At a Glance
- Tasks: Conduct penetration testing and vulnerability assessments for critical national infrastructure.
- Company: Join a leading cyber security team focused on protecting national security.
- Benefits: Enjoy flexible working options, competitive salary, and continuous professional development.
- Why this job: Make a real impact in national security while developing your skills in a high-stakes environment.
- Qualifications: Must have active DV clearance and relevant penetration testing qualifications.
- Other info: Ideal for those passionate about offensive security and working with government clients.
The predicted salary is between 48000 - 72000 £ per year.
We are seeking a highly skilled and DV-cleared Penetration Tester operating at CHECK Team Member (CTM) or CHECK Team Leader (CTL) level to join our cyber security team. You will be responsible for conducting rigorous penetration testing, vulnerability assessments, and red team engagements for critical national infrastructure, government departments, and sensitive defence systems. This role requires a professional with an in-depth understanding of offensive security who can work under strict security protocols and in high-assurance environments. Key Responsibilities: * Perform authorised simulated attacks on networks, applications, and systems (infrastructure and web application testing). * Lead and/or participate in Red Team engagements and scenario-based threat simulations (for CTLs). * Produce high-quality technical and executive-level reports detailing findings, risks, and remediation advice. * Collaborate with clients to understand their security requirements and advise on best practices and mitigation strategies. * Ensure compliance with NCSC CHECK standards and relevant industry frameworks (e.g., ISO 27001, NIST, Cyber Essentials+). * Maintain operational security and confidentiality in line with government protocols. Essential Requirements: * Active DV (Developed Vetting) Clearance – must be current and transferable. * Valid CREST CRT qualification (or equivalent) – CHECK status as CTM or CTL required. * Demonstrable experience in penetration testing, ideally within defence, government, or highly regulated environments. * Strong knowledge of network protocols, common vulnerabilities (e.g., OWASP Top 10), exploitation techniques, and mitigation strategies. * Familiarity with tools such as Burp Suite, Metasploit, Nmap, Nessus, Cobalt Strike, etc. * Solid understanding of Red Team / Adversary Simulation methodologies (for CTL-level roles). * Excellent written and verbal communication skills. Desirable: * Experience with Purple Teaming or threat intelligence-driven testing. * Certifications such as OSCP, OSCE, OSEP, or CISSP. * Experience with cloud environments (AWS, Azure) and container security. * Knowledge of secure development and DevSecOps practices. Benefits: * Opportunities to work on high-impact national security projects. * Continuous professional development and training budget. * Flexible working options (where security clearance allows). * Competitive salary and performance-based bonuses
Contact Detail:
FlexIT Talent Solutions Ltd Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Security Consultant
✨Tip Number 1
Network with professionals in the cyber security field, especially those who are already working as Security Consultants or Penetration Testers. Attend industry conferences, webinars, and local meetups to build connections and gain insights into the role.
✨Tip Number 2
Stay updated on the latest trends and developments in offensive security. Follow relevant blogs, podcasts, and forums to enhance your knowledge and demonstrate your passion for the field during interviews.
✨Tip Number 3
Prepare for technical interviews by practising common penetration testing scenarios and challenges. Use platforms like Hack The Box or TryHackMe to sharpen your skills and showcase your practical experience.
✨Tip Number 4
Familiarise yourself with the specific tools mentioned in the job description, such as Burp Suite and Metasploit. Being able to discuss your hands-on experience with these tools can set you apart from other candidates.
We think you need these skills to ace Security Consultant
Some tips for your application 🫡
Tailor Your CV: Make sure your CV highlights your relevant experience in penetration testing and offensive security. Emphasise your DV clearance, CREST CRT qualification, and any specific tools or methodologies you are familiar with.
Craft a Strong Cover Letter: Write a cover letter that showcases your understanding of the role and the importance of security in national infrastructure. Mention your experience with compliance standards like NCSC CHECK and how you can contribute to the team.
Showcase Technical Skills: In your application, include specific examples of your work with tools such as Burp Suite, Metasploit, and Nmap. Discuss any Red Team engagements you've led or participated in, and detail your approach to vulnerability assessments.
Proofread Your Application: Before submitting, carefully proofread your application for any errors or inconsistencies. Ensure that your communication is clear and professional, reflecting the high standards expected in the cyber security field.
How to prepare for a job interview at FlexIT Talent Solutions Ltd
✨Showcase Your Technical Skills
Be prepared to discuss your experience with penetration testing tools like Burp Suite and Metasploit. Highlight specific projects where you successfully identified vulnerabilities and how you mitigated them.
✨Understand the Security Protocols
Familiarise yourself with NCSC CHECK standards and relevant frameworks such as ISO 27001. Demonstrating your knowledge of these protocols will show that you can operate effectively in high-assurance environments.
✨Prepare for Scenario-Based Questions
Expect questions that assess your ability to lead Red Team engagements or respond to simulated attacks. Think of examples from your past experiences where you had to think on your feet and adapt to changing scenarios.
✨Communicate Clearly and Effectively
Since you'll need to produce reports and collaborate with clients, practice explaining complex technical concepts in simple terms. Good communication skills are essential for conveying findings and recommendations.