Belfast, Northern Ireland, United Kingdom Hybrid / WFH Options
Ocho
dynamic and ambitious environment. What You'll Be Doing: Perform penetration tests on networks, applications, and infrastructure. Identify and exploit vulnerabilities to strengthen security defences. Use tools like BurpSuite, Nessus, Metasploit, and Kali Linux. Provide detailed reports with clear, actionable recommendations. Experience required: Strong knowledge of OWASP, CVE, and security frameworks. Hands-on … experience with ethical hacking & exploit techniques. Scripting & automation skills a plus. Ability to communicate findings to technical and non-technical teams. Proficiency in using penetration testing tools such as BurpSuite Pro, Nmap, Nessus, and Metaspolit. Experienced in using Kali Linux and the associated penetration testing tool suite Nice to Have: Relevant security certifications (e.g. OSCP, CREST, Cyber Scheme. More ❯
Central London, London, England, United Kingdom Hybrid / WFH Options
Bupa UK
OWASP, MITRE ATT&CK, CVE/CVSS, and NIST SP 800-53. Experience of vulnerability scanning tools, penetration testing tools, and security testing frameworks (e.g., Nessus, Metasploit, BurpSuite, Nmap, Claire, and OpenSCAP). Extensive experience with Red Teaming, Purple Teaming and Attack Automation. Familiarity with industry regulations and compliance standards related to cybersecurity, such More ❯
managing services, and using Linux/Windows-based security tools. Knowledge of Linux/Windows is vital for testing and exploiting Unix/Windows-based applications and servers. BurpSuite Expertise: Exhibit expertise in using BurpSuite, a leading tool for web application security testing. This includes leveraging its various features for More ❯
certifications (e.g. CREST Certified Tester or Cyber Scheme Team Leader). Strong client-facing experience. Able to obtain UK security clearance. Skills & Knowledge: Skilled in tools like Nessus, Nmap, BurpSuite, Metasploit. Proficient in at least one scripting language (Bash, PowerShell, Python, etc.). Strong understanding of TCP/IP, OSI model, and network device reviews. Solid experience testing web applications More ❯
Penetration Tester or in a similar role within cybersecurity ️ Strong knowledge of common vulnerabilities (OWASP Top 10, CVEs) and attack techniques ️ Familiarity with penetration testing tools such as BurpSuite, Metasploit, Nessus, and Nmap ️ Certifications such as OSCP, CEH, or equivalent are highly desirable ️ Strong communication skills to present findings to both technical and non-technical More ❯
more. Excellent communication and report writing skills. Amazing Extras Experience in generating and writing clear, concise and actionable penetration testing reports Hands-on familiarity with tools such as BurpSuite, Nessus, Qualys and other industry testing tools. Experience to scripting or automation tools, such as Python, Bash or PowerShell. Desirable to have any penetration testing qualifications More ❯
in penetration testing CREST Practitioner, CRT, or Cyber Scheme Team Member certified Ability to maintain UK security clearances as required by the business Hands-on experience with tools like BurpSuite, Metasploit, Nmap, Nessus Strong understanding of TCP/IP, OSI model, and security testing methodologies Skilled in at least one scripting language (Python, Bash, PowerShell, etc.) Confident communicator, able to More ❯
Remote working (anywhere in the UK) Hybrid / WFH Options
Government Digital & Data
delivery team, you'll contribute to the coordination and execution of security testing across the software development lifecycle. This will involve running vulnerability scans using tools such as Burp, coordinating with relevant teams, testing security related issues.?? Support the wider test team by sharing knowledge and guidance on security testing approaches and tooling.???? Attend meetings and provide stakeholders … CSTA or GIAC Penetration testing,?OR currently working towards this OR have proven working experience.??? Working knowledge of at least 5 of the following security tools and technologies: BurpSuite (including Burp Scanner) - for web app vulnerability scanning and manual security testing. OWASP ZAP - for DAST and automated security regression testing. Postman or SOAP … for secure code handling and integration with security scanners. Static Application Security Testing (SAST) tools - e.g. SonarQube, Checkmarx, Semgrep. Dynamic Application Security Testing (DAST) tools - e.g. OWASP ZAP, BurpSuite Pro. Infrastructure-as-Code (IaC) scanning tools - e.g. tfsec, Checkov. Secrets detection tools - e.g. GitLeaks, truffleHog, detect-secrets. Threat modelling approaches - e.g. STRIDE, or creating risk More ❯
