Engineer will have first-class scoping and planning skills. The IT Project Engineer will host security consultations and conduct vulnerability assessments. The IT Project Engineer will oversee and direct PenetrationTesting exercises. The IT Project Engineer will be familiar with Cyber Essentials, Microsoft Copilot and PCI-DSS. The IT Project Engineer will be network-savvy. Think firewalls, switches More ❯
london (city of london), south east england, united kingdom
Mongoose Gray
Engineer will have first-class scoping and planning skills. The IT Project Engineer will host security consultations and conduct vulnerability assessments. The IT Project Engineer will oversee and direct PenetrationTesting exercises. The IT Project Engineer will be familiar with Cyber Essentials, Microsoft Copilot and PCI-DSS. The IT Project Engineer will be network-savvy. Think firewalls, switches More ❯
Milton Keynes, Buckinghamshire, England, United Kingdom Hybrid / WFH Options
Tank Recruitment
initiatives. Key Responsibilities Develop and execute an information security strategy and roadmap aligned with business goals. Lead on governance, compliance, and audit processes across the organisation. Manage incident response, penetrationtesting, and risk assessments. Support secure software development and supplier risk management. Promote security awareness and report regularly to senior leadership on risk posture. Skills & Experience Required Previous More ❯
AWS security best practices, including gap analysis, remediation planning, and architecture reviews to ensure "security by design" and "privacy by default" principles. Collaborate with external security partners to conduct penetrationtesting and manage results—removing false positives and translating validated findings into actionable improvements for engineering teams. Conduct and lead threat modeling activities to identify real-world attack More ❯
AWS security best practices, including gap analysis, remediation planning, and architecture reviews to ensure "security by design" and "privacy by default" principles. Collaborate with external security partners to conduct penetrationtesting and manage results—removing false positives and translating validated findings into actionable improvements for engineering teams. Conduct and lead threat modeling activities to identify real-world attack More ❯
Internal Penetration Tester - Hybrid in London - Inside IR35 - 6 months We are seeking an experienced Internal Pentester to join an international client secure their networks. This critical role, based in London (2-3 days per week), requires deep expertise in conducting manual and automated security assessments across networks, applications, cloud platforms, and infrastructure. You will identify and exploit vulnerabilities … simulate real-world attacks, and deliver actionable remediation guidance to strengthen defenses. Key Responsibilities: Plan and execute penetration tests - perform manual and automated testing across applications, APIs, internal/external networks, cloud environments, and Active Directory. Identify, exploit, and validate vulnerabilities - uncover security flaws such as insecure authentication, authorization bypasses, misconfigurations, and privilege escalation paths. Simulate real-world … steps What You Will Ideally Bring: Application security knowledge - strong grasp of OWASP Top 10 and API security issues.Contract Details: Hands-on pentesting experience - 3-7+ years in penetrationtesting, red teaming, or offensive security across networks, cloud, AD, and web apps. Offensive security tooling - expertise with Nmap, Nessus, Masscan, Burp Suite, Metasploit, Cobalt Strike, Mimikatz, SQLmap More ❯
Internal Penetration Tester - Hybrid in London - Inside IR35 - 6 months We are seeking an experienced Internal Pentester to join an international client secure their networks. This critical role, based in London (2-3 days per week), requires deep expertise in conducting manual and automated security assessments across networks, applications, cloud platforms, and infrastructure. You will identify and exploit vulnerabilities … simulate real-world attacks, and deliver actionable remediation guidance to strengthen defenses. Key Responsibilities: Plan and execute penetration tests - perform manual and automated testing across applications, APIs, internal/external networks, cloud environments, and Active Directory. Identify, exploit, and validate vulnerabilities - uncover security flaws such as insecure authentication, authorization bypasses, misconfigurations, and privilege escalation paths. Simulate real-world … steps What You Will Ideally Bring: Application security knowledge - strong grasp of OWASP Top 10 and API security issues.Contract Details: Hands-on pentesting experience - 3-7+ years in penetrationtesting, red teaming, or offensive security across networks, cloud, AD, and web apps. Offensive security tooling - expertise with Nmap, Nessus, Masscan, Burp Suite, Metasploit, Cobalt Strike, Mimikatz, SQLmap More ❯
london (city of london), south east england, united kingdom
Hamilton Barnes 🌳
