> Markdown version of [/jobs/ext/2250274-penetration-tester](https://www.wearedevelopers.com/jobs/ext/2250274-penetration-tester). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Penetration Tester - **Company:** Eames Consulting - **Location:** Greater London, UK (Remote available) - **Experience:** Expert - **Salary:** £117,000.0 - **Contract:** Temporary to permanent - **Skills:** Testing (Software), Artificial Intelligence, Amazon Web Services, Data Analysis, Software System Penetration Testing, Microsoft Azure, Bash Shell, Burp Suite, Cloud Computing Security, Cyber Security, IP Addressing, Python (Programming Language), Network Security, Network Architecture, Windows PowerShell, Web Applications, Scripting, Computer Networking Systems, Google Cloud, Cloud Platform System, Information Technology, Metasploit, Nessus, Vulnerability Analysis - **Published:** August 26, 2026 - **Apply:** https://www.collegerecruiter.com/job/2815090624-penetration-tester ## About the Role * CREST accreditation is a must (CREST Practitioner or higher). * Proven experience in performing penetration tests across a broad range of systems (web applications, network infrastructure, cloud environments, etc.). * Strong knowledge of penetration testing tools (e.g., Burp Suite, Nessus, Metasploit, etc.) and methodologies. * Excellent written and verbal communication skills, with the ability to produce detailed, actionable reports. * Strong understanding of security vulnerabilities and risk mitigation techniques. * Experience testing a wide variety of IP addresses and network infrastructures. * Ability to work independently in a fully remote role, managing time and priorities effectively. * Knowledge of additional security certifications (e.g., OSCP, CEH, CISSP, etc.) is beneficial. * Experience with scripting languages such as Python, Bash, or PowerShell is a plus. * Familiarity with cloud security (AWS, Azure, Google Cloud) is advantageous. ## Description Get AI-powered advice on this job and more exclusive features. This range is provided by Eames Consulting. Your actual pay will be based on your skills and experience - talk with your recruiter to learn more. Base pay range Direct message the job poster from Eames Consulting Senior Consultant - IT Cyber Security At Eames Consulting Location: Fully Remote Contract: Initial 2-month contract, with potential for extension Job Overview: We are looking for a highly skilled and experienced IT Penetration Tester to join our team on an initial 2-month contract basis. As a Pen Tester, you will be responsible for performing security assessments across a wide range of IP addresses, identifying vulnerabilities, and helping to improve our client's security posture. The role is fully remote and offers a competitive rate of £450 per day outside of IR35. Key Responsibilities: * Conduct comprehensive penetration testing on a wide variety of systems, applications, and networks (both internal and external IP addresses). * Perform manual and automated testing, identifying security flaws, vulnerabilities, and weaknesses. * Provide in-depth analysis of findings and offer recommendations to mitigate risks. * Write clear, concise, and professional penetration testing reports that are understandable to both technical and non-technical stakeholders. * Work with internal teams and clients to communicate vulnerabilities, testing results, and remediation plans. * Ensure compliance with industry best practices and frameworks for penetration testing. * Maintain up-to-date knowledge of emerging security threats and trends. Required Skills and Experience: * CREST accreditation is a must (CREST Practitioner or higher). * Proven experience in performing penetration tests across a broad range of systems (web applications, network infrastructure, cloud environments, etc.). * Strong knowledge of penetration testing tools (e.g., Burp Suite, Nessus, Metasploit, etc.) and methodologies. * Excellent written and verbal communication skills, with the ability to produce detailed, actionable reports. * Strong understanding of security vulnerabilities and risk mitigation techniques. * Experience testing a wide variety of IP addresses and network infrastructures. * Ability to work independently in a fully remote role, managing time and priorities effectively. * Knowledge of additional security certifications (e.g., OSCP, CEH, CISSP, etc.) is beneficial. * Experience with scripting languages such as Python, Bash, or PowerShell is a plus. * Familiarity with cloud security (AWS, Azure, Google Cloud) is advantageous. Seniority level Mid-Senior level Employment type Contract Job function Information Technology Industries Technology, Information and Media and Computer and Network Security ## Related Videos - [JavaScript? No. Java Scripts! - Scripting with Java](https://www.wearedevelopers.com/videos/2094-javascript-no-java-scripts-scripting-with-java) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Intermediate Bitcoin Script](https://www.wearedevelopers.com/videos/25-intermediate-bitcoin-script) - [It's a (testing) trap! - Common testing pitfalls and how to solve them](https://www.wearedevelopers.com/videos/1193-it-s-a-testing-trap-common-testing-pitfalls-and-how-to-solve-them) - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) - [Oops! Stories of supply chain shenanigans](https://www.wearedevelopers.com/videos/245-oops-stories-of-supply-chain-shenanigans) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [The 8 Best Code Testing Tools](https://www.wearedevelopers.com/magazine/402-the-8-best-code-testing-tools) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Dev Digest 138 - Are you secure about this?](https://www.wearedevelopers.com/magazine/486-dev-digest-138-are-you-secure-about-this)