Loughton, Essex, South East, United Kingdom Hybrid / WFH Options
Profile 29
on creating a business strategy, gap analysis and implementation, for securing their Azure-based infrastructure, integrating security automation, ensuring PCI DSS compliance, vulnerability and penetrationtesting and incident response. This role will focus on developing and maintaining secure, scalable Azure DevOps pipelines and Infrastructure as Code (IaC) using … Orchestration, Automation, and Response (SOAR) solutions including SOC Prime. Network & Application Security: Manage Web Application Firewalls (WAF) and Intrusion Prevention Systems (IPS). Vulnerability & PenetrationTesting: Review PenetrationTesting, vulnerability assessments, and security scanning to proactively identify and remediate risks. PCI DSS Compliance: Conduct security audits … in Azure cloud security, Microsoft Defender, and Microsoft Sentinel. Proven experience in SOAR technologies for security automation and response orchestration. Hands-on experience with penetrationtesting, vulnerability assessments, and security scanning. Experience implementing and managing WAF, IPS, and DNS security solutions. Extensive experience with Terraform for IaC security More ❯
a drive to succeed in their own fields. ROLE OBJECTIVE We are seeking a highly skilled Cyber Security Consultant with a strong background in penetrationtesting and network security. This role is ideal for a cybersecurity professional with experience in identifying, assessing, and mitigating security risks across various … in evaluating and strengthening our clients' cybersecurity postures by conducting in-depth security assessments, vulnerability analysis, and developing comprehensive security strategies. RESPONSIBILITIES Conduct comprehensive penetration tests, vulnerability assessments, and security audits to identify risks and ensure compliance with industry best practices. Provide expert recommendations and solutions to mitigate identified … respond efficiently and effectively to cyber threats. Travel to various client locations when required (potential international travel) and deliver high quality solutions (e.g. OT testing or other IT services). Collaborate with client teams to develop, document, and implement security policies, standards, and guidelines aligned with industry standards (e.g. More ❯
Penetration Tester Work Across Internal Security, Compliance & Client Engagements A fast-growing security-focused business is looking for a Penetration Tester to join their expanding team. This is a hands-on, cross-functional role where you'll support internal security maturity, contribute to client-facing consultancy projects, and … SOC to simulate attack scenarios and improve detection Run internal vulnerability assessments and pen tests to support compliance and readiness for audits Deliver external penetrationtesting services — from scoping and testing to risk analysis and reporting What We're Looking For: Practical experience in penetrationtestingMore ❯
Milton Keynes, Buckinghamshire, United Kingdom Hybrid / WFH Options
RSM
to join our team. Working alongside our experienced team of specialists, you'll be delivering offensive security services including digital footprint reconnaissance, social engineering, penetrationtesting and vulnerability assessments to high profile clients across all industries. The purpose of this role is to deliver our offensive security services … including digital footprint reconnaissance, social engineering, vulnerability assessments, penetrationtesting, threat modelling, cyber-attack simulation exercises, and more to high profile clients across all industries. You'll benefit from ongoing coaching, career mentoring, and be supported by our career pathway. You will have an opportunity to continue to … for you! We value diverse experiences and perspectives. Here's what we're looking for in our ideal candidate: Experience in offensive security and penetration testing. Demonstrable experience in infrastructure and web application testing; experience in API testing is desirable. Demonstrable experience using common pentesting tools including More ❯
business and technical focused. You will have ideas of how to drive the business forward, and be skilled in the commercial aspects of security testing, above all you will know what clients are looking for when they buy security testing and how to deliver it. Management and delivery … of penetrationtesting services to clients to include the following: Scoping Financial and risk management Delivery of testing and the oversight of testers Review of deliverables (QA) Coaching and developing team members through sharing of experience and knowledge. Performance management of junior staff. Continuous development of self … the broader offerings to enable identification of business opportunities Required Skills and Experience: Passion for Hacking! Clear and demonstrable understanding of red-teaming/penetrationtesting, including NCSC and CREST accredited schemes such as xBEST, STAR/STAR-FS, CHECK. Proven experience of successfully managing and delivering testingMore ❯
