Penetration Tester

Penetration Tester

Full-Time 50000 - 65000 £ / year (est.) Home office (partial)
Bridewell

At a Glance

  • Tasks: Lead exciting penetration testing projects and deliver high-quality security assessments.
  • Company: Join Bridewell, a fast-growing leader in the UK Cyber Security sector.
  • Benefits: Enjoy competitive salary, flexible working, and a dedicated training budget for personal development.
  • Why this job: Make a real impact in creating a safe digital world while advancing your career.
  • Qualifications: Experience in penetration testing and strong communication skills are essential.
  • Other info: Be part of a diverse team committed to sustainability and continuous growth.

The predicted salary is between 50000 - 65000 £ per year.

As a result of growth, we are looking for an experienced Penetration Tester with solid experience of infrastructure and web application testing to deliver testing engagements on a range of key client work. This is an excellent opportunity for a highly motivated and determined Penetration Tester to continue their development and work on a range of exciting projects. As well as delivering testing, Bridewell ensures each consultant has access to a dedicated annual team budget for personal development. This gives access to CREST, Cyber Scheme exams, online platforms such as Hack the Box, TSCM and TryHackMe, and many other training courses. There is also dedicated time to carry out research and assist with developing new testing methodologies and techniques.

Responsibilities

  • Deliver and lead high quality offensive security assessments (web application, API and infrastructure), meeting client expectations.
  • Get involved in and lead on team assessments as required.
  • Produce written and verbal reports to clients to an excellent standard.
  • Support the sales team with pre‑sales and assist with technical input into tenders and proposals.
  • Carry out research when not on client deliverable work that can be used to enhance our services to clients.
  • Work with teams across the business, providing the latest technical knowledge to collaborate on interesting client projects.

Experience

  • Strong experience in a client‑facing role.
  • Customer oriented and able to communicate with all levels of an organisation with appropriate technical content.
  • Proficient in performing a variety of penetration tests such as infrastructure, web application API testing and device configuration reviews, etc.
  • CREST Registered Tester (CRT) or Cyber Scheme Team Member (CSTM) – mandatory.
  • NCSC CHECK Team Member (CTM) with at least Practitioner Cyber Security Professional (PraCSP) title – mandatory.
  • Self‑motivated and able to work independently and as part of a larger team.
  • Produce high‑quality technical and executive reports tailored to both technical and non‑technical audiences.
  • Holds or is able to obtain a minimum of SC clearance.

Desirable

  • OSCP, OSCE, CRTO.
  • Knowledge of cloud security (AWS, Azure, GCP).
  • Experience in LLM/AI testing.
  • Proficiency in coding or scripting (Python, Powershell, Bash).

Why Join Us?

Our vision is to create a safe, inclusive digital world where people and organisations can thrive. Our values of Do the Right Thing, One Team and Above and Beyond emphasise the importance of the part we play in society, and our commitment to our people and clients. Our story to‑date has been phenomenal, but success doesn’t end here and as we continue to grow and scale, we want to keep the same culture, passion and commitment to high quality that has enabled us to get this far. Bridewell will provide a great career opportunity with continual development as well as the following:

  • Competitive Salary.
  • 25 Days Holiday – Plus buy and sell options.
  • Flexible Working (around core office hours).
  • Company Pension.
  • Employee Shareholder Scheme.
  • Dedicated Training Budget.
  • Life Assurance.
  • Cycle to Work Scheme.
  • Electric Vehicle Scheme.
  • Private Healthcare (incl. Gym discounts).
  • Vision Care.
  • Birthday off (After 1 year).

About Bridewell

One of the most exciting prospects in the UK Cyber Security sector today, Bridewell is one of the fastest growing Cyber Security services businesses with a strong track record for delivering complex security projects and providing excellent customer service. Bridewell has an exciting and varied portfolio of clients across Financial Services, Manufacturing, Oil & Gas, Government, Critical National Infrastructure and more. Bridewell holds the Gold level Investors in People award which we feel solidifies and reflects on the outstanding calibre that makes us truly One Team. Along with our focus on our people, we also have a big focus on sustainability and recognise the role we play in the fight against climate change. Today, Bridewell is proud to be a carbon negative business.

