Bath, England, United Kingdom Hybrid / WFH Options
JR United Kingdom
FTSE 100 companies to critical infrastructure and government entities — they provide high-quality security testing and advisory services across various industries. This is an excellent opportunity to join a team that values your expertise, supports your growth, and offers the flexibility of remote working with the stimulation of varied engagements. Key Responsibilities: Conduct thorough penetration tests on infrastructure, networks … results presentations. Keep current with emerging threats, vulnerabilities, and tools in the offensive security landscape. Contribute to internal development of testing methodologies, tooling, and knowledge sharing. Experience with redteaming, threat simulation, or assumed breach testing. Scripting/automation with Python, Bash, or PowerShell. Previous consultancy or client-facing experience. Eligibility for or possession of UK Security Clearance More ❯
Stratford-upon-avon, Warwickshire, United Kingdom Hybrid / WFH Options
Ccl Solutions Group
Summary: CCL Solutions Group is seeking an exceptional Senior Penetration Tester with CHECK Team Leader Infrastructure (CTL-INF) qualifications to join our elite team of security professionals. Location: Home based Main Job Summary This is more than just a job, we're looking for individuals with a hacker's mindset, deep technical expertise, and a relentless drive to … secure the UK's most critical assets. You will be leading engagements across secure environments, delivering high-impact assessments, mentoring team members, and shaping the offensive security direction of the business. In return, we offer a highly supportive environment with structured mentoring, paid training days, and access to advanced tooling. Main Duties & Responsibilities (other duties may be assigned): CCL … Solutions Group are more than just a leading provider of cybersecurity services, we are a team committed to making a real difference in protecting communities, businesses, and the critical infrastructure of the UK. As a Senior Penetration Tester within CCL Solutions Group, your key responsibilities will be: Lead and deliver end-to-end penetration testing engagements across infrastructure and More ❯
Bristol, England, United Kingdom Hybrid / WFH Options
Leonardo
An opportunity has opened for an experienced redteam consultant who enjoys a challenge to join our specialized offensive security team. This is a highly rewarding, hands-on role with exposure across traditional and cutting-edge enterprise IT as well as bespoke Operational Technology systems. Your work at Leonardo will see you lead and deliver solutions in … solving customer problems in an agile, innovative, and team-centric manner. We seek creative, passionate, technically savvy, and personable individuals to help support and grow our offensive security capabilities and address some of the most challenging security issues in the UK’s digital landscape. As a member of this specialist team, you will be involved in all stages … of a redteam engagement, from initial scoping, through engagement, to wrap-up meetings and report writing. Bringing your expertise in adversarial emulation, you will deliver projects ranging from penetration testing to complex adversarial simulation and emulation engagements that will challenge your abilities and mindset across enterprise IT and operational technology in critical infrastructure in the UK. More ❯
Bournemouth, England, United Kingdom Hybrid / WFH Options
JR United Kingdom
penetration testers to join the team. This is a genuine opportunity for a penetration tester to deliver impactful testing work - without getting side lined with adjacent tasks or red tape! If you're looking for a role to focus on delivering high-quality assessments and reports, honing your skills across a broad range of testing disciplines with full … API's Hardware & Embedded Software Produce clear, concise and actionable reports for both technical and none technical audiences. Ability to work on your own or collaboratively alongside a skilled team of penetration testers. Engage with clients and internal stakeholders to explain finding and remediation steps wherever appropriate. What's in it for you? Remote first culture - work from anywhere … a critical thinker. Genuine interest in the sector and focused on achieving certifications. Experience in delivering Hardware or Embedded System testing. Experience with Kubernetes, Docker etc.. Exposure to RedTeaming/Purple Teaming. Please note: Candidates must be based in the UK and eligible for security clearance #J-18808-Ljbffr More ❯
Exeter, Devon, United Kingdom Hybrid / WFH Options
Met Office
making We'rebettertogether-understandingpartnerships and inclusivity make usgreater We keep evolving - pushing boundaries to make tomorrow better for ourcustomers Your world ofexpertise As theVulnerability Management Managerwithin the Security Operations team of the Met Office's Cyber Security Department you will be responsible for driving the vision and operational execution of the organisation's vulnerability management program, overseeing the end … to-end process of identifying, assessing, and recommending mitigations to vulnerabilities across digital services, including complex and mission-critical systems at the Met Office. Team Leadership and Development:Lead, manage and mentor a team to ensure the team operate effectively. Develop the team utilising the career framework to identify learning needs and career pathways. Vulnerability Management … years andoptionto buy or sell up to 5 days per year of annualleave Essential Criteria,skillsand experience: We live and breathe it -Demonstrated ability to lead and manage a team with integrity and genuine passion for our purpose, fostering an inclusive, collaborative culture, and continuously developing team skills and expertise through learning and knowledge sharing. We keep evolving More ❯
Exeter, England, United Kingdom Hybrid / WFH Options
JR United Kingdom
Social network you want to login/join with: I’m currently supporting a global tier 1 bank who have just opened up two redteam roles in the UK on a remote basis. One at the Senior level and one at the Operator level. If you’re passionate about simulating real-world adversaries, from phishing and … privilege escalation to badge cloning and physical intrusion, this is your opportunity to join a flat-structured team where impact speaks louder than titles. This is true redteaming – 80% technical, 20% physical/social engineering. No purple teaming (that’s a separate function), no people management, just pure offensive security. The team is flat, but … for someone who wants visibility and influence without formal management responsibilities. What I’m Looking For: Senior Red Teamer 5+ years of hands-on redteam experience Operates at a strategic and technical depth, capable of guiding others Passionate about exploits, evasion techniques, and full-scope engagements Comfortable taking the lead in engagements and acting More ❯
