Senior Penetration Tester

Ekco

Dublin

Hybrid

EUR 70,000 - 110,000

Full time

8 hours ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

25 days annual leave
Birthday leave
Company pension
EAP

Job summary

Ekco is seeking a skilled Penetration Tester to join our security consultancy team. This hybrid role involves on-site client work and remote engagements, focusing on assessing applications, infrastructure, APIs, and endpoints for vulnerabilities.

As a Senior Penetration Tester, you will develop testing plans, use a range of tools, and provide actionable remediation guidance while collaborating with client developers and security teams.

Qualifications

  • 5+ years of professional penetration testing experience.
  • Experience in web, mobile, infrastructure, and API security testing.
  • Strong knowledge of OWASP, NIST, PTES.
  • Excellent communication and client-facing skills.
  • Degree in CS or InfoSec or related field.

Responsibilities

  • Perform penetration tests on clients' systems across web, mobile, API, and infrastructure.
  • Conduct tests onsite and remote as required by projects.
  • Develop test plans and use tools tailored to client needs, following OWASP and NIST standards.
  • Report vulnerabilities with actionable remediation guidance to clients.
  • Stay updated on threats and advise on countermeasures and secure practices.

Skills

Penetration testing
Web security
Mobile security
Networking
Python scripting
Communication

Education

BSc in Computer Science or InfoSec
OSCP/PNPT/CREST/SANS certifications

Tools

Burp Suite Pro
Nmap
Nessus
Metasploit
Postman/ReadyAPI

Job description

About Ekco

Founded in 2016, Ekco has quickly become one of Europe's fastest-growing cloud solution providers and your trusted security-first Managed Service Provider. IT leaders choose Ekco to drive operational efficiency, scale smarter and stay ahead of risk – powered by local expertise, delivered at European scale. We specialise in helping organisations advance their cloud maturity guiding transformation, strengthening security, and maximising the value of their technology investments. In simple terms: we help organisations modernise with confidence securing their systems, optimising their cloud, and keeping them resilient in a rapidly changing world. Today,we're a thriving team of 1,000+ talented and supportive colleagues across the UK, Ireland, Benelux, South Africa, and Malaysia—and we're continuing to grow. At Ekco, How We Work Matters As Much As What We Deliver. Our People Live By Four Core Values That Shape Everything We Do.

  • On It: We take ownership, follow through, and get things done.
  • All In : We collaborate, support each other, and commit fully to shared goals.
  • Connected: We build trusted relationships with colleagues, clients, and partners.
  • Hungry to Grow: We stay curious, keep learning, and push ourselves to the next level.
The Role
Day-to-day At Ekco

We are looking for a skilled and aspiring Penetration Tester to join our team of security consultants. This is a hybrid role, where you may be required to perform Penetration Testing engagements on client-site locations. As a Senior Penetration Tester, you will play a crucial role in assessing and reporting on the security posture of our internal client’s applications, infrastructure, APIs, servers and endpoints, identifying vulnerabilities that could be exploited by malicious individuals or attackers. Your deep knowledge of app security, penetration testing methodologies, and industry best practices will be instrumental in ensuring the confidentiality, integrity, and availability of our client’s systems.

