Hounslow, England, United Kingdom Hybrid / WFH Options
JR United Kingdom
permit required: Yes Job Views: 4 Posted: 26.06.2025 Expiry Date: 10.08.2025 Job Description: Harrington Starr has partnered with a global multi-billion pound business in Belfast to seek a Vulnerability and Penetration Testing Engineer for their Belfast Centre team. The role involves providing security architecture, vulnerability, and risk assessment services. We are open to candidates who may … evaluate proposed and current solutions to ensure compliance with established standards for secure system design, including ISMS Policy, client contracts, regulatory expectations, and professional obligations. Architect, implement, and support assessment solutions necessary for the protection of the firm's assets. Continuously evaluate relevant products, tools, scripts, and techniques to enhance assessment capabilities. Minimum of r+ years in a … pen test role. Excellent knowledge of Vulnerability and Penetration Testing concepts and best practices, including WhiteHat/Ethical Hacking requirements. Experience with automated tools such as Nessus, Appscan, Burp Suite, Nipper, and Trustwave. Understanding of the difference between vulnerabilityassessment and penetration testing regarding scope, objectives, and deliverables. Working knowledge of information security frameworks such as ISO27001 More ❯
London, England, United Kingdom Hybrid / WFH Options
JR United Kingdom
permit required: Yes Job Views: 4 Posted: 26.06.2025 Expiry Date: 10.08.2025 Job Description: Harrington Starr has partnered with a global multi-billion-pound business in Belfast to find a Vulnerability and Penetration Testing Engineer to join their Belfast Centre team. The role involves providing security architecture, vulnerability, and risk assessments. We are open to candidates who may prefer … Head Office. Responsibilities: Evaluate proposed and current solutions for compliance with secure system design standards, including ISMS policies, client contracts, regulatory requirements, and professional obligations. Architect, implement, and support assessment solutions to protect the company's assets. Continuously evaluate tools, scripts, and techniques to enhance assessment capabilities. Minimum of R+ years in a penetration testing role. Deep knowledge … of Vulnerability and Penetration Testing concepts and best practices, including WhiteHat/Ethical Hacking. Experience with automated tools such as Nessus, Appscan, Burp Suite, Nipper, and Trustwave. Understanding of the differences between vulnerability assessments and penetration tests regarding scope, objectives, and deliverables. Working knowledge of information security frameworks like ISO27001, NIST, and CIS. If this opportunity interests you More ❯
of operational resilience in business interactions. Oversee the scope, design, and delivery of operational resilience tests and exercises ensuring appropriate SME resource are available to participate. Manage the IBS vulnerability assessments and monitoring of these vulnerabilities to resolution, supporting appropriate business areas as required. Act as a subject matter resource for 1LoD incident management, overseeing post-incident discussions, reporting … all relevant pillars to ensure an aligned view from across Pay.UK. Oversee the completion and annual reviews (or as often as required) of the business impact analysis, business service assessment and impact tolerance rationale. Identify and report new risks and issues, particularly operational resilience, without delay and assist, as necessary, in the development of appropriate options for remediation. Oversea … Accepted file types: pdf, doc, docx, txt, rtf GDPR Policy Select All of the information collected in the job application form is necessary and relevant to the application and assessment process for the job role you have applied for. We (Pay.uk) will use the information you have provided in order to complete the recruitment process, this includes your curriculum More ❯
in ensuring the security and integrity of the infrastructure, which includes the data centers, cloud environments, networks, and office/branch assets. This is an exciting opportunity to lead vulnerability assessments, drive remediation efforts, and enforce secure builds and configurations across our estate. Key Responsibilities: Lead the implementation of Infrastructure & Cloud security strategies, policies, controls, services, metrics, and compliance. … Oversee and support vulnerability management efforts across both on-premise and cloud environments. Contribute to the strategy, policy, controls, services, and metrics related to network security, including WAF, DDoS protection, and firewalls. Experience & Skills: Primary Expertise: Vulnerability management within infrastructure environments, with proven experience leading teams. Secondary Expertise: Knowledge and experience in network security, including firewalls, micro-segmentation More ❯
