101 to 125 of 593 Penetration Testing Jobs in the UK

Penetration Tester

Location
Greater London, England, United Kingdom
office] Position Type: Full-Time Role Overview The Product, Application and Offensive Security Engineer is responsible for embedding security directly into the design, development, testing, and operation of DTS products and platforms. This is a hands-on security engineering role. The role requires someone who can work directly with … product and engineering teams, review designs, assess APIs, run threat models, test systems, coordinate penetration testing, identify vulnerabilities, and help teams remediate issues. The role ensures DTS products, APIs, data collaboration capabilities, AI-enabled workflows, and client-facing services are designed, built, and tested securely. It also owns ...

AVP Penetration Testing Lead

Location
United Kingdom
Barclays is seeking an experienced Penetration Tester - AVP to join its Security Assurance team in the UK. You will contribute to the delivery of penetration testing across annual lifecycle testing and change/project engagements, working with web, API, infrastructure, cloud, and other technologies. You will … lead complex assessments, develop testing methodologies, and communicate findings and remediation guidance to stakeholders. #J-18808-Ljbffr ...

Cyber Controls Manager

Location
Greater London, England, United Kingdom
traceability between cyber risks, regulatory requirements and implemented controls. Define control objectives and collaborate with technical teams to develop implementation guidance, testing criteria and evidence requirements. Support the continuous enhancement of the control environment in response to emerging threats, incidents, audits and lessons learned. Provide leadership and direction … identifying weaknesses, gaps or degraded controls and recommending corrective action. Evaluate control effectiveness against current and emerging cyber threats. Track the outcomes of control testing activities, including penetration testing, vulnerability assessments and security exercises, ensuring identified actions are progressed to completion. Governance, Reporting & Stakeholder Engagement Attend governance ...

Senior Offensive Security Engineer (Autonomous testing)

Location
City of Edinburgh, Scotland, United Kingdom
leadership, innovative thinking, curiosity, and existing deep technical expertise to help Quorum Cyber close the distance between AI speed and efficiency, and human insight. Penetration testing, API and web application testing, and red teaming are delivered the traditional way: a skilled human, a scope document, a fixed … agent-building are both non-negotiable. Offensive security depth Around 7 years hands-on, including at least 4 delivering client-facing engagements. Network testing: external and internal, Active Directory attack paths, privilege escalation, lateral movement, post-exploitation. Web and API testing: the OWASP Top 10 and, more importantly ...

Information Security Manager with Network Engineering Skills

Hiring Organisation
Nexus Jobs
Location
London, United Kingdom
Salary
£ 80 K
Symantec)Host IPSPreferred Skills and KnowledgeVulnerability Management (Scanning for Vulnerabilities and classifying the risk, CIS Benchmark Scanning and compliance) – Using Rapid7 a bonusKnowledge of Penetration Testing, understanding of the types of testing and their advantages and disadvantagesSecurity Zone Design and considerationsNetwork and Security Architecture Design and ConsiderationsUnderstanding … controls etcRisk Management in Cyber Security, SSL Blind spots, what causes them and how to mitigateMalware/Ransomware and how to mitigate along with Penetration testing conceptsUnderstanding of White/Black/Grey Box penetration testing.Developing Security policies and procedures and conducting audits/risk assessmentsHandling crisis ...

Security Architect (Contractor) Cyber Security Consultant

Location
United Kingdom
architectural best practice to reduce information risk across services and platforms. Validating the design, implementation and effectiveness of security controls, working alongside controls testing and assurance teams where required. Delivering security architecture to support the deployment of large data-driven services across private and public cloud environments, with … particular focus on Microsoft Azure. Scoping and supporting IT Health Checks (ITHC) and penetration testing activities to identify key security risks and areas for improvement. Reviewing security testing outcomes and providing practical recommendations, remediation guidance and action plans for identified vulnerabilities. Identifying security risks arising from proposed ...

