least 4 years of experience in information security or related technology role Strong knowledge of security policies, procedures, and best practices Understanding of network protocols, ethical hacking, and security testing methodologies Experience in analysis and reporting on systems such as SAST, DAST, Pen testing and SDLC Experience in authentication management and API security requirements Strong problem-solving, analytical More ❯
with a focus on application and cloud security. Experience with Microsoft Azure, Kubernetes, Terraform, CI/CD, Java, and Python. Expertise in threat modelling, cloud security, secure coding, and penetration testing. Experience working in regulated environments and implementing security controls aligned with SOC2, SOC1, and ISO27001. Integrating security into the SDLC, managing vulnerabilities, and tuning security controls like WAFs. More ❯
potential threats. Investigate security alerts, logs, and incidents (e.g., malware, unauthorized access, breaches). Assist in incident response and remediation efforts. 2. Vulnerability Management Conduct vulnerability assessments and support penetration testing. Collaborate with senior teams to patch systems and mitigate risks. 3. Network Access Control (NAC) Configure switches and endpoints for NAC upgrades and troubleshooting. 4. IP Telephony Support More ❯
data and deliver actionable insights. Familiarity with scripting (Python or similar) and security automation (SOAR). Understanding of threat intelligence and its operational use. Experience in software engineering or penetration testing. Exposure to Splunk ES and development of custom content. Knowledge of security process development and client consulting. Additional Information: This role is based in Leeds , where secure access More ❯
and developing teams of specialists. Exceptional communication skills to influence stakeholders at all levels. Familiarity with vulnerability and threat management tools and processes, including SIEM, EDR, WAF, SSO, and penetration testing. Ability to deliver and prioritize multiple complex projects. Knowledge of relevant laws and compliance standards. Desirable qualifications: Bachelor's or Master's degree in Computer Science, Information Systems More ❯
potential threats. Investigate security alerts, logs, and incidents (e.g., malware, unauthorized access, breaches). Assist in incident response and remediation efforts. 2. Vulnerability Management Conduct vulnerability assessments and support penetration testing. Collaborate with senior teams to patch systems and mitigate risks. 3. Network Access Control (NAC) Configure switches and endpoints for NAC upgrades and troubleshooting. Install, configure, and troubleshoot More ❯
potential threats. Investigate security alerts, logs, and incidents (e.g., malware, unauthorized access, breaches). Assist in incident response and remediation efforts. 2. Vulnerability Management Conduct vulnerability assessments and support penetration testing. Collaborate with senior teams to patch systems and mitigate risks. 3. Network Access Control (NAC) Configure switches and endpoints for NAC upgrades and troubleshooting. Install, configure, and troubleshoot More ❯
robust integration capabilities with payment gateways, partner banks, and other relevant third-party systems. · Develop and implement comprehensive security policies, procedures, and controls. · Oversee security audits, vulnerability assessments, and penetration testing. · Collaborate with the Chief Compliance Officer (CCO) to ensure technology solutions meet all regulatory obligations within the remittance industry. Qualifications Proficiency in Software Development and Product Development skills More ❯
City of London, Greater London, UK Hybrid / WFH Options
TranzyPay
robust integration capabilities with payment gateways, partner banks, and other relevant third-party systems. · Develop and implement comprehensive security policies, procedures, and controls. · Oversee security audits, vulnerability assessments, and penetration testing. · Collaborate with the Chief Compliance Officer (CCO) to ensure technology solutions meet all regulatory obligations within the remittance industry. Qualifications Proficiency in Software Development and Product Development skills More ❯
cloud environments. Experience in understanding attacks and mitigation methods, in two or more of the following: network protocols and secure network design; web application security, security assessments and pen testing, authentication and access control, applied cryptography and security protocols, security monitoring and intrusion detection, Incident response and forensics, development of security tools, automation or frameworks. Excellent communication, written, presentation More ❯
A global quantitative trading firm specializing in algorithmic and high-frequency trading (HFT) is hiring a Cyber Security Engineer (2-4 years' experience) to operate in a broad, vendor-agnostic security environment. This fully onsite role (5 days per week More ❯
London, England, United Kingdom Hybrid / WFH Options
MUFG Americas
