knowledge of network architectures, firewalls, IDS/IPS, and VPN technologies Operating Systems: Advanced hardening expertise for Windows, Linux, and Unix environments Encryption: Familiarity with encryption protocols and technologies PenetrationTesting: Ability to assess and interpret penetration test results to guide remediation Security Tools: Hands-on with SIEM, SOAR, EDR, UTM, and honeypots. Cloud Security: Understanding of More ❯
Penetration Tester - HIRING ASAP Start date: ASAP Duration: Till end of December 2025 with an extension thereafter Location: 2-3 days in Wokingham, 2-3 days remote working. Rate: £459 per day inside ir35 Responsibilities Conduct manual and automated penetration tests on web applications, networks, APIs, and mobile platforms. Identify, exploit, and document security vulnerabilities with detailed risk … latest attack vectors, tools, and security trends. Assist in security awareness training and internal education efforts. Contribute to security policies and best practices development. Key Skills Proven experience in penetrationtesting, ethical hacking, or red teaming. Strong understanding of OWASP Top 10, MITRE ATT&CK, and CVSS scoring. Proficiency with tools like Burp Suite, Metasploit, Nmap, Wireshark, Kali More ❯
detection, incident response, and cyber kill chain Familiarity with MITRE ATT&CK, NIST, and CIS frameworks Understanding of network traffic flows and vulnerability management Exposure to ethical hacking and penetrationtesting Knowledge of ITIL disciplines (Incident, Problem, Change Management) Experience with ServiceNow Security Suite Cloud experience (AWS and/or Azure) Excellent communication, presentation, and analytical skills Ability More ❯
Liaise with the Security Architects and wider team to provide technical requirements to ensure projects deliver secure solutions Work with the Security Business Partners to scope, arrange and support penetrationtesting and vulnerability testing and track remediation to a close Articulate risk in technical and non-technical terminology so that it can be interpreted by Information Technology More ❯
Position: Penetration Tester Location: London (with potential travel to client sites) Contract Role - [6-12 months, extendable] A deliverables-focused role, working on defined OT penetrationtesting engagements. What You'll Do: Conduct thorough penetration tests on client systems, applications, and networks - specifically OT/ICS systems - to identify security weaknesses. Perform threat modelling and adversarial … simulations. Collaborate with clients to understand their security needs and provide tailored recommendations. Develop and execute test plans, ensuring all testing is carried out ethically and professionally. Document and present findings in clear, concise reports, highlighting vulnerabilities and their potential impacts. Advise on remediation steps aligned with OT security best practices and relevant standards (eg IEC 62443, NIS2, NERC More ❯
Position: Penetration Tester Location: London (with potential travel to client sites) Contract Role - [6-12 months, extendable] A deliverables-focused role, working on defined OT penetrationtesting engagements. What You'll Do: Conduct thorough penetration tests on client systems, applications, and networks - specifically OT/ICS systems - to identify security weaknesses. Perform threat modelling and adversarial … simulations. Collaborate with clients to understand their security needs and provide tailored recommendations. Develop and execute test plans, ensuring all testing is carried out ethically and professionally. Document and present findings in clear, concise reports, highlighting vulnerabilities and their potential impacts. Advise on remediation steps aligned with OT security best practices and relevant standards (e.g. IEC 62443, NIS2, NERC More ❯
management etc. Respond to security events and incidents. Perform regular security audits and risk assessments. Maintain security controls, identify risks and propose treatment plans. Conduct regular vulnerability scans and penetration tests. Liaise with global IT and Cloud teams to maintain company systems and their security. Liaise with global Security Operations Centre colleagues to resolve any issues. Ensure compliance with … Bachelor's degree in Computer Science, IT or Information Security. Compliance exposure with relevant security frameworks and standards (PCI, ISO, NIST, CIS). Experience with audits and compliance enforcement. Penetrationtesting experience. Strong understanding of networking protocols and systems architecture. Creating PCI digital keys or security access modules. Threat intelligence exposure. Proficient in programming or scripting languages. IaC More ❯
Gloucestershire, United Kingdom Hybrid / WFH Options
SSR General & Management
and compliance with MOD and HMG security standards (JSP, Def Stan 05-138/139). Proficiency in security threat modeling and risk assessments. Knowledge of secure development practices, penetrationtesting, and vulnerability assessments. Ability to communicate security risks and strategies to technical and non-technical stakeholders. Experience in incident response and remediation. Strong analytical and problem-solving More ❯
Bristol, Kendleshire, Gloucestershire, United Kingdom Hybrid / WFH Options
SSR General & Management
and compliance with MOD and HMG security standards (JSP, Def Stan 05-138/139). Proficiency in security threat modeling and risk assessments. Knowledge of secure development practices, penetrationtesting, and vulnerability assessments. Ability to communicate security risks and strategies to technical and non-technical stakeholders. Experience in incident response and remediation. Strong analytical and problem-solving More ❯
