Penetration Tester (Principal Consultant)
Penetration Tester (Principal Consultant)

Penetration Tester (Principal Consultant)

Full-Time 48000 - 64000 Β£ / year (est.) Home office (partial)
C

At a Glance

  • Tasks: Lead offensive security projects and manage high-performing teams in cybersecurity.
  • Company: Cognisys is a leading cybersecurity firm known for innovation and customer service.
  • Benefits: Enjoy hybrid work, professional development budget, wellness resources, and team social events.
  • Why this job: Join a collaborative team making a real impact in cybersecurity with opportunities for growth.
  • Qualifications: 7+ years in cybersecurity, expertise in penetration testing, and strong client engagement skills required.
  • Other info: Share your GitHub repo showcasing your development skills before the interview.

The predicted salary is between 48000 - 64000 Β£ per year.

Location: Leeds (hybrid) / UK (remote)

Salary: up to Β£80K (DOE)

Are you ready to make an impact in the fast-paced world of cybersecurity? Cognisys is growing rapidly, and we’re looking for a Penetration Tester (Principal Consultant) to join our team during this exciting period of innovation and expansion.

Cognisys is a leading cybersecurity company specialising in Penetration Testing, GRC Consulting, and Managed Security services. We pride ourselves on our customer service, forward-thinking approach, and commitment to excellence. Our small but mighty team works with some of the best-known companies in the world and covers over 30 countries worldwide!

About the Role

As a Penetration Tester (Principal Consultant), you will be key in driving commercial success, managing high-performing teams, and delivering cutting-edge offensive security projects. This role is ideal for a technical leader with deep expertise in red teaming and cloud security, coupled with a passion for business growth and client engagement.

If you are a seasoned cybersecurity professional with a passion for offensive security, team leadership, and business growth, we want to hear from you!

Key Responsibilities:

Commercial & Client Engagement:

  • Act as a primary technical contact for key accounts, ensuring strong client relationships and project success.
  • Lead pre-sales engagements, scope projects, and develop Statements of Work (SOWs) that align with client needs.
  • Effectively communicate complex security risks and mitigation strategies to technical and non-technical stakeholders.
  • Represent Cognisys Group at industry events and conferences, demonstrating thought leadership and engaging with the cybersecurity community.

Technical Leadership & Delivery:

  • Plan, execute, and oversee advanced Red Team Assessments, cloud security assessments, and penetration testing engagements.
  • Simulate real-world attack scenarios to identify vulnerabilities across networks, cloud environments, applications, and infrastructure.
  • Lead the development and execution of multi-stage attack simulations, leveraging advanced offensive security techniques.
  • Evaluate security controls, incident response processes, and overall security posture, providing actionable remediation guidance.
  • Research and stay ahead of evolving threats, techniques, and security tools to improve methodologies continuously.

Team Management & Development:

  • Manage, mentor, and develop a team of security consultants, fostering technical excellence and career growth.
  • Conduct performance evaluations, set professional development goals, and provide guidance on technical engagements.
  • Oversee the quality of penetration testing and red teaming reports, ensuring clarity, accuracy, and actionable insights.
  • Drive knowledge-sharing initiatives within the team, promoting collaboration and continuous learning.

Essential Qualifications & Experience:

  • 7+ years of experience in cybersecurity, with a strong focus on penetration testing, red teaming, and cloud security.
  • 4+ years of experience in client-facing consulting roles, demonstrating strong business acumen and stakeholder management.
  • Expertise in red teaming methodologies, including social engineering, network exploitation, and lateral movement techniques.
  • Deep understanding of cloud security, including AWS, Azure, and GCP, with hands-on experience in assessing cloud environments.
  • Proficiency in offensive security tools such as Cobalt Strike, Metasploit, PowerShell Empire, and custom exploit development.
  • Strong programming and scripting skills in Python, PowerShell, or Bash to develop and automate attack techniques. Personal GitHub repo would be required to be shared before the Interview showcasing your development skills.
  • Knowledge of MITRE ATT&CK framework, adversary simulation techniques, and threat hunting strategies.
  • Ability to articulate security findings effectively to both technical teams and executive leadership.

Preferred Qualifications & Skills:

  • Certifications such as OSCP, OSCE, CCT, CRTO, or Cloud Security Specialty. CCT is a must.
  • Experience leading APT-style engagements and simulating sophisticated cyber threats.
  • Public speaking experience at cybersecurity conferences and events.

