> Markdown version of [/jobs/ext/2254467-penetration-tester](https://www.wearedevelopers.com/jobs/ext/2254467-penetration-tester). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Penetration Tester - **Company:** 4Square Recruitment Ltd - **Location:** Manchester, UK - **Experience:** Experienced - **Salary:** £40,000.0 - £60,000.0 - **Contract:** Permanent contract - **Skills:** Application Programming Interfaces (APIs), Software System Penetration Testing, Burp Suite, Cloud Computing, Cyber Security, Mobile Application Software, Kali Linux, Nmap, Open Web Application Security, Red Team (Cyber Security), Web Applications, Cloud Platform System, SC Clearance, Metasploit, Nessus, Qualys - **Published:** August 26, 2026 - **Apply:** https://www.collegerecruiter.com/job/2815087605-penetration-tester ## About the Role * 2-5 years' experience in security testing or ethical hacking. * Strong background in web, API, and infrastructure testing. * Familiarity with cloud environments and associated security considerations. * Proficient with standard tools like Burp Suite, Nmap, Nessus, Qualys, Metasploit, Kali Linux. * Understanding of OWASP and modern testing methodologies. * Confident communicator-able to work directly with clients. Bonus Points For * CHECK accreditation (CTM or CTL). * Active or eligible for SC clearance (five years of UK residency required). ## Description Penetr Tester - Cyber Security Consultancy About the Role We're looking for a skilled Penetration Tester to join a growing, highly regarded UK cyber security practice. You'll be part of an established, CREST-accredited team, working with both public and private sector clients to assess and improve their security posture across a range of technologies. This is an opportunity to work in a consultancy environment that values technical excellence, autonomy, and professional development, while maintaining a close-knit, supportive team culture. What You'll Be Doing * Carry out penetration testing across web apps, APIs, cloud platforms, networks, and mobile applications. * Support simulated attack exercises (Red Team) and social engineering engagements. * Produce clear, high-quality reports outlining findings and recommendations. * Contribute to scoping discussions, proposals, and client meetings. * Offer practical remediation advice and assist clients post-assessment. * Mentor junior testers and support internal capability growth. What We're Looking For * 2-5 years' experience in security testing or ethical hacking. * Strong background in web, API, and infrastructure testing. * Familiarity with cloud environments and associated security considerations. * Proficient with standard tools like Burp Suite, Nmap, Nessus, Qualys, Metasploit, Kali Linux. * Understanding of OWASP and modern testing methodologies. * Confident communicator-able to work directly with clients. Bonus Points For * CHECK accreditation (CTM or CTL). * Active or eligible for SC clearance (five years of UK residency required). Why Join * Salary: £40,000 - £60,000 (DOE) + annual bonus up to 10% * Flexibility: Hybrid working with core hours flexibility * Location: HQ in the North West (hybrid) * 25 days holiday + bank holidays * Regular team events & socials If you're ready to join a forward-thinking security consultancy that's growing fast and values technical depth and collaboration, apply now for a confidential conversation. ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Securing Your Web Application Pipeline From Intruders](https://www.wearedevelopers.com/videos/53-securing-your-web-application-pipeline-from-intruders) - [It's a (testing) trap! - Common testing pitfalls and how to solve them](https://www.wearedevelopers.com/videos/1193-it-s-a-testing-trap-common-testing-pitfalls-and-how-to-solve-them) ## Related Articles - [The 8 Best Code Testing Tools](https://www.wearedevelopers.com/magazine/402-the-8-best-code-testing-tools) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Why Upskilling And Reskilling is Important For Developers](https://www.wearedevelopers.com/magazine/428-why-upskilling-and-reskilling-is-important-for-developers) - [Dev Digest 191: Malware interviews, EU ❤️ Open Source and Skilled Agents](https://www.wearedevelopers.com/magazine/645-dev-digest-191-malware-interviews-eu-open-source-and-skilled-agents)