Oxford, Oxfordshire, United Kingdom Hybrid / WFH Options
Nomios
Since being acquired by Nomios in late 2024, Dionach by Nomios has continued its dynamic growth as a leading information security company. Specializing in penetrationtesting and information assurance services, we offer an incredible opportunity to be part of an experienced team, build your skills, and grow professionally. … If you require accommodations during the application process, let us know, and we'll work to meet your needs. What You'll Do Lead penetrationtesting teams to conduct penetration tests across various environments, including web applications, APIs, Cloud, and network infrastructure. Lead on-site customer engagements. … years leading network, web, and internal penetrations tests as well as experience in leading customer engagements onsite. Leadership : Experience of supervising and mentoring penetration test teams. Training Experience : Ownership and leadership on developing and providing training courses. Tools : Proficiency with tools like Burpsuite Pro, Nessus, and other industry standards. More ❯
and cyber security best practices within a defence environment. RESPONSIBILITIES Provide technical cyber security consultancy to public and private sector clients. Perform security assessments, penetrationtesting, and vulnerability management to protect critical systems. Design, implement, and maintain security architectures and frameworks aligned with government standards. Lead and support … with the Ministry of Defence. Strong technical expertise in areas such as network security, endpoint security, cloud security, and secure system architecture. Experience in penetrationtesting, vulnerability management, and cyber threat intelligence. Solid knowledge of security technologies such as SIEM, IDS/IPS, firewalls, and endpoint detection and More ❯
with industry accreditations (e.g., ISO 27001, NIST, GDPR), working closely with external auditors and regulatory bodies. Conduct regular risk assessments and vulnerability management, and penetrationtesting to identify and mitigate security risks. Oversee security awareness training programs, ensuring a strong security culture is implemented and embedded throughout the … IAM solutions. Working knowledge of security frameworks: ISO 27001, NIST, CIS, SOC 2, GDPR, GXP, etc. Experience in cloud security Proficient in threat modeling, penetrationtesting, vulnerability management, and security incident response. Demonstrated ability to build security teams and drive cybersecurity initiatives from scratch. Experience in supporting organisations More ❯
Fleet, Hampshire, United Kingdom Hybrid / WFH Options
Stellar Select
a high-security standard Stay current on Information Technology (IT) security trends and news Develop company-wide best practices for IT security Perform internal penetrationtesting if required Help colleagues install security software and understand information security management Be an escalation point for the service desk with resolving … similar role Ideally have previous experience in a helpdesk/IT Service role. Experience in information security or related field Experience with computer network penetrationtesting and techniques Understanding of firewalls, proxies, SIEM, antivirus and IDPS concepts Ability to identify and mitigate network vulnerabilities and explain how to More ❯
Application Security Engineer/Penetration Tester – FinTech – AppSec, Burp Suite, Metasploit Oliver Bernard are currently seeking an Application Security Engineer, with strong PenetrationTesting experience, to join a FinTech client of ours on a contract basis. This hire is part of a security focused transformation where the … engineer will be responsible for identifying and mitigating security vulnerabilities, and risk, within their applications. You will have a focus on building security tools, penetrationtesting, and performing security assessments, whilst updating internal security processes and documentation in the process. To be considered, the following experience is required … 5+ years operating as an App Sec Engineer Extensive experience as a Penetration Tester Strong hands-on experience with tools such as Burp Suite and Metasploit Capable designing Security policies, procedures and best practices Able to investigate and respond to Security related incidents within applications, and work closely with More ❯
Oxford, Oxfordshire, United Kingdom Hybrid / WFH Options
