Cyber Security Penetration Tester

Accenture UK

Greater London

Hybrid

GBP 60,000 - 90,000

Full time

3 days ago
Be an early applicant
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

Accenture is seeking a Cyber Security Penetration Tester to deliver hands-on testing of client web applications, APIs and infrastructure across the UK. You will work in a collaborative testing team with CHECK Team Leaders, performing manual and tool-assisted assessments, and delivering remediation advice.

Candidates typically have 1-2 years of experience, familiarity with Burp Suite, Nmap and Metasploit, and strong reporting skills. A pathway to security certifications is supported.

Qualifications

  • Typically 1-2 years' commercial penetration testing experience across web applications, APIs and infrastructure.
  • Good working knowledge of OWASP Top 10 and API Security Top 10.
  • Practical experience with industry-standard tools such as Burp Suite, Nmap and Metasploit.
  • Ability to validate findings, rule out false positives and capture reproducible evidence.
  • Clear technical writing that explains risk and remediation in plain language.

Responsibilities

  • Perform manual and tool-assisted testing of web applications, APIs and internal and external infrastructure.
  • Identify, validate and safely exploit vulnerabilities within agreed rules of engagement, including authentication, authorisation, injection, business logic and misconfiguration issues.
  • Help identify attack paths, including privilege escalation, and explain their business impact.
  • Follow recognised methodologies, including OWASP (WSTG, API Security Top 10), PTES and CHECK/CREST standards.
  • Help prepare for engagements by confirming scope, access and prerequisites with the engagement lead.
  • Write clear, accurate reports with reproducible evidence, risk ratings and prioritised remediation advice.
  • Support client remediation and carry out retests to confirm fixes are effective.
  • Escalate critical findings promptly to the engagement lead and help explain their impact to stakeholders.
  • Share knowledge with the team through peer review, tooling improvements and technical write-ups.

Skills

Penetration testing
OWASP Top 10
Burp Suite
Nmap
Metasploit
Evidence collection
Technical writing

Tools

Burp Suite
Nmap
Metasploit

Job description

Job Title: Cyber Security Penetration Tester

Locations: UK wide (hybrid work- 1x a month in office)

Salary: Competitive salary and package (Depending on level of experience)

Please Note: Any offer of employment is subject to satisfactory BPSS and SC security clearance which requires 5 years continuous UK address history (typically including no periods of 30 consecutive days or more spent outside of the UK) at the point of application.

Role overview

As a Penetration Tester, you will deliver hands-on security testing of client web applications, APIs and infrastructure. Working within a collaborative testing team, and supported by senior testers and CHECK Team Leaders on complex engagements, you will find and validate vulnerabilities, demonstrate their real-world impact and give clients clear, practical remediation advice. This role suits an early-career tester who wants to broaden their technical skills and progress through recognised industry certifications.

Key responsibilities
  • Perform manual and tool-assisted testing of web applications, APIs and internal and external infrastructure.
  • Identify, validate and safely exploit vulnerabilities within agreed rules of engagement, including authentication, authorisation, injection, business logic and misconfiguration issues.
  • Help identify attack paths, including privilege escalation, and explain their business impact.
  • Follow recognised methodologies, including OWASP (WSTG, API Security Top 10), PTES and CHECK/CREST standards.
  • Help prepare for engagements by confirming scope, access and prerequisites with the engagement lead.
  • Write clear, accurate reports with reproducible evidence, risk ratings and prioritised remediation advice.
  • Support client remediation and carry out retests to confirm fixes are effective.
  • Escalate critical findings promptly to the engagement lead and help explain their impact to stakeholders.
  • Share knowledge with the team through peer review, tooling improvements and technical write-ups.
Essential skills and experience
  • Typically 1-2 years' commercial penetration testing experience across web applications, APIs and infrastructure.
  • Good working knowledge of common web and API vulnerabilities, including the OWASP Top 10 and API Security Top 10.
  • Practical experience with industry-standard tools such as Burp Suite, Nmap and Metasploit.
  • Ability to validate findings, rule out false positives and capture reproducible evidence.
  • Clear technical writing that explains risk and remediation in plain language.
Desirable skills and experience
  • Awareness of cloud security and configuration review in AWS, Azure or GCP.
  • Some mobile application testing experience (iOS and/or Android).
  • Basic scripting (e.g. Python, Bash, PowerShell) to automate tasks or adapt tools.
  • Understanding of cryptography and build/hardening standards.
  • Sound understanding of networking, common protocols, and Windows and Linux security.
  • Holds, or is working towards, a practitioner-level certification such as CREST CRT, Cyber Scheme CSTM, OSCP or PNPT.
Development and support
  • Mentoring and technical guidance from experienced testers and CHECK Team Leaders.
  • A funded certification pathway, for example from CRT or CSTM through to CCT or CSTL.
  • A broad mix of engagements to build experience across testing types.
  • Dedicated time for training, research and lab work.
  • Opportunities to contribute to internal tooling, methodology and innovation projects.
About Accenture

