a passion to make an impact. Harnessing our innovative technologies and strong partnerships, we aim to make travel easy and rewarding for everyone. Get to Know our Team The Security Department oversees security, compliance, GRC, and security operations for all Agoda. We are vigilant in ensuring there is no breach or vulnerability threatening our company or endangering … This would be a great challenge for those who want to work with the best technology in a dynamic and advanced environment. The Opportunity/Role Summary: Conduct application security reviews and perform penetration testing, ensuring alignment with compliance standards. Engage in projects, research, and security tool development to enhance security measures and meet compliance requirements. Scale … security processes using automation. Provide training, outreach, and develop documentation to guide security practices among internal teams. Offer technical guidance, advocate for automation, evaluate designs, and lead our security teams to empower engineering partners with cutting-edge tools, techniques, and methodologies to naturally build secure products. What you'll Need to Succeed/Role Requirements: Strong foundations More ❯
Manchester, Lancashire, United Kingdom Hybrid / WFH Options
Agoda
a passion to make an impact. Harnessing our innovative technologies and strong partnerships, we aim to make travel easy and rewarding for everyone. Get to Know our Team The Security Department oversees security, compliance, GRC, and security operations for all Agoda. We are vigilant in ensuring there is no breach or vulnerability threatening our company or endangering … This would be a great challenge for those who want to work with the best technology in a dynamic and advanced environment. The Opportunity/Role Summary: Conduct application security reviews and perform penetration testing, ensuring alignment with compliance standards. Engage in projects, research, and security tool development to enhance security measures and meet compliance requirements. Scale … security processes using automation. Provide training, outreach, and develop documentation to guide security practices among internal teams. Offer technical guidance, advocate for automation, evaluate designs, and lead our security teams to empower engineering partners with cutting-edge tools, techniques, and methodologies to naturally build secure products. What you'll Need to Succeed/Role Requirements: Strong foundations More ❯
a passion to make an impact. Harnessing our innovative technologies and strong partnerships, we aim to make travel easy and rewarding for everyone. Get to Know our Team: The Security Department oversees security, compliance, GRC, and security operations for all Agoda. We are vigilant in ensuring there is no breach or vulnerability threatening our company or endangering … advanced environment. The Opportunity: You will be working in a fast paced DevSecOps environment where code change happens at a rapid speed and where it is paramount to control security testing into a continuous deployment/integration flow. In this Role, you'll get to: Play a lead role in developing and designing application-level security controls and … standards. Perform application security design reviews against new products and services. Track and prioritize all security issues. Build internal security tools that help fix security problems at scale. Perform code review and drive remediation of discovered issues. Enable automated security testing at scale to measure vulnerability, and report on risk across all microservice, web and More ❯
Liverpool, Lancashire, United Kingdom Hybrid / WFH Options
Agoda
a passion to make an impact. Harnessing our innovative technologies and strong partnerships, we aim to make travel easy and rewarding for everyone. Get to Know our Team: The Security Department oversees security, compliance, GRC, and security operations for all Agoda. We are vigilant in ensuring there is no breach or vulnerability threatening our company or endangering … advanced environment. The Opportunity: You will be working in a fast paced DevSecOps environment where code change happens at a rapid speed and where it is paramount to control security testing into a continuous deployment/integration flow. In this Role, you'll get to: Play a lead role in developing and designing application-level security controls and … standards. Perform application security design reviews against new products and services. Track and prioritize all security issues. Build internal security tools that help fix security problems at scale. Perform code review and drive remediation of discovered issues. Enable automated security testing at scale to measure vulnerability, and report on risk across all microservice, web and More ❯
