Colorado Springs, Colorado, United States Hybrid / WFH Options
Dark Wolf Solutions
Dark Wolf Solutions is actively seeking an experienced Product and Hardware Security Penetration Tester to join our innovative team. This individual will play a critical role in assessing and enhancing the security of various products, including hardware, software, and embedded systems. This role demands a deep understanding of penetrationtesting methodologies and advanced exploit development, focusing on … identifying and mitigating vulnerabilities across a wide range of technologies. As a Senior Product and Hardware Security Penetration Tester, you will have the chance to work on cutting-edge technologies and contribute to the enhancement of security across a wide range of products. If you possess a strong background in penetrationtesting and a passion for cybersecurity … position is set to be supported in a hybrid work environment out of Colorado Springs, CO. Key responsibilities include, but are not limited to: Duties/Responsibilities: Conducting comprehensive penetrationtesting on hardware, software, and network components. Performing advanced vulnerability scanning and assessments on all components. Performing a Cybersecurity evaluation of the product under test to identify vulnerabilities More ❯
City of London, London, United Kingdom Hybrid / WFH Options
Deerfoot Recruitment Solutions
PenetrationTesting Team Lead Technology Banking AVP Level Hybrid (London (Moorgate) 3 days per week) Salary & Package TBC Opportunity for a skilled Cyber Security Professional with penetrationtesting and red team expertise to join a global financial services organisation. This is a hands-on role where you'll simulate advanced cyber attacks, test defences, and influence … enterprise-level security strategy. Key Responsibilities Lead red team operations , penetrationtesting, and ethical hacking engagements Plan and deliver cyber attack simulations, vulnerability assessments, and social engineering tests Work with SOC teams on purple team exercises to enhance detection and response Produce executive reporting on cyber threats, risks, and remediation progress Collaborate with security and infrastructure teams to … strengthen overall cyber resilience Skills & Experience 3+ years in penetrationtesting/ethical hacking/red teaming Strong understanding of cyber threats, APTs, threat actor tactics, and exploit development Familiar with SIEM, defensive security monitoring, incident response, and detection engineering Deep knowledge of network, web application, and enterprise architecture security Excellent communication skills to present cyber risk insights More ❯
Keyworth, Nottinghamshire, United Kingdom Hybrid / WFH Options
UK Research and Innovation (UKRI)
intelligence in a dynamic, fast-paced security operational and strategic role in an organisation at the heart of research and innovation in the UK. Leading the Red Team of penetration testers your broad remit is to identify real-world risks to diverse technical landscapes, uncovering security vulnerabilities, actively exploiting findings, assessing additional impacts through post-exploitation, and providing proactive … advice to teams on the most effective remediation strategies. The role encompasses the full scope and delivery of penetrationtesting, including Black Box network assessments, insider threat evaluations, credentialed application exploitation, and rigorous testing of human and physical security controls across the UKRI estate. In addition to these offensive security responsibilities, the specialist manages the external penetrationtesting call-off contract to ensure that UKRI receives high-quality, tailored assessments both internally and externally, supporting a continuous programme of security improvement. Security: As a minimum, due to the nature of this role, candidates must be eligible for clearance in line with UK National vetting guidelines and willing to undertake the process.?Please indicate eligibility in More ❯
Nottingham, Nottinghamshire, East Midlands, United Kingdom Hybrid / WFH Options
UKRI
intelligence in a dynamic, fast-paced security operational and strategic role in an organisation at the heart of research and innovation in the UK. Leading the Red Team of penetration testers your broad remit is toidentify real-world risks to diverse technical landscapes, uncovering security vulnerabilities, actively exploiting findings, assessing additional impacts through post-exploitation, and providing proactive advice … to teams on the most effective remediation strategies. The role encompasses the full scope and delivery of penetrationtesting, including black box network assessments, insider threat evaluations, credentialed application exploitation, and rigorous testing of human and physical security controls across the UKRI estate. In addition to these offensive security responsibilities, the specialist manages the external penetrationtesting call-off contract to ensure that UKRI receives high-quality, tailored assessments both internally and externally, supporting a continuous programme of security improvement. Security: As a minimum, due to the nature of this role, candidates must be eligible for clearance in line with UK National vetting guidelines and willing to undertake the process.?Please indicate eligibility in More ❯