Staff Cybersecurity Software & Systems Engineer (F/M/D)

Hiring Organisation
TE connectivity
Location
Cambridge, Cambridgeshire, United Kingdom
Salary
£ 70 K
/IaC scans, SBOM) and define release gates.Maintain security workflows and coach engineers on secure coding and threat‐driven design.Validation & Supplier EngagementSupport V&V, penetration testing, and remediation, and manage security alignment with suppliers.Compliance & DocumentationOwn the security compliance dossier, including Cybersecurity Plans, Interface Agreements, Security Cases, and Audit … Hardware Security Modules (HSM), secure element integration, and sensor-level protection. Skilled in cloud-native security practices, and zero-trust architecture. Experienced in advanced testing techniques, including penetration testing, fuzzing, and reverse engineering of embedded firmware. Knowledgeable in privacy engineering and compliance with regulatory frameworks like GDPR ...

Staff Cybersecurity Software & Systems Engineer (F/M/D)

Hiring Organisation
TE Connectivity
Location
Cambridgeshire, United Kingdom
Employment Type
Full Time
SBOM) and define release gates. Maintain security workflows and coach engineers on secure coding and threat‐driven design. Validation & Supplier Engagement Support V&V, penetration testing, and remediation, and manage security alignment with suppliers. Compliance & Documentation Own the security compliance dossier, including Cybersecurity Plans, Interface Agreements, Security Cases … Hardware Security Modules (HSM), secure element integration, and sensor-level protection. Skilled in cloud-native security practices, and zero-trust architecture. Experienced in advanced testing techniques, including penetration testing, fuzzing, and reverse engineering of embedded firmware. Knowledgeable in privacy engineering and compliance with regulatory frameworks like GDPR ...

Security Consultant - Consultancy

Location
Bristol, England, United Kingdom
giving team members the chance to work on high-impact digital transformation projects and collaborate with experienced professionals. This role involves conducting security assessments, penetration testing, and red team exercises, including government-accredited CHECK engagements, to help clients strengthen their security posture. Ready to take your … house developed tools for security testing. Conduct manual reviews to identify issues within customer infrastructure and web applications. Perform various types of security testing, including network penetration, web application, mobile security assessments, and social engineering. Participate in red team engagements, employing creative strategies to outsmart defenders. Explore various ...

IT Manager

Location
Lincoln, England, United Kingdom
threat logs, KnowBe4 training programs, and Secret Server credential storage. Network Security: Implementfirewallcontrols and email security standards (SMTP, TLS) to safeguard business data. Compliance & Testing: Contributeto ISO 27001 compliance (policy/documentation); review penetration testing and vulnerability scans to proactively mitigate risk. Business Continuity,Operational Reliability Disaster … Recovery:Monitorbackup systems, conduct regular restore testing, and support annual external audits and DR testing initiatives. Proactive Monitoring: Manage system uptime, antivirus/EDR, and SIEM tools to quicklyidentifyand resolve performance anomalies. Network Admin: Support Azure VPN connectivity and applied IP routing and subnetting fundamentals to resolve complex ...

Penetration Tester

Location
Greater London, England, United Kingdom
that supports how our engineering teams build and operate complex systems at scale. Take the next step in your career. Role As a Penetration Tester, you will lead and conduct penetration tests and vulnerability assessments across a wide range of internal systems and security controls. Your work will … directly strengthen our overall security posture through continuous testing, actionable insights and collaboration on remediation strategies. Responsibilities Perform in-depth penetration testing across a variety of technologies, including Kubernetes, Jenkins and Windows Domain Services. Deliver practical, impactful remediation advice to Control Owners based on identified vulnerabilities. Support ...

Interim Cyber Security Officer

Location
Greater London, England, United Kingdom
using SIEM/EDR data and MITRE ATT&CK‐aligned techniques. Support vulnerability assessment and security scanning activities using relevant tools. Provide input into penetration testing activities and interpret findings for remediation. Deliver training, coaching, and knowledge transfer to enhance the existing cybersecurity team's skills in CrowdStrike … enterprise environments. Experience supporting or working alongside managed SOC providers. At least 2 years’ experience in vulnerability assessment tools (desirable). Exposure to penetration testing and web application security testing (desirable). Expert‐level experience with CrowdStrike Falcon (Prevent, Insight, Discover). Strong expertise in Splunk, including ...

