Penetration Tester in Lisburn

Penetration Tester in Lisburn

Lisburn Full-Time 60000 - 80000 £ / year (est.) No working from home possible
C

At a Glance

  • Tasks: Secure IoT and SaaS ecosystems through penetration testing and vulnerability management.
  • Company: Join Camlin, a global tech leader innovating across industries.
  • Benefits: Hybrid work model, competitive salary, and opportunities for professional growth.
  • Other info: Collaborative culture focused on innovation and continuous learning.
  • Why this job: Make a real impact by defending cutting-edge technology against cyber threats.
  • Qualifications: 4 years in security roles with expertise in IoT and SaaS testing.

The predicted salary is between 60000 - 80000 £ per year.

About Camlin

Camlin is a global technology leader that operates with the vision of bringing revolutionary products to life for a wide range of industries, including power and rail, and also has interests in a number of R&D projects in a variety of scientific sectors. At Camlin we believe in high quality engineering and design, allowing us to develop market leading products and services. In short, we love creating value for our customers by solving difficult problems. As of now, Camlin operates in over 20 countries worldwide.

About the Role

As a Penetration Tester (SaaS and IoT) at Camlin, you will be a key person in the defence of our IoT and SaaS ecosystem. This is a hybrid offensive and defensive role where you will secure everything from "IoT to Cloud." You will partner with Engineering, QA, and DevSecOps to validate security is built into the release process. We are looking for a technical expert who is pro-active in identifying exploitable vulnerabilities with the ability to collaborate and communicate with stakeholders to provide a satisfactory resolution.

Key Responsibilities

  • SaaS Security Testing
  • Web & API Penetration Testing: Conduct manual and automated testing of SaaS platforms and backend APIs against the OWASP Top 10 and API Security Top 10.
  • Cloud Infrastructure Review: Assess AWS/Azure environments for misconfigurations, IAM over-privileging, and container security vulnerabilities.
  • Vulnerability Management: Simulate real-world cyberattacks to identify weaknesses in SaaS infrastructures before exploitation.
  • Advanced IoT & Device Security Testing
  • Linux OS - CIS Benchmark Validation
  • Platform Level - Embedded Web-applications
  • Device Interface Testing: USB, Ethernet, Serial (UART/RS232/RS485).
  • Radio Frequency (RF) & Wireless Security: Standard Comms Protocols e.g. WiFi, Bluetooth.
  • Cryptographic Verification: Ensuring latest cryptographic protocols and secure configuration.
  • Compliance Alignment: Validate products against international standards including IEC, the EU Cyber Resiliency Act (CRA), and the Radio Equipment Directive (RED).
  • Secure SDLC Integration & Red Teaming
  • Design & Architecture: Collaborate with Product and Engineering teams to embed security controls during the design phase, providing expert guidance on secure architecture.
  • Automated Testing: Collaborate on SAST, DAST, and SCA tools (e.g., Snyk, Checkmarx, Burp Suite) within CI/CD pipelines.
  • Remediation Support: Document findings in clear technical reports and provide developers with actionable code-level recommendations.
  • RED Teaming Documentation & Reporting
  • Create, update, and maintain tickets related to security findings and testing outcomes.
  • Produce clear technical documentation, including assessment reports, remediation guidance, and architectural security recommendations.

Essential Requirements

  • 4 years in a technical security role (Penetration Tester, AppSec Engineer, or Security-focused Developer).
  • Proven expertise in testing both hardware/firmware (IoT) and web-based platforms (SaaS).
  • Scripting Proficiency: Ability to automate tasks using Python, Bash, or similar.
  • Tooling Mastery: Expertise with Burp Suite, Metasploit, Nmap, and hardware-specific tools (Ghidra, Frida, Objection).
  • Certifications: OSCP, CREST (CRT/CCT), or GPEN (highly regarded).