Durham, County Durham, North East, United Kingdom Hybrid / WFH Options
Punk Security
a unique opportunity to build a highly sought-after, niche skill set at the intersection of these disciplines. Progression within this role includes the opportunity for upskilling into WebApp penetrationtesting with support and training available to support this progression. This is a remote position, with the very occasional requirement to travel to our North Yorkshire offices, industry … events and potentially client sites. Key Responsibilities Develop, maintain, and enhance security-focused applications and tooling. Collaborate with engineers to troubleshoot, debug, and write clean, scalable code. Implement development, testing and automation tools, as well as IT infrastructure. Continuously improve CI/CD pipelines and DevSecOps processes. Work across multiple projects, including client-facing engagements. Provide innovative and robust … solutions to complex, cutting-edge challenges. Support the Web Application PenetrationTesting Team on code assisted web application tests. Who we are looking for Technical Essential skills Strong development skills inat least one programming language(e.g. Python, JavaScript, Java, C#, Go) Solid understanding ofcloud security principles and architecture(e.g. AWS well-architected framework) Knowledge of modernprogramming frameworks(e.g. More ❯
Bethesda, Maryland, United States Hybrid / WFH Options
Noblis
the charge in detecting and neutralizing cyberattacks, creating robust defenses, and exploring the latest trends and vulnerabilities across diverse technologies. Additionally, they'll safeguard development environments, perform high-impact penetrationtesting, and conduct in-depth malware research to keep systems one step ahead of potential threats. Job Responsibilities: Develop or implement a variety of software and hardware solutions … software to enable architecting application security. Conduct software evaluations for known risks and/or static and dynamic code analysis, assess web application vulnerabilities, track code releases, accomplish automated penetrationtesting and fuzzing, malware research and reverse engineering, and deliver recommended mitigations for or patching of known vulnerabilities. Required Qualifications Bachelors of Science degree and 8+ years of … and have an active Top Secret Clearance with SCI and CI Polygraph. Knowledge of offensive and defensive security tactics in various environments (e.g., cloud, IoT, mobile). Experience with penetrationtesting automation and continuous security monitoring. Familiarity with network traffic analysis. Ability to perform red teaming exercises to simulate real-world adversarial tactics and techniques. Ability to write More ❯
Leeds, West Yorkshire, Yorkshire, United Kingdom Hybrid / WFH Options
4SQUARE RECRUITMENT LTD
Senior Penetration Tester Location: Fully Remote (UK-Based) Salary Range: £50,000 - £75,000 (dependent on experience) Position: Permanent, Full-Time My client is a dynamic and growing cybersecurity consultancy dedicated to providing top-tier security services to a diverse range of clients. They believe in empowering the team with the flexibility of remote work while tackling challenging and … engaging projects that make a real difference to their clients' security posture. The Role We are seeking a highly skilled and motivated Senior Penetration Tester to join our remote team. You will be responsible for leading and executing complex penetration tests against a variety of systems, networks, and applications. The ideal candidate is not just a proficient tester … but a critical thinker who can articulate risks clearly and provide pragmatic remediation advice to clients. Key Responsibilities Plan, lead, and execute sophisticated penetration tests across infrastructure, web applications, APIs, and internal networks. Conduct advanced Red Team exercises to simulate real-world adversary attacks and test organisational defences. Produce high-quality, clear, and concise reports for both technical and More ❯
Penetration Tester - Leading Managed Services Provider Remote based. Salary: Up to 60k, depending on experience. A leading Managed Services Provider are seeking to recruit a technically skilled Cyber Security/Penetration Tester. This is a fantastic opportunity to join a well-established organisation delivering high-quality security services to enterprise clients across the UK. As a Penetration Tester, you will be responsible for conducting manual penetrationtesting across both application and infrastructure layers. You will contribute to secure build reviews, advise on secure design practices, and provide technical insight to both internal teams and clients. Key Responsibilities Perform manual penetrationtesting of web applications and infrastructure Conduct security build reviews across common … and concise technical reports for a range of stakeholders Collaborate with internal teams and clients to support remediation and secure development Required Skills and Experience Proven experience in manual penetrationtesting (application and infrastructure) Strong understanding of TCP/IP and core networking principles Extensive experience testing web-based applications Familiarity with secure configuration and build reviews More ❯