Accenture is a leading global professional services company that helps the world’s leading businesses, governments and other organizations build their digital core, optimize their operations, accelerate revenue growth and enhance citizen services - creating tangible value at speed and scale. We are a talent- and innovation-led company with approximately 791,000 people serving clients in more than 120 countries. Technology is at the core of change today, and we are one of the world’s leaders in helping drive that change, with strong ecosystem relationships. We combine our strength in technology and leadership in cloud, data and AI with unmatched industry experience, functional expertise and global delivery capability. Our broad range of services, solutions and assets across Strategy & Consulting, Technology, Operations, Industry X and Song, together with our culture of shared success and commitment to creating 360° value, enable us to help our clients reinvent and build trusted, lasting relationships. We measure our success by the 360° value we create for our clients, each other, our shareholders, partners and communities.

Visit us at www.accenture.com

Equal Employment Opportunity Statement

We believe that no one should be discriminated against because of their differences. All employment decisions shall be made without regard to age, race, creed, color, religion, sex, national origin, ancestry, disability status, sexual orientation, gender identity or expression, marital status, citizenship status or any other basis as protected by applicable law. Our rich diversity makes us more innovative, more competitive, and more creative, which helps us better serve our clients and our communities.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Penetration Tester
Penetration Tester

4Square Recruitment Ltd • Manchester

On-site
GBP 40,000 - 60,000
Annual bonus up to 10%
25 days holiday + bank holidays
Regular team events & socials
Cyber Security Consultant (Penetration Tester)
Cyber Security Consultant (Penetration Tester)

Moore Kingston Smith LLP • Greater London

On-site
GBP 45,000 - 55,000
Cyber Security Consultant (Penetration Tester)
Cyber Security Consultant (Penetration Tester)

Moore Kingston Smith • Greater London

On-site
GBP 45,000 - 55,000
Penetration Tester
Penetration Tester

Guideposts Trust Limited • Cardiff

On-site
GBP 45,000 - 65,000
Graduate Cyber Security Consultant/Penetration Tester
Graduate Cyber Security Consultant/Penetration Tester

BPM Tech • West of England

On-site
GBP 45,000 - 60,000
Security Testing Consultant (Penetration Tester) Hybrid
Security Testing Consultant (Penetration Tester) Hybrid

BAE Systems • Frimley

Hybrid
GBP 75,000 - 95,000
Penetration Tester
Penetration Tester

Citation Cyber • Warmley

On-site
GBP 60,000 - 85,000
Hybrid and flexible working
Funded training and industry certs
Progression towards CHECK Team Member/
+2
IT/OT Penetration Tester
IT/OT Penetration Tester

PA Consulting • City of Westminster

On-site
GBP 45,000 - 65,000
Health and lifestyle perks
25 days annual leave
Generous company pension scheme
+2
Penetration Tester
Penetration Tester

Citation Cyber • Stockport

On-site
GBP 65,000 - 90,000
Hybrid working
Training & certifications
Competitive salary and benefits
Penetration Tester
Penetration Tester

Citation Cyber • Newcastle upon Tyne

On-site
GBP 45,000 - 75,000
Hybrid and flexible working
Funded training and industry certs
NCSC CHECK provider and CREST member