Enable job alerts via email!

Pen Tester

Stott and May

Reading

On-site

GBP 80,000 - 100,000

Full time

Yesterday
Be an early applicant

Job summary

A cybersecurity consulting firm in Reading is looking for an experienced Pen Tester to enhance its security posture. This role involves leading penetration testing engagements and communicating findings effectively. The ideal candidate will have a strong background in cybersecurity, familiarity with industry-standard tools, and excellent problem-solving skills. This is a hybrid role with a competitive day rate of £425 Inside IR35.

Qualifications

  • Proficiency with penetration testing tools.
  • Strong understanding of software testing methodologies.
  • Experience with manual and automated testing tools.
  • Ability to write clear and concise test plans and reports.
  • Familiarity with the software development life cycle.

Responsibilities

  • Lead engagements from kickoff through reporting.
  • Perform penetration testing across various environments.
  • Execute penetration testing projects using established methodology.
  • Conduct red team assessments to identify gaps.
  • Analyse results and communicate findings to stakeholders.

Skills

Cobalt Strike
Caldera
Atomic Red Team
Pentera
Nessus
Burp
OSINT
Problem-solving
Collaboration

Education

Bachelor's degree in Computer Science
Master's degree in Computer Science

Tools

BurpSuite
Nessus
Nmap
Kali Linux
Job description

Role Title: Pen Tester
Location: Reading (Hybrid - 3 days on-site per week)
Day Rate: £425 Inside IR35
Contract Duration: 6 months

The Role

We are looking for a Security Consultant/Senior Security Consultant with expertise in penetration testing. You will perform penetration testing across Internet, Intranet, wireless, web applications, social engineering, and physical environments. In addition, you will analyse results in-depth and produce reports detailing findings, exploitation procedures, risks, and recommendations.

Key Responsibilities
  • Lead engagements from kickoff with clients through scoping, penetration testing, and reporting while adhering to scope and deadlines.
  • Perform penetration testing across network, web application, APIs, cloud security, thick client applications, wireless, social engineering, and physical security.
  • Execute penetration testing projects using established methodology, tools, and rules of engagement.
  • Conduct red team assessments to identify gaps affecting organisational security posture.
  • Identify and exploit security vulnerabilities across a variety of systems.
  • Analyse penetration testing results and produce comprehensive reports with findings, risks, and recommendations.
  • Communicate complex technical security concepts to both technical and non-technical audiences, including executives.
  • Perform technical quality reviews and conduct client-facing technical discussions.
  • Demonstrate proficiency with OWASP Top 10 and SANS Top 25 vulnerabilities, effectively communicating methodologies with development teams.
  • Utilise tools such as BurpSuite, Nessus, Nmap, Kali Linux, and other vulnerability assessment platforms.
Essential Skills & Experience
  • Proficiency with penetration testing tools: Cobalt Strike, Caldera, Atomic Red Team, Pentera, Nessus, Burp, OSINT, etc.
  • Strong understanding of software testing methodologies and techniques.
  • Experience with manual and automated testing tools.
  • Excellent problem-solving and debugging skills.
  • Ability to write clear and concise test plans and reports.
  • Strong communication and collaboration skills.
  • Familiarity with the software development life cycle.
  • Proven ability to deliver high-quality security solutions.
Desirable Skills & Experience
  • Bachelor's degree in Computer Science, Cybersecurity, or related field; Master's preferred.
  • 8+ years of experience in information security with focus on technical cybersecurity.
  • Minimum 5 years' experience in network/cloud security environments.
  • Relevant certifications such as CISSP, CCSP, OSCP, SANS, or equivalent.
  • Certification in one or more cloud vendor offerings (AWS, GCP, Azure, OCI).
It Means More
  • Ready to take you on your next challenging cybersecurity role.
  • Work with cutting-edge penetration testing tools and methodologies.
  • Contribute to securing critical systems while advancing your technical expertise.
Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.