Penetration Tester

Citation Ltd
Leeds, UK
2 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Working hours
Regular working hours

Tech stack

Microsoft Windows Active Directory Application Programming Interfaces (APIs) Amazon Web Services Software System Penetration Testing Microsoft Azure Bash Shell Cyber Security Linux Python (Programming Language) Wireless Security Windows PowerShell
+2 more
Web Applications SC Clearance

Job description

Security Consultant (Penetration Testing)Location: Hybrid (UK)Salary: Competitive + BenefitsSecurity Clearance: Current SC preferred

Requirements

About Citation CyberCitation Cyber is one of the UK’s leading cyber security consultancies, delivering penetration testing, Cyber Essentials certification, consultancy, training and managed cyber security services to organisations across both the public and private sectors.As an NCSC CHECK provider and CREST member company, we’re continuing to grow our penetration testing team and are looking for a talented Security Consultant to join us.Whether you’re already a CHECK Team Member (CTM) or you’re an experienced penetration tester ready to take that next step, we’d love to hear from you. The RoleYou’ll work as part of our penetration testing team delivering a wide range of technical security assessments across client environments, helping organisations identify vulnerabilities and strengthen their cyber resilience.Your work will include:Infrastructure or Web application penetration testingCloud security assessmentsProducing clear, high-quality technical reportsPresenting findings and remediation advice to clientsSupporting vulnerability validation and re-testingContributing to internal tooling, research and knowledge sharing What we’re looking forEssentialCommercial penetration testing experience within a consultancy or equivalent environmentStrong technical reporting skillsExperience conducting infrastructure and web application penetration testsGood understanding of Windows, Linux and Active Directory environmentsFamiliarity with Azure and/or AWS security testingExperience using industry-standard penetration testing tools and methodologiesExcellent written and verbal communication skillsA passion for continuous learning and technical development DesirableCurrent CHECK Team Member (CTM) statusCurrent SC Security Clearance (or eligibility to obtain it)CREST CRT / Cyber Scheme CSTM or equivalent certificationOSCP or equivalent practical penetration testing certificationExperience with API, mobile or wireless security testingScripting or automation experience using Python, PowerShell or Bash Why Join Citation Cyber?We’re building a consultancy where technical excellence, innovation and professional development go hand in hand.When you join us you’ll benefit from:Working for an NCSC CHECK provider and CREST memberA varied mix of commercial, defence and public sector projectsFunded training and industry certificationsClear progression towards CHECK Team Member, CHECK Team Leader and senior technical rolesHybrid and flexible workingA collaborative technical culture where knowledge sharing is encouragedOpportunities to contribute to research, tooling and new service developmentCompetitive salary and benefits About YouYou’re passionate about offensive security and enjoy solving complex technical challenges. You produce high-quality work, communicate clearly with clients and are always looking to improve your skills.Whether you’re already delivering CHECK assessments or you’re looking to achieve CHECK status in the near future, you’ll be joining a team that will support your professional development and provide exposure to challenging and rewarding engagements.Ready to Apply?If you’re looking to take the next step in your penetration testing career and want to work with an ambitious, growing cyber security consultancy, we’d love to hear from you.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.apply4u.co.uk

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

52 sec

Running persistent Linux environments directly on Windows

Ben Breard Ben Breard ¡ WWC 2025

3:52 min

Avoiding remote code execution from unsanitized inputs

Alexander Pirker ¡ WWC 2022

2:22 min

Structuring critical internal and external penetration testing procedures

Jasmin Azemović Jasmin Azemović · WWC 2023

2:39 min

Experiencing core Linux capabilities for DevOps administration

Michael Cade ¡ LIVE

1:51 min

Leveraging continuous penetration testing via red teams

Reto Kaeser ¡ LIVE

54 sec

Interpreting complex terminal commands safely using external explanation utilities

Dan Cranney +2 ¡ LIVE

Videos

See all

Related articles

See all