Enable job alerts via email!

CREST Penetration Tester

SR2 - Socially Responsible Recruitment

City Of London

Remote

GBP 80,000 - 100,000

Full time

Today
Be an early applicant

Job summary

A leading Cyber Security consultancy seeks an experienced Crest-certified Penetration Tester to perform advanced security assessments across infrastructure, web, and cloud layers. The role offers £500 per day for 6 months, with remote work and occasional on-site requirements in London. Strong qualifications in penetration testing and relevant tools are essential.

Qualifications

  • Must have active Crest CRT or equivalent certification.
  • Experience in conducting penetration testing on infrastructure and web applications.
  • Familiarity with OWASP Top 10, CVSS scoring, and exploitation techniques.

Responsibilities

  • Perform advanced security assessments across various layers.
  • Contribute to the protection of critical systems.
  • Document findings clearly and communicate effectively.

Skills

Crest CRT certification
Infrastructure penetration testing
Web application penetration testing
OWASP Top 10 knowledge
Burp Suite
Nmap
Nessus
Metasploit
Documentation skills

Tools

Burp Suite
Nmap
Nessus
Metasploit
Job description
Crest Penetration Tester

Infrastructure & Web App Testing/Red Team/Cloud/CHECK/Outside IR35/Remote with London Onsite/£500 pd/6 months

We've partnered with a Cyber Security consultancy seeking an experienced Crest-certified Penetration Tester to support a high-assurance testing programme across enterprise environments. You'll perform advanced security assessments across infrastructure, web, and cloud layers-contributing to the protection of critical systems against real-world threats.

Qualifications
  • Active Crest CRT (or equivalent) certification.
  • Proven experience conducting infrastructure and web application penetration testing.
  • Strong understanding of OWASP Top 10, CVSS scoring, and common exploitation techniques.
  • Hands‑on experience with testing tools such as Burp Suite, Nmap, Nessus, Metasploit, and custom scripts.
  • Solid grounding in red team or simulated adversary methodologies.
  • Excellent documentation and communication skills.
Preferred
  • Active or previously held CHECK Team Member or CHECK Team Leader status.
  • Exposure to regulated projects.
  • Experience testing within cloud environments (AWS, Azure, GCP).
  • Knowledge of ISO27001, NIST, and other compliance frameworks.
Contract Details

6 months • Outside IR35 • £500 per day • Remote with occasional London on‑site work • ASAP Start • 1‑Stage Interview Process

Please apply now or contact me directly if this role looks like a good fit. From there I'll be in touch to discuss the opportunity in more detail.

Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.