At least 1 year of professional penetration testing experience covering one or more of the following domains: external network, internal network, web application, mobile application testing, red teaming and social engineering. Holding at least an OSCP, CREST CRT or equivalent certification. Strong technical ability and attention to detail. Excellent written and verbal communication skills. Good organisation and time management More ❯
d love to hear from you. What you will be doing: Planning and executing full-spectrum red team operations against large-scale organisations. Designing and delivering targeted phishing and socialengineering campaigns with behavioural realism. Performing advanced Active Directory enumeration and abuse, including trust path abuse, delegation exploitation, and credential material extraction. Simulating adversary behaviour based on threat … red team infrastructure and frameworks (e.g. Cobalt Strike, Mythic, Sliver, custom C2). Solid grasp of Active Directory and Azure AD internals, and related abuse paths. Familiarity with common socialengineering tactics and phishing techniques, from initial contact to payload execution. Ability to think like an attacker, document like a consultant, and communicate like a trusted advisor. Nice More ❯
London, England, United Kingdom Hybrid / WFH Options
Jumpsec Limited
d love to hear from you. What you will be doing: Planning and executing full-spectrum red team operations against large-scale organisations. Designing and delivering targeted phishing and socialengineering campaigns with behavioural realism. Performing advanced Active Directory enumeration and abuse, including trust path abuse, delegation exploitation, and credential material extraction. Simulating adversary behaviour based on threat … red team infrastructure and frameworks (e.g. Cobalt Strike, Mythic, Sliver, custom C2). Solid grasp of Active Directory and Azure AD internals, and related abuse paths. Familiarity with common socialengineering tactics and phishing techniques, from initial contact to payload execution. Ability to think like an attacker, document like a consultant, and communicate like a trusted advisor. Nice More ❯
business, providing the latest technical knowledge to collaborate on interesting client projects. Skills, Knowledge & Experience The following are expected from potential applicants: Experience with red teaming, purple teaming, and socialengineering techniques. Application, Infrastructure and Cloud penetration testing experience above and beyond running automated tools. A good understanding of Unix, Microsoft Windows, and network security skills. Excellent written … support you throughout your application. Visit forvismazars.com/uk to learn more Seniority level Seniority level Mid-Senior level Employment type Employment type Full-time Job function Job function Engineering and Information Technology Industries Accounting Referrals increase your chances of interviewing at Mazars UK LLP - formerly CompetitionRx Ltd by 2x Get notified about new Ethical Hacker jobs in London More ❯
you’ll simulate cyberattacks on client environments—testing networks, apps, cloud platforms, and more—to expose weaknesses and recommend fixes. You’ll work on red/purple team engagements, socialengineering tests, and cloud security assessments, delivering high-impact reports that drive real security improvements. What You’ll Do: Perform infrastructure, web app, wireless, and cloud penetration tests More ❯
Leeds, England, United Kingdom Hybrid / WFH Options
Cognisys
penetration testing, red teaming, and cloud security. 4+ years of experience in client-facing consulting roles, demonstrating strong business acumen and stakeholder management. Expertise in red teaming methodologies, including socialengineering, network exploitation, and lateral movement techniques. Deep understanding of cloud security, including AWS, Azure, and GCP, with hands-on experience in assessing cloud environments. Proficiency in offensive … providing the opportunity to share in the success of the company Access to an Employee Wellness Hub supported by Kara Connect for health and well-being resources Frequent team social events and celebrations 22 days holiday rising to 25, plus a birthday holiday Referral bonus scheme up to £2,000! Why Join Us? At Cognisys, you will be part More ❯
t have at least one of the following qualifications: OSCP, Crest, ECPPT, GPEN, CRTO. Key Responsibilities Lead internal and external penetration tests, including web, mobile, infrastructure, wireless, cloud, and social engineering. Execute red team, purple team, and breach simulation exercises tailored to client maturity and objectives. Deliver detailed and actionable penetration testing reports Collaborate with clients to understand their More ❯
Leeds, West Yorkshire, England, United Kingdom Hybrid / WFH Options
Eames Consulting
weaknesses before adversaries can exploit them. Your findings will guide clients to stronger, more resilient security postures. Lead internal and external penetration tests , including infrastructure, web, wireless, cloud, and social engineering. Execute red team, purple team, and breach simulation exercises tailored to client maturity and objectives. Identify and safely exploit vulnerabilities to demonstrate real business impact . Deliver clear More ❯
At least 1 year of professional penetration testing experience covering one or more of the following domains: external network, internal network, web application, mobile application testing, red teaming and social engineering. Holding at least an OSCP, CREST CRT or equivalent certification. Strong technical ability and attention to detail. Excellent written and verbal communication skills. Good organisation and time management More ❯
