> Markdown version of [/jobs/ext/2019345-senior-penetration-tester-ctl](https://www.wearedevelopers.com/jobs/ext/2019345-senior-penetration-tester-ctl). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Senior Penetration Tester - CTL - **Company:** Bridewell - **Location:** London, UK - **Experience:** Expert - **Salary:** £53,094.0 - **Contract:** Permanent contract - **Skills:** Application Programming Interfaces (APIs), Artificial Intelligence, Amazon Web Services, Software System Penetration Testing, Microsoft Azure, Bash Shell, Cloud Computing Security, Cyber Security, Python (Programming Language), Windows PowerShell, Service Development Studio, Web Applications, Web Testing, Web Platforms, Scripting, Google Cloud, Large Language Models, Software Coding, Api Management - **Published:** August 11, 2026 - **Apply:** https://www.adzuna.co.uk/jobs/details/5835849116 ## About the Role As a result of growth, we are looking for an experienced Senior Penetration Tester with solid experience of infrastructure and web application testing to deliver testing engagements on a range of key client work., * Strong experience in a client-facing role. Customer oriented and able to communicate with all levels of an organisation with appropriate technical content. * Highly proficient in performing a variety of penetration tests such as infrastructure, web application API testing and device configuration reviews, etc. * CREST Certified Tester (CCT) or Cyber Scheme Team Leader (CSTM) with infrastructure specialism - mandatory * NCSC CHECK Team Leader (CTL) with at least Principal Cyber Security Professional (PriCSP) title - mandatory. * Self-motivated and able to work independently and as part of a larger team * Produce high-quality technical and executive reports tailored to both technical and non-technical audiences. * Holds or is able and willing to obtain a minimum of DV clearance Desirable * OSCP, OSCE, CRTO * Knowledge of cloud security (AWS, Azure, GCP) * Experience in LLM/AI testing * Experience in Adversary Simulation / Red Teaming * Proficiency in coding or scripting (Python, Powershell, Bash) ## Description This is an excellent opportunity for a highly motivated and determined Penetration Tester to continue their development and work on a range of exciting projects. As well as delivering testing, Bridewell ensures each consultant has access to a dedicated annual team budget for personal development. This gives access to CREST, Cyber Scheme exams, online platforms such as Hack the Box, TSCM and TryHackMe, and many other training courses. There is also dedicated time to carry out research and assist with developing new testing methodologies and techniques., * Deliver and lead high quality offensive security assessments (web application, API and infrastructure), meeting client expectations * Get involved in and lead on team assessments as required * Produce written and verbal reports to clients to an excellent standard. * Support the sales team with pre-sales and assist with technical input into tenders and proposals * Carry out research and service development when not on client deliverable work that can be used to enhance our services to clients * Perform report QA. * Work with teams across the business, providing the latest technical knowledge to collaborate on interesting client projects. ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Developer Time Is Valuable - Use the Right Tools - Kilian Valkhof](https://www.wearedevelopers.com/videos/1792-developer-time-is-valuable-use-the-right-tools-kilian-valkhof) - [Old tools, new tricks](https://www.wearedevelopers.com/videos/1916-old-tools-new-tricks) - [JavaScript? No. Java Scripts! - Scripting with Java](https://www.wearedevelopers.com/videos/2094-javascript-no-java-scripts-scripting-with-java) - [It's a (testing) trap! - Common testing pitfalls and how to solve them](https://www.wearedevelopers.com/videos/1193-it-s-a-testing-trap-common-testing-pitfalls-and-how-to-solve-them) - [Securing Your Web Application Pipeline From Intruders](https://www.wearedevelopers.com/videos/53-securing-your-web-application-pipeline-from-intruders) ## Related Articles - [The 8 Best Code Testing Tools](https://www.wearedevelopers.com/magazine/402-the-8-best-code-testing-tools) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Why Upskilling And Reskilling is Important For Developers](https://www.wearedevelopers.com/magazine/428-why-upskilling-and-reskilling-is-important-for-developers) - [Best Companies to work for in London: Top 25 Companies in 2023](https://www.wearedevelopers.com/magazine/187-best-companies-to-work-for-in-london-top-25-companies-in-2023) - [Software Engineer Salary London](https://www.wearedevelopers.com/magazine/252-software-engineer-salary-london)