Lead Ethical Hacking Penetration Tester

Reference: khxir0kebwky3pr232vo

We are seeking a Lead Ethical Hacking Penetration Tester to direct and deliver high-quality security assessments across applications, infrastructure, cloud environments, networks, and emerging technologies. This role will lead engagements from scoping and rules of engagement through testing, risk analysis, reporting, and remediation validation. You will apply a broad range of manual and automated techniques to identify vulnerabilities, demonstrate realistic attack paths, and provide clear, practical guidance that helps teams strengthen their security posture.

Key responsibilities include planning and leading penetration tests, red team exercises, web and mobile application assessments, internal and external infrastructure reviews, API testing, wireless assessments, and social engineering engagements where authorised. You will oversee the safe use of testing tools and frameworks, maintain accurate evidence and documentation, and produce technically detailed reports for security and engineering audiences. You will present findings to senior stakeholders, explain business impact and exploitability, support remediation discussions, and mentor junior testers through coaching, peer review, and knowledge sharing. You will also contribute to improving methodologies, playbooks, testing standards, and the quality of security deliverables.

Applicants should have substantial hands-on experience in penetration testing or ethical hacking, with a strong understanding of common attack techniques, vulnerability management, secure architecture, and industry frameworks such as OWASP, NIST, and MITRE ATT&CK. Experience with scripting or programming languages such as Python, PowerShell, Bash, or JavaScript is desirable, as is practical knowledge of cloud platforms, Active Directory, container environments, CI/CD pipelines, and modern authentication technologies. Relevant professional certifications, such as OSCP, CREST, CRTO, GXPN, or equivalent experience, are advantageous. Excellent written and verbal communication, strong analytical ability, sound professional judgement, and a commitment to responsible, authorised testing are essential.

£57,515.00 - £82,430.00
Per annum
Added 08/09/2026
Reference: khxir0kebwky3pr232vo

Lead Ethical Hacking Penetration Tester

Swansea, Wales, United Kingdom Permanent Penetration Tester

Other similar jobs

Lead Ethical Hacking Penetration Tester (£57,515 - £82,430)

Added 09/09/2026

We are seeking a Lead Ethical Hacking Penetration Tester to provide expert security testing and assurance across a complex technology environment. Offering a salary of £57,515–£82,430, this role will lead the planning, delivery and reporting of penetration tests across applications, infrastructure, cloud platforms, networks, mobile technologies and emerging services. You will identify vulnerabilities, assess business impact, validate security controls and provide clear, practical recommendations that help reduce cyber risk. You will take technical ownership of penetration testing engagements from scoping and threat modelling through to remediation support and retesting. Responsibilities will include developing test plans, selecting appropriate tools and methodologies,...

Learn more

Lead Penetration Tester (Lead Cyber Analyst), Technical Vulnerability Management - Cyber Security Division

Added 17/08/2026

We are seeking a highly skilled Lead Penetration Tester (Lead Cyber Analyst) to join our Technical Vulnerability Management team within our Cyber Security Division. In this role, you will be responsible for leading and executing comprehensive penetration testing engagements, identifying and assessing vulnerabilities within various systems and applications. You will collaborate closely with cross-functional teams to develop and implement effective remediation strategies, ensuring the security posture of the organization is continually enhanced. Your expertise will also be critical in mentoring junior analysts and conducting training sessions to elevate the team's overall capabilities. The ideal candidate will have a strong background...

Learn more

Cyber Security Consultant (Penetration Tester)

Added 18/09/2026

We are seeking a Cyber Security Consultant (Penetration Tester) to assess the security of applications, infrastructure, networks and cloud environments. You will plan and deliver penetration tests, vulnerability assessments and security reviews, identifying weaknesses that could be exploited by malicious actors. The role involves defining test scopes, selecting appropriate methodologies, conducting technical assessments, and producing clear, evidence-based reports for both technical and non-technical audiences. You will be responsible for performing infrastructure, web application, mobile application, API, wireless and cloud penetration testing, as well as red team or assumed-breach activities where required. Duties will include reconnaissance, vulnerability analysis, exploitation, privilege escalation,...