on, technical security experience with at least one of: multiple security technologies such as Firewalls, IDS/IPS, Web Proxies and DLP among others, Web Applications and Services, Cryptography, SocialEngineering and Open Source Intelligence Gathering (OSINT), Mobile platforms, Software Security, malware reverse engineering Deep technical understanding of enterprise operating system environments, Active Directory and networking Validated … understanding of security vulnerabilities and common software engineering flaws Familiarity with red teaming related regulations and frameworks (DORA/CBEST/TIBER) nice to have Familiarity with Network Defence analytical models (Kill Chain, ATT&CK, etc.) Familiarity with popular scripting languages and ability to automate simple tasks. Experience working with Financial Services and Critical Infrastructure a plus Strong verbal More ❯
Central London, London, England, United Kingdom Hybrid / WFH Options
Bupa UK
security to limit Bupa’s exposure from both strategic and tactical threats. End to end management and delivery of security services including penetration testing, assumed breach testing, attack and socialengineering simulations, red and purple teaming. Provide comprehensive dashboarding and reporting capabilities leveraging threat intelligence and proactively identify, prioritise, and remediate vulnerabilities and threat exposures Ensure that all … benefits are designed to make health happen for our people. Viva is our global wellbeing programme and includes all aspects of our health – from mental and physical, to financial, social and environmental wellbeing. We support flexible working and have a range of family friendly benefits. Joining Bupa in this role you will receive the following benefits and more More ❯
high-quality technical reports and confidently present findings to clients. Support remediation efforts and provide client-facing consultancy. Help develop internal testing methodologies and contribute to Red Team and socialengineering operations. Support junior team members and engage in knowledge sharing. Key Skills & Experience: 3-5 years' penetration testing experience. Strong understanding of OWASP, SSL/TLS, SSH More ❯
City of London, London, Grange, United Kingdom Hybrid / WFH Options
Applause IT Recruitment Ltd
high-quality technical reports and confidently present findings to clients. Support remediation efforts and provide client-facing consultancy. Help develop internal testing methodologies and contribute to Red Team and socialengineering operations. Support junior team members and engage in knowledge sharing. Key Skills & Experience: 3-5 years' penetration testing experience. Strong understanding of OWASP, SSL/TLS, SSH More ❯
London, England, United Kingdom Hybrid / WFH Options
JR United Kingdom
Social network you want to login/join with: An exciting opportunity for a mid-level Penetration Tester to join a dynamic and collaborative security consultancy based in London. This role is ideal for a proactive individual with a hacker’s mindset and broad security testing experience across applications, networks, cloud platforms, and more. You'll be a key … penetration testing. Create detailed technical reports and deliver test findings directly to clients. Provide remediation advice and post-assessment consultancy. Contribute to internal testing methodologies and Red Team/socialengineering activities. Mentor junior team members and support collaborative delivery of projects. Occasionally support the creation of marketing materials such as research papers and articles. Skills/Must … and IoT security. Exposure to CI/CD security, Docker/container security, and AI/LLM testing. Hands-on experience with Red Teaming tools (e.g., Cobalt Strike) and social engineering. Familiarity with bug bounty platforms and vulnerability disclosure best practices. Competitive salary with regular performance reviews Annual training and personal development plan Access to conferences and professional events More ❯
City Of London, England, United Kingdom Hybrid / WFH Options
Hamilton Barnes 🌳
penetration testing. Create detailed technical reports and deliver test findings directly to clients. Provide remediation advice and post-assessment consultancy. Contribute to internal testing methodologies and Red Team/socialengineering activities. Mentor junior team members and support collaborative delivery of projects. Occasionally support the creation of marketing materials such as research papers and articles. Skills/Must … and IoT security. Exposure to CI/CD security, Docker/container security, and AI/LLM testing. Hands-on experience with Red Teaming tools (e.g., Cobalt Strike) and social engineering. Familiarity with bug bounty platforms and vulnerability disclosure best practices. Benefits: Competitive salary with regular performance reviews Annual training and personal development plan Access to conferences and professional More ❯
identify and document vulnerabilities across network, application, and physical layers. Prepare concise reports for both technical and non–technical stakeholders. Red Team Challenges: Participate in red team simulations, encompassing socialengineering attacks and advanced penetration tactics. Post–initial access, perform internal testing to escalate privileges and gain high–level access. Document methodologies and outcomes, providing actionable insights for … in leveraging Impacket for tasks like network relays, password spraying, and gaining elevated privileges are crucial for penetrating Windows environments. We're Seeking: Qualifications: A degree in Computer Science, Engineering, Mathematics, or Physics. Experience Level: Open to graduates/juniors and above. The more experience in red teaming, the better. Skills: Exceptional problem–solving abilities, with a flair for More ❯