processes and outcomes to reduce vulnerabilities across the Engineering estate; taking a lead role in detecting and responding to advanced threats across a growing portfolio of clients. Experience & responsibilities Vulnerability Scanning & Reporting - performing regular vulnerability scans and generating reports using SonarQube, Trivvy & Nessus; ensuring tool sets are kept up to date and that scans are performed regularly and … regular system compliance audits and updates, ensuring systems are compliant with industry best practices. (CIS, STIG, NIST etc.) Performing regular reviews and updates to security enforcing GPOs, conducting periodic vulnerability assessments to identify and address potential vulnerabilities. About You You will possess hands on experience working in a similar Cyber Engineering role with a working knowledge of SonarQube, Nessus … and Ivanti and a broad experience spanning Vulnerability Scanning & Reporting, Endpoint Security, Incident Management & System Hardening. Security Clearance: Must hold an active SC clearance If you're interested in hearing more about this opportunity, please submit your application. Reasonable Adjustments: Respect and equality are core values to us. We are proud of the diverse and inclusive community we have More ❯
Gloucester, England, United Kingdom Hybrid / WFH Options
JR United Kingdom
multidisciplinary environment. You’ll be supported to grow your expertise, travel for meaningful client engagements, and take real ownership of your work. Responsibilities: Lead or support the delivery of vulnerability assessments and penetration testing projects Provide technical security consultancy and basic to intermediate-level training to clients across the UK and internationally Occasionally deputise for the Head of Cyber … directly with clients to define and deliver tailored security solutions Contribute to business development through proposal writing and client engagement Skills/Must have: Strong understanding of penetration testing, vulnerability assessments, EDR, and endpoint protection Experience working in or with government or defence clients Previous consultancy experience with client-facing responsibilities SC clearance or DV clearance Excellent written communication More ❯
to advance your cyber security career in a dynamic and supportive setting? Apply now to make an impact across diverse sectors. Key Responsibilities: Lead or support the delivery of vulnerability assessments and penetration testing projects Provide technical security consultancy and basic to intermediate-level training to clients across the UK and internationally Occasionally deputise for the Head of Cyber … directly with clients to define and deliver tailored security solutions Contribute to business development through proposal writing and client engagement Skills/Must have: Strong understanding of penetration testing, vulnerability assessments, EDR, and endpoint protection Experience working in or with government or defence clients Previous consultancy experience with client-facing responsibilities SC clearance (or willingness to undergo clearance) Excellent More ❯
London, England, United Kingdom Hybrid / WFH Options
Hamilton Barnes Associates Limited
to advance your cyber security career in a dynamic and supportive setting? Apply now to make an impact across diverse sectors. Key Responsibilities: Lead or support the delivery of vulnerability assessments and penetration testing projects Provide technical security consultancy and basic to intermediate-level training to clients across the UK and internationally Occasionally deputise for the Head of Cyber … directly with clients to define and deliver tailored security solutions Contribute to business development through proposal writing and client engagement Skills/Must have: Strong understanding of penetration testing, vulnerability assessments, EDR, and endpoint protection Experience working in or with government or defence clients Previous consultancy experience with client-facing responsibilities SC clearance (or willingness to undergo clearance) Excellent More ❯
London, England, United Kingdom Hybrid / WFH Options
JR United Kingdom
collaborative, multidisciplinary environment. You’ll be supported in growing your expertise, traveling for meaningful client engagements, and taking ownership of your work. Responsibilities: Lead or support the delivery of vulnerability assessments and penetration testing projects. Provide technical security consultancy and basic to intermediate-level training to clients across the UK and internationally. Occasionally deputise for the Head of Cyber … directly with clients to define and deliver tailored security solutions. Contribute to business development through proposal writing and client engagement. Essential Skills and Requirements: Strong understanding of penetration testing, vulnerability assessments, EDR, and endpoint protection. Experience working with or for government or defence clients. Previous consultancy experience with client-facing responsibilities. SC clearance or DV clearance. Excellent written communication More ❯
Remote working (anywhere in the UK) Hybrid / WFH Options
Government Digital & Data