London, South East, England, United Kingdom Hybrid / WFH Options
Context Recruitment Limited
Penetration Tester - Leading Managed Services Provider Remote based. Salary: Up to 60k, depending on experience. A leading Managed Services Provider are seeking to recruit a technically skilled Cyber Security/Penetration Tester. This is a fantastic opportunity to join a well-established organisation delivering high-quality security services to enterprise clients across the UK. As a Penetration Tester, you will be responsible for conducting manual penetrationtesting across both application and infrastructure layers. You will contribute to secure build reviews, advise on secure design practices, and provide technical insight to both internal teams and clients. Key Responsibilities Perform manual penetrationtesting of web applications and infrastructure Conduct security build reviews across common … and concise technical reports for a range of stakeholders Collaborate with internal teams and clients to support remediation and secure development Required Skills and Experience Proven experience in manual penetrationtesting (application and infrastructure) Strong understanding of TCP/IP and core networking principles Extensive experience testing web-based applications Familiarity with secure configuration and build reviews More ❯
Fort Belvoir, Virginia, United States Hybrid / WFH Options
Gridiron IT Solutions
Senior Red Cyber Operator Location: Fort Belvoir Work Type: Onsite Remote Work: NO Job Description Gridiron IT is seeking a Senior Red Cyber Operator. Responsibilities PenetrationTesting Red Team Assessments Offensive cyber operations Will direct the activities of mid-level operators Antivirus evasion, EDR evasion Qualifications Active TS/SCI Clearance 10+ years Offensive Cyber experience, DoD Cyber … This assessment-specific leadership position guides the technical planning, execution, and reporting of a specific assigned assessment 3+ years' experience in conducting red team assessments, offensive cyber operations, or penetrationtesting and be prepared to direct the activities of mid-level operators. Special requirements: Professional Certification(s) required for this position are as follows: o Must hold an … Ops- Red Team 1 ROPS, Red Team Journeyman Course (RTJC), Certified Red Team Operator (CRTO) certification, Offensive Security, Certified Professional (OSCP), Global Information Assurance Certification, (GIAC) Exploit Researcher & Advanced Penetration Tester (GXPN), GIAC Penetration Tester (GPEN), and/or GIAC Web Application Penetration Tester (GWAP). Expertise in antivirus evasion, EDR evasion, and/or penetrationMore ❯
strategy aligned with business and regulatory requirements. Liaise with the Eviden COO and Eviden Centre of Excellence to ensure alignment with group-wide security standards and initiatives. Vulnerability Management, PenetrationTesting & PSIRT Lead vulnerability assessments and coordinate penetrationtesting activities with external vendors and internal teams. Track and manage remediation efforts across infrastructure, applications, and cloud … updates to leadership on risk posture and mitigation plans. Requirements Proven experience in a senior security role, ideally within a technology or SaaS environment. Strong understanding of vulnerability management, penetrationtesting, SecOps, and cloud security. Experience establishing or contributing to PSIRT processes. Experience working with cross-functional teams including engineering, operations, and client services. Excellent communication and stakeholder More ❯
City of London, London, United Kingdom Hybrid / WFH Options
Ipsotek, an Eviden business
strategy aligned with business and regulatory requirements. Liaise with the Eviden COO and Eviden Centre of Excellence to ensure alignment with group-wide security standards and initiatives. Vulnerability Management, PenetrationTesting & PSIRT Lead vulnerability assessments and coordinate penetrationtesting activities with external vendors and internal teams. Track and manage remediation efforts across infrastructure, applications, and cloud … updates to leadership on risk posture and mitigation plans. Requirements Proven experience in a senior security role, ideally within a technology or SaaS environment. Strong understanding of vulnerability management, penetrationtesting, SecOps, and cloud security. Experience establishing or contributing to PSIRT processes. Experience working with cross-functional teams including engineering, operations, and client services. Excellent communication and stakeholder More ❯
