Location: London, Bank - 3 days in office.
Details: Initial 6 month contract, with guaranteed conversion to perm within that period.
Perm salary: up to Β£85k
Initial contract rate: TBC
Requirements:
- Conduct authorised penetration testing of networks, applications, cloud environments, and endpoints to identify security vulnerabilities and exploitable weaknesses.
- Perform adversary emulation and red team operations, simulating real-world attack techniques, tactics, and procedures (TTPs) used by threat actors.
- Demonstrate expertise in penetration testing tools and frameworks such as Burp Suite, Metasploit, Nmap, Cobalt Strike, BloodHound, and Kali Linux.
- Execute reconnaissance, vulnerability assessment, exploitation, privilege escalation, lateral movement, and post-exploitation activities while maintaining operational security.
- Produce detailed technical reports and executive summaries, including risk ratings, attack paths, proof-of-concept findings, and remediation recommendations.
- Possess strong knowledge of network security, Active Directory, cloud security (Azure/AWS), web application security, and common attack frameworks such as MITRE ATT&CK and OWASP Top 10.
- Collaborate with blue teams, security engineers, and stakeholders to validate security controls, improve detection capabilities, and strengthen the organization's overall security posture.
Penetration Tester employer: Bonhill Partners
Bonhill Partners offers an exceptional work environment for Data Engineers, providing the opportunity to engage with cutting-edge technologies in a dynamic global commodities trading setting. Employees benefit from a culture of innovation and collaboration, alongside ample opportunities for professional growth and development. Located in a vibrant industry hub, the company fosters a supportive atmosphere that values creativity and encourages team members to push the boundaries of data engineering.