Learn more

Principal Penetration Tester (12 Month FTC)

Added 15/09/2026

We are seeking an experienced Principal Penetration Tester for a 12-month fixed-term contract. This is a senior technical role responsible for planning and delivering high-quality penetration testing and security assessment engagements across applications, infrastructure, cloud environments, networks, APIs, mobile platforms and emerging technologies. You will work with technical and business stakeholders to understand risk, define appropriate testing approaches and provide practical, evidence-based recommendations that strengthen security resilience. Your responsibilities will include leading complex penetration tests from scoping and threat modelling through to exploitation, reporting and remediation support. You will identify and validate vulnerabilities, assess their potential business impact, and produce...

Learn more

Penetration Tester - UK (Remote)

Added 15/09/2026

We are seeking a skilled Penetration Tester to join a remote security team supporting clients across the UK. In this role, you will assess the security of networks, applications, cloud environments and infrastructure, identifying vulnerabilities before they can be exploited. You will plan and conduct authorised penetration tests, perform reconnaissance and threat modelling, exploit weaknesses safely, and evaluate the potential business impact of your findings. The role may involve web application, API, internal and external infrastructure, wireless, mobile, social engineering and cloud security assessments. You will be responsible for maintaining clear testing documentation, capturing reliable evidence and producing high-quality technical...

Learn more

Security Testing Consultant (Penetration Tester) Hybrid

Added 15/09/2026

We are seeking a Security Testing Consultant (Penetration Tester) to join a collaborative cyber security team in a hybrid working environment. In this role, you will plan and deliver authorised penetration tests across web applications, mobile applications, APIs, networks, cloud environments and infrastructure. You will work with technical and business stakeholders to understand testing objectives, identify attack paths, assess risk and provide practical recommendations that improve overall security resilience. Your responsibilities will include scoping engagements, developing test plans, conducting manual and automated security assessments, validating vulnerabilities and maintaining accurate evidence throughout each assignment. You will prepare clear, professional reports that...

Learn more

Senior Penetration Tester

Added 15/09/2026

We are seeking an experienced Senior Penetration Tester to assess the security of complex applications, infrastructure, networks, cloud environments, and connected technologies. You will plan and deliver penetration tests across web and mobile applications, APIs, internal and external networks, wireless environments, and adversary simulation engagements. The role involves identifying vulnerabilities, validating their potential impact, demonstrating realistic attack paths, and providing clear, actionable recommendations that support effective remediation. You will lead engagements from scoping and rules of engagement through reconnaissance, testing, exploitation, evidence collection, and reporting. Responsibilities include developing test plans, selecting appropriate tools and methodologies, conducting manual assessments beyond automated...

Learn more

Senior Penetration Tester

Added 15/09/2026

We are seeking a Senior Penetration Tester to lead and deliver high-quality security assessments across applications, infrastructure, cloud environments, networks and emerging technologies. You will plan and execute penetration tests, vulnerability assessments and red-team engagements, using a risk-based approach to identify weaknesses that could affect confidentiality, integrity or availability. The role will involve scoping engagements, defining test methodologies, reviewing technical documentation, conducting reconnaissance and exploitation activities, and validating remediation efforts. You will also be expected to maintain accurate evidence, assess business impact and communicate findings clearly to both technical and non-technical stakeholders. As a senior member of the security testing...

Learn more

Security Testing Consultant (Penetration Tester) Hybrid

Added 15/09/2026

We are seeking a Security Testing Consultant (Penetration Tester) to join a collaborative cybersecurity team on a hybrid basis. In this role, you will plan and deliver penetration tests across web applications, APIs, mobile platforms, infrastructure, cloud environments and networks. You will assess security controls, identify vulnerabilities and determine the potential business impact of weaknesses using recognised testing methodologies and industry-standard tools. The position involves working with technical and non-technical stakeholders to understand environments, agree testing objectives and provide clear, practical advice to improve security resilience. Your responsibilities will include conducting manual and automated security assessments, validating findings, safely exploiting...