Location: Belfast Workplace: Hybrid The opportunity: The Security Vulnerability and PenetrationTesting Engineer will oversee and serve as a technical resource for all assessment activities related to the security posture of existing and proposed firm systems, platforms, and processes to protect and continually improve the confidentiality, integrity, and availability of information systems per the firm's business objectives … regulatory requirements, and strategic goals. Main responsibilities: Perform security penetrationtesting of the Firm's systems, platforms, and applications Serve as a Subject Matter Expert (SME) for the VAPT function Serve as the system owner for common VAPT toolsets, platforms, and processes Provide technical assessment reports that are easily understandable by the target audience and include practical and … is required Commanding knowledge of VAPT concepts and best practices, including the requirements for WhiteHat/ethical hacking Expert understanding of the difference between a vulnerability assessment and a penetration test in the context of assessment scope, objectives, and deliverables Extensive experience with common automated VAPT tools such as Nessus, Appscan, Burp Suite, Nipper, and Trustwave Expert in common More ❯
Manchester, England, United Kingdom Hybrid / WFH Options
Awaze
own and mature our vulnerability and threat intelligence lifecycle. This role will focus on proactively identifying, assessing, and reducing security risks across our environment. You will lead vulnerability scanning, penetrationtesting, bug bounty findings, patch management facilitation, and KPI reporting — ensuring our overall vulnerability posture is well understood and continuously improved. As part of a small, hands-on … calls with IT/application teams, track progress, and drive accountability. Monitor and report on key vulnerability metrics and KPIs, presenting regular updates to security leadership. Manage third-party penetrationtesting activities, track findings, and ensure timely remediation. Oversee bug bounty program operations, triage reports, and coordinate with development teams for remediation. Continuously assess external attack surface and … and consistency of vulnerability processes. 🏡 What we’re looking for Experience in vulnerability management, threat intelligence, or related information security roles. Strong knowledge of vulnerability scanning, patch management, and penetrationtesting processes. Experience with security tools such as BurpSuite Enterprise, Wiz, CrowdStrike, BitSight, or equivalent platforms. Familiarity with vulnerability frameworks such as CVSS, OWASP Top 10, MITRE ATT More ❯
warrington, cheshire, north west england, united kingdom Hybrid / WFH Options
Awaze
own and mature our vulnerability and threat intelligence lifecycle. This role will focus on proactively identifying, assessing, and reducing security risks across our environment. You will lead vulnerability scanning, penetrationtesting, bug bounty findings, patch management facilitation, and KPI reporting — ensuring our overall vulnerability posture is well understood and continuously improved. As part of a small, hands-on … calls with IT/application teams, track progress, and drive accountability. Monitor and report on key vulnerability metrics and KPIs, presenting regular updates to security leadership. Manage third-party penetrationtesting activities, track findings, and ensure timely remediation. Oversee bug bounty program operations, triage reports, and coordinate with development teams for remediation. Continuously assess external attack surface and … and consistency of vulnerability processes. 🏡 What we’re looking for Experience in vulnerability management, threat intelligence, or related information security roles. Strong knowledge of vulnerability scanning, patch management, and penetrationtesting processes. Experience with security tools such as BurpSuite Enterprise, Wiz, CrowdStrike, BitSight, or equivalent platforms. Familiarity with vulnerability frameworks such as CVSS, OWASP Top 10, MITRE ATT More ❯
bolton, greater manchester, north west england, united kingdom Hybrid / WFH Options
Awaze
own and mature our vulnerability and threat intelligence lifecycle. This role will focus on proactively identifying, assessing, and reducing security risks across our environment. You will lead vulnerability scanning, penetrationtesting, bug bounty findings, patch management facilitation, and KPI reporting — ensuring our overall vulnerability posture is well understood and continuously improved. As part of a small, hands-on … calls with IT/application teams, track progress, and drive accountability. Monitor and report on key vulnerability metrics and KPIs, presenting regular updates to security leadership. Manage third-party penetrationtesting activities, track findings, and ensure timely remediation. Oversee bug bounty program operations, triage reports, and coordinate with development teams for remediation. Continuously assess external attack surface and … and consistency of vulnerability processes. 🏡 What we’re looking for Experience in vulnerability management, threat intelligence, or related information security roles. Strong knowledge of vulnerability scanning, patch management, and penetrationtesting processes. Experience with security tools such as BurpSuite Enterprise, Wiz, CrowdStrike, BitSight, or equivalent platforms. Familiarity with vulnerability frameworks such as CVSS, OWASP Top 10, MITRE ATT More ❯
Birmingham, Staffordshire, United Kingdom Hybrid / WFH Options
RSM UK