Swindon, England, United Kingdom Hybrid / WFH Options
JR United Kingdom
Social network you want to login/join with: I’m currently supporting a global tier 1 bank who have just opened up two redteam roles in the UK on a remote basis. One at the Senior level and one at the Operator level. If you’re passionate about simulating real-world adversaries, from phishing and … privilege escalation to badge cloning and physical intrusion, this is your opportunity to join a flat-structured team where impact speaks louder than titles. This is true redteaming – 80% technical, 20% physical/social engineering. No purple teaming (that’s a separate function), no people management, just pure offensive security. The team is flat, but … for someone who wants visibility and influence without formal management responsibilities. What I’m Looking For: Senior Red Teamer 5+ years of hands-on redteam experience Operates at a strategic and technical depth, capable of guiding others Passionate about exploits, evasion techniques, and full-scope engagements Comfortable taking the lead in engagements and acting More ❯
Gloucester, England, United Kingdom Hybrid / WFH Options
JR United Kingdom
Social network you want to login/join with: I’m currently supporting a global tier 1 bank who have just opened up two redteam roles in the UK on a remote basis. One at the Senior level and one at the Operator level. If you’re passionate about simulating real-world adversaries, from phishing and … privilege escalation to badge cloning and physical intrusion, this is your opportunity to join a flat-structured team where impact speaks louder than titles. This is true redteaming – 80% technical, 20% physical/social engineering. No purple teaming (that’s a separate function), no people management, just pure offensive security. The team is flat, but … for someone who wants visibility and influence without formal management responsibilities. What I’m Looking For: Senior Red Teamer 5+ years of hands-on redteam experience Operates at a strategic and technical depth, capable of guiding others Passionate about exploits, evasion techniques, and full-scope engagements Comfortable taking the lead in engagements and acting More ❯
Gloucester, Gloucestershire, United Kingdom Hybrid / WFH Options
BAE Systems Applied Intelligence
to provide root cause analysis of complex, non-standard analytic findings and anomaly-based detections for which a playbook does not exist. Mentor and share knowledge with the wider team as and when it becomes prudent. Contribute and facilitate collaboration through the SOC Knowledge Repository and associated systems, autonomously creating new knowledge and updating existing items. Working outside the … HMG community to build/develop relationships with external SOCs and cyber security researchers, identify analytics, tradecraft and threat intelligence that may benefit the Blue Team, including both communicating suggestions for funding/prioritisation to technical lead, and working as lead implementor when required. Development of new complex and anomaly-based KQL analytics, and associated playbooks that result in … Research potential vulnerabilities which could lead to environment compromise. Produce proof-of-concept exploit code capable of demonstrating exploitation of the identified vulnerabilities. Emulate adversary TTPs for purposes of team training and detection capability evaluation Review findings of redteam/Pentest activities and derive new improvements to detection rules Provide forensic support, and threat-emulation More ❯
Gloucester, England, United Kingdom Hybrid / WFH Options
BAE Systems
Job Description Serve as the point of escalation for intrusion analysis, forensics, and incident response queries. Provide root cause analysis for complex, non-standard findings and anomalies. Mentor team members and share knowledge to enhance team capabilities. Contribute to the SOC Knowledge Repository, creating and updating content autonomously. Build relationships outside the HMG community with external SOCs and … cloud services and prioritize implementation. Research vulnerabilities and produce proof-of-concept exploits to demonstrate potential compromises. Emulate adversary TTPs for training and detection evaluation. Review redteam and pentest findings to improve detection rules. Provide forensic support and threat emulation to improve alert triage and accuracy. Identify gaps in SOC processes and data analysis, demonstrating the … hunting, automation, and analytics enrichment. Set vision and milestones for emulation and detection capabilities, influencing other teams. Adjust alert thresholds and suppressions based on signal-to-noise assessments and team risk appetite. Define threat hunting initiatives based on real-world risks. Architect detection processes to identify unusual behaviors, reduce dwell time, and optimize resource use. Oversee practices to improve More ❯
Gloucester, England, United Kingdom Hybrid / WFH Options
BAE
Job Description: Serve as the point of escalation for intrusion analysis, forensics, and incident response queries. Provide root cause analysis for complex, non-standard findings and anomaly detections. Mentor team members and share knowledge via the SOC Knowledge Repository. Build relationships with external SOCs and cybersecurity researchers to identify useful analytics and threat intelligence. Develop complex KQL analytics and … research on threats impacting cloud services and prioritize implementation. Research vulnerabilities, produce proof-of-concept exploits, and emulate adversary TTPs for training and detection testing. Review redteam and pentest findings to improve detection rules. Support forensic investigations and threat emulation to improve alert accuracy. Identify gaps in SOC processes and demonstrate improvements through scenarios and exercises. … Perform complex threat hunting, automation, and analytic enrichment tasks. Set vision and milestones for detection capabilities, influencing team efforts. Adjust alert thresholds and suppressions based on signal-to-noise assessment and team risk appetite. Define threat hunting initiatives based on real-world risks. Architect detection programs to identify unusual behaviors and reduce dwell time. Oversee operational practices to More ❯