Penetration Tester

Barclays

Knutsford

On-site

GBP 65,000 - 95,000

Full time

9 days ago

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Barclays is seeking a Penetration Tester to identify and validate security vulnerabilities across web, network, mobile, and client applications. You will work in a collaborative security testing team, delivering high-quality assessments across projects and communicating findings to stakeholders for meaningful action.

The role requires CREST qualification (or progress toward one) and experience delivering end-to-end testing, with strong reporting and SoW contributions.

Qualifications

  • Holding a CREST qualification (or equivalent), or working towards one.
  • Delivering end-to-end penetration testing across web, network, and mobile environments.
  • Engaging with stakeholders, contributing to Statements of Work (SoW), and producing clear, actionable security reports.

Responsibilities

  • Develop and execute assessments, audits, and threat models to identify vulnerabilities in systems, applications and networks.
  • Collaborate with stakeholders and IT teams to identify emerging attack techniques and support testing methodologies.
  • Prepare comprehensive reports for senior stakeholders with findings and remediation guidance.
  • Collaborate with stakeholders to understand security requirements and controls in business processes to enhance security posture.
  • Identify emerging vulnerabilities and testing approaches to strengthen assurance activities.

Skills

CREST qualification
End-to-end penetration testing
Stakeholder engagement & reporting

Job description

Join us as a Penetration Tester, to help protect our organisation and clients by identifying, validating, and clearly communicating security vulnerabilities before they can be exploited. This role sits within a collaborative security testing team and focuses on delivering high-quality web, network, mobile, and client application assessments across a range of projects, while working closely with stakeholders to turn findings into meaningful action.

Key Skills
  • Holding a CREST qualification (or equivalent), or working towards one.
  • Delivering end-to-end penetration testing across web, network, and mobile environments.
  • Engaging with stakeholders, contributing to Statements of Work (SoW), and producing clear, actionable security reports.
Desirable Skills
  • Participation in the penetration testing or wider security community (for example bug hunting, Hack The Box, CTFs, or hackathons).
  • Exposure to client or thick application testing and experience working to agreed project timelines.
  • An interest in emerging areas such as AI security testing, and familiarity with scripting or programming (no specific languages required).

This role will be based in Knutsford or Manchester.

You may be assessed on the key critical skills relevant for success in role, such as risk and controls, change and transformation, business acumen strategic thinking and digital and technology, as well as job-specific technical skills.

Purpose of the role

To identify potential vulnerabilities within the banks IT systems using penetration testing tools and techniques to ensure security of computer systems, applications, servers, and networks.

Accountabilities
  • Development and execution of assessments, audits, and threat models to identify vulnerabilities within the banks systems, applications and servers using penetration tools and techniques, and communicate key findings and recommendations to stakeholders.
  • Collaboration with stakeholders and IT teams to identify emerging cyber-attack techniques, tools and technologies and to support the development of penetration testing methodologies.
  • Development and maintenance of comprehensive documents and reports for senior stakeholders on penetration test findings, and remediation guidance.
  • Collaboration with stakeholders to understand their security requirements and controls in business processes, application/services, to enhance overall security posture and assurance.
  • Identification of emerging vulnerabilities, exploit codes and cyber-attacks to develop testing methodologies and assurance activities.
Assistant Vice President Expectations
  • To advise and influence decision making, contribute to policy development and take responsibility for operational effectiveness. Collaborate closely with other functions/ business divisions.
  • Lead a team performing complex tasks, using well developed professional knowledge and skills to deliver on work that impacts the whole business function. Set objectives and coach employees in pursuit of those objectives, appraisal of performance relative to objectives and determination of reward outcomes.
  • If the position has leadership responsibilities, People Leaders are expected to demonstrate a clear set of leadership behaviours to create an environment for colleagues to thrive and deliver to a consistently excellent standard. The four LEAD behaviours are: L - Listen and be authentic, E - Energise and inspire, A - Align across the enterprise, D - Develop others.
  • OR for an individual contributor, they will lead collaborative assignments and guide team members through structured assignments, identify the need for the inclusion of other areas of specialisation to complete assignments. They will identify new directions for assignments and/ or projects, identifying a combination of cross functional methodologies or practices to meet required outcomes.
  • Consult on complex issues; providing advice to People Leaders to support the resolution of escalated issues.
  • Identify ways to mitigate risk and developing new policies/procedures in support of the control and governance agenda.
  • Take ownership for managing risk and strengthening controls in relation to the work done.
  • Perform work that is closely related to that of other areas, which requires understanding of how areas coordinate and contribute to the achievement of the objectives of the organisation sub-function.
  • Collaborate with other areas of work, for business aligned support areas to keep up to speed with business activity and the business strategy.
  • Engage in complex analysis of data from multiple sources of information, internal and external sources such as procedures and practises (in other areas, teams, companies, etc).to solve problems creatively and effectively.
  • Communicate complex information. 'Complex' information could include sensitive information or information that is difficult to communicate because of its content or its audience.
  • Influence or convince stakeholders to achieve outcomes.

All colleagues will be expected to demonstrate the Barclays Values of Respect, Integrity, Service, Excellence and Stewardship - our moral compass, helping us do what we believe is right. They will also be expected to demonstrate the Barclays Mindset - to Empower, Challenge and Drive - the operating manual for how we behave.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Security Engineer
Security Engineer

Barclays • Knutsford

On-site
GBP 70,000 - 110,000
Lead Penetration Tester (Lead Cyber Analyst), Technical Vulnerability Management - Cyber Securi[...]
Lead Penetration Tester (Lead Cyber Analyst), Technical Vulnerability Management - Cyber Securi[...]

Bank of England • Leeds

Hybrid
GBP 90,000 - 120,000
Non-contributory pension
Private medical insurance
Income protection
+1
Lead Penetration Tester (Lead Cyber Analyst), Technical Vulnerability Management - Cyber Securi[...]
Lead Penetration Tester (Lead Cyber Analyst), Technical Vulnerability Management - Cyber Securi[...]

Bank of England • City Of London

Hybrid
GBP 90,000 - 120,000
Hybrid working
Penetration Tester
Penetration Tester

Bytes Software Services • Leatherhead

On-site
GBP 42,000 - 62,000
Penetration Tester
Penetration Tester

Oscar • Bristol

On-site
GBP 60,000 - 80,000
Funded certifications
Access to modern tooling
Performance-based incentives
Penetration Tester: Web, Network & Mobile Security
Penetration Tester: Web, Network & Mobile Security

Barclays • Knutsford

On-site
GBP 65,000 - 95,000
Data Security Lead
Data Security Lead

Barclays • Greater London

On-site
GBP 110,000 - 140,000
Senior Service Engineer
Senior Service Engineer

Barclays • Glasgow

On-site
GBP 60,000 - 90,000
DFIR Lead Cyber Operations Analyst
DFIR Lead Cyber Operations Analyst

慨正橡扯 • Knutsford

On-site
GBP 80,000 - 120,000
DFIR Lead Cyber Operations Analyst
DFIR Lead Cyber Operations Analyst

Barclays • Knutsford

On-site
GBP 140,000 - 180,000
On-call rotation
Extended hours and weekend work