to bring 1B+ people onchain in the most secure way possible. We want to provide them secure platforms and tools to build and interact with exciting applications. The Protocol Security team ensures the security of all onchain development at Coinbase. We partner closely with product teams to make sure that our users can safely and confidently engage with … the onchain world. What you'll be doing (ie. job duties): Perform threat modeling and security assessments of blockchain products and services. Propose, plan, and execute Red Team operations based on realistic threats. Write detailed reports covering the goals and outcomes of Red Team operations, including significant observations and recommendations. Collaborate with partner teams to improve detection and response … capabilities. Provide expert technical guidance to the team in building new security frameworks and analysis tools. Stay informed on current security trends, advisories, publications, and academic research. What we look for in you (ie. job requirements): Bachelor's or Master's degree in Computer Science, Cyber security, Software Engineering, or a related field. 3+ years of blockchain More ❯
Are you looking for an exciting new opportunity? Join a trusted security and compliance partner offering comprehensive services including GRC consulting, CREST-accredited penetration testing, and an industry-leading vulnerability management service. As the number one Global Service Partner of Vanta, the company has a proven track record of helping hundreds of businesses from tech startups to global industry … leaders achieve their security compliance goals, including SOC 2 and ISO 27001. With a focus on delivering trust and excellence, it ensures that companies of all sizes can effectively manage their security posture and compliance needs. If you would like to learn more about this opportunity, feel free to reach out and apply today! Responsibilities: Work across the … penetration testing and red teaming Contribute to client relationships and leading high-level engagements Scoping and delivering advanced red team assessments Mentoring more junior team members Supporting innovation through offensivesecurity research Required Skills/Qualifications: Minimum 7 years of penetration testing experience, with at least 4 years in red teaming Strong hands-on background across a range More ❯
Penetration Tester – UK Remote – £60,000 - £80,000 + Benefits Our client, a leading UK Cyber Security Consultancy, is looking for an experienced Mobile Application Penetration Tester to join their OffensiveSecurity function. Our client offers a range of penetration testing services, including red teaming engagements, providing opportunities to work on diverse client projects and lead engagements … from the forefront. Key Responsibilities: Conduct mobile application penetration testing across Android and iOS platforms, assessing security vulnerabilities. Engage in red teaming exercises to simulate real-world attack scenarios against enterprise applications. Evaluate API security, network communications, cryptographic implementations, and mobile backend security. Perform manual and automated exploitation, including tampering, code injection, authentication bypass, and malware analysis. Utilize … industry-leading tools such as Burp Suite, MobSF, Frida, Objection, IDA Pro, and other mobile security frameworks. To Be Considered for This Role: Proven experience in penetration testing mobile applications, focusing on Android and iOS security. Expertise in reverse engineering, dynamic analysis, API security testing, and mobile exploit development. Familiarity with OWASP Mobile Top 10 and secure coding More ❯
Automation) Join TLScontact – Secure the Future of Global Visa & Immigration Services! At TLScontact , we specialize in delivering seamless and secure visa and immigration solutions for governments and travelers worldwide. Security is at the heart of our digital transformation, and we are looking for a Security Testing Engineer (Pentester) to help safeguard our platforms and applications. If you are … passionate about penetration testing, vulnerability analysis, and secure development, this role is perfect for you! You will work closely with our software engineering teams to identify security risks, implement best practices, and enhance the security posture of our digital services. Your Mission Perform offensivesecurity testing (penetration testing) on web applications and services. Conduct manual and … automated code analysis to detect vulnerabilities and non-trivial security issues. Support technical teams in resolving vulnerabilities and strengthening security measures. Develop and maintain security testing methodologies aligned with OWASP, NIST, and CIS Controls . Integrate security testing into the CI/CD pipeline to detect and fix vulnerabilities early. Ensure compliance with industry securityMore ❯
Loughton, Essex, South East, United Kingdom Hybrid / WFH Options
Profile 29
month contract in a Work from Office (WFO) role. This role will focus on creating a business strategy, gap analysis and implementation, for securing their Azure-based infrastructure, integrating security automation, ensuring PCI DSS compliance, vulnerability and penetration testing and incident response. This role will focus on developing and maintaining secure, scalable Azure DevOps pipelines and Infrastructure as Code … IaC) using Terraform. Their ideal candidate will have a strong background in cloud security best practices, automation, and a proactive approach to integrating security across their software delivery lifecycle. A key part of this position will also involve mentoring an internal engineer, developing structured security policies, and managing Sentinel, Defender and SOAR solutions for automated threat response. … Additionally, the role requires liaising with third-party support partners to coordinate security solutions, manage incidents, and enhance overall cybersecurity posture. Responsibilities Infrastructure Security: Architect and secure Azure-based infrastructure using Terraform, ensuring adherence to security best practices by developing, maintaining, and optimizing Terraform code. DevOps Pipeline Development and Maintenance: Design, develop, and optimize Azure DevOps pipelines More ❯
