Senior Penetration Tester in Lisburn
Senior Penetration Tester

Senior Penetration Tester in Lisburn

Lisburn Full-Time 60000 - 80000 £ / year (est.) No home office possible
C

At a Glance

  • Tasks: Secure IoT and SaaS ecosystems through penetration testing and vulnerability management.
  • Company: Global tech leader focused on innovative solutions across various industries.
  • Benefits: Competitive salary, flexible working, and opportunities for professional growth.
  • Other info: Collaborative culture that values innovation and continuous learning.
  • Why this job: Join a dynamic team to protect cutting-edge technology and make a real difference.
  • Qualifications: 4+ years in security roles with expertise in IoT and SaaS platforms.

The predicted salary is between 60000 - 80000 £ per year.

Camlin is a global technology leader that operates with the vision of bringing revolutionary products to life for a wide range of industries, including power and rail, and also has interests in a number of R&D projects in a variety of scientific sectors. At Camlin we believe in high quality engineering and design, allowing us to develop market leading products and services. In short, we love creating value for our customers by solving difficult problems. As of now, Camlin operates in over 20 countries worldwide.

As a Penetration Tester (SaaS and IoT) at Camlin, you will be a key person in the defence of our IoT and SaaS ecosystem. This is a hybrid offensive and defensive role where you will secure everything from "IoT to Cloud." You will partner with Engineering, QA, and DevSecOps to validate security is built into the release process. We are looking for a technical expert who is pro-active in identifying exploitable vulnerabilities with the ability to collaborate and communicate with stakeholders to provide a satisfactory resolution.

Key Responsibilities
  • SaaS Security Testing
  • Web & API Penetration Testing: Conduct manual and automated testing of SaaS platforms and backend APIs against the OWASP Top 10 and API Security Top 10.
  • Cloud Infrastructure Review: Assess AWS/Azure environments for misconfigurations, IAM over-privileging, and container security vulnerabilities.
  • Vulnerability Management: Simulate real-world cyberattacks to identify weaknesses in SaaS infrastructures before exploitation.
  • Advanced IoT & Device Security Testing
  • Platform Level – Embedded Web-applications
  • Device Interface Testing: USB, Ethernet, Serial (UART/RS232/RS485).
  • Radio Frequency (RF) & Wireless Security: Standard Comms Protocols e.g. WiFi, Bluetooth.
  • Cryptographic Verification: Ensuring latest cryptographic protocols and secure configuration.
  • Compliance Alignment: Validate products against international standards including IEC 62443-4-1/4-2, the EU Cyber Resiliency Act (CRA), and the Radio Equipment Directive (RED).
  • Secure SDLC Integration & Red Teaming
  • Design & Architecture: Collaborate with Product and Engineering teams to embed security controls during the design phase, providing expert guidance on secure architecture.
  • Automated Testing: Collaborate on SAST, DAST, and SCA tools (e.g., Snyk, Checkmarx, Burp Suite) within CI/CD pipelines.
  • Remediation Support: Document findings in clear technical reports and provide developers with actionable code-level recommendations.
  • RED Teaming
  • Documentation & Reporting: Create, update, and maintain tickets related to security findings and testing outcomes. Produce clear technical documentation, including assessment reports, remediation guidance, and architectural security recommendations.

4+ years in a technical security role (Penetration Tester, AppSec Engineer, or Security-focused Developer). Proven expertise in testing both hardware/firmware (IoT) and web-based platforms (SaaS). Scripting Proficiency: Ability to automate tasks using Python, Bash, or similar. Tooling Mastery: Expertise with Burp Suite, Metasploit, Nmap, and hardware-specific tools (Ghidra, Frida, Objection). Certifications: OSCP, CREST (CRT/CCT), or GPEN (highly regarded).

Nice To Have But Not Essential

  • Deep understanding of Linux (Yocto)/Windows internals and modern application architectures.
  • Experience with peripheral standards (I2C, SPI, PCI, PCIe, RS422, RS485, RS232, SATA, PATA, MMC).
  • Familiarity with Agile methodologies and DevSecOps practices.
  • Working knowledge of security standards (OWASP, NIST, ISO 27001).
  • AWS Security Toolchain.

Our Values

  • We work together
  • We believe in people
  • We won’t accept the ‘way it has always been done’
  • We listen to learn
  • We’re trying to do the right thing

Equal Employment Opportunity Statement: Individuals seeking employment at Camlin are considered without regards to race, colour, religion, national origin, age, sex, marital states, ancestry, physical or mental disability, gender identity or sexual orientation.

