Job Search and Career Advice Platform

Enable job alerts via email!

Penetration Tester

Acora Limited

Greater London

On-site

GBP 70,000 - 90,000

Full time

Yesterday
Be an early applicant

Generate a tailored resume in minutes

Land an interview and earn more. Learn more

Job summary

A leading cybersecurity firm in Greater London seeks a Penetration Tester to establish and lead a comprehensive red team capability. The role emphasizes both strategic and operational tasks, such as executing adversary simulations, mentoring red team members, and translating technical findings into business risk context. Ideal candidates will have experience in red team operations, understanding of cloud environments, and strong leadership skills. Competitive compensation and opportunities for professional growth are offered.

Qualifications

  • Significant experience conducting red team operations and adversary simulations.
  • Strong understanding of cloud platforms like Azure and AWS.
  • Proficient in scripting languages such as PowerShell or Python.

Responsibilities

  • Lead design and execution of adversary emulation campaigns.
  • Develop red team TTPs aligned to the MITRE ATT&CK framework.
  • Enhance red team automation capabilities and operational infrastructure.

Skills

Red team operations
Advanced offensive assessments
Enterprise operating systems (Windows, Linux)
Cloud platforms (Azure, AWS)
Scripting languages (PowerShell, Python, C#)
Technical communication
Leadership in security teams
Job description
Job Details: Penetration Tester

The Red Team Lead at Acora is responsible for establishing, maturing, and leading our full-spectrum red team capability. This includes the planning and execution of complex adversary simulations, managing red team operators, and working across technical and business teams to strengthen client security postures. You will be the link between deep technical offensive operations and business-level risk strategy, ensuring that findings are communicated clearly, accurately, and in a manner suitable for executive audiences. This role is both strategic and operational, emphasizing leadership, innovation, and the continuous enhancement of Acora’s cyber security services.

Qualifications
  • Significant experience conducting red team operations, adversary simulations, or advanced offensive assessments.
  • Strong understanding of enterprise operating systems (Windows, Linux), cloud platforms (Azure, AWS), and hybrid environments.
  • Proficiency in offensive tooling, payload development, and scripting languages such as PowerShell, Python, or C#.
  • Strong ability to articulate technical details clearly and translate them into meaningful business risk.
  • Proven leadership or mentoring experience within offensive security teams.
Responsibilities
  • Lead the design, planning, and execution of realistic adversary emulation campaigns across varied enterprise environments.
  • Develop and maintain red team TTPs aligned to real-world threat actor behaviours and the MITRE ATT&CK framework.
  • Embed red team outcomes into Acora’s ‘Attack Informs Defence’ philosophy to help clients detect, contain, and mitigate threats.
  • Enhance red team tooling, automation capabilities, and operational infrastructure.
  • Collaborate with Managed SOC, Incident Response, Consulting, and Threat Intelligence to ensure findings support broader cyber programmes.
  • Promote operational excellence, innovation, and safe, ethical testing practices.
  • Lead and mentor a growing team of red team operators, offering structured development, coaching, and guidance.
  • Support career pathways, training programmes, and competency frameworks for junior and mid-level operators.
  • Conduct technical quality assurance reviews, ensuring accuracy, clarity, and operational consistency.
  • Assist in hiring, onboarding, and expanding Acora’s offensive security capability.
  • Translate complex technical exploit chains and attack paths into concise business language suitable for senior and executive stakeholders.
  • Deliver clear, compelling presentations to technical teams, CISOs, and board-level audiences.
  • Produce detailed technical documentation, executive summaries, and remediation roadmaps tailored to client needs.
  • Work with consulting and strategy teams to ensure red team insights inform broader organisational security improvements.
Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.