of offensive security. This role is office-based with occasional travel to client site. Key Responsibilities Lead internal and external penetration tests, including web, mobile, infrastructure, wireless, cloud, and social engineering. Execute red team, purple team, and breach simulation exercises tailored to client maturity and objectives. Deliver detailed and actionable penetration testing reports Collaborate with clients to understand their More ❯
At least 1 year of professional penetration testing experience covering one or more of the following domains: external network, internal network, web application, mobile application testing, red teaming and social engineering. Holding at least an OSCP, CREST CRT or equivalent certification. Strong technical ability and attention to detail. Excellent written and verbal communication skills. Good organisation and time management More ❯
and follow responsible disclosure; • Coach and mentor Graduate and Junior penetration testers where appropriate; • Support the Marketing team with the development of content (including, but not limited to: Blogs, Social Media Posts, and Articles) to help raise the profile of Bulletproof's Penetration Testing and other services; • Support the QA process to ensure high quality client reports are delivered … assessing cloud and/or hybrid environments (AWS and Azure); • Knowledge of performing source code reviews in a language of your preference and expertise; • Knowledge in preparing and launching socialengineering campaigns; • Involvement in previous research projects, tool development and training delivery. PERSONAL ATTRIBUTES • Excellent spoken and written communication skills with strong attention-to-detail and accuracy; • A More ❯
high-quality technical reports and confidently present findings to clients. Support remediation efforts and provide client-facing consultancy. Help develop internal testing methodologies and contribute to Red Team and socialengineering operations. Support junior team members and engage in knowledge sharing. Key Skills & Experience: 3-5 years' penetration testing experience. Strong understanding of OWASP, SSL/TLS, SSH More ❯
City of London, London, Grange, United Kingdom Hybrid / WFH Options
Applause IT Recruitment Ltd
high-quality technical reports and confidently present findings to clients. Support remediation efforts and provide client-facing consultancy. Help develop internal testing methodologies and contribute to Red Team and socialengineering operations. Support junior team members and engage in knowledge sharing. Key Skills & Experience: 3-5 years' penetration testing experience. Strong understanding of OWASP, SSL/TLS, SSH More ❯
City Of London, England, United Kingdom Hybrid / WFH Options
Hamilton Barnes 🌳
penetration testing. Create detailed technical reports and deliver test findings directly to clients. Provide remediation advice and post-assessment consultancy. Contribute to internal testing methodologies and Red Team/socialengineering activities. Mentor junior team members and support collaborative delivery of projects. Occasionally support the creation of marketing materials such as research papers and articles. Skills/Must … and IoT security. Exposure to CI/CD security, Docker/container security, and AI/LLM testing. Hands-on experience with Red Teaming tools (e.g., Cobalt Strike) and social engineering. Familiarity with bug bounty platforms and vulnerability disclosure best practices. Benefits: Competitive salary with regular performance reviews Annual training and personal development plan Access to conferences and professional More ❯
identify and document vulnerabilities across network, application, and physical layers. Prepare concise reports for both technical and non-technical stakeholders. Red Team Challenges: Participate in red team simulations, encompassing socialengineering attacks and advanced penetration tactics. Post-initial access, perform internal testing to escalate privileges and gain high-level access. Document methodologies and outcomes, providing actionable insights for … in leveraging Impacket for tasks like network relays, password spraying, and gaining elevated privileges are crucial for penetrating Windows environments. We're Seeking: Qualifications: A degree in Computer Science, Engineering, Mathematics, or Physics. Experience Level: Open to graduates/juniors and above. The more experience in red teaming, the better. Skills: Exceptional problem-solving abilities, with a flair for More ❯
and APIs (custom logic flaws, IDOR, authentication issues, etc.) Infrastructure and cloud security reviews across AWS, Azure, and internal/external networks Threat modelling, red team-style assessments, and socialengineering for select clients Mobile application testing and internal network assessments (as part of broader project scopes) End-to-end client engagement from scoping and testing through to More ❯
London, England, United Kingdom Hybrid / WFH Options
ESK Recruitment LTD
and APIs (custom logic flaws, IDOR, authentication issues, etc.) Infrastructure and cloud security reviews across AWS, Azure, and internal/external networks Threat modelling, red team-style assessments, and socialengineering for select clients Mobile application testing and internal network assessments (as part of broader project scopes) End-to-end client engagement from scoping and testing through to More ❯
