Leeds, England, United Kingdom Hybrid / WFH Options
Mindrift
Bash, Python, PowerShell). Experience with web security (HTTP, API security, web scraping, DOM manipulation). Knowledge of AI security risks, including prompt injection, adversarial attacks, and AI red teaming. Deep understanding of networking protocols, OS security, and web application security. Cloud security expertise (AWS, Azure, Kubernetes, Terraform, CI/CD security) Proficiency in English: advanced (C1) or … connection, time available and enthusiasm to take on a challenge. Preferred Skills: Hands-on experience with penetration testing tools (Metasploit, Burp Suite, Nessus, Nmap). Experience in AI redteaming, adversarial ML, LLM security testing. Knowledge of OWASP Top Ten, MITRE ATT&CK, and other security frameworks. Relevant security certifications (OSCP, CEH, CISSP, OSWE, API Security Architect). More ❯
Leeds, Yorkshire, United Kingdom Hybrid / WFH Options
Eames Consulting Group Ltd
security solutions across network, endpoint, cloud, and offensive security testing. Our mission: empower clients to expose and eliminate critical vulnerabilities before attackers do. We're expanding our offensive security team and need an experienced Penetration Tester to deliver high-impact, real-world security assessments that drive tangible improvements. The Role - What You'll Own You will simulate sophisticated cyberattacks … Your findings will guide clients to stronger, more resilient security postures. Lead internal and external penetration tests , including infrastructure, web, wireless, cloud, and social engineering. Execute redteam, purple team, and breach simulation exercises tailored to client maturity and objectives. Identify and safely exploit vulnerabilities to demonstrate real business impact . Deliver clear, actionable reports tailored … standards. Exceptional communicator who can translate complex technical issues for diverse audiences. Proven certifications like OSCP, eCPPT, CRTO, Crest CPSA/CRT , or equivalent. Bonus Points Redteam, purple team, or adversary emulation experience. Programming/Scripting skills (Python, PowerShell, Bash). Cloud pentesting experience (AWS, Azure, GCP). Familiarity with threat modelling or risk-based More ❯
Leeds, England, United Kingdom Hybrid / WFH Options
Cognisys Group
ready to make an impact in the fast-paced world of cybersecurity? Cognisys is growing rapidly, and we’re looking for a Penetration Tester (Principal Consultant) to join our team during this exciting period of innovation and expansion. Cognisys is a leading cybersecurity company specialising in Penetration Testing, GRC Consulting, and Managed Security services. We pride ourselves on our … customer service, forward-thinking approach, and commitment to excellence. Our small but mighty team works with some of the best-known companies in the world and covers over 30 countries worldwide! About the Role As a Penetration Tester (Principal Consultant), you will be key in driving commercial success, managing high-performing teams, and delivering cutting-edge offensive security projects. … teaming and cloud security, coupled with a passion for business growth and client engagement. If you are a seasoned cybersecurity professional with a passion for offensive security, team leadership, and business growth, we want to hear from you! Key Responsibilities: Commercial & Client Engagement: Act as a primary technical contact for key accounts, ensuring strong client relationships and More ❯
York, England, United Kingdom Hybrid / WFH Options
Hiscox
Reporting to: Delivery Team Leader (Cyber Fusion Centre) Location: York (UK) or Lisbon (Portugal) Type: Permanent Band: II Company Description: Hiscox is a diversified international insurance group with a powerful brand, strong balance sheet and plenty of room to grow. Listed on the London Stock Exchange and headquartered in Bermuda, Hiscox has over 3,000 staff across 14 countries … cyber threats. You will translate business needs into security requirements, ensuring systems and data are protected from unauthorized access and potential breaches. You will work closely with our Red and Blue Teams to identify vulnerabilities and control gaps, turning these into a pipeline of continuous improvement for our cyber defenses. You will collaborate with Cyber Security Engineers to More ❯
York, England, United Kingdom Hybrid / WFH Options
JR United Kingdom
Social network you want to login/join with: I’m currently supporting a global tier 1 bank who have just opened up two redteam roles in the UK on a remote basis. One at the Senior level and one at the Operator level. If you’re passionate about simulating real-world adversaries, from phishing and … privilege escalation to badge cloning and physical intrusion, this is your opportunity to join a flat-structured team where impact speaks louder than titles. This is true redteaming – 80% technical, 20% physical/social engineering. No purple teaming (that’s a separate function), no people management, just pure offensive security. The team is flat, but … for someone who wants visibility and influence without formal management responsibilities. What I’m Looking For: Senior Red Teamer 5+ years of hands-on redteam experience Operates at a strategic and technical depth, capable of guiding others Passionate about exploits, evasion techniques, and full-scope engagements Comfortable taking the lead in engagements and acting More ❯
Doncaster, England, United Kingdom Hybrid / WFH Options
JR United Kingdom
Social network you want to login/join with: I’m currently supporting a global tier 1 bank who have just opened up two redteam roles in the UK on a remote basis. One at the Senior level and one at the Operator level. If you’re passionate about simulating real-world adversaries, from phishing and … privilege escalation to badge cloning and physical intrusion, this is your opportunity to join a flat-structured team where impact speaks louder than titles. This is true redteaming – 80% technical, 20% physical/social engineering. No purple teaming (that’s a separate function), no people management, just pure offensive security. The team is flat, but … for someone who wants visibility and influence without formal management responsibilities. What I’m Looking For: Senior Red Teamer 5+ years of hands-on redteam experience Operates at a strategic and technical depth, capable of guiding others Passionate about exploits, evasion techniques, and full-scope engagements Comfortable taking the lead in engagements and acting More ❯
Bradford, England, United Kingdom Hybrid / WFH Options
JR United Kingdom
I’m currently supporting a global tier 1 bank who have just opened up two redteam roles in the UK on a remote basis. One at the Senior level and one at the Operator level. If you’re passionate about simulating real-world adversaries, from phishing and privilege escalation to badge cloning and physical intrusion, this … is your opportunity to join a flat-structured team where impact speaks louder than titles. This is true redteaming – 80% technical, 20% physical/social engineering. No purple teaming (that’s a separate function), no people management, just pure offensive security. The team is flat, but Senior Red Teamers are leaned on heavily … for someone who wants visibility and influence without formal management responsibilities. What I’m Looking For: Senior Red Teamer 5+ years of hands-on redteam experience Operates at a strategic and technical depth, capable of guiding others Passionate about exploits, evasion techniques, and full-scope engagements Comfortable taking the lead in engagements and acting More ❯
Serve as the point of escalation for intrusion analysis, forensics, and incident response queries. Provide root cause analysis for complex, non-standard findings and anomalies without existing playbooks. Mentor team members and share knowledge proactively. Contribute to the SOC Knowledge Repository by creating and updating documentation independently. Build relationships externally with other SOCs and cybersecurity researchers to identify analytics … cloud services and VMs, prioritizing and implementing relevant findings. Research vulnerabilities, produce proof-of-concept exploits, and emulate adversary TTPs for training and detection evaluation. Review redteam and pentest findings to improve detection rules. Provide forensic support and threat emulation to improve alert triage and accuracy. Identify gaps in SOC processes, data collection, and analysis, demonstrating … world risks. Architect detection programs to identify unusual behaviors, reduce dwell time, and optimize resource use. Oversee practices that enhance daily operations, including quality reviews. Lead operational strategy and team exercises, collaborating across functions. Contribute to team requirements, including engineering and continuous improvement. Design and conduct technical interviews, evaluating candidate responses. Experience Proven experience in security testing practices More ❯