Penetration Tester
Role details
Job location
Tech stack
Job description
As a penetration tester in our CTAS team you'll play a vital role in helping our clients detect, understand and manage their security risks. You'll be responsible for undertaking rigorous tests that identify vulnerabilities which are present in the IT infrastructure, applications and networks on which our client's businesses rely. You'll employ both manual and automated techniques to simulate real world attacks which help our clients assess their security posture against any potential threats to their business. You'll also be expected to keep your knowledge of the ever-evolving threat landscape up-to-date and adhere to ethical guidelines, especially when handling sensitive data.
As well as having proven technical skills, you'll also need to demonstrate the strong communication skills needed to describe complex findings to a range of different, often non-technical, stakeholders.
Hybrid working: The places that you work from day to day will vary according to your role, your needs, and those of the business; it will be a blend of Company offices, client sites, and your home; noting that you will be unable to work at home 100% of the time.
Your role
Being certified as a CHECK Team Member (CTM) is a prerequisite to joining our CTAS team as a penetration tester. As a member of this team, you'll deliver highquality penetration testing and consultancy services as well as a full range of security assessments (including specialist areas and IT Health Checks) in line with Capgemini's policies, core values, methodologies, and commercial expectations. This includes:
- Producing accurate, concise documentation including technical reports, executive summaries, scopes, and proposals.
- Engaging a variety of different stakeholders, some technically minded and others not, to ensure they understand work you have delivered.
- Ensuring relevance, maintaining confidentiality, aligning with the QA manual, meeting client expectations, and upholding Capgemini's own standards.
- Maintaining your strong technical expertise and contributing to service development by staying up-to-date with emerging threats, technologies, vulnerabilities and methodologies.
- Sharing your knowledge across the team, participating in research and involving yourself in initiatives which enhance capability.
You can bring your whole self to work. At Capgemini building an inclusive future is part of everyday life and will be part of your working reality. We have built a representative and welcoming environment, for everyone.
Requirements
- Proven experience working in a Penetration Testing role as a certified Check Team Member (CTM) is essential.
- Strong knowledge of penetration testing tools including (Burpsuite, Metasploit, Nmap, etc).
- Good knowledge of multiple Operating Systems (OS) including Windows & *NIX.
- Ability to configure network devices, firewalls, IDS/IPS devices and wireless technologies.
- Good understanding of common security standards and regulatory compliance such as GDPR, ISO27001 and PCI DSS.
- Experience of testing AI / LLMs is desirable but not essential.
- Excellent written and verbal communication skills (includes writing detailed reports and providing clear recommendations for remediation).
- Proven organisation skills which include working under pressure and dealing with ambiguity to meet deadlines.
- Ability and willingness to work effectively and positively within a team e.g. collaborating by sharing knowledge and skills
- Willingness to travel to client locations across the UK.
If you're passionate about penetration testing and eager to grow in a supportive and inclusive environment, we'd love to hear from you.
We are a Disability Confident Employer
Capgemini is proud to be a Disability Confident Employer (Level 2) under the UK Government's Disability Confident scheme. As part of our commitment to inclusive recruitment, we will offer an interview to all candidates who:
-Declare they have a disability, and
About the company
Capgemini ist einer der weltweit führenden Anbieter von Management- und IT-Beratung, Technologie-Services und Digitaler Transformation. Als ein Wegbereiter für Innovation unterstützt das Unternehmen seine Kunden bei deren komplexen Herausforderungen rund um Cloud, Digital und Plattformen.