Nice to have but not essential

  • Deep understanding of Linux (Yocto)/Windows internals and modern application architectures.
  • Experience with peripheral standards (I2C, SPI, PCI, PCIe, RS422, RS485, RS232, SATA, PATA, MMC).
  • Familiarity with Agile methodologies and DevSecOps practices.
  • Working knowledge of security standards (OWASP, NIST, ISO 27001).
  • AWS Security Toolchain.

Our Values

  • We work together
  • We believe in people
  • We won't accept the 'way it has always been done'
  • We listen to learn
  • We're trying to do the right thing

Equal Employment Opportunity Statement

Individuals seeking employment at Camlin are considered without regards to race, colour, religion, national origin, age, sex, marital states, ancestry, physical or mental disability, gender identity or sexual orientation.

To be considered for this role you will be redirected to and must complete the application process on our careers page. To start the process, click the Apply button below to Login/Register.

Penetration Tester in Lisburn employer: Camlin

At Camlin, we pride ourselves on being a global technology leader that fosters a collaborative and innovative work culture. As a Penetration Tester, you will not only play a crucial role in securing our cutting-edge IoT and SaaS solutions but also benefit from extensive employee growth opportunities and a commitment to high-quality engineering. With a focus on teamwork and continuous learning, Camlin offers a dynamic environment where your contributions are valued and impactful.

C

Contact Details:

Camlin Recruitment Team

StudySmarter Expert Advice🤫

We think this is how you could land Penetration Tester in Lisburn

Tip Number 1

Network like a pro! Reach out to folks in the industry, attend meetups, and connect with current Camlin employees on LinkedIn. A friendly chat can sometimes lead to opportunities that aren’t even advertised!

Tip Number 2

Show off your skills! Create a portfolio showcasing your penetration testing projects, including any cool scripts or tools you've developed. This will give you an edge and demonstrate your hands-on experience.

Tip Number 3

Prepare for the interview by brushing up on your technical knowledge and soft skills. Be ready to discuss your past experiences and how you’ve tackled security challenges. Remember, they want to see how you think!

Tip Number 4

Don’t forget to apply through our website! It’s the best way to ensure your application gets seen. Plus, it shows you’re genuinely interested in joining the Camlin team. Let’s get you that job!

We think you need these skills to ace Penetration Tester in Lisburn

SaaS Security Testing
Web & API Penetration Testing
Cloud Infrastructure Review
Vulnerability Management
Advanced IoT & Device Security Testing
Linux OS - CIS Benchmark Validation
Device Interface Testing

Some tips for your application 🫡

Tailor Your CV:Make sure your CV is tailored to the Penetration Tester role. Highlight your relevant experience in SaaS and IoT security, and don’t forget to mention any specific tools or certifications that match what we’re looking for.

Craft a Compelling Cover Letter:Your cover letter is your chance to shine! Use it to explain why you’re passionate about security and how your skills can help us at Camlin. Be sure to mention any projects or experiences that showcase your expertise.

Show Off Your Technical Skills:In your application, be sure to highlight your technical skills, especially in scripting and the tools you’ve mastered. We want to see your hands-on experience with things like Burp Suite and Metasploit, so don’t hold back!

Apply Through Our Website:Remember, the best way to apply is through our careers page. It’s super easy and ensures your application gets to the right people. So, hit that Apply button and let’s get started on this journey together!

How to prepare for a job interview at Camlin

Know Your Tools Inside Out

Make sure you’re well-versed in the tools mentioned in the job description, like Burp Suite, Metasploit, and Nmap. Practise using them in real-world scenarios so you can confidently discuss your experience during the interview.

Brush Up on Security Standards

Familiarise yourself with OWASP, NIST, and ISO 27001 standards. Be prepared to explain how these frameworks apply to your work and how you’ve used them in past projects to enhance security.

Demonstrate Your Problem-Solving Skills

Camlin values innovative solutions to complex problems. Prepare examples of how you’ve identified vulnerabilities and implemented effective remediation strategies in previous roles. This will showcase your proactive approach.

Collaborate and Communicate

Since this role involves working with various teams, think of examples where you successfully collaborated with engineers or developers. Highlight your communication skills and how you’ve provided actionable recommendations in the past.