Penetration Tester

Hiring Organisation
G Research
Location
London, United Kingdom
Salary
£ 80 K
that supports how our engineering teams build and operate complex systems at scale.Take the next step in your career.The roleAs a Penetration Tester, you will lead and conduct penetration tests and vulnerability assessments across a wide range of internal systems and security controls. Your work will directly strengthen … overall security posture through continuous testing, actionable insights and collaboration on remediation strategies. Key responsibilities of the role include:Performing in-depth penetration testing across a variety of technologies, including Kubernetes, Jenkins and Windows Domain ServicesDelivering practical, impactful remediation advice to Control Owners based on identified vulnerabilitiesSupporting ...

Lead Security Operations Center Analyst (f/m/d)

Location
Reading, England, United Kingdom
This role encompasses reactive incident response, proactive detection engineering, threat hunting, vulnerability management, and operational leadership. You will also contribute to strategic initiatives including penetration testing coordination, security assessments, audit preparation, threat intelligence activities, and the maintenance of SOC documentation and reporting. This role sits within the Product … with DevOps, IT, and development teams to ensure timely containment, mitigation, and remediation of vulnerabilities and threats. Coordinate outputs from security assessment tools and penetration tests, ensuring clear ownership and timely closure of identified issues. Participate in and lead security testing exercises to evaluate and strengthen detection capabilities ...

Senior Application Security Engineer

Hiring Organisation
TripleLift
Location
London, United Kingdom
Salary
£ 70 K
organization.ResponsibilitiesPlay a critical role in building and maintaining a global security compliance program based on NIST CSF.Scale application security by developing automated security testing utilizing enterprise SAST, DAST, and code-review tools.Champion SDLC to promote secure application development and infrastructure deployment and facilitate secure coding remediation activities.Automate security testing … risks early in the SDLC.Coordinate with stakeholders to develop and implement a vulnerability management program and to perform threat-hunting activities.Own and conduct internal penetration testing and vulnerability assessments of applications and infrastructure, and validate findings from third-party pentest engagements.Monitor and respond to application-layer security threats ...

Senior Application Security Engineer

Hiring Organisation
TripleLift
Location
London, UK
Employment Type
Full-time
organization. ResponsibilitiesPlay a critical role in building and maintaining a global security compliance program based on NIST CSF.Scale application security by developing automated security testing utilizing enterprise SAST, DAST, and code-review tools. Champion SDLC to promote secure application development and infrastructure deployment and facilitate secure coding remediation activities. … Automate security testing in CI/CD pipelines to detect vulnerabilities early, including building and maintaining the pipeline integrations themselves. Administer and drive adoption of GitHub Advanced Security (GHAS) : code scanning, secret scanning, and dependency review across engineering repositories. Participate in threat modeling and design/architecture spec reviews ...

Penetration Testing Lead: Strategy, Mentorship & Automation

Location
Manchester, England, United Kingdom
Lloyds Banking Group is seeking an experienced Penetration Testing Lead to shape the group’s testing capability and roadmap for both human-led and autonomous security testing. You will lead a team of testers, collaborate with engineering, security and business stakeholders, and drive improvements across the testing lifecycle. The role requires deep technical expertise in application, API, cloud, infrastructure and network testing, and a proven ability to communicate risks and remediation to #J-18808-Ljbffr ...

Senior Cybersecurity Tester / Researcher

Hiring Organisation
UK Telecoms lab
Location
Birmingham, West Midlands, United Kingdom
Employment Type
Permanent, Part Time
senior member of the team, youll also play an important role in supporting and mentoring others, helping to develop the next generation of security testing specialists. What Youll Be Doing Lead and deliver security assessments across complex hardware, software, and telecoms systems. Conduct hands-on penetration testing within a dedicated in-house lab environment, ensuring safe and controlled testing. Apply advanced testing techniques including both positive and negative approaches (e.g. fuzzing) to rigorously assess network functions and protocols. Identify, investigate, and clearly articulate vulnerabilities and security risks to both technical and non-technical audiences. Develop ...

Senior Mobile Security Developer - Contract (Inside IR35)

Location
Greater London, England, United Kingdom
aspects of the role include: Design and Delivery of a World-Class Security Framework: Lead the design and delivery of security services, including mobile penetration testing, research, consultancy, and advisory engagements. Technical Strategy & Architecture: Define secure technical approaches, identify risks, and develop effective threat models and mitigation strategies. … Expertise: Strong hands-on knowledge of Android and iOS security fundamentals, common mobile threats and vulnerabilities, security architecture, controls, and mitigation techniques. Mobile Security Testing: Practical experience in mobile penetration testing, security assessments, threat modelling, and implementing or assessing security controls. Security Problem Solving: A systematic ...

