Stratford-upon-avon, Warwickshire, United Kingdom Hybrid / WFH Options
Ccl Solutions Group
Summary: CCL Solutions Group is seeking an exceptional Senior Penetration Tester with CHECKTeam Leader Infrastructure (CTL-INF) qualifications to join our elite team of security professionals. Location: Home based Main Job Summary This is more than just a job, we're looking for individuals with a hacker's mindset, deep technical expertise, and a relentless drive … to secure the UK's most critical assets. You will be leading engagements across secure environments, delivering high-impact assessments, mentoring team members, and shaping the offensive security direction of the business. In return, we offer a highly supportive environment with structured mentoring, paid training days, and access to advanced tooling. Main Duties & Responsibilities (other duties may be assigned … CCL Solutions Group are more than just a leading provider of cybersecurity services, we are a team committed to making a real difference in protecting communities, businesses, and the critical infrastructure of the UK. As a Senior Penetration Tester within CCL Solutions Group, your key responsibilities will be: Lead and deliver end-to-end penetration testing engagements across infrastructure More ❯
London, England, United Kingdom Hybrid / WFH Options
Anson McCade
if you also have: Python scripting skills for tooling or automation Experience or awareness of Operational Technology (OT) environments Familiarity with internal exploitation tools and techniques Certifications like CREST CTM/CTL/CSTM, Cyber Scheme Practitioner, or OSCP (lapsed certs accepted if skills are current) What to expect: A small, high-trust team (2–3 testers) operating with More ❯
if you also have: Python scripting skills for tooling or automation Experience or awareness of Operational Technology (OT) environments Familiarity with internal exploitation tools and techniques Certifications like CREST CTM/CTL/CSTM, Cyber Scheme Practitioner, or OSCP (lapsed certs accepted if skills are current) 🧠 What to expect: A small, high-trust team (2–3 testers) operating with More ❯
Salisbury, Wiltshire, South West, United Kingdom Hybrid / WFH Options
Anson Mccade
with legacy systems and navigate environments with tech debt Desirable skills & qualifications: • Python scripting or coding skills (advantageous) • Exposure to OT networks and internal infrastructure tooling • Relevant certifications - CREST (CTM, CTL, CSTM), Cyber Scheme Practitioner, OSCP Work Environment & Expectations: • Join a tight-knit, high-performing team • Hybrid model: ~2 days per week in client or office locations, majority remote More ❯
London (2 days per week on-site) Note: To be eligible for this role, you must be eligible for UK Security Clearance (SC). A high-performing digital security team is looking for an experienced Infrastructure Penetration Tester to join them in delivering critical assessments across complex and sensitive client environments. This is a hands-on internal testing role … environments Produce clear, concise reports tailored to both technical and non-technical audiences Build trusted relationships with clients in a consultancy-facing capacity Work within a small, high-trust team on sensitive engagements Contribute to the evolution of internal tooling and testing methodologies Operate effectively in environments with limited documentation or predefined processes Essential Experience and Skills At least … environments with technical debt Desirable Skills Python scripting or automation experience Understanding of Operational Technology (OT) networks Familiarity with internal infrastructure exploitation tools Certifications (preferred but not essential): CREST CTM, CTL, CSTM or Cyber Scheme Practitioner OSCP (current or lapsed) If you’re an experienced infrastructure penetration tester looking for meaningful work, we want to hear from you. More ❯
City of London, London, United Kingdom Hybrid / WFH Options
Anson McCade
London (2 days per week on-site) Note: To be eligible for this role, you must be eligible for UK Security Clearance (SC). A high-performing digital security team is looking for an experienced Infrastructure Penetration Tester to join them in delivering critical assessments across complex and sensitive client environments. This is a hands-on internal testing role … environments Produce clear, concise reports tailored to both technical and non-technical audiences Build trusted relationships with clients in a consultancy-facing capacity Work within a small, high-trust team on sensitive engagements Contribute to the evolution of internal tooling and testing methodologies Operate effectively in environments with limited documentation or predefined processes Essential Experience and Skills At least … environments with technical debt Desirable Skills Python scripting or automation experience Understanding of Operational Technology (OT) networks Familiarity with internal infrastructure exploitation tools Certifications (preferred but not essential): CREST CTM, CTL, CSTM or Cyber Scheme Practitioner OSCP (current or lapsed) If you’re an experienced infrastructure penetration tester looking for meaningful work, we want to hear from you. More ❯
