returns. Can place appropriate weight on prevailing (sometimes conflicting) evidence. Support and manage budget Responsibility Responsibility of information security incident management Responsibility for security assessments and assurance activities (e.g. penetrationtesting) and when to use them. Oversee and management of security compliance management and reporting in relation to any relevant regulatory or legal requirements Operational responsibility of management More ❯
writing code in at least one programming language, including Java, Kotlin, Objective C, or Swift - Experience in one or more of the following areas: application security, application development, or penetrationtesting - Excellent written communication skills with the ability to translate technically complex issues into simple, easy-to-understand concepts Amazon is an equal opportunities employer. We believe passionately More ❯
Writing and maintaining documentation on SRE processes and policies Recommending and implementing ways of driving operational efficiency and driving down our cost to run, without impacting service Assisting in penetrationtesting for Cloud through liaising with our provider, providing technical details, and environment setup Incident management Here's what we're looking for: Experience Strong collaboration skills Launching More ❯
velocity within teams. Implement and review measures to track and enhance data engineering productivity. 3. Data Governance, Security, and Quality: Implement end to end data security measures, including periodic penetrationtesting, audits, and assurance of PDP. Coordinate with the CISO, DPO, and other teams to ensure data security, GDPR compliance, and overall data assurance. Initiate and oversee a More ❯
who are looking for a Security analyst to join their growing and dedicated team in providing some the UKs largest organisations with a range of services such as, pen testing, major incident response, digital forensics, and more. This is a great opportunity for an individual to further their security career in a focused environment surrounded by likeminded individuals. The More ❯
City of London, London, United Kingdom Hybrid / WFH Options
Anson McCade
Penetration Tester – Infrastructure Salary: £70,000–£100,000 (depending on experience) Location: Hybrid – London (2 days per week on-site) Note: To be eligible for this role, you must be eligible for UK Security Clearance (SC). A high-performing digital security team is looking for an experienced Infrastructure Penetration Tester to join them in delivering critical assessments … across complex and sensitive client environments. This is a hands-on internal testing role, not web application focused, where you'll be expected to work independently and navigate challenging systems with confidence. This role is suited to testers who thrive in technically demanding scenarios, want autonomy, and are motivated by work with real-world impact. Key Responsibilities Conduct internal … infrastructure and Active Directory penetration tests in live production environments Produce clear, concise reports tailored to both technical and non-technical audiences Build trusted relationships with clients in a consultancy-facing capacity Work within a small, high-trust team on sensitive engagements Contribute to the evolution of internal tooling and testing methodologies Operate effectively in environments with limited More ❯
Penetration Tester – Infrastructure Salary: £70,000–£100,000 (depending on experience) Location: Hybrid – London (2 days per week on-site) Note: To be eligible for this role, you must be eligible for UK Security Clearance (SC). A high-performing digital security team is looking for an experienced Infrastructure Penetration Tester to join them in delivering critical assessments … across complex and sensitive client environments. This is a hands-on internal testing role, not web application focused, where you'll be expected to work independently and navigate challenging systems with confidence. This role is suited to testers who thrive in technically demanding scenarios, want autonomy, and are motivated by work with real-world impact. Key Responsibilities Conduct internal … infrastructure and Active Directory penetration tests in live production environments Produce clear, concise reports tailored to both technical and non-technical audiences Build trusted relationships with clients in a consultancy-facing capacity Work within a small, high-trust team on sensitive engagements Contribute to the evolution of internal tooling and testing methodologies Operate effectively in environments with limited More ❯
South East London, England, United Kingdom Hybrid / WFH Options
Anson McCade
Penetration Tester – Infrastructure Salary: £70,000–£100,000 (depending on experience) Location: Hybrid – London (2 days per week on-site) Note: To be eligible for this role, you must be eligible for UK Security Clearance (SC). A high-performing digital security team is looking for an experienced Infrastructure Penetration Tester to join them in delivering critical assessments … across complex and sensitive client environments. This is a hands-on internal testing role, not web application focused, where you'll be expected to work independently and navigate challenging systems with confidence. This role is suited to testers who thrive in technically demanding scenarios, want autonomy, and are motivated by work with real-world impact. Key Responsibilities Conduct internal … infrastructure and Active Directory penetration tests in live production environments Produce clear, concise reports tailored to both technical and non-technical audiences Build trusted relationships with clients in a consultancy-facing capacity Work within a small, high-trust team on sensitive engagements Contribute to the evolution of internal tooling and testing methodologies Operate effectively in environments with limited More ❯
