> Markdown version of [/jobs/ext/2824436-junior-offensive-security-consultant](https://www.wearedevelopers.com/jobs/ext/2824436-junior-offensive-security-consultant). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Junior Offensive Security Consultant - **Company:** WorkNest Secure (US) - **Location:** Leeds, UK - **Experience:** Starter - **Contract:** Temporary contract - **Skills:** Software System Penetration Testing, Cyber Security, Open Web Application Security, Web Applications, Vulnerability Analysis - **Published:** September 10, 2026 - **Apply:** https://www.collegerecruiter.com/job/2833344442-junior-offensive-security-consultant ## About the Role * Good knowledge of application and infrastructure penetration testing; * Strong understanding of OWASP, PTES and other penetration testing methodologies; * Knowledge of how modern web apps are designed, developed and deployed across different platforms; * Ability to program or script in your preferred language; * (Nice to have) Relevant security qualifications (such as OSCP, CREST CRT, TIGER); * Good knowledge and understanding of network and OS principles; * Good knowledge of various operating systems; * Good knowledge of virtualisation. * A degree in Cybersecurity or related courses., * Excellent spoken and written English communication skills with strong attention-to-detail and accuracy; * A customer centric mindset & approach - Willing to go above and beyond when engaging with our customers * A passion for security and networks; * Analytical and problem-solving skills with a can-do attitude and the ability to think laterally and creatively; * Self-motivation with a commitment to continued development; * Ability to work independently and as part of a team; * Influencing and negotiation skills with the ability to build relationships at all levels;Willingness to learn. ## Description As a Junior OffSec Consultant you will perform formal and comprehensive penetration testing assessments, including producing full written reports to appropriate standards and within agreed deadlines. In addition, you will support client pre-engagement activities, as well as research application and infrastructure vulnerabilities, following responsible disclosure, and sharing such findings within the team., * Perform formal and comprehensive application, infrastructure and other penetration testing assessments where appropriate and required; * Provide well-written, concise, technical and non-technical reports in English; * Maintain excellent communication standards during your engagements & ensuring debriefs are offered following the process * Maintain good communication standards with your OffSec Team lead & Academy Manager * Perform vulnerability assessments and provide findings with remediation actions; * Support with various client pre-engagement interactions where appropriate and applicable * Manage and deliver applicable project activities to deadlines; * Research application and infrastructure components within the wider team to identify new vulnerabilities and follow responsible disclosure; * Any other appropriate job duties in line with the associated skill and experience of the post holder. * Work towards achieving industry certifications and developing new Penetration testing skillsets via research and shadowing., In addition to the responsibilities listed above, the job holder may be required to perform other duties as assigned from time to time by their manager or a senior leader. ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [How to Cause (or Prevent) a Massive Data Breach- Secure Coding and IDOR](https://www.wearedevelopers.com/videos/39-how-to-cause-or-prevent-a-massive-data-breach-secure-coding-and-idor) - [Generate AI in the Browser with Chrome AI - Raymond Camden](https://www.wearedevelopers.com/videos/1770-generate-ai-in-the-browser-with-chrome-ai-raymond-camden) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [Securing Your Web Application Pipeline From Intruders](https://www.wearedevelopers.com/videos/53-securing-your-web-application-pipeline-from-intruders) - [Cyber Security: Small, and Large!](https://www.wearedevelopers.com/videos/259-cyber-security-small-and-large) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated) - [Why Upskilling And Reskilling is Important For Developers](https://www.wearedevelopers.com/magazine/428-why-upskilling-and-reskilling-is-important-for-developers) - [The 8 Best Code Testing Tools](https://www.wearedevelopers.com/magazine/402-the-8-best-code-testing-tools)