team operations. This is a hands-on, client-facing position suited to someone who thrives in technically demanding scenarios and wants to work alongside a small, elite team of offensivesecurity specialists. Key Responsibilities Lead and execute complex penetration tests and adversary simulations Deliver red team engagements aligned with frameworks like TIBER, CBEST, and MITRE ATT&CK Develop More ❯
team operations. This is a hands-on, client-facing position suited to someone who thrives in technically demanding scenarios and wants to work alongside a small, elite team of offensivesecurity specialists. Key Responsibilities Lead and execute complex penetration tests and adversary simulations Deliver red team engagements aligned with frameworks like TIBER, CBEST, and MITRE ATT&CK Develop More ❯
of the mid-market, ensuring both excellent client serviceand identification of further work opportunities. The role will involvemanaging the delivery of agreed work activities with a primary focus ontechnical security including offensivesecurity services. You'll benefit from ongoing coaching, career mentoring, and be supported by ourcareer pathway. You will have an opportunity to continue to develop … marketleading skills across our different capabilities and advance your professionaldevelopment. You'll make an impact by: Responsible for planning and delivering cyber security engagements, from scoping through to delivery, debriefs and report writing. Contributing towards the development of exciting new market facing offensivesecurity cyber security products and services. Supporting the development of other members of … passionate about making improvements, this role is perfect for you! We value diverse experiences and perspectives. Here's what we're looking for in our ideal candidate: Experience delivering offensivesecurity and penetration testing engagements. Experience of delivering and leading cyber security advisory and offensivesecurity testing engagements in a professional services context. Understand technology More ❯
South Croydon, London, United Kingdom Hybrid / WFH Options
LA International Computer Consultants Ltd
Principle Security QA Consultant - SC Cleared - Inside IR35 Remote with travel to Croydon 6 months+ contract ASAP Start £600-650 per day The Role Our client is currently developing an internal Security Testing capability that will operate out of the Quality Assurance and Testing function. As a Principle Cyber Security Professional, your role will be embedded in … the Cyber Security function working day to day with senior security stakeholders to lead the continued development of the security testing service and represent security testing for the client. Communication and professionalism are critical for this role as you will be working collaboratively with senior Security colleagues across the organisation on a day-to-day … basis. Working within Security Testing, you will play a leading role in delivering security testing, vulnerability assessment and continual security compliance capabilities in order to secure services and to ensure the best possible technical security risk-based advice is given to our customers. You will work collaboratively with key business & technical stakeholders, to deliver appropriate securityMore ❯
Are you an offensivesecurity specialist who is excited about delivering the best service possible? Keen to work in a business where you stand to work alongside some very talented testers? CND are working with a boutique Cyber Security consultancy who are focused on the Penetration Testing market. What makes them stand out? They are not interested … with common tooling for penetration testing. Ideally, a knowledge of Cloud services such as Azure or AWS. Capability to script or code in Bash, Python etc. Appreciation for Cyber Security standards such as ISO27001, PCI-DSS or CIS. This is a role with a growing, exciting organisation who can offer you a strong degree of progression and the ability More ❯
Role: Penetration Tester Type: Permanent Location: Cheltenham/Remote Clearance: SC/DV Are you an offensivesecurity specialist who is excited about delivering the best service possible? Keen to work in a business where you stand to work alongside some very talented testers? CND are working with a boutique Cyber Security consultancy who are focused on … with common tooling for penetration testing • Ideally, a knowledge of Cloud services such as Azure or AWS • Capability to script or code in Bash, Python etc • Appreciation for Cyber Security standards such as ISO27001, PCI-DSS or CIS This is a role with a growing, exciting organisation who can offer you a strong degree of progression and the ability More ❯