Senior Application Security Engineer (Remote)

Location
Greater London, England, United Kingdom
will focus on finding and responding to security vulnerabilities across the Brex platform. In this role, you will perform code reviews, design reviews, penetration testing, and vulnerability management. You will develop and maintain tooling to perform static and dynamic testing of the Brex platform and tooling which … with Security Operations, GRC, Product Security, Front End Platform, IT Infrastructure teams. We're looking for individuals with a strong background and interest in penetration testing. You should have a demonstrated ability to find vulnerabilities in complex systems and craft exploits to demonstrate business impact. This role is highly ...

Senior Ethical Hacker

Hiring Organisation
Stantec
Location
London, United Kingdom
Salary
Confidential
that could help engineering teams meet remediation goals.Create and verbally present your test findings in debrief meetings with the C-Suite or sponsors.Cloud ApplicationConduct penetration tests on cloud systems, applications and APIs to identify vulnerabilities.Assess cloud/application specific configurations, access controls, and encryption mechanisms.Validate and exploit security findings … Capabilities and CredentialsMinimum 5-7+ years working in some aspect of cybersecurity (Offensive Security, Red Teamexperience preferred).Proficient with manual web/cloud penetration testing without using any tools.Proficient writing custom attack tools in Python, PHP, Golang and Bash Scripting.Proficient with interception proxies and attacking manually ...

Senior Cybersecurity Consultant

Location
Greater London, England, United Kingdom
will conduct security assessments, design security architectures, and help clients build security programs that meet regulatory requirements without creating operational friction. Responsibilities Lead penetration testing and vulnerability assessment engagements Design security architectures for cloud-native and hybrid environments Develop security compliance programs (SOC 2, ISO 27001, GDPR) Conduct … tabletop exercises Advise C-level executives on security strategy and risk management Requirements 8+ years in information security with consulting experience Deep expertise in penetration testing, vulnerability management, and threat modeling Knowledge of compliance frameworks: SOC 2, ISO 27001, GDPR, PCI-DSS Experience with cloud security (AWS Security ...

IT/OT Penetration Tester

Hiring Organisation
PA Consulting
Location
London, United Kingdom
Salary
£ 80 K
quality security assessments within agreed deadlinesProduce written and verbal reports for clients to an excellent standard.Develop and share knowledge with the rest of the penetration testing teamWork with teams across PA Consulting, providing technical knowledge and expertise where requiredBe self-motivated and client oriented, aiming to exceed expectations … other industry recognised certifications such as the OSCP or CREST/CyberScheme qualificationsHave developed their SME knowledge in one or more fields of penetration testing, such as mobile application testing, Cloud, Operational Technology, or a specific industry/environment such as telecoms, defence, or maritimeDesire to help ...

IT/OT Penetration Tester

Hiring Organisation
PA Consulting
Location
Pimlico, Hertfordshire, UK
Employment Type
Full-time
security assessments within agreed deadlinesProduce written and verbal reports for clients to an excellent standard. Develop and share knowledge with the rest of the penetration testing teamWork with teams across PA Consulting, providing technical knowledge and expertise where requiredBe self-motivated and client oriented, aiming to exceed expectations … other industry recognised certifications such as the OSCP or CREST/CyberScheme qualificationsHave developed their SME knowledge in one or more fields of penetration testing, such as mobile application testing, Cloud, Operational Technology, or a specific industry/environment such as telecoms, defence, or maritimeDesire to help ...

Test Manager ((Trust Retail))

Hiring Organisation
Trust Payments
Location
United Kingdom
Salary
£ 80 K
collaborative Test Manager to join the Trust Payments Retail team. You will own and shape the overall test strategy across both manual and automated testing disciplines, with automation being the primary area of growth and strategic focus.Working closely with Development Managers and wider technical stakeholders, you will help transition … hybrid arrangement may be considered.What We Expect of You, Day To Day:Own the end-to-end test strategy across manual and automated testing, ensuring it is understood and adopted across all relevant teamsDefine and lead the automation testing vision, identifying opportunities to automate across functional, regression ...