London, England, United Kingdom Hybrid / WFH Options
Addition+
We are currently recruiting for a highly awarded Managed Security Service Provider for the role of Lead Penetration Tester. This is a fantastic opportunity to join a business known for its cutting-edge connectivity, cloud, and communications solutions. Role Overview *CANDIDATES MUST BE BASED IN THE UK* Location: Remote Package: £65,000- £80,000 Number of Roles Available … Clearance due to the nature of clients Full UK Driving License & Access to a vehicle are essential Experience working in the public sector would be desirable Strong experience in PenetrationTesting Cyber Scheme, CREST or CHECK Certifications are required Strong background and understanding of cybersecurity, with a knowledge of penetrationtesting frameworks and methodologies Strong client More ❯
break things (ethically) and make the digital world safer? We're on the hunt for a Security Consultant to join our top-tier cyber team! What you'll do: Penetrationtesting & red teaming across on-prem, cloud & hybrid Hack into AD, Entra ID (Azure AD), AWS, GCP, and more Work with remediation teams to fix real-world issues … Help shape our tools & testing methods Collaborate, share, and grow with a supportive team What we're looking for: Proven offensive security skills Strong knowledge of AD & cloud platforms Curiosity and willingness to learn beyond your comfort zone Ideally working towards, or already hold CSTM or CRT Why Sapphire? Cutting-edge projects Inclusive culture Real impact on client security More ❯
identity, nationality (single or dual) or immigration status, employment history going back 3 continuous years, unspent criminal record check (known as Disclosure and Barring Service). Your role IoT Testing ensuring the device connectivity and security. Your skills and experience Candidate should have 5 8 years experience in QA testing role in embedded and IoT products. Understanding embedded … systems, IoT protocols (MQTT, CoAP, HTTP), and cloud integration. Testing hardware, firmware, and performance of IoT devices. Verifying communication protocols (Wi-Fi, Zigbee, Bluetooth) and network coverage. Ensuring secure authentication, data encryption, and penetrationtesting for IoT devices. Conducting security tests on IoT devices, ensuring data privacy and vulnerability assessments. Verifying data integrity, synchronization, and handling of … big data in IoT systems. Knowledge of writing & automating IoT testing scripts and integrating with CI/CD pipelines (optional). Knowledge of cloud platforms like AWS IoT, Azure IoT for cloud-IoT device integration. Worked in agile teams, understand agile methodologies and proficient in JIRA and defect lifecycle management. Perform manual test execution and API testing for More ❯
and vulnerabilities, leveraging threat intelligence to proactively mitigate risks Perform proactive threat hunting, research, and analysis, delivering actionable intelligence to IT and security teams Perform security assessments, audits, and penetrationtesting using industry-standard methodologies and tools. Work with key software and service vendors to manage security products and solutions. Undertake ongoing security training and certifications relevant to More ❯
and vulnerabilities, leveraging threat intelligence to proactively mitigate risks Perform proactive threat hunting, research, and analysis, delivering actionable intelligence to IT and security teams Perform security assessments, audits, and penetrationtesting using industry-standard methodologies and tools. Work with key software and service vendors to manage security products and solutions. Undertake ongoing security training and certifications relevant to More ❯
improvements, this role is perfect for you! We value diverse experiences and perspectives. Here's what we're looking for in our ideal candidate: Experience delivering offensive security and penetrationtesting engagements. Experience of delivering and leading cyber security advisory and offensive security testing engagements in a professional services context. Understand technology trends, cyber threats, and industry … issues. Excellent written and oral communication, report writing and presentation skills. Experience of executing security testing techniques such as threat modelling, reconnaissance, social engineering, enumeration, attack path mapping, exploitation, and clean up from a variety of adversarial perspectives (white/grey/black box testing). What we can offer you: We recognise that our people are our More ❯
