platforms as secure as Fort Knox, while keeping things as resilient and reliable as your favourite superhero's shield. We're seeking a Senior PenetrationTesting Engineer to delve into the depths of security challenges, pushing the boundaries of innovation and crafting impactful solutions at scale. As one … must haves In order to be considered, you must have the following experience; Degree in computer science, security, or equivalent experience Demonstrable understanding of penetrationtesting, red teaming, and relevant certifications (e.g., NCSC, CREST, Ethical Hacking, SANS) Proven experience in web/mobile application security testing, cloud More ❯
Oxford, Oxfordshire, United Kingdom Hybrid / WFH Options
Nomios
Since being acquired by Nomios in late 2024, Dionach by Nomios has continued its dynamic growth as a leading information security company. Specializing in penetrationtesting and information assurance services, we offer an incredible opportunity to be part of an experienced team, build your skills, and grow professionally. … If you require accommodations during the application process, let us know, and we'll work to meet your needs. What You'll Do Lead penetrationtesting teams to conduct penetration tests across various environments, including web applications, APIs, Cloud, and network infrastructure. Lead on-site customer engagements. … years leading network, web, and internal penetrations tests as well as experience in leading customer engagements onsite. Leadership : Experience of supervising and mentoring penetration test teams. Training Experience : Ownership and leadership on developing and providing training courses. Tools : Proficiency with tools like Burpsuite Pro, Nessus, and other industry standards. More ❯
with industry accreditations (e.g., ISO 27001, NIST, GDPR), working closely with external auditors and regulatory bodies. Conduct regular risk assessments and vulnerability management, and penetrationtesting to identify and mitigate security risks. Oversee security awareness training programs, ensuring a strong security culture is implemented and embedded throughout the … IAM solutions. Working knowledge of security frameworks: ISO 27001, NIST, CIS, SOC 2, GDPR, GXP, etc. Experience in cloud security Proficient in threat modeling, penetrationtesting, vulnerability management, and security incident response. Demonstrated ability to build security teams and drive cybersecurity initiatives from scratch. Experience in supporting organisations More ❯
Oxford, Oxfordshire, United Kingdom Hybrid / WFH Options
Nomios
Since being acquired by Nomios in late 2024, Dionach by Nomios has continued its dynamic growth as a leading information security company. Specializing in penetrationtesting and information assurance services, we offer an incredible opportunity to be part of an experienced team, build your skills, and grow professionally. … If you require accommodations during the application process, let us know, and we'll work to meet your needs. What You'll Do • Conduct penetration tests across various environments, including web applications, APIs, Cloud, and network infrastructure. • Issue detailed reports outlining findings, risks, and recommendations for remediation. • Translate complex … re Looking For • Certifications: Relevant certifications such as CREST CRT, CREST CCT, OSCP, OSWE, OSCE, or equivalent level. • Experience: At least two years in penetrationtesting, covering network, web, and internal tests and customer engagements. • Tools: Proficiency with tools like Burpsuite Pro, Nessus, and other industry standards. • Communication More ❯
Reading, Oxfordshire, United Kingdom Hybrid / WFH Options
FSP Retail Team
To Work For in the UK, Tech, and the South East in 2023. We are ISO27001 and ISO9001 certified by UKAS, a CREST approved penetrationtesting and SOC company, and hold IASME Cyber Essentials Certification and Cyber Essentials Plus certification. Learn more about our awards here . Why More ❯
Oxford, Oxfordshire, United Kingdom Hybrid / WFH Options
Nominet
both internal and external infrastructure and services. Key responsibilities include: Implement security best practices across the application and infrastructure lifecycle Define and maintain security testing processes for in-scope applications and services Manage identified vulnerabilities through to remediation, in collaboration with relevant teams Provide expert advice and guidance on … Crowdstrike • Experience in conducting security checks, such as SAST, DAST, and SCA with Snyk, OWASP ZAP, Burp Suite tools, vulnerability analysis in applications, and penetrationtesting skills. Familiarity with OWASP Testing Guide v3/4 and OWASP TOP 10. • Knowledge of CI/CD and management technologies More ❯
Reading, Oxfordshire, United Kingdom Hybrid / WFH Options
FSP Retail Team
in the UK, Tech and the South East in 2023. We are ISO27001 and ISO9001 Certified by UKAS. We are also a CREST approved penetrationtesting and SOC company, IASME Cyber Essentials Certification body and Cyber Essentials Plus certified. Find out more about our awards here: Why work More ❯
incidents. Assist in the development and maintenance of the organisation’s incident response plan. Collaborate in assessing and closing out any actions from pen testing assessments Actively engage in assessing current security related tooling and emerging technologies Be an internal part of any advance treat based and scenario based … testing Collaborate with IT Services and Operations and business stakeholders to integrate security considerations into project lifecycle. What we are looking for in our Information Security Engineer: Technical security qualifications such as AZ-500 or MS-500 Proven experience of working in a technical Information Security role (at least More ❯
incidents. Assist in the development and maintenance of the organisation's incident response plan. Collaborate in assessing and closing out any actions from pen testing assessments Actively engage in assessing current security related tooling and emerging technologies Be an internal part of any advance treat based and scenario based … testing Collaborate with IT Services and Operations and business stakeholders to integrate security considerations into project lifecycle. What we are looking for in our Information Security Engineer: Technical security qualifications such as AZ-500 or MS-500 Proven experience of working in a technical Information Security role (at least More ❯