Penetration Tester (Principal Consultant)
Penetration Tester (Principal Consultant)

Penetration Tester (Principal Consultant)

Full-Time 60000 - 80000 £ / year (est.) No home office possible
C

At a Glance

  • Tasks: Lead offensive security projects and manage high-performing teams in cybersecurity.
  • Company: Cognisys is a top-tier cybersecurity firm specializing in Penetration Testing and Managed Security services.
  • Benefits: Enjoy hybrid work, professional development budgets, wellness resources, and generous holiday allowances.
  • Why this job: Join a collaborative team making a real impact in cybersecurity while fostering innovation and personal growth.
  • Qualifications: 7+ years in cybersecurity with expertise in penetration testing and cloud security; client-facing experience required.
  • Other info: Share your GitHub repo showcasing your skills before the interview.

The predicted salary is between 60000 - 80000 £ per year.

Location: Leeds (hybrid) / UK (remote)

Salary: up to £80K (DOE)

Are you ready to make an impact in the fast-paced world of cybersecurity? Cognisys is growing rapidly, and we’re looking for a Penetration Tester (Principal Consultant) to join our team during this exciting period of innovation and expansion.

Cognisys is a leading cybersecurity company specialising in Penetration Testing, GRC Consulting, and Managed Security services. We pride ourselves on our customer service, forward-thinking approach, and commitment to excellence. Our small but mighty team works with some of the best-known companies in the world and covers over 30 countries worldwide!

About the Role

As a Penetration Tester (Principal Consultant), you will be key in driving commercial success, managing high-performing teams, and delivering cutting-edge offensive security projects. This role is ideal for a technical leader with deep expertise in red teaming and cloud security, coupled with a passion for business growth and client engagement.

If you are a seasoned cybersecurity professional with a passion for offensive security, team leadership, and business growth, we want to hear from you!

Key Responsibilities:

Commercial & Client Engagement:

  • Act as a primary technical contact for key accounts, ensuring strong client relationships and project success.
  • Lead pre-sales engagements, scope projects, and develop Statements of Work (SOWs) that align with client needs.
  • Effectively communicate complex security risks and mitigation strategies to technical and non-technical stakeholders.
  • Represent Cognisys Group at industry events and conferences, demonstrating thought leadership and engaging with the cybersecurity community.

Technical Leadership & Delivery:

  • Plan, execute, and oversee advanced Red Team Assessments, cloud security assessments, and penetration testing engagements.
  • Simulate real-world attack scenarios to identify vulnerabilities across networks, cloud environments, applications, and infrastructure.
  • Lead the development and execution of multi-stage attack simulations, leveraging advanced offensive security techniques.
  • Evaluate security controls, incident response processes, and overall security posture, providing actionable remediation guidance.
  • Research and stay ahead of evolving threats, techniques, and security tools to improve methodologies continuously.

Team Management & Development:

  • Manage, mentor, and develop a team of security consultants, fostering technical excellence and career growth.
  • Conduct performance evaluations, set professional development goals, and provide guidance on technical engagements.
  • Oversee the quality of penetration testing and red teaming reports, ensuring clarity, accuracy, and actionable insights.
  • Drive knowledge-sharing initiatives within the team, promoting collaboration and continuous learning.

Essential Qualifications & Experience:

  • 7+ years of experience in cybersecurity, with a strong focus on penetration testing, red teaming, and cloud security.
  • 4+ years of experience in client-facing consulting roles, demonstrating strong business acumen and stakeholder management.
  • Expertise in red teaming methodologies, including social engineering, network exploitation, and lateral movement techniques.
  • Deep understanding of cloud security, including AWS, Azure, and GCP, with hands-on experience in assessing cloud environments.
  • Proficiency in offensive security tools such as Cobalt Strike, Metasploit, PowerShell Empire, and custom exploit development.
  • Strong programming and scripting skills in Python, PowerShell, or Bash to develop and automate attack techniques. Personal GitHub repo would be required to be shared before the Interview showcasing your development skills.
  • Knowledge of MITRE ATT&CK framework, adversary simulation techniques, and threat hunting strategies.
  • Ability to articulate security findings effectively to both technical teams and executive leadership.

Preferred Qualifications & Skills:

  • Certifications such as OSCP, OSCE, CCT, CRTO, or Cloud Security Specialty. CCT is a must.
  • Experience leading APT-style engagements and simulating sophisticated cyber threats.
  • Public speaking experience at cybersecurity conferences and events.

What We Offer

  • A dynamic and supportive work environment where customer care and innovation drive everything we do.
  • A dedicated budget for your professional development and training in cyber security and sales.
  • EMI Employee Share Schemes, providing the opportunity to share in the success of the company.
  • Access to an Employee Wellness Hub supported by Kara Connect for health and well-being resources.
  • Frequent team social events and celebrations.
  • 22 days holiday rising to 25, plus a birthday holiday.
  • Referral bonus scheme up to £2,000!