culture of continuous improvement.??? We are looking for an enthusiastic? Senior Test Engineer? (Non-Functional Security)?with great technical skills, able to deliver and support security testing workstreams, including vulnerability assessments and penetration testing. You will also offer guidance to other testers on security testing best practices.?? You will be part of our non-functional testing specialist team, working … on security you will;???? Working within a delivery team, you'll contribute to the coordination and execution of security testing across the software development lifecycle. This will involve running vulnerability scans using tools such as Burp, coordinating with relevant teams, testing security related issues.?? Support the wider test team by sharing knowledge and guidance on security testing approaches and … working towards this OR have proven working experience.??? Working knowledge of at least 5 of the following security tools and technologies: Burp Suite (including Burp Scanner) - for web app vulnerability scanning and manual security testing. OWASP ZAP - for DAST and automated security regression testing. Postman or SOAP UI - for API testing with a security focus (e.g. injection, authorisation, token More ❯
City of London, London, United Kingdom Hybrid / WFH Options
Searchability®
Cyber Essentials Plus assessments, including practical remediation support (certification as a Cyber Essentials Plus Assessor or similar qualifications with the intention to certify is highly advantageous) Practical experience conducting vulnerability assessments across infrastructure, networks, and applications Working knowledge of threat and vulnerability management platforms such as Qualys Strong written and verbal communication skills, with the ability to clearly More ❯
Cyber Essentials Plus assessments, including practical remediation support (certification as a Cyber Essentials Plus Assessor or similar qualifications with the intention to certify is highly advantageous) Practical experience conducting vulnerability assessments across infrastructure, networks, and applications Working knowledge of threat and vulnerability management platforms such as Qualys Strong written and verbal communication skills, with the ability to clearly More ❯
London, South East, England, United Kingdom Hybrid / WFH Options
Searchability
Cyber Essentials Plus assessments, including practical remediation support (certification as a Cyber Essentials Plus Assessor or similar qualifications with the intention to certify is highly advantageous) Practical experience conducting vulnerability assessments across infrastructure, networks, and applications Working knowledge of threat and vulnerability management platforms such as Qualys Strong written and verbal communication skills, with the ability to clearly More ❯
culture of continuous improvement. We are looking for an enthusiastic Senior Test Engineer (Non-Functional Security) with great technical skills, able to deliver and support security testing workstreams, including vulnerability assessments and penetration testing. You will also offer guidance to other testers on security testing best practices. You will be part of our non-functional testing specialist team, working … on security you will; Working within a delivery team, you'll contribute to the coordination and execution of security testing across the software development lifecycle. This will involve running vulnerability scans using tools such as Burp, coordinating with relevant teams, testing security related issues. Support the wider test team by sharing knowledge and guidance on security testing approaches and … working towards this OR have proven working experience. Working knowledge of at least 5 of the following security tools and technologies: Burp Suite (including Burp Scanner) - for web app vulnerability scanning and manual security testing. OWASP ZAP - for DAST and automated security regression testing. Postman or SOAP UI - for API testing with a security focus (e.g. injection, authorisation, token More ❯
London, England, United Kingdom Hybrid / WFH Options
Endeavour Recruitment Solutions
Contract Role - Cyber Security Consultant – Pen Tester – Financial Services Client. Job Summary The role of the Cyber Security Consultant will primarily be a “hands-on” fieldwork delivery role, performing vulnerability assessments, penetration testing, and cyber security reviews. Education and Qualifications Degree in Computer Science, Information Systems, Engineering or related major; Offensive Security Certified Professional (OSCP)/Certified Ethical Hacker More ❯
London, England, United Kingdom Hybrid / WFH Options
AudioStack
experience (AWS or similar) A passion for designing and implementing scalable observability solutions Minimum 3 years experience working in a backend related role. Desirable: Security expertise or interest in vulnerability assessments. Tech Stack: Kubernetes (knative) for containerized workloads AWS Lambda No-SQL Postgres Serverless All major AWS Services Auth0, for authentication OSO-Cloud for authorization CircleCi Git Benefits The More ❯