irrespective of the entity which employs you. · Develop and maintain governance structure of red team operations and train, and mentor other members of the Red Team. · Develop and execute penetrationtesting plans, including network, web application, and social engineering assessments. · Collaborate with SOC team and selected vendor to plan and execute annual purple team testing · Identify security … risks and vulnerabilities through simulated attacks, and helping the organization understand the potential impact. · Manage Red Team tools and the Security Testing & Validation Platform · Lead and manage a team of security professionals and vendor resources to conduct regular risk assessments to identify and exploit vulnerabilities, mis-configurations within EMEA internal & external infrastructure. · Implement and maintain governance of any assessments … knowledge of current laws, regulations and best practices relating to information security. · Support Information Security incidents where requested. · Support Operational Security duties where requested. · Manage grey and black box testing solution including identified threats and vulnerabilities · Availability for out-of-hours support when necessary Skills and Experience: · Minimum of 3 years’ experience as a pen tester · Skilled in developing More ❯
We are currently seeking a highly skilled and results-oriented Penetration Tester/Ethical Hacker with at least 5 years of hands-on penetrationtesting/ethical hacking experience . This role is office-based with occasional travel to client sites. Please do not apply if you don't have at least one of the following qualifications … OSCP, Crest, ECPPT, GPEN, CRTO. Key Responsibilities Lead internal and external penetration tests, including web, mobile, infrastructure, wireless, cloud, and social engineering. Execute red team, purple team, and breach simulation exercises tailored to client maturity and objectives. Deliver detailed and actionable penetrationtesting reports Collaborate with clients to understand their specific security needs and present findings in … a clear manner. Develop and maintain security testing methodologies and procedures in alignment with industry best practices. Reviewed penetration test reports to ensure they are up to standard and meet test objectives. Mentor junior penetration testers. Assist in incident response activities, including investigation, containment, and remediation of security incidents. Conduct cloud security assessments. Essential Requirements Must be More ❯
London, England, United Kingdom Hybrid / WFH Options
SR2 | Socially Responsible Recruitment | Certified B Corporation™
Senior Penetration Tester PenetrationTesting/Web & Cloud Security/Red Team/Outside IR35/Fully Remote/£600 pd/ASAP Start/6 Months SR2 have partnered with a cutting-edge Cyber Security Consultancy to recruit a Senior Penetration Tester to support a large-scale security assessment programme for public sector and regulated … ll work across a range of environments, identifying vulnerabilities, simulating real-world attacks, and helping to harden complex systems against evolving threats. Required Skills and Experience: Proven experience conducting penetrationtesting across web apps, APIs, infrastructure, and cloud environments (AWS, Azure, GCP) Strong understanding of OWASP Top 10 , CVSS, and secure coding principles Experience with tools such as … Hybrid working - 2 Days per month (London or Cheltenham) Must be UK based 6 Months £600 per day ASAP Start 1-stage interview process If you’re a seasoned Penetration Tester looking for a new contract, click Apply to get started. Alternatively, directly send a recent copy of your CV to Ben Sheppard at ben.sheppard@sr2rec.co.uk for an immediate More ❯
London, South East, England, United Kingdom Hybrid / WFH Options
SR2
Senior Penetration Tester PenetrationTesting/Web & Cloud Security/Red Team/Outside IR35/Fully Remote/£600 pd/ASAP Start/6 Months SR2 have partnered with a cutting-edge Cyber Security Consultancy to recruit a Senior Penetration Tester to support a large-scale security assessment programme for public sector and regulated … ll work across a range of environments, identifying vulnerabilities, simulating real-world attacks, and helping to harden complex systems against evolving threats. Required Skills and Experience: Proven experience conducting penetrationtesting across web apps, APIs, infrastructure, and cloud environments (AWS, Azure, GCP) Strong understanding of OWASP Top 10 , CVSS, and secure coding principles Experience with tools such as … Hybrid working - 2 Days per month (London or Cheltenham) Must be UK based 6 Months £600 per day ASAP Start 1-stage interview process If you’re a seasoned Penetration Tester looking for a new contract, click Apply to get started. Alternatively, directly send a recent copy of your CV to Ben Sheppard at for an immediate discussion. More ❯
Senior Manager, Cyber Security Assessment & Testing CCO Senior Manager, Cyber Security Assessment & Testing CCO Senior Manager, Cyber Security Assessment & Testing CCO Senior Manager, Cyber Security Assessment & Testing CCO The GCIO Chief Control Office (CCO) team plays an important role in enabling the bank to operate within its risk appetite by ensuring efficient and effective risk and … fantastic new role, you will join a growing team to partner with the CISO CCO to oversee the risk and control portfolio related to the services Cybersecurity Assessment and Testing (CSAT) provides to the Group. CSAT oversees Vulnerability Management, Application Security, PenetrationTesting and Red Teaming, Threat Modelling and other related services You will be a leader … their area of responsibility. To be successful in this role you should have the following skills: Technical: One or more or the control capabilities in the domain (Vulnerability Management, PenetrationTesting and Red Teaming, Application Security, Threat Modelling) Management of operational risk, non-financial risk and/or technology and information security risk Management of diverse risk types More ❯
