. Oversight of the Incident More ❯
secure, innovative solutions across industries. We foster collaboration, inclusion, and continuous growth, with networks supporting diversity, equity, and belonging. What You'll do: Lead and manage threat intelligence-led penetration tests across applications, infrastructure, cloud (AWS/Azure/O365), APIs, and OT Develop advanced test plans, identify critical assets, and deliver detailed, actionable reports for technical and business … team capabilities Contribute to research on emerging threats and attack techniques to strengthen proactive security What You'll Bring: CREST CRT (or higher) certification - essential 5+ years' experience in penetrationtesting with strong understanding of adversarial tactics and threat intelligence Expertise across network, cryptography, vulnerabilities, and attack vectors Strong communication and reporting skills Experience with Breach Attack Simulation More ❯