Penetration Tester | Check Team Member | Ctm | Web App | Infra
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Tech stack
Job description
We’re working with a well-regarded, specialist cyber security consultancy with a strong reputation in the UK market. This isn’t a box-ticking operation - these are real practitioners, led by technical people, doing high-quality work for serious clients.
They’re growing their pentesting team and need a strong mid-level tester who can hit the ground running. If you’re currently CTM-certified (or previously held the status), comfortable across web app and infrastructure engagements, and want to work somewhere that actually invests in your development - this is worth a conversation.
At the top of the band, they’re looking for someone currently active in CHECK work with a strong track record. If that’s you, this will move fast.
What You’ll Be Doing
- Conducting web application and infrastructure penetration tests across a varied client base
- Producing high-quality, client-facing reports that clearly communicate risk and remediation
- Supporting CHECK-scope engagements where appropriate
- Contributing to methodology, tooling, and internal knowledge sharing
- Working collaboratively with a team of technically sharp, certified consultants
Requirements
- British passport holder or Indefinite Leave to Remain (ILR) -no sponsorship available
- SC Eligible (must be able to obtain Security Clearance)
- No right to work restrictions
Certifications & Status:
- Current or previous CHECK Team Member (CTM / CSTM) status
- Relevant industry certifications (OSCP, CRTO, PenTest+, or equivalent)
Experience:
- Hands-on commercial penetration testing experience (web application and/or infrastructure)
- Proven ability to scope, conduct, and report on engagements independently
- Strong written English - you must be able to produce clear, client-ready reports
- Comfortable working remotely and managing your own time and workload, * Experience with red team operations or adversarial simulation
- Additional certs: CRTP, CRTO, CSTL, or similar advanced qualifications
- Exposure to cloud environments (AWS, Azure, GCP)
- Experience across a range of sectors (finance, public sector, healthcare, etc.)
??Important Notes
- UK-based candidates only - fully remote but must be able to work UK hours
- British passport or ILR required - no sponsorship under any circumstances
- Must be SC Eligible - ability to obtain Security Clearance is a hard requirement
Benefits & conditions
Salary:£45,000 - £55,000
Working model:Fully Remote (UK-based)
Required:Commercial penetration testing experience, CHECK Team Member (current or previous), web app & infrastructure testing, SC Eligibility(Non-Negotiable), * Salary is experience and certification dependent - £55k is reserved for strong, currently-active CTMs
If you tick all of the above and want to work somewhere where the craft actually matters, get in touch now.
True
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Apply on www.totaljobs.comGood distractions
Talks and stories from around this role — technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
Best Job Boards for Remote Work for Developers
Fully Remote Software Engineer Jobs
The 8 Best Code Testing Tools
The Best Job Search Websites of 2025