  • Conduct comprehensive penetration tests on clients' systems across various platforms (including web applications, thick client applications, infrastructure, APIs, cloud platforms) to identify security vulnerabilities, weaknesses, and potential risks.
  • Carry out Penetration Tests both onsite, at client locations and remotely, depending on the requirements of the project.
  • Utilise, develop and execute customized test plans, methodologies, and tools for penetration testing, focusing on both network and application layers, tailored to the client’s specific needs and requirements. Follow leading testing standards and methodologies such as OWASP and NIST.
  • Evaluate system architectures and designs to identify potential security flaws and provide strategic recommendations for risk mitigation.
  • Collaborate closely with clients and their development teams to gain a deep understanding of the architecture, codebase, and underlying technologies, offering guidance on issue remediation and secure coding practices.
  • Utilise a wide range of manual and automated tools to conduct penetration testing.
  • Prepare detailed and comprehensive reports documenting identified vulnerabilities, their potential impact, and actionable remediation strategies, effectively communicating findings to clients.
  • Stay abreast of the latest security threats, vulnerabilities, and attack vectors, proactively advising clients on emerging risks and recommending appropriate countermeasures.
  • Collaborate with cross-functional teams of security professionals to implement tailored security best practices and guide clients in the secure development and deployment of applications and systems.
  • Provide expert support during security incident response activities, assisting clients in investigating and remediating mobile app security incidents.
Requirements
  • Excellent written and verbal communication skills, with the ability to convey technical concepts in a clear and concise manner to both technical and non-technical clients.
  • Degree in Computer Science, Information Security, or experience in a related field.
  • Relevant industry certifications (e.g., OSCP, PNPT, CREST CPSA, CRT accredited certs, SANS) and/or experience in mobile applications, thick client applications, Citrix and Secure Code Review are highly desirable.
  • Proven track record as a Penetration Tester, with significant experience in web and mobile application, infrastructure and API security testing. A minimum of 5 years of experience in professional penetration testing is required.
  • Extensive expertise in security vulnerabilities, threats, and attack vectors, coupled with a thorough understanding of industry best practices and standards (e.g., OWASP, NIST, PTES).
  • Solid understanding of application frameworks and architectures, operating systems (Windows, Unix), and underlying technologies.
  • Hands-on experience performing mobile application penetration testing across Android and iOS platforms is highly desirable, including analysis of mobile app architectures, secure storage, authentication mechanisms, and inter-app communication.
  • Proficiency in using cutting-edge penetration testing tools and frameworks (e.g., Burp Suite Professional, Nmap, Nessus, Metasploit, SoapUI/Postman/ReadyAPI).
  • Strong understanding of programming and scripting (e.g., Python, Bash) to automate testing processes and develop custom scripts tailored to client’s specific needs is a plus.
  • Demonstrated ability to work independently and collaboratively within a team, effectively managing multiple testing engagements, meeting deadlines, and delivering high-quality results.
Benefits / Perks
  • Time Off: 25 days annual leave + public holidays
  • Birthday Leave: One extra day off to celebrate
  • Company Pension Scheme
  • Employee Assistance Programme (EAP) for wellbeing support
  • EkcOlympics: Global team activity challenges
  • Unlimited access to Pluralsight for continuous development
  • Real opportunities to grow, including international progression
Why Ekco
  • Microsoft’s 2023 Rising Star Security Partner of the Year
  • First Irish Microsoft MSP to achieve all four Microsoft Security Specializations
  • Ranked 4th fastest-growing technology company in the Deloitte Fast50 Awards
  • A culture rooted in diversity, equality, inclusion & belonging
  • A commitment to internal mobility and career progression
  • Flexible, family-friendly working at the heart of our culture
  • Proud to be your trusted security-first Managed Service Provider chosen by IT leaders to drive operational efficiency, scale smarter and stay ahead of risk.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Technical Risk Consultant
Technical Risk Consultant

Ekco • Dublin

On-site
EUR 60,000 - 80,000
25 days annual leave
Birthday leave
Company pension scheme
+3
Cloud Security Architect
Cloud Security Architect

Ekco • Dublin

Hybrid
EUR 110,000 - 160,000
25 days annual leave
Birthday leave
Pension scheme
+4
Level 1 Engineer
Level 1 Engineer

Ekco • Cork

On-site
EUR 42,000 - 60,000
Annual leave 25 days
Company pension
Employee assistance program
+2
Cloud Security Architect Technical Delivery · Dublin - Ekco ·
Cloud Security Architect Technical Delivery · Dublin - Ekco ·

Ekco Group • Dublin

Hybrid
EUR 120,000 - 150,000
Time Off: 25 days annual leave
Company Pension Scheme
Employee Assistance Programme (EAP)
+2
Deskside Support Engineer
Deskside Support Engineer

Ekco • Dublin

Hybrid
EUR 42,000 - 56,000
25 days annual leave
Birthday leave
Company pension
+3
Solutions Architect
Solutions Architect

Ekco • Dublin

On-site
EUR 90,000 - 130,000
25 days annual leave + public holidays
Birthday Leave
Company Pension Scheme
+3
Solutions Architect
Solutions Architect

Ekco • Ireland

On-site
EUR 90,000 - 130,000
Time Off 25 days
Birthday Leave
EAP
+2
UKI Technology Consulting - Penetration Tester, Senior Consultant / Assistant Manager
UKI Technology Consulting - Penetration Tester, Senior Consultant / Assistant Manager

EY • Dublin

On-site
EUR 120,000 - 170,000
Hybrid Working
Pension
Discounted health insurance
+1
Financial Analyst
Financial Analyst

Ekco • Dublin

On-site
EUR 65,000 - 90,000
25 days annual leave
Birthday Leave
Company Pension Scheme
+4
Head of NOC
Head of NOC

Ekco • Dublin

On-site
EUR 100,000 - 140,000
Time Off 25 days annual leave + public
Company Pension Scheme
Employee Assistance Programme (EAP)
+2