Nomios
Since being acquired by Nomios in late 2024, Dionach by Nomios has continued its dynamic growth as a leading information security company. Specializing in penetrationtesting and information assurance services, we offer an incredible opportunity to be part of an experienced team, build your skills, and grow professionally. … If you require accommodations during the application process, let us know, and we'll work to meet your needs. What You'll Do • Conduct penetration tests across various environments, including web applications, APIs, Cloud, and network infrastructure. • Issue detailed reports outlining findings, risks, and recommendations for remediation. • Translate complex … re Looking For • Certifications: Relevant certifications such as CREST CRT, CREST CCT, OSCP, OSWE, OSCE, or equivalent level. • Experience: At least two years in penetrationtesting, covering network, web, and internal tests and customer engagements. • Tools: Proficiency with tools like Burpsuite Pro, Nessus, and other industry standards. • Communication More ❯
Security Engineer – IAM | DORA | Pen Testing | Payments – Banking London/Glasgow | £750/day (Inside IR35) | Financial Services We're seeking a seasoned Security Engineer with a proven track record in banking environments to join a high-impact team driving resilience and security across mission-critical systems. You’ll … bring deep expertise across Identity & Access Management (IAM) , penetrationtesting , and 3rd party risk , with strong familiarity with DORA compliance and payments/settlement systems . What You’ll Do: Lead and execute advanced penetrationtesting and vulnerability assessments Own IAM strategy and operations , ensuring airtight … in fast-paced, regulated environments with a laser focus on resilience What You’ll Bring: Hands-on banking experience – essential Expertise in IAM, pen testing, third-party risk , and regulatory frameworks (DORA) In-depth knowledge of financial systems, especially payments & settlement platforms Strong communicator, highly analytical, and security-obsessed More ❯
Chatham, Kent, South East, United Kingdom Hybrid / WFH Options
Intertek
Outstanding opportunities have arisen for Penetration Testers to join our ever-growing team. We are seeking individuals who are looking to build knowledge and enhance their skill sets. We are seeking passionate security professionals who are eager to hone your skills and contribute to a world-class security practice. … About You: CREST Registered Tester, or equivalent Cyber Scheme or OSCP qualification Minimum two years' penetrationtesting experience in infrastructure and application disciplines, ideally with exposure to client site testing such as internal pen tests and IT health checks SC clearance and experience of formal NCSC CHECK … testing for central government clients an advantage but not essential Excellent written and verbal communication skills Highly organised with strong attention to detail Flexibility and resilience to meet the demands of the role Ability to demonstrate exceptional customer service A team player, able to work alongside colleagues and clients More ❯
london, south east england, united kingdom Hybrid / WFH Options
Global TechForce
Conducting comprehensive security assessments: This involves evaluating an organization's IT infrastructure, networks, systems, and applications to identify potential weaknesses and vulnerabilities. Performing vulnerability testing and penetrationtesting: Using various tools and techniques (like Nessus, Burp Suite, Metasploit), you'll simulate attacks to uncover exploitable flaws. Developing More ❯
Ashford, Kent, United Kingdom Hybrid / WFH Options
MAF Australia
infrastructure. You'll lead the implementation and management of SIEM systems, Fortinet security tools, and endpoint detection & response (EDR) while conducting vulnerability assessments and penetrationtesting to stay ahead of cyber threats. You'll enhance identity and access management (IAM) by maintaining Active Directory, Entra ID, MFA, and More ❯
Ashford, Kent, United Kingdom Hybrid / WFH Options
UNAVAILABLE
infrastructure. You'll lead the implementation and management of SIEM systems, Fortinet security tools, and endpoint detection & response (EDR) while conducting vulnerability assessments and penetrationtesting to stay ahead of cyber threats. You'll enhance identity and access management (IAM) by maintaining Active Directory, Entra ID, MFA, and More ❯
frameworks, standards, and best practices. Proficiency with security technologies and tools (e.g., SIEM, vulnerability scanners, encryption tools). Hands-on experience with incident response, penetrationtesting, and threat analysis. Familiarity with secure software development practices and DevSecOps principles. Certifications such as CISSP, CISM, CEH, or equivalent are strongly More ❯