Cyber Security Consultant (Penetration Tester) Milton Keynes, Buckinghamshire, United Kingdom We are seeking an experienced Cyber Security Consultant (Penetration Tester) . Make an Impact at RSM UK At RSM, our consulting team brings together diverse advisory experts to deliver our six core solutions: business transformation, forensic, deal services, restructuring, finance function support, and risk and governance. Our solutions … seeking an enthusiastic Cyber Security Consultant to join our team. Working alongside our experienced team of specialists, you'll deliver offensive security services including digital footprint reconnaissance, social engineering, penetrationtesting, vulnerability assessments, and more to high-profile clients across all industries. The purpose of this role is to deliver offensive security services such as digital footprint reconnaissance … social engineering, vulnerability assessments, penetrationtesting, threat modeling, cyber-attack simulation exercises, and more. You'll benefit from ongoing coaching, career mentoring, and support through our career pathway. You will have opportunities to develop market-leading skills across different capabilities and advance your professional development. You will make an impact by: Supporting technical scoping activities for client assignments. More ❯
North West London, London, United Kingdom Hybrid / WFH Options
SCALERS GROUP LIMITED
effective security controls and countermeasures. Conduct threat modelling exercises to identify potential security risks and vulnerabilities early in the development lifecycle. Conduct in-depth security assessments, code reviews, and penetrationtesting of applications to identify and mitigate security vulnerabilities. Utilise industry-standard tools and methodologies to assess the security posture of applications and provide actionable recommendations for remediation … person, with the ability to educate and influence on Application Security matters Basic experience in Software Development with any programming language Security Test Management Application Security Assessments Security Assurance PenetrationTesting Security Evaluation & Functional Testing Application Security Testing If the above is of interest, please apply with an updated copy of your CV and a member More ❯
Reading, England, United Kingdom Hybrid / WFH Options
Searchability NS&D
Penetration Tester – Cyber Security Contract until December 2025 (extension likely) Hybrid working, 50/50 split between home and site in Berkshire Active SC clearance required ABOUT THE CLIENT: Our client is a leading organisation within the cyber and defence technology sector, delivering secure digital solutions to UK government and critical national infrastructure programmes. They are expanding their cyber … capability and are seeking an experienced Penetration Tester to join the team on a long-term contract, supporting a range of high-impact security projects. THE PENETRATION TESTER ROLE: As a Penetration Tester, you will perform manual and automated testing across web applications, networks, APIs, and mobile platforms. You’ll identify and document vulnerabilities, support red … team operations, and collaborate with development and infrastructure teams to ensure effective remediation and security improvements. Key responsibilities include: Conducting penetration tests and vulnerability assessments across multiple environments Performing red team and threat simulation exercises Producing detailed reports outlining findings, risks, and mitigation strategies Staying current with emerging attack vectors, tools, and exploits Contributing to internal security awareness and More ❯
slough, south east england, united kingdom Hybrid / WFH Options
Searchability NS&D
Penetration Tester – Cyber Security Contract until December 2025 (extension likely) Hybrid working, 50/50 split between home and site in Berkshire Active SC clearance required ABOUT THE CLIENT: Our client is a leading organisation within the cyber and defence technology sector, delivering secure digital solutions to UK government and critical national infrastructure programmes. They are expanding their cyber … capability and are seeking an experienced Penetration Tester to join the team on a long-term contract, supporting a range of high-impact security projects. THE PENETRATION TESTER ROLE: As a Penetration Tester, you will perform manual and automated testing across web applications, networks, APIs, and mobile platforms. You’ll identify and document vulnerabilities, support red … team operations, and collaborate with development and infrastructure teams to ensure effective remediation and security improvements. Key responsibilities include: Conducting penetration tests and vulnerability assessments across multiple environments Performing red team and threat simulation exercises Producing detailed reports outlining findings, risks, and mitigation strategies Staying current with emerging attack vectors, tools, and exploits Contributing to internal security awareness and More ❯
Gateshead, Tyne and Wear, North East, United Kingdom Hybrid / WFH Options
KO2 Embedded Recruitment Solutions LTD