Internal Penetration Tester - Hybrid in London - Inside IR35 - 6 months We are seeking an experienced Internal Pentester to join an international client secure their networks. This critical role, based in London (2-3 days per week), requires deep expertise in conducting manual and automated security assessments across networks, applications, cloud platforms, and infrastructure. You will identify and exploit vulnerabilities … simulate real-world attacks, and deliver actionable remediation guidance to strengthen defenses. Key Responsibilities: Plan and execute penetration tests - perform manual and automated testing across applications, APIs, internal/external networks, cloud environments, and Active Directory. Identify, exploit, and validate vulnerabilities - uncover security flaws such as insecure authentication, authorization bypasses, misconfigurations, and privilege escalation paths. Simulate real-world … steps What You Will Ideally Bring: Application security knowledge - strong grasp of OWASP Top 10 and API security issues.Contract Details: Hands-on pentesting experience - 3-7+ years in penetrationtesting, red teaming, or offensive security across networks, cloud, AD, and web apps. Offensive security tooling - expertise with Nmap, Nessus, Masscan, Burp Suite, Metasploit, Cobalt Strike, Mimikatz, SQLmap More ❯
re Looking For Proven experience managing enterprise ISMS and leading ISO 27001 audits Deep understanding of cyber threats, cloud security (Azure, M365), and compliance frameworks Skilled in vulnerability management, penetrationtesting, and supplier assurance Strong communicator with the ability to translate technical risk into business impact Experience with tools like ISMS Online, Qualys VMDR, and Cofense phishing simulation More ❯
London, South East, England, United Kingdom Hybrid / WFH Options
Digital Waffle
actors, and exploit techniques Mentor junior team members and contribute to tooling, methodology, and lab development Required Skills & Experience 3+ years' experience in red teaming, offensive security, or advanced penetrationtesting Strong knowledge of attacker frameworks (e.g., MITRE ATT&CK, NIST adversary simulation guidelines) Highly proficient with red team tools and techniques (e.g., Cobalt Strike, Mimikatz, Sliver, BloodHound More ❯
tool, enabling rapid identification of potential threats across the business’ entire technology landscape Administer and update all relevant applications such as EDR/XDR, MDM, SIEM etc and manage penetrationtesting activities Responsibility for device security, and ensuring non-authorised devices, as well as those used outside of allowed geographical locations cannot access nor authenticate to company systems More ❯
dependencies. Proven hands-on experience in security architecture - not just advisory. You've designed, implemented, and delivered secure systems yourself (this is essential) Background in security engineering, SecOps, pen testing, or other hands-on technical roles. Excellent communication skills to engage both technical and non-technical audiences. Adaptability to work across varied industries and technologies. Experience in regulated or More ❯
Build and configure virtual networks and subnets to support scalable and secure architecture designs. Perform patching and maintenance of virtual machines and Docker containers to ensure environment stability. Conduct penetrationtesting and IT health checks across all infrastructure resources to maintain compliance with Client's requirements. Implement Infrastructure as Code (IaC) practices using Terraform and related tools to … with security, compliance, and performance standards. Required Skills Strong experience in infrastructure automation, Azure Devops and IaC scripting. Proficient in managing Terraform configurations and dependencies. Should have experience in testing Terraform infrastructure code. Should have experience in creating automated machine images for multiple platforms. Strong knowledge in configuration management and deployment automation. Hands-on experience in CI/CD More ❯
Build and configure virtual networks and subnets to support scalable and secure architecture designs. Perform patching and maintenance of virtual machines and Docker containers to ensure environment stability. Conduct penetrationtesting and IT health checks across all infrastructure resources to maintain compliance with Client’s requirements. Implement Infrastructure as Code (IaC) practices using Terraform and related tools to … with security, compliance, and performance standards. Required Skills Strong experience in infrastructure automation, Azure Devops and IaC scripting. Proficient in managing Terraform configurations and dependencies. Should have experience in testing Terraform infrastructure code. Should have experience in creating automated machine images for multiple platforms. Strong knowledge in configuration management and deployment automation. Hands-on experience in CI/CD More ❯