Learn more

Penetration Tester

Added 09/09/2026

We are seeking a skilled Penetration Tester to identify, assess and help remediate security weaknesses across applications, infrastructure, networks and cloud environments. You will plan and conduct authorised security assessments using a combination of manual testing, recognised methodologies and appropriate automated tools. Your work will help strengthen defensive capabilities, reduce operational risk and provide clear, actionable insight to technical and non-technical stakeholders. Key responsibilities include scoping engagements, reviewing requirements and relevant documentation, performing vulnerability assessments and penetration tests, and safely validating potential weaknesses. You will investigate findings, assess exploitability and business impact, maintain accurate testing records, and produce high-quality reports...

Learn more

Senior Penetration Tester - CTM

Added 08/09/2026

We are seeking a Senior Penetration Tester to lead and deliver sophisticated security assessments across applications, infrastructure, cloud environments, networks and emerging technologies. You will be responsible for planning, scoping and executing penetration tests, red-team exercises and vulnerability assessments, identifying weaknesses that could be exploited by real-world attackers, and clearly communicating the associated business risks. The role will involve working with technical and non-technical stakeholders to validate findings, provide practical remediation guidance and support improvements to overall security resilience. Key responsibilities include developing test plans and rules of engagement; conducting manual and automated testing; exploiting vulnerabilities safely and responsibly; reviewing...

Learn more

Penetration Tester

Added 01/09/2026

We are seeking an experienced Penetration Tester to assess the security of applications, infrastructure, networks and cloud environments. You will plan and conduct authorised security assessments, identify vulnerabilities and attack paths, and provide clear, evidence-based recommendations to improve resilience. The role will involve working across a varied technology landscape, collaborating with engineering, infrastructure, development and risk teams, and helping stakeholders understand the practical impact of identified issues. Responsibilities include defining test scopes and methodologies, performing reconnaissance and vulnerability assessment, and executing manual and automated penetration tests across web applications, APIs, mobile platforms, internal and external networks, wireless environments and cloud...

Learn more

Penetration Tester

Added 26/08/2026

We are seeking an experienced Penetration Tester to identify, validate, and help remediate security weaknesses across applications, infrastructure, networks, cloud environments, and supporting technologies. You will plan and deliver authorised security assessments using a risk-based approach, applying both manual testing and industry-standard tools. The role will involve working across a varied technology estate, adapting testing techniques to different environments, and clearly communicating the potential business impact of identified vulnerabilities. Key responsibilities include scoping and coordinating penetration tests, reviewing requirements and technical documentation, performing reconnaissance and vulnerability analysis, and conducting exploitation activities within agreed rules of engagement. You will assess web...

Learn more

Penetration Tester

Added 25/08/2026

We are seeking a skilled Penetration Tester to identify, assess and help remediate security vulnerabilities across applications, networks, cloud environments and infrastructure. You will plan and conduct authorised penetration tests, vulnerability assessments and red-team exercises, using a range of manual techniques and industry-standard tools. The role will involve assessing security controls, validating potential weaknesses, exploiting vulnerabilities safely and documenting clear evidence of findings, business impact and recommended remediation. You will work closely with security, infrastructure, development and operational teams to communicate technical risks in a practical and accessible way. Responsibilities will include scoping and scheduling engagements, reviewing architecture and technical...

Learn more

Junior Penetration Tester (audit)

Added 25/08/2026

We are seeking a Junior Penetration Tester to support security assessments across web applications, infrastructure, cloud environments and internal networks. Working as part of an experienced audit and testing team, you will help identify vulnerabilities, validate security controls and provide clear, practical recommendations to improve clients’ security posture. This role is suited to someone at the beginning of their penetration testing career who is keen to develop technical expertise within a structured, professional environment. Your responsibilities will include assisting with scoping and preparing penetration tests, conducting reconnaissance and vulnerability assessments, and supporting the exploitation of identified weaknesses under controlled conditions....

Learn more
At least 8 characters, 1 uppercase, 1 lowercase and 1 special character or number
Your file must be a doc, docx or pdf. No larger than 5MB.