security standpoint - maintaining things practical using a risk-based approach with a focus on following areas: Automation of security controls, security hardening of the developer and IaC processes (building, testing, release), supply chain security (part of the build process), related metrics and monitoring/audits Network, VM & container image and system hardening, Cloud issues and misconfigurations Endpoint Security, Infrastructure … Identity and Access Management, SIEM, Threat intelligence, common misconfigs (DNS, email, networking, etc.) Organising and performing penetrationtesting of our infrastructure, and collaborating with external parties on those tests. Picking tools, methods and approaches to maintain and improve the security stance of the company. (And we have a strong preference towards FOSS tooling when possible) Writing and enabling More ❯
ll play a crucial role in safeguarding our environment. You'll also contribute to building custom security tools to enhance our capabilities and support security assessments, threat modelling, and penetration testing. You'll come with hands-on experience with AWS and Cloudflare and be comfortable working with Infrastructure as Code tools like Terraform. A strong understanding of common vulnerabilities More ❯
corporate_fare Google place London, UK ; Manchester, UK Apply info_outline info_outline X Info Note: By applying to this position you will have an opportunity to share your preferred working location from the following: London, UK; Manchester, UK. Note More ❯
per day The Industry Assurance team in Cyber Growth runs the Assured PenetrationTesting Scheme on behalf of a public sector client which mandates or strongly recommends such testing in all departments and across the Infrastructure. The team assesses the methodology and work of all members of the scheme from first application through the entirety of their … time upon the Scheme. Where appropriate, members are supported to improve or, in extremis, are removed from the scheme altogether. We require someone with experience as a senior penetration tester in a role which required them to quality assure the output of other penetration testers. This should be in an operational environment, you may also have experience as … an assessor for a penetrationtesting exam body . Ideally, you will have past experience of working in the Scheme but, in order to avoid conflicts of interest, should not have current contracts. The successful individual should also have experience as a senior member of an adversary simulation team and have been required to oversee and quality assure More ❯
Senior Penetration Tester – UK remote - £60,000 - £80,000 Opus are looking for an experienced Penetration Tester to join our client, a cyber consultancy specialising exclusively in penetrationtesting and red teaming, delivering high-impact, adversary-simulated engagements for clients ranging from agile tech scale-ups to critical infrastructure providers. As a Senior Penetration Tester … position suited to someone who thrives in technically demanding scenarios and wants to work alongside a small, elite team of offensive security specialists. Key Responsibilities Lead and execute complex penetration tests and adversary simulations Deliver red team engagements aligned with frameworks like TIBER, CBEST, and MITRE ATT&CK Develop custom tooling and exploits where required Create detailed, client-facing … and contribute to internal R&D Support scoping, pre-engagement, and post-engagement activities Stay sharp: engage in continuous learning and threat landscape analysis About You Proven experience in penetrationtesting and red teaming (internal, external, app, cloud, etc.) Strong understanding of attacker TTPs and detection evasion Familiarity with frameworks such as OWASP , MITRE ATT&CK , and NIST More ❯
Penetration Tester – Infrastructure Focus 📍 Location: London preferred (Hybrid) 💸 Salary: £70,000 – £105,000 (London) 🧠 Level: Senior Consultant to Principal Consultant (SC–PC) ⏱ Flexible hybrid model | High-trust culture | Mission-critical work 🧭 The Opportunity Join a high-impact consultancy at the forefront of innovation and digital transformation. You’ll be part of a specialist team delivering critical infrastructure penetration … in the UK — from defence and national security to critical infrastructure and operational technology. This is not a web application role . We’re looking for an infrastructure-focused penetration tester with the technical confidence and consultancy mindset to work independently, lead engagements, and deliver real-world impact. If you want to push beyond checklists and automated scans and … into deep, hands-on testing — this is the place to do it. 🔧 What You’ll Be Doing Deliver end-to-end infrastructure and internal network testing (Active Directory, internal corporate networks, etc.) Identify and exploit vulnerabilities across complex environments with minimal documentation Communicate technical findings through clear written reports and debriefs to a range of stakeholders Support sensitive More ❯
City of London, London, United Kingdom Hybrid / WFH Options
Anson McCade
