Penetration Tester

Darktrace Ltd
London, UK
16 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Working hours
Regular working hours

Tech stack

Kubernetes Security Application Programming Interfaces (APIs) Amazon Web Services Software System Penetration Testing Microsoft Azure Bash Shell Burp Suite Cloud Computing Mobile Application Software Python (Programming Language) Kali Linux Nmap
+9 more
Open Web Application Security Windows PowerShell Web Applications Scripting Google Cloud Cloud Platform System Mitre Att&ck Metasploit Nessus

Job description

As a Penetration Tester within the internal cybersecurity team, you’ll play a key role in identifying and mitigating security risks across the organisation’s digital landscape. This position requires hands-on experience in offensive security and a deep understanding of network, application, and cloud-based vulnerabilities.

You’ll be responsible for conducting thorough penetration tests, simulating real-world attacks, and delivering actionable insights to both security and development teams. Collaboration and continuous learning are central to the role, ensuring our defences stay ahead of emerging threats.

Please note this is a hybrid role, with a compulsory attendance of 2 days a week in the London office.

What will I be doing:

  • Performing penetration tests on web applications, networks, APIs, mobile apps, and cloud environments,
  • Simulating real-world attack scenarios to assess system and infrastructure resilience,
  • Producing detailed technical reports and executive summaries for stakeholders,
  • Collaborating with internal teams to validate findings and support remediation efforts,
  • Staying up to date with emerging threats, vulnerabilities, and offensive security techniques.

Requirements

To succeed in this role, you’ll need a solid background in penetration testing or offensive security, along with hands-on experience using industry-standard tools and frameworks. A strong grasp of security principles and methodologies is essential, as is the ability to communicate findings clearly and effectively. Other qualifications and skills include:

  • Proficiency with tools like Burp Suite, Nmap, Metasploit, Nessus, and Kali Linux, plus scripting skills in Python, Bash, or PowerShell,
  • Strong understanding of OWASP Top 10, MITRE ATT&CK, CVSS scoring, and familiarity with cloud platforms (AWS, Azure, GCP) and container security,
  • Relevant certifications such as OSCP, CREST CRT, or eCPPT are highly desirable, along with excellent written and verbal communication skills,
  • The ability to mentor junior testers and contribute to internal tooling.

Benefits & conditions

  • 23 days’ holiday + all public holidays, rising to 25 days after 2 years of service,
  • Additional day off for your birthday,
  • Private medical insurance which covers you, your cohabiting partner and children,
  • Life insurance of 4 times your base salary,
  • Salary sacrifice pension scheme,
  • Enhanced family leave,
  • Confidential Employee Assistance Program,
  • Cycle to work scheme.

About the company

Darktrace is a global leader in AI-driven cybersecurity, helping organizations stay ahead of evolving threats every day.

Darktrace was built on a genuinely differentiated idea: that Adaptive AI could detect and respond to novel, real-time cyber threats. That approach matters more than ever in the era of AI. Today, our customers depend on us to stay ahead.

At Darktrace, we are energized by that responsibility. We work across teams and rally around a shared goal. We own outcomes end to end - step in, step up and see things through without waiting to be asked. We make decisions with urgency, say the hard thing, and hold each other to high standards with care and directness. We move first and learn fast anticipating where our customers are going next, continuously challenging ourselves.

We invest in the skills, learning and opportunities that help people deliver at the level their roles demand, and reward the aptitude and curiosity to grow beyond them.

Our Values: Own It Win as One Raise Our Bar Move First. Learn Fast

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.totaljobs.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:52 min

Refining the agent by automating physical hardware restarts

Marc Plogas Marc Plogas ¡ WWC Europe 2026

1:04 min

Introduction to Bitcoin script parsing tools

Steve Shadders ¡ LIVE

3:31 min

Setting up a penetration testing environment for web apps

Anna Bacher ¡ LIVE

51 sec

Exploring offensive security with red team tooling

Stefania Chaplin ¡ WWC 2022

1:53 min

Evaluating traditional scripting languages for modern development tasks

Jens Knipper Jens Knipper ¡ Europe 2026 Virtual

4:30 min

Evaluating developer experience constraints in native scripts

Steve Shadders ¡ LIVE

Videos

See all

Related articles

See all