At a Glance
- Tasks: Conduct penetration tests and produce detailed reports while mentoring junior testers.
- Company: Join Bulletproof, a leader in innovative cyber security solutions protecting businesses from hackers.
- Benefits: Enjoy 25 days holiday, flexible working, bonuses, and support for further qualifications.
- Why this job: Be part of a dynamic team tackling real-world security challenges and making a difference.
- Qualifications: Experience in penetration testing with relevant security certifications is essential.
- Other info: Criminal records check required as part of the recruitment process.
The predicted salary is between 36000 - 60000 £ per year.
OVERVIEW
As a Penetration Tester, you will perform formal and comprehensive penetration testing assessments, including producing full written reports to appropriate standards and within agreed deadlines. In addition, you will support with client pre-engagement activities, including scoping and proposal drafting, as well as researching new vulnerabilities and technologies, following responsible disclosure, and sharing such findings within the team.
RESPONSIBILITIES
• Perform formal and comprehensive application and other penetration testing assessments where appropriate and required;
• Provide well-written, concise, technical and non-technical reports in English;
• Perform vulnerability/attack surface assessments and provide findings with remediation actions;
• Support with various client pre-engagement interactions, including scoping activities and proposal drafting;
• Manage and deliver penetration testing project activities within strict deadlines;
• Research new technologies, security topics and vulnerabilities within the wider team to identify new vulnerabilities and follow responsible disclosure;
• Coach and mentor Graduate and Junior penetration testers where appropriate;
• Support the Marketing team with the development of content (including, but not limited to: Blogs, Social Media Posts, and Articles) to help raise the profile of Bulletproof\’s Penetration Testing and other services;
• Support the QA process to ensure high quality client reports are delivered in accordance with applicable Service Level Agreement (SLA);
• Any other appropriate job duties in line with the associated skill and experience of the post holder.
SKILLS AND EXPERIENCE REQUIRED
• Proven industry experience in web/API/mobile/thick client application penetration testing;
• Deep knowledge of various Operating Systems and network principles.
• Strong understanding of OWASP, PTES and MITRE ATT&CK framework;
• Knowledge of how modern solutions are designed and deployed across different platforms;
• Ability to program or script in your preferred language.
• Relevant security qualifications (such as OSCP, CREST CRT, OSWE, CCT APP);
• Experience leading penetration testing projects and acting as a lead technical point of contact.
NICE TO HAVE
• Knowledge of assessing cloud and/or hybrid environments (AWS and Azure);
• Knowledge of performing source code reviews in a language of your preference and expertise;
• Knowledge in preparing and launching social engineering campaigns;
• Involvement in previous research projects, tool development and training delivery.
PERSONAL ATTRIBUTES
• Excellent spoken and written communication skills with strong attention-to-detail and accuracy;
• A passion for security and networks;
• Analytical and problem-solving skills with a can-do attitude and the ability to think laterally;
• Self-motivation with a commitment to continued development;
• Ability to work independently and as part of a team;
• Influencing and negotiation skills with the ability to build relationships at all levels;
• Willingness to learn.
BENEFITS
• 25 days annual holiday;
• An additional day’s annual holiday for your birthday;
• Company Pension contribution;
• Generous uncapped bonus scheme;
• Subsidized gym membership;
• Perkbox employee benefits platform;
• Frequent team events;
• Private Healthcare (individual cover only);
• Financial support to study for and achieve additional penetration testing qualifications;
• Additional Learning Allowance Benefit;
• Flexible working policy.
COMPANY OVERVIEW
Bulletproof is a trusted provider of innovative cyber security and people-powered solutions. Our cyber security services are the best way to stay ahead of the hackers, take control of infrastructure and protect business-critical data.
With our own in-house UK Security Operations Centre (SOC) and years of industry experience, we help to protect our customers from current and emerging security threats. We provide a full spectrum of cyber security services including CREST-certified penetration testing, 24/7 threat monitoring, compliance support and security training to help organisations protect against today’s evolving threat landscape.
Please note that as part of the recruitment process a criminal records check will be carried out by an authorised third party.
#J-18808-Ljbffr
Penetration Tester (Web App) employer: Bulletproof (Cyber Security)
Contact Detail:
Bulletproof (Cyber Security) Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Penetration Tester (Web App)
✨Tip Number 1
Familiarise yourself with the latest trends in web application vulnerabilities and penetration testing techniques. Staying updated on OWASP Top Ten and MITRE ATT&CK frameworks will not only enhance your knowledge but also demonstrate your commitment to the role during interviews.
✨Tip Number 2
Engage with the cybersecurity community by participating in forums, attending webinars, or joining local meetups. Networking with professionals in the field can provide valuable insights and potentially lead to referrals for job openings at companies like us.
✨Tip Number 3
Consider contributing to open-source security projects or writing blogs about your findings in penetration testing. This not only showcases your skills but also helps build your personal brand, making you a more attractive candidate for our team.
✨Tip Number 4
Prepare for technical interviews by practising common penetration testing scenarios and challenges. Being able to demonstrate your problem-solving skills and technical expertise in real-time will set you apart from other candidates when applying through our website.
We think you need these skills to ace Penetration Tester (Web App)
Some tips for your application 🫡
Tailor Your CV: Make sure your CV highlights relevant experience in penetration testing, especially in web applications. Include specific projects or roles that demonstrate your skills in vulnerability assessments and report writing.
Craft a Strong Cover Letter: Write a cover letter that showcases your passion for cybersecurity and your understanding of the role. Mention your familiarity with frameworks like OWASP and MITRE ATT&CK, and how your skills align with the company's needs.
Showcase Technical Skills: In your application, emphasise your technical skills, such as programming or scripting abilities, and any relevant security qualifications. Be specific about the tools and technologies you are proficient in.
Prepare for Reporting: Since the role involves producing reports, consider including a sample of your previous work or a brief description of your reporting style. Highlight your ability to communicate complex technical information clearly and concisely.
How to prepare for a job interview at Bulletproof (Cyber Security)
✨Showcase Your Technical Skills
Be prepared to discuss your experience with web, API, and mobile penetration testing. Highlight specific projects you've worked on and the tools you used, as well as any relevant security qualifications like OSCP or CREST CRT.
✨Communicate Clearly
Since you'll need to produce both technical and non-technical reports, practice explaining complex concepts in simple terms. This will demonstrate your ability to communicate effectively with clients and team members.
✨Demonstrate Problem-Solving Abilities
Prepare to discuss how you've approached vulnerability assessments and remediation in the past. Use examples that showcase your analytical skills and your ability to think laterally when faced with challenges.
✨Research the Company and Its Services
Familiarise yourself with Bulletproof's offerings and recent developments in the cyber security field. Being knowledgeable about their services will show your genuine interest in the role and help you tailor your responses during the interview.