South East London, England, United Kingdom Hybrid / WFH Options
Anson McCade
London (2 days per week on-site) Note: To be eligible for this role, you must be eligible for UK Security Clearance (SC). A high-performing digital security team is looking for an experienced Infrastructure Penetration Tester to join them in delivering critical assessments across complex and sensitive client environments. This is a hands-on internal testing role … environments Produce clear, concise reports tailored to both technical and non-technical audiences Build trusted relationships with clients in a consultancy-facing capacity Work within a small, high-trust team on sensitive engagements Contribute to the evolution of internal tooling and testing methodologies Operate effectively in environments with limited documentation or predefined processes Essential Experience and Skills At least … environments with technical debt Desirable Skills Python scripting or automation experience Understanding of Operational Technology (OT) networks Familiarity with internal infrastructure exploitation tools Certifications (preferred but not essential): CREST CTM, CTL, CSTM or Cyber Scheme Practitioner OSCP (current or lapsed) If you’re an experienced infrastructure penetration tester looking for meaningful work, we want to hear from you. More ❯
model | High-trust culture | Mission-critical work 🧭 The Opportunity Join a high-impact consultancy at the forefront of innovation and digital transformation. You’ll be part of a specialist team delivering critical infrastructure penetration tests across some of the most sensitive environments in the UK — from defence and national security to critical infrastructure and operational technology. This is not … through clear written reports and debriefs to a range of stakeholders Support sensitive clients operating in production environments — where mistakes matter Contribute to tooling, methodologies, and continuous improvement of team capability Engage with a technical and non-technical audience, acting as a trusted security advisor 🧠 What You Bring Core Skills: 4+ years of penetration testing experience (infrastructure/internal … line environments Desirable: Python scripting or automation experience Familiarity with OT (Operational Technology) networks Experience with tools like CrackMapExec, BloodHound, PowerView, etc. Certifications (a bonus, not a barrier): CREST CTM, CTL, CSTM, Cyber Scheme Practitioner OSCP Lapsed certifications are fine if practical skills are strong 👥 Team & Work Environment Tight-knit, high-performing team (2–3 people) with deep More ❯
City of London, London, United Kingdom Hybrid / WFH Options
Anson McCade
model | High-trust culture | Mission-critical work 🧭 The Opportunity Join a high-impact consultancy at the forefront of innovation and digital transformation. You’ll be part of a specialist team delivering critical infrastructure penetration tests across some of the most sensitive environments in the UK — from defence and national security to critical infrastructure and operational technology. This is not … through clear written reports and debriefs to a range of stakeholders Support sensitive clients operating in production environments — where mistakes matter Contribute to tooling, methodologies, and continuous improvement of team capability Engage with a technical and non-technical audience, acting as a trusted security advisor 🧠 What You Bring Core Skills: 4+ years of penetration testing experience (infrastructure/internal … line environments Desirable: Python scripting or automation experience Familiarity with OT (Operational Technology) networks Experience with tools like CrackMapExec, BloodHound, PowerView, etc. Certifications (a bonus, not a barrier): CREST CTM, CTL, CSTM, Cyber Scheme Practitioner OSCP Lapsed certifications are fine if practical skills are strong 👥 Team & Work Environment Tight-knit, high-performing team (2–3 people) with deep More ❯
City of London, London, United Kingdom Hybrid / WFH Options
Investigo
figure it out, and adapt when things inevitably go sideways. Coding skills - Not essential, but if you can sling some Python around, it’ll help. Certs - OSCE, OSCE, CTL, CTM would be nice. But if you don’t have it and you know your stuff, that’s fine too. Consultancy experience - Again, preferred. If you’ve worked client-side before … you’ll get the vibe. Location: The team’s largely remote as it stands. Occasionally, you’ll need to rock up to a client site - so don’t apply if you plan on never leaving the house. Level: They’re open to solid testers up to Principal level. But don’t expect a slow ramp-up - they need someone More ❯
figure it out, and adapt when things inevitably go sideways. Coding skills - Not essential, but if you can sling some Python around, it’ll help. Certs - OSCE, OSCE, CTL, CTM would be nice. But if you don’t have it and you know your stuff, that’s fine too. Consultancy experience - Again, preferred. If you’ve worked client-side before … you’ll get the vibe. Location: The team’s largely remote as it stands. Occasionally, you’ll need to rock up to a client site - so don’t apply if you plan on never leaving the house. Level: They’re open to solid testers up to Principal level. But don’t expect a slow ramp-up - they need someone More ❯