City of London, London, United Kingdom Hybrid / WFH Options
Global TechForce
an organization's IT infrastructure, networks, systems, and applications to identify potential weaknesses and vulnerabilities. Performing vulnerability testing and penetration testing: Using various tools and techniques (like Nessus, BurpSuite, Metasploit), you'll simulate attacks to uncover exploitable flaws. Developing threat analysis schedules and staying updated on emerging threats: Keeping abreast of the latest attack vectors More ❯
an organization's IT infrastructure, networks, systems, and applications to identify potential weaknesses and vulnerabilities. Performing vulnerability testing and penetration testing: Using various tools and techniques (like Nessus, BurpSuite, Metasploit), you'll simulate attacks to uncover exploitable flaws. Developing threat analysis schedules and staying updated on emerging threats: Keeping abreast of the latest attack vectors More ❯
present to clients. Ability to manage time effectively and work to deadlines. Critical thinking skills and an innovative approach to problem-solving. Experience with security tools like Nessus, BurpSuite, and Metasploit. Ability to work independently and collaboratively, sharing knowledge freely. Knowledge of scripting languages. Eligibility for security clearance. Self-motivation and a commitment to continuous More ❯
Nessus Palo Alto Firewalls, InTune, Entra ID, Active Directory Desirable: Imperva WAF, Menlo Security, Cisco Secure Access/Umbrella, KnowBe4, AppCheck Ivanti or Automox patching Kali Linux, Metasploit, NMAP, BurpSuite Candidate Profile Professional certifications such as CISM, MS SC100/200/900, OSCP are advantageous Background in financial services, SOC environments, or penetration testing preferred Strong interpersonal and communication More ❯
Nessus Palo Alto Firewalls, InTune, Entra ID, Active Directory Desirable: Imperva WAF, Menlo Security, Cisco Secure Access/Umbrella, KnowBe4, AppCheck Ivanti or Automox patching Kali Linux, Metasploit, NMAP, BurpSuite Candidate Profile Professional certifications such as CISM, MS SC100/200/900, OSCP are advantageous Background in financial services, SOC environments, or penetration testing preferred Strong interpersonal and communication More ❯
Nessus Palo Alto Firewalls, InTune, Entra ID, Active Directory Desirable: Imperva WAF, Menlo Security, Cisco Secure Access/Umbrella, KnowBe4, AppCheck Ivanti or Automox patching Kali Linux, Metasploit, NMAP, BurpSuite Candidate Profile Professional certifications such as CISM, MS SC100/200/900, OSCP are advantageous Background in financial services, SOC environments, or penetration testing preferred Strong interpersonal and communication More ❯
Gateway Menlo CASB Cisco Secure Access Cisco Umbrella Cisco ASA KnowBe4 Digicert Certificates and Microsoft Certificate Services Ivanti or Automox patching AppCheck or Tenable WAS Kali Linux (NMAP, Metasploit, BurpSuite, John etc) Desired Education: CISM, MS SC100, 200 and 900, OSCP or other penetration testing qualifications. Industry: Financial services, SOC, Pentesting is desirable Personal Skills: Excellent inter-personal, written and More ❯
City of London, London, United Kingdom Hybrid / WFH Options
Marlin Selection Recruitment
Gateway Menlo CASB Cisco Secure Access Cisco Umbrella Cisco ASA KnowBe4 Digicert Certificates and Microsoft Certificate Services Ivanti or Automox patching AppCheck or Tenable WAS Kali Linux (NMAP, Metasploit, BurpSuite, John etc) Desired Education: CISM, MS SC100, 200 and 900, OSCP or other penetration testing qualifications. Industry: Financial services, SOC, Pentesting is desirable Personal Skills: Excellent inter-personal, written and More ❯
Remote working (anywhere in the UK) Hybrid / WFH Options
Government Digital & Data