What We Offer

  • A dynamic and supportive work environment where customer care and innovation drive everything we do.
  • A dedicated budget for your professional development and training in cyber security and sales.
  • EMI Employee Share Schemes, providing the opportunity to share in the success of the company.
  • Access to an Employee Wellness Hub supported by Kara Connect for health and well-being resources.
  • Frequent team social events and celebrations.
  • 22 days holiday rising to 25, plus a birthday holiday.
  • Referral bonus scheme up to Β£2,000!

Why Join Us?

At Cognisys, you will be part of a collaborative and innovative team that values your input and shares support. You\’ll have the opportunity to work on challenging projects that make a real impact on our clients. If you are driven by a desire to protect and innovate, we’d love to hear from you!

We\’re not just about the work; we\’re about our people. Join a team where innovation is celebrated, and your contributions are valued. We foster a collaborative environment where fresh ideas thrive, and professional growth is encouraged.

Applications

Please feel free to reach out to Dom, our Head of Talent Acquisition if you would like any further information, to discuss accessibility requirements, or if you require this information provided in an alternative format – hiring@cognisys.co.uk

We welcome applications from candidates from diverse backgrounds and can make reasonable adjustments to accommodate individual needs.

NO RECRUITMENT AGENCIES, PLEASE

#J-18808-Ljbffr

C

Contact Detail:

Cognisys Recruiting Team

StudySmarter Expert Advice 🀫

We think this is how you could land Penetration Tester (Principal Consultant)

✨Tip Number 1

Make sure to showcase your technical leadership skills during any discussions. Highlight your experience in managing teams and delivering successful projects, as this role requires strong team management and client engagement.

✨Tip Number 2

Prepare to discuss your hands-on experience with offensive security tools and methodologies. Be ready to provide examples of how you've applied these in real-world scenarios, especially in red teaming and cloud security assessments.

✨Tip Number 3

Familiarise yourself with the latest trends and threats in cybersecurity. Being able to discuss current challenges and innovations in the field will demonstrate your commitment to staying ahead in the industry.

✨Tip Number 4

If you have public speaking experience, be sure to mention it. This role involves representing Cognisys at industry events, so showcasing your ability to communicate effectively with diverse audiences will be a plus.

We think you need these skills to ace Penetration Tester (Principal Consultant)

Penetration Testing
Red Teaming Methodologies
Cloud Security (AWS, Azure, GCP)
Client Engagement
Technical Leadership
Offensive Security Tools (Cobalt Strike, Metasploit, PowerShell Empire)
Programming and Scripting (Python, PowerShell, Bash)
MITRE ATT&CK Framework
Threat Hunting Strategies
Stakeholder Management
Performance Evaluation
Communication Skills
Public Speaking
Team Management
Business Acumen

Some tips for your application 🫑

Tailor Your CV: Make sure your CV highlights your experience in penetration testing, red teaming, and cloud security. Use specific examples that demonstrate your technical skills and client engagement experience.

Craft a Compelling Cover Letter: Write a cover letter that showcases your passion for cybersecurity and your leadership abilities. Mention how your background aligns with Cognisys's mission and values, and express your enthusiasm for the role.

Showcase Your Technical Skills: Include a link to your personal GitHub repository in your application. This should showcase your programming and scripting skills, as well as any relevant projects that demonstrate your expertise in offensive security tools.

Prepare for Interviews: Be ready to discuss your experience with real-world attack scenarios and how you communicate complex security risks. Prepare examples of how you've led teams and managed client relationships effectively.

How to prepare for a job interview at Cognisys

✨Showcase Your Technical Expertise

As a Penetration Tester, it's crucial to demonstrate your deep understanding of red teaming and cloud security. Be prepared to discuss specific tools you've used, such as Cobalt Strike or Metasploit, and share examples of how you've applied them in real-world scenarios.

✨Prepare for Client Engagement Questions

Since this role involves significant client interaction, expect questions about your experience in managing client relationships. Think of examples where you've successfully communicated complex security risks to non-technical stakeholders and how you ensured project success.

✨Highlight Leadership Experience

This position requires strong team management skills. Be ready to talk about your experience mentoring others, conducting performance evaluations, and fostering a culture of continuous learning within your team.

✨Demonstrate Your Passion for Cybersecurity

Cognisys values innovation and a proactive approach to cybersecurity. Share your thoughts on current trends in the industry, any relevant research you've conducted, and how you stay updated with evolving threats and techniques.

Penetration Tester (Principal Consultant)
Cognisys
C
Similar positions in other companies
UK’s top job board for Gen Z
discover-jobs-cta
Discover now
>