Penetration Tester | Check Team Member | Ctm | Web App | Infra
Role details
Job location
Tech stack
Job description
We're working with a well-regarded, specialist cyber security consultancy with a strong reputation in the UK market. This isn't a box-ticking operation - these are real practitioners, led by technical people, doing high-quality work for serious clients.
They're growing their pentesting team and need a strong mid-level tester who can hit the ground running. If you're currently CTM-certified (or previously held the status), comfortable across web app and infrastructure engagements, and want to work somewhere that actually invests in your development - this is worth a conversation.
At the top of the band, they're looking for someone currently active in CHECK work with a strong track record. If that's you, this will move fast.
What You'll Be Doing
- Conducting web application and infrastructure penetration tests across a varied client base
- Producing high-quality, client-facing reports that clearly communicate risk and remediation
- Supporting CHECK-scope engagements where appropriate
- Contributing to methodology, tooling, and internal knowledge sharing
- Working collaboratively with a team of technically sharp, certified consultants
Requirements
- British passport holder or Indefinite Leave to Remain (ILR) -no sponsorship available
- SC Eligible (must be able to obtain Security Clearance)
- No right to work restrictions
Certifications & Status:
- Current or previous CHECK Team Member (CTM / CSTM) status
- Relevant industry certifications (OSCP, CRTO, PenTest+, or equivalent)
Experience:
- Hands-on commercial penetration testing experience (web application and/or infrastructure)
- Proven ability to scope, conduct, and report on engagements independently
- Strong written English - you must be able to produce clear, client-ready reports
- Comfortable working remotely and managing your own time and workload, * Experience with red team operations or adversarial simulation
- Additional certs: CRTP, CRTO, CSTL, or similar advanced qualifications
- Exposure to cloud environments (AWS, Azure, GCP)
- Experience across a range of sectors (finance, public sector, healthcare, etc.)
??Important Notes
- UK-based candidates only - fully remote but must be able to work UK hours
- British passport or ILR required - no sponsorship under any circumstances
- Must be SC Eligible - ability to obtain Security Clearance is a hard requirement
Benefits & conditions
Salary:£45,000 - £55,000
Working model:Fully Remote (UK-based)
Required:Commercial penetration testing experience, CHECK Team Member (current or previous), web app & infrastructure testing, SC Eligibility(Non-Negotiable), * Salary is experience and certification dependent - £55k is reserved for strong, currently-active CTMs
If you tick all of the above and want to work somewhere where the craft actually matters, get in touch now.
True