London, England, United Kingdom Hybrid / WFH Options
Client Server
architecture governance You have strong experience with Guidewire and/or Verisk You have public cloud experience, ideally multi-cloud, AWS, Azure, GCP You have a good understanding of security concepts such as IAM and OffensiveSecurity You have a strong understanding of the end-to-end technology delivery cycle with experience of working with Agile teams More ❯
South East London, England, United Kingdom Hybrid / WFH Options
Client Server
architecture governance You have strong experience with Guidewire and/or Verisk You have public cloud experience, ideally multi-cloud, AWS, Azure, GCP You have a good understanding of security concepts such as IAM and OffensiveSecurity You have a strong understanding of the end-to-end technology delivery cycle with experience of working with Agile teams More ❯
Reading, England, United Kingdom Hybrid / WFH Options
Oracle
As a member of our technical leadership team, you will be responsible for leading the planning and delivery of in-depth security assessments across a variety of products and services, you will author reports and be the owner from cradle to grave while presenting to executive leadership your findings and taking ownership of your teams work. Your next project … programming language, to analysis and reverse engineering of firmware used in the thousands of servers supporting our cloud services. Other responsibilities include: Designing and evaluating complex systems for computer security Scope and execute security assessments and vulnerability research Perform in-depth security assessments using results from static and dynamic analysis Create testing tools to help engineering teams … identify security-related weaknesses Collaborate with engineering teams to help them triage and fix security issues Mentor members of the team in computer and software security as a role model and team leader Career Level - IC5 What You’ll Bring Bachelor’s or Master’s degree in Computer Science or related field (e.g. Electrical Engineering) 15+ years More ❯
our six solutions, expanding and developing our team of expertconsultants, embracing a digital-first approach, strengthening our globalpresence, and building strong client relationships We are seeking an enthusiastic Cyber Security Consultantto join our team. Working alongside ourexperienced team of specialists, you'll be delivering offensive … securityservices including digital footprint reconnaissance, social engineering,penetration testing and vulnerability assessments and more to high profileclients across all industries. The purpose of this role is to deliver our offensivesecurity services including digital footprint reconnaissance, socialengineering, vulnerability assessments, penetration testing, threat modelling,cyber-attack simulation exercises, and more to high profile clients across allindustries. The purpose of this role is … to deliver our Cyber Security services across our broad range of assurance and advisory engagementsto high profile clients across all industries. We are seeking an enthusiastic Cyber Security Consultantto join our team. Working alongside ourexperienced team of specialists, you'll be delivering cyber risk and control assessments,developing cyber programmes as well as delivering offensivesecurityMore ❯
Manchester, Lancashire, United Kingdom Hybrid / WFH Options
RSM UK
Birmingham, United Kingdom Principal Consultant - Cyber Security We are searching for an experienced Principal Consultant - Cyber Security. Make an Impact at RSM UK Consulting brings together multiple teams across Transactions, Risk & Consulting, ABA, and Outsourcing to provide client-centric solutions for RSM's current and future clients within the middle market. Our Consulting team has a major role to … market, ensuring both excellent client service and identification of further work opportunities. The role will involve managing the delivery of agreed work activities with a primary focus on technical security including offensivesecurity services. You'll benefit from ongoing coaching, career mentoring, and be supported by our career pathway. You will have an opportunity to continue to … develop market-leading skills across our different capabilities and advance your professional development. You will make an impact by: Planning and delivering cyber security engagements, from scoping through to delivery, debriefs, and report writing. Contributing towards the development of exciting new market-facing offensivesecurity cyber security products and services. Supporting the development of other members More ❯
