Penetration Tester

SmartSourcing Ltd
Manchester, UK
1 day ago
Apply on www.cv-library.co.uk
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Compensation
ÂŁ60,000.0 - ÂŁ80,000.0
Working hours
Regular working hours

Tech stack

Microsoft Windows Application Programming Interfaces (APIs) Artificial Intelligence Software System Penetration Testing Burp Suite Cloud Computing Networking Hardware Intrusion Detection Systems Mobile Application Software Python (Programming Language) Kali Linux Nmap
+12 more
PCI Data Security Standards Windows PowerShell Service Development Studio Scripting Large Language Models Firewalls (Computer Science) SC Clearance Information Technology Metasploit Cybercrime Wireless Technologies Vulnerability Analysis

Job description

  • Producing accurate, concise documentation including technical reports, executive summaries, scopes, and proposals.
  • Engaging a variety of different stakeholders, some technically minded and others not, to ensure they understand work you have delivered.
  • Ensuring relevance, maintaining confidentiality, aligning with the QA manual, meeting client expectations, and upholding company standards.
  • Maintaining your strong technical expertise and contributing to service development by staying up-to-date with emerging threats, technologies, vulnerabilities and methodologies.
  • Sharing your knowledge across the team, participating in research and involving yourself in initiatives which enhance capability., Security Assessments: Perform network, web and mobile application, API, and cloud environment penetration testing.

Attack Simulation: Use manual and automated tools to simulate real-world cyberattacks, such as privilege escalation and social engineering.

Research & Development: Plan, create, and implement new testing methods, scripts, and customized attack vectors.

Reporting: Document and present comprehensive technical reports and executive summaries detailing vulnerabilities, associated risk levels, and remediation steps to stakeholders

Requirements

Must be eligible for SC Clearance. This is a security cleared role.

If you’re passionate about penetration testing and eager to grow in a supportive and inclusive environment, we’d love to hear from you !!

You’ll play a vital role in helping our clients detect, understand and manage their security risks. You’ll be responsible for undertaking rigorous tests that identify vulnerabilities which are present in the IT infrastructure, applications and networks on which our client’s businesses rely. You’ll employ both manual and automated techniques to simulate real world attacks which help our clients assess their security posture against any potential threats to their business. You’ll also be expected to keep your knowledge of the ever-evolving threat landscape up-to-date and adhere to ethical guidelines, especially when handling sensitive data.

As well as having proven technical skills, you’ll also need to demonstrate the strong communication skills needed to describe complex findings to a range of different, often non-technical, stakeholders., Being certified as a CHECK Team Member (CTM) or CHECK Team Leader is essential for this role. As a member of this team, you’ll deliver high-quality penetration testing and consultancy services as well as a full range of security assessments (including specialist areas and IT Health Checks) in line with company policies, core values, methodologies, and commercial expectations. This includes, Proven experience working in a Penetration Testing role as a certified Check Team Member (CTM) is essential., * Technical Proficiencies: Strong working knowledge of testing platforms like Kali Linux, Burp Suite, Metasploit, Nmap.

  • Scripting & Coding: Ability to read and write code in scripting languages like Python or PowerShell
  • Communication: Exceptional verbal and written communication skills to translate complex cyber threats into business terms for non-technical leadership
  • Certifications & Compliance: Relevant certifications (e.g., OSCP, CREST, CTM)
  • Good knowledge of multiple Operating Systems (OS) including Windows & *NIX.
  • Ability to configure network devices, firewalls, IDS/IPS devices and wireless technologies.
  • Good understanding of common security standards and regulatory compliance such as GDPR, ISO27001 and PCI DSS.
  • Experience of testing AI / LLMs is desirable but not essential.
  • Excellent written and verbal communication skills (includes writing detailed reports and providing clear recommendations for remediation).
  • Proven organisation skills which include working under pressure and dealing with ambiguity to meet deadlines.
  • Ability and willingness to work effectively and positively within a team e.g. collaborating by sharing knowledge and skills

  • Willingness to travel to client locations across the UK.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.cv-library.co.uk
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

2:22 min

Structuring critical internal and external penetration testing procedures

Jasmin Azemović Jasmin Azemović · World Congress 2023

1:04 min

Introduction to Bitcoin script parsing tools

Steve Shadders ¡ LIVE

1:52 min

Refining the agent by automating physical hardware restarts

Marc Plogas Marc Plogas ¡ World Congress 2026 Europe

4:34 min

Motivational categories behind modern cybercriminal activities

Mauro Verderosa ¡ LIVE

2:39 min

Shifting security testing focus toward critical application logic problems

Julian Totzek-Hallhuber Julian Totzek-Hallhuber ¡ World Congress 2026 Europe

1:53 min

Evaluating traditional scripting languages for modern development tasks

Jens Knipper Jens Knipper ¡ Europe 2026 Virtual

Videos

See all

Related articles

See all