APIs, databases, and service flows. Security Testing & Penetration Testing (Ethical Hacking) Simulate attacks to find vulnerabilities. Tools: Burp Suite , OWASP ZAP , Metasploit . CEH , OSCP , CISSP certifications an advantage Vulnerability Testing Scan systems for known vulnerabilities. Collaborate with SecOps and DevSecOps teams. Security QA/Secure Code Testing Test software from a secure coding perspective. Ensure compliance with secure … model predictions, fairness, and ethical AI compliance. Seniority Level Associate Industry IT Services and IT Consulting Employment Type Full-time Job Functions Information Technology Skills Test Automation Functional Testing VulnerabilityAssessment and Penetration Testing (VAPT) Test Management Selenium More ❯
Edinburgh, Scotland, United Kingdom Hybrid / WFH Options
Canonical
directly with DISA-STIG or CIS benchmarks, including related audit + remediation tooling (e.g. Compliance as Code) Experience working directly with Linux Kernel Prior experience with Python, OVAL (Open VulnerabilityAssessment Language), and Ansible History of contributions to open source projects What we offer you We consider geographical location, experience, and performance in shaping compensation worldwide. We revisit More ❯
Manchester, England, United Kingdom Hybrid / WFH Options
Canonical
directly with DISA-STIG or CIS benchmarks, including related audit + remediation tooling (e.g. Compliance as Code) Experience working directly with Linux Kernel Prior experience with Python, OVAL (Open VulnerabilityAssessment Language), and Ansible History of contributions to open source projects What we offer you We consider geographical location, experience, and performance in shaping compensation worldwide. We revisit More ❯
Dundee, Angus, Scotland, United Kingdom Hybrid / WFH Options
Reed
assets within ATM infrastructure. Stay current with emerging security trends and integrate advanced technologies and strategies to prevent card fraud, system vulnerabilities and operational liabilities. Conduct comprehensive risk and vulnerability assessments of ATM systems and deliver data-driven solutions to senior management. Effectively prioritise the level of risk/vulnerabilities, define strategies and roadmaps to implement reactive and preventive More ❯
authority and strategic influence across a complex, high-volume infrastructure. Key Responsibilities: Architect and maintain end-to-end security frameworks for IBM Z Series mainframe environments. Lead threat modeling, vulnerability assessments, and remediation plans specific to z/OS, RACF, ACF2 or Top Secret environments. Collaborate with infrastructure, application, and compliance teams to implement secure configurations and access control More ❯
Deliver technical security training to clients across sectors, both in the UK and internationally. Manage and mentor Technical Consultants, overseeing professional development and project execution. Lead project management for vulnerability assessments and penetration testing, ensuring smooth delivery and client satisfaction. Provide security consultancy services to commercial clients, offering tailored solutions and technical expertise. Assist with business development by networking More ❯
protocols (Wi-Fi, Zigbee, Bluetooth) and network coverage. Ensuring secure authentication, data encryption, and penetration testing for IoT devices. Conducting security tests on IoT devices, ensuring data privacy and vulnerability assessments. Verifying data integrity, synchronization, and handling of big data in IoT systems. Knowledge of writing & automating IoT testing scripts and integrating with CI/CD pipelines (optional). More ❯
London, England, United Kingdom Hybrid / WFH Options
Babcock
countries to collect, connect and understand complex data, so that governments, nation states, armed forces and commercial businesses can unlock digital advantage in the most demanding environments. Job Title: Vulnerability Analyst Location: London - We offer a range of hybrid and flexible working arrangements - please speak to your recruiter about the options for this particular role. Grade: GG11 Referral Bonus … What You'll Be Doing The Vulnerability Analyst is to manage the identification and analysis of security vulnerabilities and support required remediation across National Highways infrastructure (IT and OT). The Vulnerability Analyst will co-ordinate with various digital teams across NH to ensure all vulnerability are addressed in a timely manner. The Analyst will continually improve … vulnerability tooling and process while supporting the improvement of the security capability of National Highways through dashboard monitoring and retrospective assessments. Planning, execution and management of vulnerabilityassessment and scanning activities across the National Highway's networks, systems, and applications. Ensure vulnerability scans and assessments are run periodically in line with policies and standards across the More ❯
London, England, United Kingdom Hybrid / WFH Options
Northern Trust Corp
to Operational Resiliency and Third Party Risk; this includes supporting remediation activities Participate in analysis of important business services including defining scope of critical operations, interdependency analysis, impact tolerance, vulnerabilityassessment to identify material points of failure, develop action plans to remediate vulnerabilities, and test readiness of critical operations through severe but plausible scenarios Supports Senior team members More ❯