We are seeking a Security Testing Consultant (Penetration Tester) to join a collaborative cyber security team in a... Read more
We are seeking a Security Testing Consultant (Penetration Tester) to join a collaborative cyber security team in a hybrid working environment. In this role, you will plan and deliver authorised penetration tests across web applications, mobile applications, APIs, networks, cloud environments and infrastructure. You will work with technical and business stakeholders to understand testing objectives, identify attack paths, assess risk and provide practical recommendations that improve overall security resilience.
Your responsibilities will include scoping engagements, developing test plans, conducting manual and automated security assessments, validating vulnerabilities and maintaining accurate evidence throughout each assignment. You will prepare clear, professional reports that explain technical findings in a way suitable for both technical and non-technical audiences, including risk ratings, business impact and prioritised remediation guidance. You will also present findings to stakeholders, support retesting activities and contribute to the continuous improvement of testing methodologies, tools and internal security processes. Where appropriate, you may assist with threat modelling, secure design reviews, vulnerability assessments and incident response exercises.
The successful candidate will have practical experience in penetration testing or security consultancy, with a strong understanding of common web, network, application and cloud vulnerabilities. Familiarity with recognised security frameworks and standards, such as OWASP, PTES, CREST and NIST, is desirable. Relevant professional qualifications or certifications, including OSCP, CREST, CHECK, CRT, CSTM or equivalent experience, would be advantageous. You should be analytical, curious and confident communicating complex issues clearly, while maintaining a professional and ethical approach to authorised testing. Experience with tools such as Burp Suite, Nmap, Metasploit, vulnerability scanners and scripting languages such as Python or PowerShell would be beneficial. The role offers a balance of remote and on-site work, with occasional travel and direct engagement with clients and project teams.
Read lessFrimley, England, United KingdomPermanent
We are seeking a Security Testing Consultant (Penetration Tester) to join a collaborative cybersecurity team on a hybrid... Read more
We are seeking a Security Testing Consultant (Penetration Tester) to join a collaborative cybersecurity team on a hybrid basis. In this role, you will plan and deliver penetration tests across web applications, APIs, mobile platforms, infrastructure, cloud environments and networks. You will assess security controls, identify vulnerabilities and determine the potential business impact of weaknesses using recognised testing methodologies and industry-standard tools. The position involves working with technical and non-technical stakeholders to understand environments, agree testing objectives and provide clear, practical advice to improve security resilience.
Your responsibilities will include conducting manual and automated security assessments, validating findings, safely exploiting vulnerabilities where appropriate and maintaining accurate testing evidence. You will prepare high-quality reports that explain technical issues in a clear and accessible way, prioritise risks and provide actionable remediation guidance. You will also present results to clients and internal teams, support retesting activities, contribute to security testing standards and help improve assessment processes. Some assignments may require involvement in threat modelling, secure design reviews, social engineering exercises or incident and vulnerability management activities.
Applicants should have demonstrable experience in penetration testing, security consultancy or a closely related role, together with a strong understanding of common attack techniques, vulnerability management and secure development principles. Practical experience with tools such as Burp Suite, Nmap, Metasploit, Kali Linux and cloud security platforms is desirable. Relevant certifications, such as CREST, OSCP, OSWE, PNPT or equivalent professional qualifications, are advantageous. Strong communication, report-writing and stakeholder-management skills are essential, as is the ability to manage multiple engagements, work independently and maintain professional integrity. This hybrid role offers flexibility, varied technical challenges and opportunities for continued learning in a supportive security environment.
Read lessFrimley, England, United KingdomPermanent
We are seeking an experienced Solution Architect specialising in Identity and Access Management (IAM) to design secure, scalable,... Read more
We are seeking an experienced Solution Architect specialising in Identity and Access Management (IAM) to design secure, scalable, and sustainable identity solutions across a complex technology environment. In this role, you will define IAM architecture, establish technical standards, and translate business and security requirements into practical solutions that support workforce, customer, application, and privileged identities.
You will work closely with cybersecurity, infrastructure, application, data, risk, and business stakeholders to develop architecture roadmaps and ensure consistent implementation across cloud and on-premises platforms. Responsibilities will include assessing current IAM capabilities, identifying gaps and risks, designing target-state architectures, and producing high-quality documentation such as principles, reference architectures, solution designs, integration patterns, and technology standards. You will provide architectural direction for identity lifecycle management, access governance, authentication, authorisation, federation, single sign-on, privileged access, directory services, and modern identity protocols including SAML, OAuth 2.0 and OpenID Connect.
The successful candidate will bring substantial experience in IAM architecture or a closely related security architecture role, with a strong understanding of enterprise security frameworks, zero-trust principles, and regulatory expectations. Practical knowledge of leading IAM, identity governance, privileged access, and cloud identity platforms is essential, along with experience integrating identity services with business applications, APIs, directories, and infrastructure. Strong communication and stakeholder management skills are required, as you will explain complex technical concepts to both technical and non-technical audiences, influence design decisions, and support delivery teams through implementation. Relevant professional certifications in security, architecture, or IAM are advantageous. This is an opportunity to shape a strategic identity capability and improve the security, usability, and resilience of access across the organisation.
Read lessFrimley, England, United KingdomPermanent
All your saved jobs are no longer available or you've already applied.
for the following search criteria