in-house UK Security Operations Centre staffed 24/7 by our highly trained penetration testers, security analysts and compliance experts. Bulletproof's most popular services include: Penetration testing SocialEngineering Red Team Proactive Monitoring Training SMB/SME cyber security products Compliance Services Bulletproof is the dedicated cybersecurity arm of the ServerChoice Group, an organisation with over More ❯
with proposal writing and scoping. You will have the opportunity to work on a wide range of services: web and mobile application tests, internal tests, infrastructure tests, but also, social engineering. Ensure all testing activities comply with CHECK standards. What We're Looking For Experience : Significant experience in penetration testing, including network, web application and internal penetration testing as More ❯
Oxford, Oxfordshire, United Kingdom Hybrid / WFH Options
Nomios
with proposal writing and scoping. You will have the opportunity to work on a wide range of services: web and mobile application tests, internal tests, infrastructure tests, but also, social engineering. Ensure all testing activities comply with CHECK standards. What We're Looking For Experience : Significant experience in penetration testing, including network, web application and internal penetration testing as More ❯
Milton Keynes, Buckinghamshire, United Kingdom Hybrid / WFH Options
RSM
are seeking an enthusiastic Cyber Security Consultant to join our team. Working alongside our experienced team of specialists, you'll be delivering offensive security services including digital footprint reconnaissance, socialengineering, penetration testing and vulnerability assessments to high profile clients across all industries. The purpose of this role is to deliver our offensive security services including digital footprint … reconnaissance, socialengineering, vulnerability assessments, penetration testing, threat modelling, cyber-attack simulation exercises, and more to high profile clients across all industries. You'll benefit from ongoing coaching, career mentoring, and be supported by our career pathway. You will have an opportunity to continue to develop market leading skills across our different capabilities and advance your professional development. More ❯
At least 1 year of professional penetration testing experience covering one or more of the following domains: external network, internal network, web application, mobile application testing, red teaming and social engineering. Holding at least an OSCP, CREST CRT or equivalent certification. Strong technical ability and attention to detail. Excellent written and verbal communication skills. Good organisation and time management More ❯
security testing. Conduct manual reviews to identify issues within customer infrastructure and web applications. Perform various types of security testing, including network penetration, web application, mobile security assessments, and social engineering. Participate in red team engagements, employing creative strategies to outsmart defenders. Explore various approaches to gain unauthorized access to customer networks during red team exercises. Perform security assessments More ❯
client relationships We are seeking an enthusiastic Cyber Security Consultantto join our team. Working alongside ourexperienced team of specialists, you'll be delivering offensive securityservices including digital footprint reconnaissance, socialengineering,penetration testing and vulnerability assessments and more to high profileclients across all industries. The purpose of this role is to deliver our offensivesecurity services including digital footprint reconnaissance, socialengineering, vulnerability assessments, penetration testing, threat modelling,cyber-attack simulation exercises, and more to high profile clients across allindustries. The purpose of this role is to deliver our Cyber Security services More ❯
or statistical models to increase signal quality and reduce noise. Incident Management & Root Cause Analysis Lead real-time incident response for payments-related issues and fraud escalations. Work with engineering, information security, and compliance teams to investigate root causes and implement permanent fixes. Document incidents, develop playbooks, and participate in post-mortems to strengthen operational resilience. Data-Driven Risk … Detection Use SQL and Python to investigate transaction flows, analyze alert logs, and uncover underlying fraud patterns. Collaborate with data and engineering teams to iterate on fraud models and contribute to detection logic and alert effectiveness. Provide reporting and insights to stakeholders on fraud patterns, attack vectors, and system gaps. Internal Collaboration & Stakeholder Communication Act as the payments monitoring … SME for internal teams, including Customer Relations, Compliance, Engineering and Product. Coordinate with third parties like processors, acquirers and card schemes to resolve incidents and implement scheme-required controls. Support go-to-market operational readiness for new geographies (e.g., US launch) by defining fraud detection standards and monitoring capabilities. WHAT YOU'LL BRING 3+ years in payments monitoring, fraud More ❯