Build and configure virtual networks and subnets to support scalable and secure architecture designs. Perform patching and maintenance of virtual machines and Docker containers to ensure environment stability. Conduct penetrationtesting and IT health checks across all infrastructure resources to maintain compliance with Client’s requirements. Implement Infrastructure as Code (IaC) practices using Terraform and related tools to … with security, compliance, and performance standards. Required Skills Strong experience in infrastructure automation, Azure Devops and IaC scripting. Proficient in managing Terraform configurations and dependencies. Should have experience in testing Terraform infrastructure code. Should have experience in creating automated machine images for multiple platforms. Strong knowledge in configuration management and deployment automation. Hands-on experience in CI/CD More ❯
london (city of london), south east england, united kingdom
Cognizant
Build and configure virtual networks and subnets to support scalable and secure architecture designs. Perform patching and maintenance of virtual machines and Docker containers to ensure environment stability. Conduct penetrationtesting and IT health checks across all infrastructure resources to maintain compliance with Client’s requirements. Implement Infrastructure as Code (IaC) practices using Terraform and related tools to … with security, compliance, and performance standards. Required Skills Strong experience in infrastructure automation, Azure Devops and IaC scripting. Proficient in managing Terraform configurations and dependencies. Should have experience in testing Terraform infrastructure code. Should have experience in creating automated machine images for multiple platforms. Strong knowledge in configuration management and deployment automation. Hands-on experience in CI/CD More ❯
re looking for: Proven experience leading security in SaaS, ideally PE-backed, across multiple regions including North America Hands-on technical expertise in cloud and infrastructure security, incident management, penetrationtesting, and remediation Deep knowledge of ISO27001, SOC2, and data residency requirements, with experience embedding and maintaining compliance Skilled at modernising security culture, implementing scalable processes, and embedding More ❯
london, south east england, united kingdom Hybrid / WFH Options
Futurist
re looking for: Proven experience leading security in SaaS, ideally PE-backed, across multiple regions including North America Hands-on technical expertise in cloud and infrastructure security, incident management, penetrationtesting, and remediation Deep knowledge of ISO27001, SOC2, and data residency requirements, with experience embedding and maintaining compliance Skilled at modernising security culture, implementing scalable processes, and embedding More ❯
london (city of london), south east england, united kingdom Hybrid / WFH Options
Futurist
re looking for: Proven experience leading security in SaaS, ideally PE-backed, across multiple regions including North America Hands-on technical expertise in cloud and infrastructure security, incident management, penetrationtesting, and remediation Deep knowledge of ISO27001, SOC2, and data residency requirements, with experience embedding and maintaining compliance Skilled at modernising security culture, implementing scalable processes, and embedding More ❯
slough, south east england, united kingdom Hybrid / WFH Options
Futurist
re looking for: Proven experience leading security in SaaS, ideally PE-backed, across multiple regions including North America Hands-on technical expertise in cloud and infrastructure security, incident management, penetrationtesting, and remediation Deep knowledge of ISO27001, SOC2, and data residency requirements, with experience embedding and maintaining compliance Skilled at modernising security culture, implementing scalable processes, and embedding More ❯
A good background in Security Operations Incident Response in a managerial or lead role Strong technical knowledge Demonstrable stakeholder management experience A technical background in infrastructure, security engineering or penetrationtesting preferred Please send your CV for immediate consideration. More ❯
A good background in Security Operations\ Incident Response in a managerial or lead role Strong technical knowledge Demonstrable stakeholder management experience A technical background in infrastructure, security engineering or penetrationtesting preferred Please send your CV for immediate consideration. More ❯
A good background in Security Operations\ Incident Response in a managerial or lead role Strong technical knowledge Demonstrable stakeholder management experience A technical background in infrastructure, security engineering or penetrationtesting preferred Please send your CV for immediate consideration. More ❯
london (city of london), south east england, united kingdom
Harrington Starr
A good background in Security Operations\ Incident Response in a managerial or lead role Strong technical knowledge Demonstrable stakeholder management experience A technical background in infrastructure, security engineering or penetrationtesting preferred Please send your CV for immediate consideration. More ❯
security frameworks and compliance standards. Strong understanding of cloud platforms (i.e. Azure) and deep technical knowledge networking, and enterprise architecture. Ability to engage with external vendors when driving Pen testing for example. Implementing and maintaining ISMS. Certifications in CISSP, CISM, CCSP, PMP, etc would be desirable. More ❯