Senior Penetration Tester in Lisburn employer: Camlin Group

At Camlin, we pride ourselves on being a global technology leader that fosters a collaborative and innovative work culture. As a Senior Penetration Tester, you will not only play a crucial role in securing our cutting-edge IoT and SaaS products but also benefit from extensive employee growth opportunities and a commitment to high-quality engineering. With a presence in over 20 countries, we offer a dynamic environment where your contributions are valued, and you can thrive both personally and professionally.
C

Contact Detail:

Camlin Group Recruiting Team

StudySmarter Expert Advice 🤫

We think this is how you could land Senior Penetration Tester in Lisburn

✨Tip Number 1

Network like a pro! Reach out to folks in the industry, attend meetups, and connect with current Camlin employees on LinkedIn. A friendly chat can sometimes lead to opportunities that aren’t even advertised!

✨Tip Number 2

Show off your skills! Create a portfolio showcasing your penetration testing projects or any relevant work. This gives you a chance to demonstrate your expertise beyond just words on a CV.

✨Tip Number 3

Prepare for the interview by brushing up on your technical knowledge and soft skills. Be ready to discuss real-world scenarios and how you’ve tackled security challenges in the past. Camlin loves problem solvers!

✨Tip Number 4

Don’t forget to apply through our website! It’s the best way to ensure your application gets seen by the right people. Plus, it shows you’re genuinely interested in joining the Camlin team!

We think you need these skills to ace Senior Penetration Tester in Lisburn

Penetration Testing
SaaS Security Testing
Web & API Penetration Testing
Cloud Infrastructure Review
Vulnerability Management
IoT Security Testing
Device Interface Testing
Radio Frequency Security
Cryptographic Verification
Compliance Alignment
Secure SDLC Integration
Automated Testing
Scripting Proficiency (Python, Bash)
Tooling Mastery (Burp Suite, Metasploit, Nmap)
Certifications (OSCP, CREST, GPEN)

Some tips for your application 🫡

Tailor Your CV: Make sure your CV is tailored to the Senior Penetration Tester role. Highlight your experience with SaaS and IoT security, and don’t forget to mention any relevant certifications like OSCP or CREST. We want to see how your skills align with what we’re looking for!

Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Use it to explain why you’re passionate about security and how your background makes you a perfect fit for Camlin. We love hearing about your problem-solving skills and how you’ve tackled challenges in the past.

Showcase Your Technical Skills: In your application, be sure to showcase your technical expertise. Mention specific tools you’ve used, like Burp Suite or Metasploit, and any scripting languages you’re proficient in. We’re looking for someone who can hit the ground running!

Apply Through Our Website: We encourage you to apply through our website for the best chance of getting noticed. It’s super easy, and you’ll be able to submit all your documents in one go. Plus, it helps us keep track of your application better!

How to prepare for a job interview at Camlin Group

✨Know Your Stuff

Make sure you brush up on your technical skills, especially around penetration testing for SaaS and IoT. Familiarise yourself with the OWASP Top 10 and API Security Top 10, as these are crucial for the role. Being able to discuss specific vulnerabilities and how to mitigate them will show that you're not just knowledgeable but also proactive.

✨Showcase Your Collaboration Skills

Since this role involves working closely with Engineering, QA, and DevSecOps teams, be prepared to discuss your experience in cross-functional collaboration. Share examples of how you've successfully communicated security findings and worked with others to implement solutions. This will highlight your ability to fit into their team-oriented culture.

✨Prepare for Real-World Scenarios

Expect to be asked about real-world cyberattack simulations you've conducted. Be ready to explain your approach to vulnerability management and how you’ve identified weaknesses in SaaS infrastructures. This practical knowledge will demonstrate your hands-on experience and problem-solving skills.

✨Get Familiar with Their Tools

Camlin uses a variety of tools like Burp Suite, Metasploit, and Snyk. If you have experience with these or similar tools, make sure to mention it. If not, take some time to learn the basics of these tools so you can speak confidently about them during the interview. Showing that you're tool-savvy will give you an edge.

Senior Penetration Tester in Lisburn
Camlin Group
Location: Lisburn

Land your dream job quicker with Premium

You’re marked as a top applicant with our partner companies
Individual CV and cover letter feedback including tailoring to specific job roles
Be among the first applications for new jobs with our AI application
1:1 support and career advice from our career coaches
Go Premium

Money-back if you don't land a job in 6-months

>