will be tasked with the following: Conduct comprehensive investigations into potential intellectual property (IP) infringement using advanced open-source intelligence (OSINT) techniques and methodologies. Utilize various online resources, including social media platforms, websites, forums, and dark web monitoring tools, to gather relevant information. Leverage effective search strategies to uncover hidden infrastructure and key individuals or organizations engaged in counterfeiting … Investigator will thrive if they have the following qualifications and experience: Minimum of 3 years of experience conducting high-stakes OSINT investigations. Demonstrated expertise in advanced OSINT techniques, including socialengineering, infiltration, data mining, automation, and dark web analysis. Proficiency in network traffic analysis and understanding of network protocols. Experience in reading and analyzing code to understand the More ❯
and maintain governance structure of red team operations and train, and mentor other members of the Red Team. Develop and execute penetration testing plans, including network, web application, and socialengineering assessments. Collaborate with SOC team and selected vendor to plan and execute annual purple team testing. Identify security risks and vulnerabilities through simulated attacks, and helping the More ❯
with blockchain tech. Founded in 2019, Halborn is an elite cyber security company focused on solving complex adversarial problems unique to the cryptocurrency and fintech industries. From breaches and socialengineering to stolen private keys and economic hacks, Halborn solves it. Our clientele are the exclusive blockchain companies as well as new startups with high growth trajectories. Our … security experience. Experience in WASM/BPF is a plus. Understanding of system administration and network administration. Experience using common penetration testing tools (BurpSuite, Metasploit, etc.). Practical reverse engineering and fuzzing experience is a plus. Proficient in at least one scripting language. Proficiency with common server and workstation operating systems. Proficient in testing modern web application languages and More ❯
with blockchain tech. Founded in 2019, Halborn is an elite cyber security company focused on solving complex adversarial problems unique to the cryptocurrency and fintech industries. From breaches and socialengineering to stolen private keys and economic hacks, Halborn solves it. Our clientele are the exclusive blockchain companies as well as new startups with high growth trajectories. Our More ❯
Understand technology trends, cyber threats, and industry issues. Excellent written and oral communication, report writing and presentation skills. Experience of executing security testing techniques such as threat modelling, reconnaissance, socialengineering, enumeration, attack path mapping, exploitation, and clean up from a variety of adversarial perspectives (white/grey/black box testing). What we can offer you More ❯
Monitor and assess the effectiveness of AML controls related to mule activity, recommending enhancements where necessary. Stay informed on emerging money laundering typologies, especially those exploiting digital platforms and social engineering. Support audits and regulatory reviews by providing documentation and insights into AML investigations. Manage the annual leave and sickness calendar on Bamboo, coordinating with other Fraud Team Leaders More ❯
models can impact people and society. Core research topics include the use of AI for assisting with criminal activities, undermining trust in information, jeopardising psychological wellbeing, or for malicious social engineering. We are interested in both immediate and medium-term risks. In this role, you'll join a strongly collaborative technical research team led by the Societal Impacts Research … other researchers to design and run studies that answer important questions about the effect AI will have on society. For example, can AI effectively change people's political and social views? Research Scientists/Engineers have scope to use a range of research methodologies and drive the strategy of the team. This is a multidisciplinary team and we look … for people with a diversity of backgrounds. We are especially excited about candidates with experience of research in one or more of these areas: Computational social science Machine learning (research engineer/research scientist) Data Science, especially including Natural Language Processing Advanced statistical modelling and experimental design. Required Skills and Experience We select based on skills and experience regarding More ❯
The Crime and Social Destabilisation (Societal Impacts) Team: AISI is launching a new Crime and Social Destabilisation workstream, focussed on assessing and mitigating societal-level harms caused by advanced AI systems, particularly in the areas of criminal activity, including mis/disinformation, radicalisation, socialengineering, and fraud. The team will be responsible for advancing the state … novel team, you will build a team to evaluate and mitigate some of the pressing societal-level risks that Frontier AI systems may exacerbate, including radicalization, misinformation, fraud, and social engineering. You will need to: Build and lead a talent-dense, multidisciplinary, and mission-driven team; Develop and deliver a strategy for building a cutting-edge crime and socialMore ❯