London, England, United Kingdom Hybrid / WFH Options
RSM UK
are seeking an enthusiastic Cyber Security Consultant to join our team. Working alongside our experienced team of specialists, you’ll be delivering offensive security services including digital footprint reconnaissance, socialengineering, penetration testing and vulnerability assessments and more to high profile clients across all industries. The purpose of this role is to deliver our offensive security services including … digital footprint reconnaissance, socialengineering, vulnerability assessments, penetration testing, threat modelling, cyber-attack simulation exercises, and more to high profile clients across all industries. You’ll benefit from ongoing coaching, career mentoring, and be supported by our career pathway. You will have an opportunity to continue to develop market leading skills across our different capabilities and advance your More ❯
and APIs (custom logic flaws, IDOR, authentication issues, etc.) Infrastructure and cloud security reviews across AWS, Azure, and internal/external networks Threat modelling, red team-style assessments, and socialengineering for select clients Mobile application testing and internal network assessments (as part of broader project scopes) End-to-end client engagement from scoping and testing through to More ❯
Oxford, Oxfordshire, United Kingdom Hybrid / WFH Options
Nomios
with proposal writing and scoping. You will have the opportunity to work on a wide range of services: web and mobile application tests, internal tests, infrastructure tests, but also, social engineering. Ensure all testing activities comply with CHECK standards. What We're Looking For Experience : Significant experience in penetration testing, including network, web application and internal penetration testing as More ❯
London, England, United Kingdom Hybrid / WFH Options
Starling Bank
our offices so that we're able to interact and collaborate in person. About the role: We are looking for an experienced Security Engineer to join our growing Security Engineering team, working closely with the GRC & compliance team and the various Engine Technology teams to make sure security is at the heart of all our technical processes. Your place … depth knowledge of security principles, technologies, best practices and threat detection and mitigation strategies Knowledge of common attack vectors and methodologies (OWASP Top 10, Mitre ATT&CK Framework and socialengineering tactics The ability to identify potential threats, attack vectors, and vulnerabilities in systems and applications Ability to document security requirements from various stakeholders Mature understanding and experience More ❯
subsequent remediation. Design, manage and deliver specialist assurance activities over first-line and the wider business including, Red & Purple Team assessments, Data Leakage, and Disinformation & Dark-Web Assessments and SocialEngineering exercises. Key Responsibilities Measure and report on the implementation and compliance of the Bank's Information Security framework (policies, procedures, guidance) throughout the organisation and verify the More ❯
subsequent remediation. Design, manage and deliver specialist assurance activities over first-line and the wider business including, Red & Purple Team assessments, Data Leakage, and Disinformation & Dark-Web Assessments and SocialEngineering exercises. Key Responsibilities Measure and report on the implementation and compliance of the Bank's Information Security framework (policies, procedures, guidance) throughout the organisation and verify the More ❯
such as Microsoft Teams, Teams Town Hall, Webinars, O365, and room booking systems. Supports, trains, and educates colleagues on Ofcom’s cyber security policies, covering cyber hygiene, phishing threats, socialengineering, and phishing-resistant MFA. Provides colleague centric service, acts as the routine contact point, receiving and handling requests for support. Assists with the resolution of incidents and More ❯
Social network you want to login/join with: Randox Laboratories continues to develop disruptive innovations in Diagnostics and Healthcare globally. We are proud to have been named the Number 1 company in Northern Ireland for the second consecutive year in the Belfast Telegraph Top 100 Companies List for 2024. Our staff are at the heart of everything we … implementing security in cloud platforms (M365, Defender/Endpoint/Identity, Conditional Access, etc). An understanding of approaches of: ISMS, risk analysis, the CIA triad, attack vectors including social engineering. Strong understanding of Cyber Security controls and Security concepts. Cyber/Cloud Security certification (e.g. AZ-500, SC-200, Security+, CySA+, etc). Right to work in the More ❯
At least 1 year of professional penetration testing experience covering one or more of the following domains: external network, internal network, web application, mobile application testing, red teaming and social engineering. Holding at least an OSCP, CREST CRT or equivalent certification. Strong technical ability and attention to detail. Excellent written and verbal communication skills. Good organisation and time management More ❯