Location

Bridewell operates a hybrid and flexible working policy, however you will be required to travel to different sites on occasion.

Diversity and Inclusion

Bridewell values diversity in the workplace and is a fair and equal opportunity employer. We are committed to creating an equal and inclusive working environment, with the aim that our employees will be truly representative of all sections of society and each person feels respected and able to give their best.

Penetration Tester employer: Bridewell

Bridewell is an exceptional employer that prioritises the growth and development of its employees, offering a competitive salary, flexible working arrangements, and a dedicated training budget for personal development. With a strong commitment to diversity and inclusion, as well as a focus on sustainability, Bridewell fosters a collaborative and innovative work culture where every team member can thrive while contributing to meaningful projects in the dynamic field of Cyber Security.
Bridewell

Contact Detail:

Bridewell Recruiting Team

StudySmarter Expert Advice 🤫

We think this is how you could land Penetration Tester

✨Tip Number 1

Network like a pro! Get involved in online forums, attend local meetups, or join cybersecurity groups. The more people you know in the industry, the better your chances of landing that Penetration Tester role.

✨Tip Number 2

Show off your skills! Create a portfolio showcasing your penetration testing projects, including any cool findings or methodologies you've developed. This will give potential employers a taste of what you can bring to the table.

✨Tip Number 3

Prepare for interviews by brushing up on both technical and soft skills. Be ready to discuss your experience with web application and infrastructure testing, but also practice explaining complex concepts in simple terms for non-technical folks.

✨Tip Number 4

Don't forget to apply through our website! We love seeing candidates who are genuinely interested in joining our team. Plus, it gives you a chance to showcase your enthusiasm for Bridewell's mission and values.

We think you need these skills to ace Penetration Tester

Penetration Testing
Infrastructure Testing
Web Application Testing
API Testing
CREST Registered Tester (CRT)
NCSC CHECK Team Member (CTM)
Cyber Security Professional (PraCSP)
Technical Report Writing
Client-Facing Communication
Cloud Security (AWS, Azure, GCP)
LLM/AI Testing
Coding or Scripting (Python, Powershell, Bash)
Research Skills
Team Collaboration
Self-Motivation

Some tips for your application 🫡

Tailor Your CV: Make sure your CV is tailored to the Penetration Tester role. Highlight your experience with infrastructure and web application testing, and don’t forget to mention any relevant certifications like CREST or OSCP. We want to see how your skills match what we're looking for!

Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Use it to explain why you're passionate about penetration testing and how you can contribute to our team. Be sure to mention any exciting projects you've worked on that relate to our work at Bridewell.

Showcase Your Communication Skills: Since this role involves client-facing responsibilities, it's crucial to demonstrate your ability to communicate complex technical concepts clearly. In your application, give examples of how you've successfully communicated with clients or team members in the past.

Apply Through Our Website: We encourage you to apply directly through our website. It’s the best way for us to receive your application and ensures you’re considered for the role. Plus, it shows you’re keen on joining our team at Bridewell!

How to prepare for a job interview at Bridewell

✨Know Your Stuff

Make sure you brush up on your penetration testing skills, especially in infrastructure and web application testing. Be ready to discuss specific tools and methodologies you've used in past projects, as this will show your expertise and confidence.

✨Tailor Your Communication

Since the role involves client-facing responsibilities, practice explaining complex technical concepts in simple terms. This will help you connect with interviewers who may not have a technical background, showcasing your ability to communicate effectively across different levels of an organisation.

✨Show Your Passion for Learning

Highlight your commitment to personal development by discussing any relevant certifications or training you've pursued, like CREST or OSCP. Mention how you plan to utilise the dedicated training budget offered by the company to further enhance your skills.

✨Prepare for Scenario Questions

Expect to be asked about real-world scenarios or challenges you've faced in previous roles. Prepare examples that demonstrate your problem-solving skills and how you approach offensive security assessments, as this will give interviewers insight into your thought process and capabilities.

Land your dream job quicker with Premium

You’re marked as a top applicant with our partner companies
Individual CV and cover letter feedback including tailoring to specific job roles
Be among the first applications for new jobs with our AI application
1:1 support and career advice from our career coaches
Go Premium

Money-back if you don't land a job in 6-months

>