Manchester, North West, United Kingdom Hybrid / WFH Options
Secure Recruitment Ltd
Based Vulnerabilities are Understood & Mitigated meaning that Code Reading Skills are also desirable. Skills & Experience of the AppSec Engineer role: Hands-On Experience with Security Assessment Tools & Techniques including PenetrationTesting & Code Review. Use of Planned, Structured Methodologies for Conducting & Reporting on Web Application Penetration Testing. Understanding & Demonstrable Experience of Automated, Dynamic & Static Application Security Testing Tools, as well as Manual Security Testing to find Vulnerabilities & Logical Issues. Broad Understanding of SDLC & Technology Functions and how they relate to Information Security. Understanding of Industry Standard Information Security Practices. Ideally Offensive Security Certified Professional (OSCP) Certification (or similar is Desirable but Not Essential). Strong Communication Skills & High Attention to Detail. Main Responsibilities of the … considered up front and throughout the Project Lifecycle. Taking Responsibility for the Security of Tested Products within Project Context. Conducting Manual & Automated Source Code Reviews. Contributing to & Utilising Security Testing Methodologies, Creating & Updating Technical Documentation as necessary. Liaising with Software Development Department to ensure Security is considered throughout SDLC. Identifying any Security Issues within the Businesss Software and Manage More ❯
response for security risks and issues raised by SOC teams Manage implementation of logging and SIEM integration for comprehensive monitoring Prioritise and oversee vulnerability remediation across the platform Support penetrationtesting activities and security audits Collaboration & Leadership: Build strong relationships with central security teams and contribute to communities of practice Manage escalations of security-related issues, risks, and More ❯
Leading the cultural shift towards secure software development across product teams Defining and implementing the software security strategy in line with business goals Collaborating with developers to automate security testing and embed security requirements into the SDLC Supporting penetrationtesting, vulnerability management, and remediation efforts Acting as a software security SME, advising teams on secure design, risk More ❯
London, South East, England, United Kingdom Hybrid / WFH Options
Akkodis
Leading the cultural shift towards secure software development across product teams Defining and implementing the software security strategy in line with business goals Collaborating with developers to automate security testing and embed security requirements into the SDLC Supporting penetrationtesting, vulnerability management, and remediation efforts Acting as a software security SME, advising teams on secure design, risk More ❯
Overview CHECK Team Leader - Up to £80,000 (Remote with occasional travel to client sites) We're seeking a certified CHECK Team Leader to lead high-impact security testing across enterprise and cloud environments. This is a key role for an experienced professional ready to take ownership of critical engagements and mentor junior testers. Key Responsibilities Lead infrastructure and … cloud penetration tests (AWS, Azure, AD, Kubernetes). Mentor and support junior team members. Deliver clear, risk-focused technical reports. Support red teaming, adversary emulation, and R&D activities. Contribute to tooling and service development. Required Skills & Experience CHECK Team Leader certification (CTL-INF - Cyber Scheme or CREST). 2+ years as a CTL and 3+ years of penetrationtesting experience. Strong knowledge of Active Directory, infrastructure, and cloud security. Proficiency with tools like Burp Suite, Nmap, Metasploit, and Impacket. Excellent written and verbal communication skills. Desirable Certifications: OSCP, OSEP, CRTO. Scripting with Python, Bash, or PowerShell. Experience in red or purple teaming. Other Requirements UK residency for the past 5 years. Must be Eligible for SC More ❯
Central London, London, United Kingdom Hybrid / WFH Options
Halian Technology Limited
best practices. Strong analytical and prioritization skills with a pragmatic, risk-based approach to decision-making. Leadership experience Nice to have: If you have come from a development/penetrationtesting background this would be advantageous for my client. Pen testing experience Certifications (CEH)/OSCP This role is on a hybrid basis with 2 - 3 days More ❯
Liverpool, Merseyside, North West, United Kingdom Hybrid / WFH Options
Curveball Solutions
objectives. Draft, maintain, and implement information security policies and Standard Operating Procedures (SOPs). Configure and oversee mobile securityMDM (MAM/BYOD)to protect business continuity. Lead vulnerability assessments, penetration tests, firewall policy enforcement, and remediation efforts. Author compelling tender responses, clearly demonstrating technical capability and strategic value. Enhance Microsoft 365 securityleveraging Purview, Conditional Access, MFAto safeguard modern workplaces. … through closure. Strong understanding of ITIL, CAB, and structured change management. Skilled in crafting and updating security policies, SOPs, and managing tender documentation. Hands-on expertise with MDM tools, penetrationtesting, and policy-based firewalls. Experience designing and delivering compliance aligned services across GDPR, Cyber Essentials, ISO 27001. Proficient in using Microsoft 365 security stack: Purview, Defender, Conditional More ❯
