> Markdown version of [/jobs/ext/2438682-penetration-tester](https://www.wearedevelopers.com/jobs/ext/2438682-penetration-tester). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Penetration Tester - **Company:** Darkshield - **Location:** York, UK (Remote available) - **Contract:** Permanent contract - **Skills:** Software System Penetration Testing, Bash Shell, Burp Suite, Python (Programming Language), Kali Linux, Nmap, Windows PowerShell, Red Team (Cyber Security), Wireshark, Web Applications, Metasploit - **Published:** August 5, 2026 - **Apply:** https://uk.indeed.com/viewjob?jk=34e166cfd6a34970 ## About the Role * Proven experience in penetration testing and ethical hacking. * Proficiency in tools such as Burp Suite, Metasploit, Nmap, Wireshark, and Kali Linux. * Strong knowledge of web application, network, and infrastructure security. * Experience with scripting and automation using Python, Bash, or PowerShell. * Certifications such as OSCP, OSCE, CEH, or similar are highly desirable. * Understanding of regulatory compliance standards (ISO 27001, GDPR, NIST, etc.). * Excellent problem-solving skills and attention to detail. * Ability to communicate findings and recommendations effectively to clients. ## Description We are looking for an experienced Penetration Tester to join our team. You will conduct security assessments and ethical hacking activities to identify vulnerabilities in client systems. This role requires a deep understanding of attack techniques, security frameworks, and risk mitigation strategies., * Conduct penetration testing on networks, applications, and infrastructure. * Identify, analyse, and report security vulnerabilities. * Simulate cyberattacks to evaluate security defences. * Develop security testing methodologies and improve existing processes. * Collaborate with clients to provide security recommendations and mitigation strategies. * Stay up to date with the latest security threats, exploits, and hacking techniques. * Assist in security awareness training and red team exercises. * Provide clear and actionable reports to both technical and non-technical audiences. ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Old tools, new tricks](https://www.wearedevelopers.com/videos/1916-old-tools-new-tricks) - [How I saved 200K/yr in direct costs writing 0 code lines in K8s](https://www.wearedevelopers.com/videos/1055-how-i-saved-200k-yr-in-direct-costs-writing-0-code-lines-in-k8s) - [Let’s write an exploit using AI](https://www.wearedevelopers.com/videos/1004-let-s-write-an-exploit-using-ai) - [It's a (testing) trap! - Common testing pitfalls and how to solve them](https://www.wearedevelopers.com/videos/1193-it-s-a-testing-trap-common-testing-pitfalls-and-how-to-solve-them) - [MCP doesn’t suck — your agent does](https://www.wearedevelopers.com/videos/100202-mcp-doesn-t-suck-your-agent-does) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [The 8 Best Code Testing Tools](https://www.wearedevelopers.com/magazine/402-the-8-best-code-testing-tools) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks) - [Dev Digest 191: Malware interviews, EU ❤️ Open Source and Skilled Agents](https://www.wearedevelopers.com/magazine/645-dev-digest-191-malware-interviews-eu-open-source-and-skilled-agents)