Penetration Tester – Infrastructure Focus 📍 Location: London preferred (Hybrid) 💸 Salary: £70,000 – £105,000 (London) 🧠 Level: Senior Consultant to Principal Consultant (SC–PC) ⏱ Flexible hybrid model | High-trust culture | Mission-critical work 🧭 The Opportunity Join a high-impact consultancy at the forefront of innovation and digital transformation. You’ll be part of a specialist team delivering critical infrastructure penetration … in the UK — from defence and national security to critical infrastructure and operational technology. This is not a web application role . We’re looking for an infrastructure-focused penetration tester with the technical confidence and consultancy mindset to work independently, lead engagements, and deliver real-world impact. If you want to push beyond checklists and automated scans and … into deep, hands-on testing — this is the place to do it. 🔧 What You’ll Be Doing Deliver end-to-end infrastructure and internal network testing (Active Directory, internal corporate networks, etc.) Identify and exploit vulnerabilities across complex environments with minimal documentation Communicate technical findings through clear written reports and debriefs to a range of stakeholders Support sensitive More ❯
a growing FinTech, building cutting edge trading platforms for hedge funds and investment managers around the world. In London, they’re looking for an Application Security Engineer, with strong PenetrationTesting experience, to join them. This is an initial 6 month contract, hybrid working (3 days a week in the office), outside IR35 and paying ~£550 - £600 per … part of a security -focused transformation and you’ll be responsible for identifying and mitigating security vulnerabilities, and risk, within their applications. You’ll focus on building security tools, penetrationtesting and performing security assessments, whilst updating internal security processes and documentation in the process. Required: Strong experience as an App Sec Engineer Extensive experience of PenetrationTesting Hands-on experience with tools such as Burp Suite and Metasploit Capable of designing Security policies, procedures and best practices The ability to investigate and respond to Security related incidents within applications, and work closely with Dev teams throughout API Testing experience (with the likes of REST and Postman) would be ideal More ❯
City of London, London, United Kingdom Hybrid / WFH Options
Oliver Bernard
a growing FinTech, building cutting edge trading platforms for hedge funds and investment managers around the world. In London, they’re looking for an Application Security Engineer, with strong PenetrationTesting experience, to join them. This is an initial 6 month contract, hybrid working (3 days a week in the office), outside IR35 and paying ~£550 - £600 per … part of a security -focused transformation and you’ll be responsible for identifying and mitigating security vulnerabilities, and risk, within their applications. You’ll focus on building security tools, penetrationtesting and performing security assessments, whilst updating internal security processes and documentation in the process. Required: Strong experience as an App Sec Engineer Extensive experience of PenetrationTesting Hands-on experience with tools such as Burp Suite and Metasploit Capable of designing Security policies, procedures and best practices The ability to investigate and respond to Security related incidents within applications, and work closely with Dev teams throughout API Testing experience (with the likes of REST and Postman) would be ideal More ❯
South East London, England, United Kingdom Hybrid / WFH Options
Oliver Bernard
a growing FinTech, building cutting edge trading platforms for hedge funds and investment managers around the world. In London, they’re looking for an Application Security Engineer, with strong PenetrationTesting experience, to join them. This is an initial 6 month contract, hybrid working (3 days a week in the office), outside IR35 and paying ~£550 - £600 per … part of a security -focused transformation and you’ll be responsible for identifying and mitigating security vulnerabilities, and risk, within their applications. You’ll focus on building security tools, penetrationtesting and performing security assessments, whilst updating internal security processes and documentation in the process. Required: Strong experience as an App Sec Engineer Extensive experience of PenetrationTesting Hands-on experience with tools such as Burp Suite and Metasploit Capable of designing Security policies, procedures and best practices The ability to investigate and respond to Security related incidents within applications, and work closely with Dev teams throughout API Testing experience (with the likes of REST and Postman) would be ideal More ❯
Develop CTI tactical, operational and strategic intelligence framework and processes Threat hunting - Develop and lead structured threat hunting campaigns-based threat intelligence, MITRE ATT&CK, and risk models Pen Testing - Support internal testing of hypotheses and validation of remediation from pen tests You will be experienced and hands-on with a Cyber Threat Intelligence and Threat Hunting Specialist … Manager, you will support designing, building and operationalising the threat intelligence and proactive detection capabilities within the SOC. The primary focus is on CTI development and structured threat hunting, penetrationtesting and offensive security experience is a significant plus, to support internal simulation, and validation of remediation capabilities. This is an initial 6-month contract, 40% on site More ❯
Employment Type: Contract
Rate: £650.0 - £700.0 per day + £650 - £700 per day inside IR35