> Markdown version of [/jobs/ext/2112198-penetration-tester](https://www.wearedevelopers.com/jobs/ext/2112198-penetration-tester). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Penetration Tester - **Company:** SmartSourcing Ltd - **Location:** Manchester, UK (Remote available) - **Salary:** £60,000.0 - £80,000.0 - **Contract:** Permanent contract - **Skills:** Microsoft Windows, Application Programming Interfaces (APIs), Artificial Intelligence, Software System Penetration Testing, Burp Suite, Cloud Computing, Networking Hardware, Intrusion Detection Systems, Mobile Application Software, Python (Programming Language), Kali Linux, Nmap, PCI Data Security Standards, Windows PowerShell, Service Development Studio, Scripting, Large Language Models, Firewalls (Computer Science), SC Clearance, Information Technology, Metasploit, Cybercrime, Wireless Technologies, Vulnerability Analysis - **Published:** August 19, 2026 - **Apply:** https://www.cv-library.co.uk/job/225243579/penetration-tester ## About the Role Must be eligible for SC Clearance. This is a security cleared role. If you're passionate about penetration testing and eager to grow in a supportive and inclusive environment, we'd love to hear from you !! You'll play a vital role in helping our clients detect, understand and manage their security risks. You'll be responsible for undertaking rigorous tests that identify vulnerabilities which are present in the IT infrastructure, applications and networks on which our client's businesses rely. You'll employ both manual and automated techniques to simulate real world attacks which help our clients assess their security posture against any potential threats to their business. You'll also be expected to keep your knowledge of the ever-evolving threat landscape up-to-date and adhere to ethical guidelines, especially when handling sensitive data. As well as having proven technical skills, you'll also need to demonstrate the strong communication skills needed to describe complex findings to a range of different, often non-technical, stakeholders., Being certified as a CHECK Team Member (CTM) or CHECK Team Leader is essential for this role. As a member of this team, you'll deliver high-quality penetration testing and consultancy services as well as a full range of security assessments (including specialist areas and IT Health Checks) in line with company policies, core values, methodologies, and commercial expectations. This includes, Proven experience working in a Penetration Testing role as a certified Check Team Member (CTM) is essential., * Technical Proficiencies: Strong working knowledge of testing platforms like Kali Linux, Burp Suite, Metasploit, Nmap. * Scripting & Coding: Ability to read and write code in scripting languages like Python or PowerShell * Communication: Exceptional verbal and written communication skills to translate complex cyber threats into business terms for non-technical leadership * Certifications & Compliance: Relevant certifications (e.g., OSCP, CREST, CTM) * Good knowledge of multiple Operating Systems (OS) including Windows & *NIX. * Ability to configure network devices, firewalls, IDS/IPS devices and wireless technologies. * Good understanding of common security standards and regulatory compliance such as GDPR, ISO27001 and PCI DSS. * Experience of testing AI / LLMs is desirable but not essential. * Excellent written and verbal communication skills (includes writing detailed reports and providing clear recommendations for remediation). * Proven organisation skills which include working under pressure and dealing with ambiguity to meet deadlines. * Ability and willingness to work effectively and positively within a team e.g. collaborating by sharing knowledge and skills * Willingness to travel to client locations across the UK. ## Description * Producing accurate, concise documentation including technical reports, executive summaries, scopes, and proposals. * Engaging a variety of different stakeholders, some technically minded and others not, to ensure they understand work you have delivered. * Ensuring relevance, maintaining confidentiality, aligning with the QA manual, meeting client expectations, and upholding company standards. * Maintaining your strong technical expertise and contributing to service development by staying up-to-date with emerging threats, technologies, vulnerabilities and methodologies. * Sharing your knowledge across the team, participating in research and involving yourself in initiatives which enhance capability., Security Assessments: Perform network, web and mobile application, API, and cloud environment penetration testing. Attack Simulation: Use manual and automated tools to simulate real-world cyberattacks, such as privilege escalation and social engineering. Research & Development: Plan, create, and implement new testing methods, scripts, and customized attack vectors. Reporting: Document and present comprehensive technical reports and executive summaries detailing vulnerabilities, associated risk levels, and remediation steps to stakeholders ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Fighting the Next Wave of Cybercrime](https://www.wearedevelopers.com/videos/100331-fighting-the-next-wave-of-cybercrime) - [JavaScript? No. Java Scripts! - Scripting with Java](https://www.wearedevelopers.com/videos/2094-javascript-no-java-scripts-scripting-with-java) - [Deep Fakes: The Lies We Can’t See](https://www.wearedevelopers.com/videos/1187-deep-fakes-the-lies-we-can-t-see) - [Intermediate Bitcoin Script](https://www.wearedevelopers.com/videos/25-intermediate-bitcoin-script) - [Securing Your Web Application Pipeline From Intruders](https://www.wearedevelopers.com/videos/53-securing-your-web-application-pipeline-from-intruders) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [The 8 Best Code Testing Tools](https://www.wearedevelopers.com/magazine/402-the-8-best-code-testing-tools) - [Dev Digest 191: Malware interviews, EU ❤️ Open Source and Skilled Agents](https://www.wearedevelopers.com/magazine/645-dev-digest-191-malware-interviews-eu-open-source-and-skilled-agents) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [IT Salaries in UK](https://www.wearedevelopers.com/magazine/288-it-salaries-in-uk) - [Where To Find Software Engineering Jobs](https://www.wearedevelopers.com/magazine/396-where-to-find-software-engineering-jobs)