Lead Test Engineer focusing on security, you will: Take ownership of security testing within the software development lifecycle. This will involve running vulnerability scans using tools such as Burp, coordinating with relevant teams, and testing security-related issues. As a manager, you will provide advice, coaching and mentoring to testers on non-functional testing subjects such as security … working experience. Experience of non-functional testing practices with a strong focus on Security Testing. Working knowledge of at least 5 of the following security tools and technologies: BurpSuite (including Burp Scanner) - for web application vulnerability scanning and manual security testing. OWASP ZAP - for DAST and automated security regression testing. Postman or SOAP … for secure code handling and integration with secrets scanners. Static Application Security Testing (SAST) tools - e.g. SonarQube, Checkmarx, Semgrep. Dynamic Application Security Testing (DAST) tools - e.g. OWASP ZAP, BurpSuite Pro. Infrastructure-as-Code (IaC) scanning tools - e.g. tfsec, Checkov. Secrets detection tools - e.g. GitLeaks, truffleHog, detect-secrets. Threat modelling methodologies - e.g. STRIDE, PASTA, or creating More ❯
Testing Focus on ensuring different modules/components interact correctly. Test APIs, databases, and service flows. Security Testing & Penetration Testing (Ethical Hacking) Simulate attacks to find vulnerabilities. Tools: BurpSuite , OWASP ZAP , Metasploit . CEH , OSCP , CISSP certifications an advantage Vulnerability Testing Scan systems for known vulnerabilities. Collaborate with SecOps and DevSecOps teams. Security QA/ More ❯
of the external threat environment and attacker tactics, techniques, and procedures Your skills and experiences: Essential: Demonstrable experience in penetration testing Proficient in penetration testing tools such as BurpSuite, Nmap, Metasploit etc CREST Registered Penetration Tester (CRT) The ability to clearly communication both verbally and written Desirable Practical Penetration Certifications such as PNPT/eCPPT More ❯
with database testing and SQL query language. Experience testing AWS services like Lambda, API Gateway, DynamoDB, and S3. Understanding of security testing concepts and tools (e.g., OWASP ZAP, BurpSuite). Knowledge of usability testing and user experience (UX) principles. Start-up experience Attributes: Effective collaboration skills, able to work with cross-functional teams and stakeholders. More ❯
role Excellent knowledge of Vulnerability and Penetrating Testing concepts and best practices, including the requirements for WhiteHat/Ethical Hacking. Experience with automated tools such as Nessus, Appscan, BurpSuite, Nipper, and Trustwave. Expert understanding of the difference between a vulnerability assessment and a penetration test in the context of assessment scope, objectives, and deliverables. Working More ❯
in an IT or CyberSecurity related field Passion for penetratioin testing, shown through either work experience, extra curricular activities or personal projects. Strong Technical understanding of toolings such as Burpsuite or Nessus Strong understanding of OWASP top 10 Sole british citizen This position is a fantastic chance for someone who wants to progress their career as a penetration tester, opportunities More ❯
project teams Collaborate with the wider Security Operations teams to enable better utilisation of results. Technical Requirements: Advanced with offensive tools such as: Metaspoit, Kali Linux, Cobalt Strike, Mimikatz, Burpsuite or similar tools Good knowledge of creating scripts in preferred scripting language Technical expertise in system security vulnerabilities and remediation techniques, network and web-related protocols (e.g., TCP/IP More ❯
project teams Collaborate with the wider Security Operations teams to enable better utilisation of results. Technical Requirements: Advanced with offensive tools such as: Metaspoit, Kali Linux, Cobalt Strike, Mimikatz, Burpsuite or similar tools Good knowledge of creating scripts in preferred scripting language Technical expertise in system security vulnerabilities and remediation techniques, network and web-related protocols (e.g., TCP/IP More ❯
CCT, OSCP, OSWE, OSCE, or equivalent level. • Experience: At least two years in penetration testing, covering network, web, and internal tests and customer engagements. • Tools: Proficiency with tools like Burpsuite Pro, Nessus, and other industry standards. • Communication: Strong verbal and written skills for stakeholder management, collaboration and report writing. • Independence: Ability to work solo or as part of a team More ❯