to proactively mitigate risks Perform proactive threat hunting, research, and analysis, delivering actionable intelligence to IT and security teams Perform security assessments, audits, and penetrationtesting using industry-standard methodologies and tools. Deliver security awareness training and phishing simulations to internal stakeholders. Ensure compliance with company policies and More ❯
advanced technology and expert human insight, we provide a portfolio of comprehensive services, including 24/7 Managed Security Operations Centre (SOC), Incident Response, PenetrationTesting, Cyber Risk Assessments, CISO/CIO as a service, and Training. Our certified security experts and consultants offer tailored solutions for both More ❯
advanced technology and expert human insight, we provide a portfolio of comprehensive services, including 24/7 Managed Security Operations Centre (SOC), Incident Response, PenetrationTesting, Cyber Risk Assessments, CISO/CIO as a service, and Training. Our certified security experts and consultants offer tailored solutions for both More ❯
advanced technology and expert human insight, we provide a portfolio of comprehensive services, including 24/7 Managed Security Operations Centre (SOC), Incident Response, PenetrationTesting, Cyber Risk Assessments, CISO/CIO as a service, and Training. Our certified security experts and consultants offer tailored solutions for both More ❯
london, south east england, united kingdom Hybrid / WFH Options
Risk Crew
solutions. With a proven track record and strong client relationships, we are trusted by our clients to meet their goals. The role: As a Penetration Tester on Risk Crew, you'll be part of an elite team of security experts who are dedicated to identifying and mitigating security vulnerabilities … wireless, and mobile applications. You will act as a trusted advisor, conducting comprehensive security assessments of our clients' most critical assets. Apart from security testing you will support the team to ensure on-time, on-budget delivery of their assigned tasks, quality of their deliverables and overall customer satisfaction. … This role will require mid-level expertise in multiple domains of security testing, and we expect you to be versatile yet methodical in your testing approach. The location: The duties of this position will be performed mainly at the Risk Crew office, in London SE1 with occasional travelling More ❯
Oversee and maintain security equipment including firewalls, intrusion prevention systems (IPS), web application firewalls (WAF), and antivirus systems. Perform periodic security drills and regular penetrationtesting to ensure the integrity of security systems. Harden security controls across Windows and Linux environments and ensure regular patching and firmware upgrades. … encryption practices during usage, storage, transfer, and disposal. Conduct security evaluations on network and firewall policies and manage application security in both development and testing phases (SAST, DAST). Liaise with internal audit teams and international cybersecurity operations centres to implement security policies and controls. Provide cybersecurity training to More ❯
london, south east england, united kingdom Hybrid / WFH Options
The Curve Group
Cyber Vulnerability Management Analyst Fixed Term Contract (Maternity Cover) 18 months Must have experience working on Tenable.IO, analysed vulnerabilities form penetrationtesting reports, work with vendors to remediate vulnerabilities, has patch management experience, has patched/worked on windows, Linux and Azure cloud systems, analyse and remediate SOC … term goals. The role of Cyber Vulnerability Management Analyst is to deal with all remediation work in relation to identified vulnerabilities inclusive of patch testing and implementation within SLA. The job holder will work very closely with all third-party vendors involved in the remediation process. The job holder More ❯
london, south east england, united kingdom Hybrid / WFH Options
The Curve Group
Cyber Vulnerability Management Analyst Fixed Term Contract (Maternity Cover) 18 months Must have experience working on Tenable.IO, analysed vulnerabilities form penetrationtesting reports, work with vendors to remediate vulnerabilities, has patch management experience, has patched/worked on windows, Linux and Azure cloud systems, analyse and remediate SOC … term goals. The role of Cyber Vulnerability Management Analyst is to deal with all remediation work in relation to identified vulnerabilities inclusive of patch testing and implementation within SLA. The job holder will work very closely with all third-party vendors involved in the remediation process. The job holder More ❯