South East London, London, United Kingdom Hybrid / WFH Options
4SQUARE RECRUITMENT LTD
latest security vulnerabilities, attack vectors, tools, and methodologies. Contribute to the continuous improvement of our testing methodologies and service offerings. Essential Skills & Qualifications Must hold active CRESTCertified Tester (CRT) certification. (Non-negotiable) Proven commercial experience in a penetration testing role. Deep technical knowledge of networking protocols, operating systems (Windows, Linux), and common infrastructure vulnerabilities. Strong experience … fully remote environment. Desirable Skills & Qualifications Experience with or knowledge of implementing Cyber Essentials and Cyber Essentials Plus schemes is highly desirable. Additional certifications such as: CRESTCertified Simulated Attack Specialist (CCSAS)/Certified Simulated Attack Manager (CCSAM) Offensive Security Certified Professional (OSCP) Certified Information Systems Security Professional (CISSP) SANS GIAC Penetration Tester (GPEN More ❯
of regulatory and legal frameworks around incident response. Preferred Qualifications ChCSP – Incident Response certification (or working towards). Industry certifications such as GIAC (GCFA, GEIR, GCFE, GREM, GNFA), CREST CRTIR, CISM, CISSP. Sector exposure across government, financial services, healthcare, or critical national infrastructure (CNI). Skills in malware reverse engineering and deep knowledge of adversary tradecraft. Experience working More ❯
team management and mentoring. Familiarity with the consulting sales lifecycle, including opportunity identification and bid support. Excellent analytical, presentation, and organisational skills. Preferred Qualifications Professional certifications such as CREST or equivalent. Experience in risk advisory or Big Four consultancy environment. Exposure to emerging technologies in risk and controls, such as automation, data analytics, AI etc. Reports to: RSC More ❯
enforce security measures, including working with service teams excellent written and verbal communication skills as well as business acumen and a commercial outlook Relevant industry qualifications and accreditations e.g. Certified Cyber Professional (CCP), CREST Registered Technical Security Architect, BCS Practitioner Certificate in Information Assurance Architecture, ISC(2) Information Systems Security Architecture Professional, CISSP, CISM, or other relevant More ❯
enforce security measures, including working with service teams excellent written and verbal communication skills as well as business acumen and a commercial outlook Relevant industry qualifications and accreditations e.g. Certified Cyber Professional (CCP), CREST Registered Technical Security Architect, BCS Practitioner Certificate in Information Assurance Architecture, ISC(2) Information Systems Security Architecture Professional, CISSP, CISM, or other relevant More ❯
Job Title: CREST Accredited Security Tester 6 Month Contract Hybrid (Central London based) £670 Per Day Inside IR35 Overview: Seeking a CREST-accredited Security Tester with strong penetration testing and vulnerability management expertise. Skilled in Tenable Nessus and experienced in managing third-party testing engagements , you'll deliver high-impact security assurance across complex environments. Key … Responsibilities: Conduct internal penetration testing and security assessments across cloud and on-premise systems. Scope, execute, and report on tests using CREST standards and Nessus . Produce clear, high-quality scopes, proposals, and technical reports . Provide SME guidance on threats, risks, and testing methodologies. Manage and coordinate third-party CHECK/CREST testers . Lead … vulnerability management activities, validating remediation. Contribute to testing frameworks, playbooks, and secure-by-design practices . Research and assess emerging threats to enhance testing capability. Skills & Experience: CRESTcertification (CRT or equivalent). Proven penetration testing and security assurance expertise. Strong hands-on experience with Tenable Nessus . Track record of managing third-party pen testing engagements . More ❯