> Markdown version of [/jobs/ext/350816-penetration-tester](https://www.wearedevelopers.com/jobs/ext/350816-penetration-tester). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Penetration Tester - **Company:** Worcester - **Location:** Worcester, UK (Remote available) - **Contract:** Permanent contract - **Skills:** Software System Penetration Testing, Burp Suite, Nmap, Open Web Application Security, Web Applications, Metasploit, Nessus - **Published:** June 22, 2026 - **Apply:** https://www.apply4u.co.uk/jobs/x/39602251/ ## About the Role Active CHECK Team Member (CTM) statusSolid, demonstrable experience across infrastructure and web application testingStrong written communication skillsProficiency with standard tooling: Nmap, Burp Suite, Metasploit, Nessus, and similarGood understanding of OWASP Top 10, CVE exploitation, and common network attack paths Interested?Apply now for more information! ## Description I'm looking for a Penetration Tester who holds CHECK Team Member (CTM) to join a small security consultancy and play a key role in delivering high-quality, security testing across a wide range of environments. You'll be delivering infrastructure and web application penetration tests to the highest standards, contributing to a technically strong and collaborative team. Work is meaningful, the client base is varied and there's a clear development path towards CHECK Team Leader (CTL) for those looking to progress. This is a remote role with occassional client travel. What You'll Be Doing Conducting CHECK-accredited infrastructure and web application penetration testsProducing clear, well-evidenced reports for both technical and non-technical audiencesWorking across government, defence, and CNI clients to scope, execute, and debrief engagementsContributing to methodology development and internal knowledge-sharingOccasionally attending client sites for kick-off meetings or debrief sessionsMentoring junior testers as experience and appetite allows What you'll need ## Related Videos - [How to Cause (or Prevent) a Massive Data Breach- Secure Coding and IDOR](https://www.wearedevelopers.com/videos/39-how-to-cause-or-prevent-a-massive-data-breach-secure-coding-and-idor) - [It's a (testing) trap! - Common testing pitfalls and how to solve them](https://www.wearedevelopers.com/videos/1193-it-s-a-testing-trap-common-testing-pitfalls-and-how-to-solve-them) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Maturity assessment for technicians or how I learned to love OWASP SAMM](https://www.wearedevelopers.com/videos/351-maturity-assessment-for-technicians-or-how-i-learned-to-love-owasp-samm) ## Related Articles - [The 8 Best Code Testing Tools](https://www.wearedevelopers.com/magazine/402-the-8-best-code-testing-tools) - [Dev Digest 191: Malware interviews, EU ❤️ Open Source and Skilled Agents](https://www.wearedevelopers.com/magazine/645-dev-digest-191-malware-interviews-eu-open-source-and-skilled-agents) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Dev Digest 121 - AI goes offline](https://www.wearedevelopers.com/magazine/456-dev-digest-121-ai-goes-offline) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities)