Penetration Tester
Trust In Soda Ltd
1 month ago
Role details
Contract type
Contract Employment type
Full-time (> 32 hours) Working hours
Regular working hours Languages
English Compensation
£ 119KJob location
Remote
Tech stack
API
Software System Penetration Testing
Bash
Burp Suite
Cloud Computing
Python
Kali Linux
Network Protocols
NMap
Open Web Application Security
Powershell
Red Team (Cyber Security)
Wireshark
Web Applications
Scripting (Bash/Python/Go/Ruby)
Mitre Att&ck
Metasploit
Operational Systems
Job description
Penetration Tester - HIRING ASAP
Start date: ASAP Duration: Till end of December 2025 with an extension thereafter Location: 2-3 days in Wokingham, 2-3 days remote working. Rate: £459 per day inside ir35
Responsibilities
- Conduct manual and automated penetration tests on web applications, networks, APIs, and mobile platforms.
- Identify, exploit, and document security vulnerabilities with detailed risk assessments.
- Develop and execute red team exercises and threat simulations.
- Collaborate with development and infrastructure teams to remediate findings.
- Prepare comprehensive reports outlining findings, impact, and mitigation strategies.
- Stay current with latest attack vectors, tools, and security trends.
- Assist in security awareness training and internal education efforts.
- Contribute to security policies and best practices development.
Key Skills
- Proven experience in penetration testing, ethical hacking, or red teaming.
- Strong understanding of OWASP Top 10, MITRE ATT&CK, and CVSS scoring.
- Proficiency with tools like Burp Suite, Metasploit, Nmap, Wireshark, Kali Linux.
- Familiarity with Scripting languages (Python, Bash, PowerShell).
- Knowledge of network protocols, operating systems, and cloud environments.
- Relevant certifications (eg, OSCP, CEH, GPEN, CRTP) are highly desirable.
- Excellent analytical, communication, and report-writing skills
Requirements
- Proven experience in penetration testing, ethical hacking, or red teaming.
- Strong understanding of OWASP Top 10, MITRE ATT&CK, and CVSS scoring.
- Proficiency with tools like Burp Suite, Metasploit, Nmap, Wireshark, Kali Linux.
- Familiarity with Scripting languages (Python, Bash, PowerShell).
- Knowledge of network protocols, operating systems, and cloud environments.
- Relevant certifications (eg, OSCP, CEH, GPEN, CRTP) are highly desirable.
- Excellent analytical, communication, and report-writing skills