Sheffield, England, United Kingdom Hybrid / WFH Options
HSBC
Senior Manager, Cyber Security Assessment & Testing CCO Brand: HSBC Area of Interest: Technology Location: Sheffield, GB, S1 4NB Work style: Hybrid Worker Senior Manager, Cyber Security Assessment & Testing CCO The GCIO Chief Control Office (CCO) team plays an important role in enabling the bank to operate within its risk appetite by ensuring efficient and effective risk and control … fantastic new role, you will join a growing team to partner with the CISO CCO to oversee the risk and control portfolio related to the services Cybersecurity Assessment and Testing (CSAT) provides to the Group. CSAT oversees Vulnerability Management, Application Security, PenetrationTesting and Red Teaming, Threat Modelling and other related services You will be a leader … their area of responsibility. To be successful in this role you should have the following skills: Technical: One or more or the control capabilities in the domain (Vulnerability Management, PenetrationTesting and Red Teaming, Application Security, Threat Modelling) Management of operational risk, non-financial risk and/or technology and information security risk Management of diverse risk types More ❯
Stratford-upon-avon, Warwickshire, United Kingdom Hybrid / WFH Options
Ccl Solutions Group
Summary: CCL Solutions Group is seeking an exceptional Senior Penetration Tester with CHECK Team Leader Infrastructure (CTL-INF) qualifications to join our elite team of security professionals. Location: Home based Main Job Summary This is more than just a job, we're looking for individuals with a hacker's mindset, deep technical expertise, and a relentless drive to secure … leading provider of cybersecurity services, we are a team committed to making a real difference in protecting communities, businesses, and the critical infrastructure of the UK. As a Senior Penetration Tester within CCL Solutions Group, your key responsibilities will be: Lead and deliver end-to-end penetrationtesting engagements across infrastructure and cloud environments. Manage and mentor … Leader certification (Cyber Scheme Team Leader - INF or CREST CCT-INF). Minimum of 2 years delivering CHECK engagements as a CTL. At least 3 years of hands-on penetrationtesting experience in enterprise environments. Deep understanding of infrastructure testing, Active Directory security, and cloud technologies (AWS, Azure, Kubernetes). Strong familiarity with tools such as Nmap More ❯
Social network you want to login/join with: Senior Manager, Cyber Security Assessment & Testing CCO, Sheffield col-narrow-left Client: HSBC Global Services Limited Location: Sheffield, United Kingdom Job Category: Other - EU work permit required: Yes col-narrow-right Job Reference: 94ad71ca7329 Job Views: 4 Posted: 29.06.2025 Expiry Date: 13.08.2025 col-wide Job Description: Senior Manager, Cyber Security … Assessment & Testing CCO The GCIO Chief Control Office (CCO) team plays an important role in enabling the bank to operate within its risk appetite by ensuring efficient and effective risk and control management. We do this by providing operational risk and control expertise, specialist technical knowledge and a deep understanding of the businesses and functions we serve. Key activities … fantastic new role, you will join a growing team to partner with the CISO CCO to oversee the risk and control portfolio related to the services Cybersecurity Assessment and Testing (CSAT) provides to the Group. CSAT oversees Vulnerability Management, Application Security, PenetrationTesting and Red Teaming, Threat Modelling and other related services You will be a leader More ❯
Senior Penetration Tester Position Description CGI Cyber Security Team in the UK is one of the largest Cyber consultancies in the UK with around 300 members. The UK Cyber team works across a variety of domains including: Government, Defence, Critical Infrastructure, Healthcare, Utilities, Banking and Financial Services and Many more. At CGI you will get the opportunity to work … range of areas including Risk Assessments, Vulnerability Management, Accreditations (ISO27001, GDPR), GRC (Governance, Risk, Compliance), Security Architecture Design and Build (technical and Non-technical), Incident Response, Protective Monitoring Services, PenetrationTesting and much more. We take clients through a journey to improve their overall security posture and maturity to ensure they feel reassured in the Security control, measures … go. Our roles are only available if you hold or fulfil the criteria to obtain a UK Security Clearance. Your future duties and responsibilities An opportunity for an experienced penetration testers has become available due to growth, joining the CGI Cyber Security business unit, one of the largest groups of cyber security specialists in the UK. CGI has a More ❯
London, England, United Kingdom Hybrid / WFH Options
Dionach by Nomios
Why join Dionach by Nomios? Since being acquired by Nomios in late 2024, Dionach by Nomios has continued its dynamic growth as a leading information security company. Specializing in penetrationtesting and information assurance services, we offer an incredible opportunity to be part of an experienced team, build your skills, and grow professionally. Dionach by Nomios holds impressive … enterprise security systems. Delivering presentations to technical and non-technical stakeholders. Main role will be as a Junior Cyber Security Consultant, with options in the future to move into penetrationtesting andto work in other areas of information security consultancy. Focus on your development by attaining industry recognised certifications. Be available for occasional on-call duties and on … site client engagements, as needed. What We're Looking For Qualifications: Relevant degree or one full year’s minimum experience in penetrationtesting or cyber security assurance. Experience: Some experience of cyber security assessment, vulnerability assessments, or penetration testing. Certifications: such as CPSA or CEH would be advantageous. Tools: Experience of penetrationtesting tools, Linux More ❯