L33, Knowsley, Merseyside, United Kingdom Hybrid / WFH Options
Curveball Solutions
Draft, maintain, and implement information security policies and Standard Operating Procedures (SOPs). Configure and oversee mobile security—MDM (MAM/BYOD)—to protect business continuity. Lead vulnerability assessments, penetration tests, firewall policy enforcement, and remediation efforts. Author compelling tender responses, clearly demonstrating technical capability and strategic value. Enhance Microsoft 365 security—leveraging Purview, Conditional Access, MFA—to safeguard … through closure. Strong understanding of ITIL, CAB, and structured change management. Skilled in crafting and updating security policies, SOPs, and managing tender documentation. Hands-on expertise with MDM tools, penetrationtesting, and policy-based firewalls. Experience designing and delivering compliance aligned services across GDPR, Cyber Essentials, ISO 27001. Proficient in using Microsoft 365 security stack: Purview, Defender, Conditional More ❯
Cambridge, Cambridgeshire, England, United Kingdom
Opus Recruitment Solutions Ltd
native services and public APIs that underpin enterprise-scale AI systems. You’ll work in a fast-paced Scrum team alongside developers, architects, and data scientists to build automated testing frameworks, AI evaluation tools, and validation strategies. If you thrive on experimentation, problem-solving, and building robust systems that scale, this is the opportunity for you. Key Responsibilities Test … hooks in collaboration with engineering teams. Ensure compliance with AI regulations and standards such as NIST AI RMF and the EU AI Act . Conduct threat modelling and security testing for APIs and AI services. Provide early feedback to improve design and reduce defects. Mentor junior engineers and contribute to a culture of innovation and continuous improvement. Skills & Experience … 12+ years in software testing and validation for cloud-native applications using Microsoft and .NET . Expertise in automated testing frameworks such as Selenium , Postman , JMeter , or custom-built solutions. Hands-on experience with Azure DevOps , CI/CD pipelines , and containerized environments ( Docker , Kubernetes ). Strong knowledge of API testing , performance profiling, and security practices including More ❯
and reporting to enable informed, risk-based decisions. What you'll bring: Strong knowledge of networking, cloud security (AWS/Azure), and modern security concepts. Familiarity with vulnerability management, penetrationtesting, and security frameworks. Experience with security standards (ISO 27001/27002/27017/27018). Minimum 5 years in cybersecurity, with certifications like CISSP, CISM, CCSP More ❯
CI/CD pipelines and infrastructure-as-code (IaC) deployments across Azure. Lead container, API, and web application security initiatives, including code reviews. Support threat modelling, vulnerability management, and penetrationtesting activities. Drive logging integration with SIEM tools, enabling SOC monitoring and incident response. Coach engineering teams on cloud security principles and manage audit-related actions. What You More ❯
City of London, London, United Kingdom Hybrid / WFH Options
Anson Mccade
SIEM query languages (KQL, SPL, AQL), and automation with Python/PowerShell. Deep understanding of incident response, threat detection, and frameworks (MITRE, NIST, CIS). Knowledge of vulnerability scanning, penetrationtesting, and network traffic analysis. Familiarity with ITIL processes (Incident, Problem, Change). Excellent stakeholder communication, with the ability to mentor and lead from a technical perspective. Desirable More ❯
background in incident response, SOC operations, and security investigations. Hands-on expertise with SIEM tools (Splunk, QRadar, Microsoft Sentinel). Deep understanding of network traffic analysis, vulnerability management, and penetration testing. Knowledge of DFIR principles, malware reverse engineering, and digital forensics. Familiarity with ITIL processes (Incident, Problem, Change). Experience with cloud platforms (AWS and/or Azure). More ❯
first step into a fast-growing field. Key Responsibilities: Monitor and analyse security alerts to identify potential threats. Assist in investigating and resolving security incidents. Support vulnerability assessments and penetrationtesting activities. Help implement security policies, procedures, and compliance standards. Learn and apply industry best practices, tools, and frameworks (e.g., ISO 27001, NIST, CIS). Requirements: Bachelors degree More ❯
to proactively enhance the organization's network security posture Ensure compliance with relevant security regulations and standards and assist in audit processes as needed Conduct regular security assessments including penetrationtesting and vulnerability assessments to identify and remediate potential security risks ESSENTIAL EXPERIENCE 12 years of Proven experience in network security with a strong understanding of network security More ❯
to proactively enhance the organization's network security posture Ensure compliance with relevant security regulations and standards and assist in audit processes as needed Conduct regular security assessments including penetrationtesting and vulnerability assessments to identify and remediate potential security risks ESSENTIAL EXPERIENCE 12 years of Proven experience in network security with a strong understanding of network security More ❯