apps that sync with the client's hardware devices Drive DevOps best practices across CI/CD pipelines, monitoring, and deployment Design and maintain a cybersecurity-first architecture, including penetrationtesting Optimise an Azure-based infrastructure for high availability and cost efficiency Collaborate with cross-functional teams to deliver impactful new features Shape the design of future products … Tech Stack Web: ASP.NET Core, C#, JavaScript, HTML/CSS PC: C#, XAML, USB-MTP Mobile: Cordova (iOS & Android) Cloud: Microsoft Azure, CI/CD pipelines, version control, automated testing Security: Secure coding, authentication, penetrationtesting Hardware: Industry-leading devices, digitally integrated What They are Looking For KO2's client is seeking a creative, forward-thinking developer More ❯
Boston, Massachusetts, United States Hybrid / WFH Options
Digital Prospectors
POA&Ms and ensuring timely remediation of risks. • Monitor, track, and report attempted and/or unauthorized access events within the security environment. • Provide technical expertise on vulnerability assessments, penetrationtesting, and event correlation using SIEM tools. • Stay current on cybersecurity trends, emerging technologies, and evolving threat landscapes to inform strategic direction. • Develop and deliver training programs on … experience securing enterprise-level cloud environments (AWS GovCloud, Azure Government, etc.). • Strong background in developing and implementing cybersecurity policies, procedures, and frameworks. • Hands-on experience with vulnerability scanning, penetrationtesting, and cloud security monitoring tools. • In-depth knowledge of government and defense cybersecurity frameworks, including NIST SP 800-37, CNSSI 1253, ICD 503, DoD SRG, and related More ❯
Stone, England, United Kingdom Hybrid / WFH Options
Meritus
impact security projects within complex OT environments. As a Senior ICS OT Cyber Security Engineer, you will take a lead role in securing operational technology networks, delivering threat modelling, penetrationtesting, and cyber risk mitigation strategies for industrial environments. You will work closely with key stakeholders to design secure architectures, provide technical leadership on live security projects, and … candidates to be eligible for SC Level Security Clearance. Main Responsibilities: Lead the design and implementation of secure OT network architectures across critical infrastructure environments. Conduct attack path analysis, penetrationtesting and adversary simulations within ICS/OT environments. Perform cybersecurity risk assessments and technical security audits aligned to recognised industry frameworks. Develop technical design specifications and security More ❯
Stone, Staffordshire, England, United Kingdom Hybrid / WFH Options
Meritus Talent
impact security projects within complex OT environments. As a Senior ICS OT Cyber Security Engineer, you will take a lead role in securing operational technology networks, delivering threat modelling, penetrationtesting, and cyber risk mitigation strategies for industrial environments. You will work closely with key stakeholders to design secure architectures, provide technical leadership on live security projects, and … candidates to be eligible for SC Level Security Clearance. Main Responsibilities: Lead the design and implementation of secure OT network architectures across critical infrastructure environments. Conduct attack path analysis, penetrationtesting and adversary simulations within ICS/OT environments. Perform cybersecurity risk assessments and technical security audits aligned to recognised industry frameworks. Develop technical design specifications and security More ❯
Fort Belvoir, Virginia, United States Hybrid / WFH Options
General Dynamics Information Technology
based forensics, cyber incident response, cyber-criminal investigation, intrusion detection/analysis, designing countermeasures and mitigations against potential exploitations of programming language weaknesses and vulnerabilities, cyber red teaming, network penetrationtesting, security operations center analysis, defensive cyber operations, or offensive cyber operations. Malware development, analysis, binary disassembly, binary decomplication, network/communication protocol analysis, software vulnerability research, or … WHAT YOU'LL NEED TO SUCCEED: Required Experience: 5+ years of related experience Required Technical Skills: Offensive Security Experienced Pentester (OSEP), Advanced Windows Exploitation (OSEE), Exploit Researcher and Advanced Penetration Tester (GXPN), Reverse Engineering Malware (GREM) Security Clearance Level: TS/SCI US Citizenship Required Location: Hybrid-Ft. Belvoir, VA Required Skills and Abilities: Must be proficient in offensive … based forensics, cyber incident response, cyber-criminal investigation, intrusion detection/analysis, designing countermeasures and mitigations against potential exploitations of programming language weaknesses and vulnerabilities, cyber red teaming, network penetrationtesting, security operations center analysis, defensive cyber operations, or offensive cyber operations. GDIT IS YOUR PLACE: Full-flex work week to own your priorities at work and at More ❯