Remote working (anywhere in the UK) Hybrid / WFH Options
Government Digital & Data
and promote a culture of continuous improvement.??? We are looking for an enthusiastic? Senior Test Engineer? (Non-Functional Security)?with great technical skills, able to deliver and support security testing workstreams, including vulnerability assessments and penetration testing. You will also offer guidance to other testers on security testing best practices.?? You will be part of our non … functional testing specialist team, working collaboratively with your team and overseeing the testing journey.?? This provides an opportunity to make the test community thrive by exploring new and emerging tools and approaches and working out how you can help the organisation deliver better services.??? This is a rewarding role within the Test Team and provides an opportunity to … more information. Job description As a Senior Test Engineer focusing on security you will;???? Working within a delivery team, you'll contribute to the coordination and execution of security testing across the software development lifecycle. This will involve running vulnerability scans using tools such as Burp, coordinating with relevant teams, testing security related issues.?? Support the wider test More ❯
Glasgow, Scotland, United Kingdom Hybrid / WFH Options
Nomios
Why join Dionach by Nomios? Since being acquired by Nomios in late 2024, Dionach by Nomios has continued its dynamic growth as a leading information security company. Specializing in penetrationtesting and information assurance services, we offer an incredible opportunity to be part of an experienced team, build your skills, and grow professionally. Dionach by Nomios holds impressive … enterprise security systems. Delivering presentations to technical and non-technical stakeholders. Main role will be as a Junior Cyber Security Consultant, with options in the future to move into penetrationtesting andto work in other areas of information security consultancy. Focus on your development by attaining industry recognised certifications. Be available for occasional on-call duties and on … site client engagements, as needed. What We're Looking For Qualifications : Relevant degree or one full year’s minimum experience in penetrationtesting or cyber security assurance. Experience : Some experience of cyber security assessment, vulnerability assessments, or penetration testing. Certifications : such as CPSA or CEH would be advantageous. Tools: Experience of penetrationtesting tools, Linux More ❯
Remote working (anywhere in the UK) Hybrid / WFH Options
Government Digital & Data
of continuous improvement. We are looking for an enthusiastic Lead Test Engineer (Security) with great technical skills able to coach and mentor other testers and lead the non-functional testing workstream focused on Security testing. You will be part of our lead tester group, working collaboratively with your team and overseeing the testing journey with management responsibilities. This … . Please see 'Things you need to know' section below for more information. Job description As a Lead Test Engineer focusing on security, you will: Take ownership of security testing within the software development lifecycle. This will involve running vulnerability scans using tools such as Burp, coordinating with relevant teams, and testing security-related issues. As a manager … you will provide advice, coaching and mentoring to testers on non-functional testing subjects such as security testing. Attend meetings and provide stakeholders with updates. Design and execute manual and automated security test cases using standard testing techniques. Design and implement pipeline solutions to support automated security testing and reporting. For more information on the Test Engineering More ❯
London, England, United Kingdom Hybrid / WFH Options
RSM UK
Consultant – Cyber Security (Penetration Tester) RSM UK Greater London, England, United Kingdom Join or sign in to find your next job Join to apply for the Consultant – Cyber Security (Penetration Tester) role at RSM UK Consultant – Cyber Security (Penetration Tester) RSM UK Greater London, England, United Kingdom 2 weeks ago Be among the first 25 applicants Join … to apply for the Consultant – Cyber Security (Penetration Tester) role at RSM UK Get AI-powered advice on this job and more exclusive features. Direct message the job poster from RSM UK Talent Acquisition Senior Specialist - Consulting As one of the world's largest networks of audit, tax and consulting firms, RSM delivers big ideas and premium service to … an enthusiastic Cyber Security Consultant to join our team. Working alongside our experienced team of specialists, you’ll be delivering offensive security services including digital footprint reconnaissance, social engineering, penetrationtesting and vulnerability assessments and more to high profile clients across all industries. The purpose of this role is to deliver our offensive security services including digital footprint More ❯