Security Tester

Security Tester

Glasgow Full-Time 48000 - 72000 £ / year (est.) No home office possible
L

At a Glance

  • Tasks: Join us as a Security Tester, planning and executing vital security tests.
  • Company: Be part of a forward-thinking agency focused on cybersecurity excellence.
  • Benefits: Enjoy flexible work options and a supportive team environment.
  • Why this job: Make a real impact by enhancing application security and protecting users.
  • Qualifications: Must have CREST certification and 4-7 years of relevant experience.
  • Other info: Experience with public sector projects is essential for this role.

The predicted salary is between 48000 - 72000 £ per year.

Job Scope:

  • Security Test Planning & Preparation
  • Coordinate with development teams for testing schedules and plan testing timelines aligned with release schedules.
  • Create security test plans for new applications, major releases and enhancements.
  • Define testing scope and approach using Agency Cybersecurity Control templates.
  • Define entry and exit criteria for security testing phases.
  • Test Environment Preparation
    • Configure security testing tools in the designated environment for (1) SCR and (2) App-VAPT.
    • Setup test data and test cases.
  • Security Test Execution
    • Secure Code Review (SCR)
    • Perform source code security analysis for new applications, major release changes and enhancements.
    • Use SAST tools to analyze code security and use SCA tools to review any open-source and third-party components included in the applications.
    • Document code security findings and verify remediations through retesting.
  • App Vulnerability Assessment and Penetration Testing (App-VAPT)
    • Conduct App-VAPT for new applications before production deployment.
    • Major releases with significant changes.
    • System enhancements affecting security controls.
    • Use DAST tools for dynamic security testing.
  • Documentation & Reporting
    • Document test results and generate test report using the Agency Cybersecurity Control templates.
    • Provide recommendations for security improvements.
    • Maintain evidence of security testing performed.
    • Track security findings and remediation status.
    • Provide System Security Plan (SSP) documentation.
    • Report testing progress and coverage.
  • Knowledge Transfer
    • Document security testing procedures.
    • Share security testing findings with development teams.
    • Provide guidance on security fixes implementation.
    • Support security testing knowledge sharing sessions.

    Requirements:

    • Possess CREST certification.
    • Experience in conducting SCR, VA & PT.
    • 4-7 years of relevant experience.
    • Must have done at least 2-3 Public Sector projects (SCR, VA & PT).

    Security Tester employer: LINKTRIX SERVICES PTE. LTD.

    As a leading employer in the cybersecurity sector, we offer a dynamic work environment that fosters innovation and collaboration. Our commitment to employee growth is evident through continuous training opportunities and a culture that values knowledge sharing, particularly in our vibrant location that serves as a hub for public sector projects. Join us to make a meaningful impact while enjoying competitive benefits and a supportive team atmosphere.
    L

    Contact Detail:

    LINKTRIX SERVICES PTE. LTD. Recruiting Team

    StudySmarter Expert Advice 🤫

    We think this is how you could land Security Tester

    ✨Tip Number 1

    Familiarise yourself with the specific security testing tools mentioned in the job description, such as SAST and DAST tools. Having hands-on experience with these tools will not only boost your confidence but also demonstrate your technical proficiency during interviews.

    ✨Tip Number 2

    Network with professionals in the cybersecurity field, especially those who have worked on public sector projects. Engaging in discussions or attending relevant meetups can provide insights into the industry and may even lead to referrals for the position.

    ✨Tip Number 3

    Prepare to discuss your previous experiences with SCR, VA, and PT in detail. Be ready to share specific examples of challenges you faced and how you overcame them, as this will showcase your problem-solving skills and expertise.

    ✨Tip Number 4

    Stay updated on the latest trends and threats in cybersecurity. Being knowledgeable about current issues will not only help you in interviews but also show that you are proactive and genuinely interested in the field.

    We think you need these skills to ace Security Tester

    Security Test Planning
    Test Coordination
    Cybersecurity Control Templates
    Entry and Exit Criteria Definition
    Security Testing Tools Configuration
    Secure Code Review (SCR)
    Static Application Security Testing (SAST)
    Software Composition Analysis (SCA)
    Documentation of Security Findings
    Application Vulnerability Assessment and Penetration Testing (App-VAPT)
    Dynamic Application Security Testing (DAST)
    Test Result Documentation
    Recommendations for Security Improvements
    System Security Plan (SSP) Documentation
    Knowledge Transfer and Training
    CREST Certification
    Public Sector Project Experience

    Some tips for your application 🫡

    Understand the Job Requirements: Carefully read through the job description for the Security Tester position. Make sure you understand the specific skills and experiences required, such as CREST certification and experience with SCR, VA & PT.

    Tailor Your CV: Highlight your relevant experience in security testing, particularly any public sector projects you've worked on. Use keywords from the job description to ensure your CV aligns with what the company is looking for.

    Craft a Compelling Cover Letter: Write a cover letter that showcases your passion for cybersecurity and your specific experiences related to the role. Mention your familiarity with security testing tools and methodologies, and how you can contribute to the company's goals.

    Proofread Your Application: Before submitting, thoroughly proofread your CV and cover letter for any spelling or grammatical errors. A polished application reflects your attention to detail, which is crucial in security testing.

    How to prepare for a job interview at LINKTRIX SERVICES PTE. LTD.

    ✨Know Your Security Testing Tools

    Familiarise yourself with the specific security testing tools mentioned in the job description, such as SAST and DAST tools. Be prepared to discuss your experience using these tools and how they have helped you identify vulnerabilities in past projects.

    ✨Demonstrate Your Planning Skills

    Since the role involves test planning and coordination, be ready to explain how you approach creating security test plans. Share examples of how you've successfully aligned testing timelines with development schedules in previous roles.

    ✨Highlight Your Documentation Experience

    Documentation is key in this role. Prepare to talk about your experience in documenting test results, generating reports, and maintaining evidence of security testing. Mention any templates or standards you’ve used, especially those relevant to cybersecurity.

    ✨Showcase Your Knowledge Transfer Abilities

    The job requires sharing findings and providing guidance to development teams. Think of examples where you've effectively communicated security issues and solutions to non-technical stakeholders, demonstrating your ability to bridge the gap between security and development.

    L
    Similar positions in other companies
    UK’s top job board for Gen Z
    discover-jobs-cta
    Discover now
    >