CHIEF INFORMATION SECURITY OFFICER - AEROSPACE AND DEFENSE: Bullisher is a data-centric fintech solution provider in the aerospace and defense industry for institutional-level investors, looking to disrupt and revolutionize a $3 trillion dollar industry. We spearhead an industry-leading Blackbox to facilitate and administer trade agreements, driven by our new generation benchmark delivering solutions through innovation with uncompromising … agility. JOB DESCRIPTION: The oversight requires a sophisticated operating model that allows for a stronger security posture centralized in a Security Operations Center (SOC). This role will oversee global operations with a unified management of API calls, space exploration & navigation, and integrate various tools into our systems of record to view interactions from a holistic risk management … Introducing new risk management techniques will undergo formal approval by the Change Approval Board (C.A.B). The role will also involve micromanaging cybersecurity engineers, penetration testing engineers, and other security personnel, ensuring compliance with NIST cybersecurity framework and DoD requirements. PHYSICAL DEMANDS: This position requires the ability to communicate and exchange information, utilizing necessary equipment to perform the job. More ❯
We are watchTowr, a VC-backed cyber security startup helping organisations continuously discover vulnerabilities in their Internet-facing attack surface. Cyber security veterans and technical experts, we are obsessed with building cybersecurity technology to help prevent breaches. With experience informed by years of simulating sophisticated cyber attacks against some of the world's largest organisations, our mission is … breaches. We are in a high and aggressive growth phase of our journey and are excited to continue adding colleagues to join our phorce of nature. Our vision for offensivesecurity is continuous. But what's the role? We are seeking an ambitious Information Security Engineer to join our Platforms team to focus on our internal security programme. Sounds great-what will I do? This role involves: Security Architecture in the Cloud : Designing and implementing secure cloud infrastructures, ensuring robust protection against potential threats. Endpoint Management and Administration : Overseeing the deployment, configuration, and maintenance of endpoint security solutions to safeguard all devices within the organisation. Vulnerability Assessment and Management : Conducting regular vulnerability assessments, analysing More ❯
Our client is seeking a Senior Penetration Tester to join their growing security team. This is a unique opportunity to work a genuine 4-day week (no compressed hours) -giving you 79 extra days off a year -while focusing on high-quality, service-led testing and client relationships. This isn't your typical offensivesecurity role. You … a technical advisor in pre-sales , helping scope work and educate internal sales teams on testing services. Build strong client relationships, translating technical findings into clear, actionable recommendations. Champion security best practices and support remediation discussions. Mentor junior testers and contribute to continuous service improvement. Requirements CREST Registered Tester or equivalent (e.g., OSCP with CREST equivalency). 4 years More ❯
and fast-moving, delivering a comprehensive range of professional services and managed services both onsite and remotely. The Cyber Practice consists of highly skilled professionals delivering a myriad of offensivesecurity testing and governance, risk, and compliance (GRC) services in support of Claranet’s vision. Taking a customer first approach, Claranet’s Cyber Practice prides itself in providing … Support cross-function engagement to facilitate effective communication and collaboration between relevant stakeholders to help Claranet meet its vision Essential Duties and Responsibilities Support GRC Team members delivering Cyber Security GRC services Perform research as directed by team leader/manager in support of Cyber Security GRC services As necessary, create and maintain documentation supporting the delivery of … Cyber Security GRC services Interact professionally with customers across a variety of channels, ensuring timely progression of projects and the ongoing development of longstanding trust-based customer relationships Regular management of team mailboxes, requiring timely responses to customer contact Conduct customer meetings with regards to advisory information Understand technical terms and have a willingness to learn on the job More ❯
Head of OffensiveSecurity Consulting, Europe | Client Facing/Security | Global Security SaaS I've partnered with one of the most exciting upcoming global security SaaS companies who are looking for a Head of OffensiveSecurity Consulting for their Europe region. Their product specialises in attack surface management and automated red teaming. It … managing three internal European based teams. On the client side, you'll be the most senior technical individual representing the company so you'll need a strong background in security, ideally offensivesecurity (red teaming/pen testing). You'll be liaising directly with Fortune500/Global Banks & Insurance companies (typically speaking to CISOs), understanding their … it is more man management and pointing fingers rather than getting in the mix of it. What's in it for you? Working closely with colleagues who LOVE everything security/product Opportunity to be constantly speaking to security leaders at enterprise organisations Grow with a growing company and be an established leader and lead offensivesecurityMore ❯