Why Join Us?

At Cognisys, you will be part of a collaborative and innovative team that values your input and shares support. You\’ll have the opportunity to work on challenging projects that make a real impact on our clients. If you are driven by a desire to protect and innovate, we’d love to hear from you!

We\’re not just about the work; we\’re about our people. Join a team where innovation is celebrated, and your contributions are valued. We foster a collaborative environment where fresh ideas thrive, and professional growth is encouraged.

Applications

Please feel free to reach out to Dom, our Head of Talent Acquisition if you would like any further information, to discuss accessibility requirements, or if you require this information provided in an alternative format –

We welcome applications from candidates from diverse backgrounds and can make reasonable adjustments to accommodate individual needs.

NO RECRUITMENT AGENCIES, PLEASE

#J-18808-Ljbffr

Penetration Tester (Principal Consultant) employer: Cognisys

Cognisys is an exceptional employer that fosters a dynamic and supportive work environment, where innovation and customer care are at the forefront of everything we do. With a strong commitment to employee growth, we offer dedicated budgets for professional development, EMI Employee Share Schemes, and a wellness hub to support your health and well-being. Join our collaborative team in Leeds or remotely across the UK, where your contributions are valued, and you'll have the opportunity to work on impactful projects that shape the future of cybersecurity.
C

Contact Detail:

Cognisys Recruiting Team

StudySmarter Expert Advice 🤫

We think this is how you could land Penetration Tester (Principal Consultant)

✨Tip Number 1

Make sure to showcase your technical leadership skills during the interview. Prepare examples of how you've successfully managed teams and delivered complex security projects in the past.

✨Tip Number 2

Familiarize yourself with Cognisys' approach to client engagement. Be ready to discuss how you would build strong relationships with key accounts and ensure project success.

✨Tip Number 3

Highlight your experience with offensive security tools and methodologies. Be prepared to discuss specific scenarios where you've applied these techniques effectively.

✨Tip Number 4

Research recent trends in cybersecurity, especially in red teaming and cloud security. Being knowledgeable about current threats will demonstrate your commitment to staying ahead in the field.

We think you need these skills to ace Penetration Tester (Principal Consultant)

Penetration Testing
Red Teaming Methodologies
Cloud Security (AWS, Azure, GCP)
Client Engagement
Technical Leadership
Offensive Security Tools (Cobalt Strike, Metasploit, PowerShell Empire)
Programming and Scripting (Python, PowerShell, Bash)
MITRE ATT&CK Framework
Threat Hunting Strategies
Communication Skills
Team Management
Performance Evaluation
Business Acumen
Stakeholder Management
Public Speaking

Some tips for your application 🫡

Tailor Your CV: Make sure your CV highlights your experience in penetration testing, red teaming, and cloud security. Use specific examples that demonstrate your technical leadership and client engagement skills.

Craft a Compelling Cover Letter: In your cover letter, express your passion for offensive security and business growth. Mention how your background aligns with Cognisys's mission and values, and why you are excited about the opportunity to join their team.

Showcase Your Technical Skills: Include details about your proficiency in offensive security tools and programming languages. If you have a personal GitHub repository, make sure to mention it and highlight any relevant projects that showcase your development skills.

Prepare for Interviews: Be ready to discuss your experience in managing teams and delivering complex security projects. Think of examples where you've effectively communicated security risks to both technical and non-technical stakeholders.

How to prepare for a job interview at Cognisys

✨Showcase Your Technical Expertise

Be prepared to discuss your experience with penetration testing, red teaming, and cloud security in detail. Highlight specific projects where you successfully identified vulnerabilities and implemented solutions, as this will demonstrate your hands-on expertise.

✨Communicate Effectively

Practice articulating complex security concepts in a way that is understandable to both technical and non-technical stakeholders. This skill is crucial for the role, as you'll need to engage with clients and explain risks and mitigation strategies clearly.

✨Demonstrate Leadership Skills

Since this position involves managing and mentoring a team, be ready to share examples of how you've led teams in the past. Discuss your approach to fostering technical excellence and career growth among team members.

✨Prepare Your GitHub Portfolio

Make sure your personal GitHub repository is up-to-date and showcases your development skills. Be ready to discuss your contributions and any offensive security tools or scripts you've developed, as this will highlight your technical capabilities.

Penetration Tester (Principal Consultant)
Cognisys
C
  • Penetration Tester (Principal Consultant)

    Full-Time
    60000 - 80000 £ / year (est.)

    Application deadline: 2027-03-28

  • C

    Cognisys

Similar positions in other companies
UK’s top job board for Gen Z
discover-jobs-cta
Discover now
>