Penetration Tester (Web/API)
As a Penetration Tester, you will perform formal and comprehensive penetration testing assessments, including producing full written reports to appropriate standards and within agreed deadlines. Perform formal and comprehensive application and other penetration testing assessments where appropriate and required;
Provide well-written, concise, technical and non-technical reports in English;
Manage and deliver penetration testing project activities within strict deadlines;
Support the Marketing team with the development of content (including, but not limited to: Blogs, Social Media Posts, and Articles) to help raise the profile of Penetration Testing and other services;
Support the QA process to ensure high quality client reports are delivered in accordance with applicable Service Level Agreement (SLA);
Proven industry experience in web/API/mobile/thick client application penetration testing;
Deep knowledge of various Operating Systems and network principles.
Ability to program or script in your preferred language.
Experience leading penetration testing projects and acting as a lead technical point of contact.
Knowledge of assessing cloud and/or hybrid environments (AWS and Azure);
Knowledge of performing source code reviews in a language of your preference and expertise;
Involvement in previous research projects, tool development and training delivery.
A passion for security and networks;
An additional day’s annual holiday for your birthday;
~ Company Pension contribution;
~ Generous uncapped bonus scheme;
~ Subsidized gym membership;
~ Private Healthcare (individual cover only);
~ Financial support to study for and achieve additional penetration testing qualifications;
~ Additional Learning Allowance Benefit;
~ Flexible working policy.
A trusted provider of innovative cyber security and people-powered solutions. Our cyber security services are the best way to stay ahead of the hackers, take control of infrastructure and protect business-critical data.
With our own in-house UK Security Operations Centre (SOC) and years of industry experience, we help to protect our customers from current and emerging security threats. We provide a full spectrum of cyber security services including CREST-certified penetration testing, 24/7 threat monitoring, compliance support and security training to help organisations protect against today’s evolving threat landscape.