Penetration Tester (Principal Consultant)
Penetration Tester (Principal Consultant)

Penetration Tester (Principal Consultant)

Leeds Full-Time 60000 - 80000 Β£ / year (est.) No home office possible
C

At a Glance

  • Tasks: Lead offensive security projects and manage high-performing teams in cybersecurity.
  • Company: Cognisys is a leading cybersecurity firm known for innovation and customer service.
  • Benefits: Enjoy remote work options, professional development budgets, and wellness resources.
  • Why this job: Join a collaborative team making a real impact in cybersecurity with exciting projects.
  • Qualifications: 7+ years in cybersecurity, expertise in penetration testing, and strong client engagement skills.
  • Other info: Diverse candidates are encouraged to apply; reasonable adjustments available.

The predicted salary is between 60000 - 80000 Β£ per year.

Location: Leeds (hybrid) / UK (remote) Salary: up to Β£80K (DOE) Are you ready to make an impact in the fast-paced world of cybersecurity? Cognisys is growing rapidly, and we’re looking for a Penetration Tester (Principal Consultant) to join our team during this exciting period of innovation and expansion. Cognisys is a leading cybersecurity company specialising in Penetration Testing, GRC Consulting, and Managed Security services. We pride ourselves on our customer service, forward-thinking approach, and commitment to excellence. Our small but mighty team works with some of the best-known companies in the world and covers over 30 countries worldwide! About The Role As a Penetration Tester (Principal Consultant), you will be key in driving commercial success, managing high-performing teams, and delivering cutting-edge offensive security projects. This role is ideal for a technical leader with deep expertise in red teaming and cloud security, coupled with a passion for business growth and client engagement. If you are a seasoned cybersecurity professional with a passion for offensive security, team leadership, and business growth, we want to hear from you! Key Responsibilities Commercial & Client Engagement: Act as a primary technical contact for key accounts, ensuring strong client relationships and project success. Lead pre-sales engagements, scope projects, and develop Statements of Work (SOWs) that align with client needs. Effectively communicate complex security risks and mitigation strategies to technical and non-technical stakeholders. Represent Cognisys Group at industry events and conferences, demonstrating thought leadership and engaging with the cybersecurity community. Technical Leadership & Delivery Plan, execute, and oversee advanced Red Team Assessments, cloud security assessments, and penetration testing engagements. Simulate real-world attack scenarios to identify vulnerabilities across networks, cloud environments, applications, and infrastructure. Lead the development and execution of multi-stage attack simulations, leveraging advanced offensive security techniques. Evaluate security controls, incident response processes, and overall security posture, providing actionable remediation guidance. Research and stay ahead of evolving threats, techniques, and security tools to improve methodologies continuously. Team Management & Development Manage, mentor, and develop a team of security consultants, fostering technical excellence and career growth. Conduct performance evaluations, set professional development goals, and provide guidance on technical engagements. Oversee the quality of penetration testing and red teaming reports, ensuring clarity, accuracy, and actionable insights. Drive knowledge-sharing initiatives within the team, promoting collaboration and continuous learning. Innovation & Research (optional) Contribute to the development of offensive security tools, methodologies, and frameworks to enhance testing capabilities. Publish security advisories, blogs, and research papers on emerging threats, vulnerabilities, and attack techniques. Participate in the creation and/or oversee the delivery of security training courses for internal teams and external audiences. Essential Qualifications & Experience 7+ years of experience in cybersecurity, with a strong focus on penetration testing, red teaming, and cloud security. 4+ years of experience in client-facing consulting roles, demonstrating strong business acumen and stakeholder management. Expertise in red teaming methodologies, including social engineering, network exploitation, and lateral movement techniques. Deep understanding of cloud security, including AWS, Azure, and GCP, with hands-on experience in assessing cloud environments. Proficiency in offensive security tools such as Cobalt Strike, Metasploit, PowerShell Empire, and custom exploit development. Strong programming and scripting skills in Python, PowerShell, or Bash to develop and automate attack techniques. Personal GitHub repo would be required to be shared before the Interview showcasing your development skills. Knowledge of MITRE ATT&CK framework, adversary simulation techniques, and threat hunting strategies. Ability to articulate security findings effectively to both technical teams and executive leadership. Preferred Qualifications & Skills Certifications such as OSCP, OSCE, CCT, CRTO, or Cloud Security Specialty. CCT is a must. Experience leading APT-style engagements and simulating sophisticated cyber threats. Public speaking experience at cybersecurity conferences and events. What We Offer A dynamic and supportive work environment where customer care and innovation drive everything we do. A dedicated budget for your professional development and training in cyber security and sales EMI Employee Share Schemes, providing the opportunity to share in the success of the company Access to an Employee Wellness Hub supported by Kara Connect for health and well-being resources Frequent team social events and celebrations 22 days holiday rising to 25, plus a birthday holiday Referral bonus scheme up to Β£2,000! Why Join Us? At Cognisys, you will be part of a collaborative and innovative team that values your input and shares support. You\’ll have the opportunity to work on challenging projects that make a real impact on our clients. If you are driven by a desire to protect and innovate, we’d love to hear from you! We\’re not just about the work; we\’re about our people. Join a team where innovation is celebrated, and your contributions are valued. We foster a collaborative environment where fresh ideas thrive, and professional growth is encouraged. Applications Please feel free to reach out to Dom, our Head of Talent Acquisition if you would like any further information, to discuss accessibility requirements, or if you require this information provided in an alternative format – hiring@cognisys.co.uk We welcome applications from candidates from diverse backgrounds and can make reasonable adjustments to accommodate individual needs. NO RECRUITMENT AGENCIES, PLEASE #J-18808-Ljbffr

C

Contact Detail:

Cognisys Recruiting Team

hiring@cognisys.co.uk

StudySmarter Expert Advice 🀫

We think this is how you could land Penetration Tester (Principal Consultant)

✨Tip Number 1

Network with professionals in the cybersecurity field, especially those who work in penetration testing or red teaming. Attend industry events and conferences where Cognisys might be present to make connections and learn more about their work culture.

✨Tip Number 2

Showcase your technical skills by contributing to open-source projects or creating your own tools related to offensive security. Having a personal GitHub repository that demonstrates your coding abilities can set you apart from other candidates.

✨Tip Number 3

Prepare to discuss your experience in client-facing roles during interviews. Highlight specific examples of how you've successfully managed stakeholder relationships and delivered on project goals, as this is crucial for the role at Cognisys.

✨Tip Number 4

Stay updated on the latest trends and threats in cybersecurity. Being knowledgeable about current vulnerabilities and attack techniques will not only help you in interviews but also demonstrate your passion for the field and commitment to continuous learning.

We think you need these skills to ace Penetration Tester (Principal Consultant)

Penetration Testing
Red Teaming Methodologies
Cloud Security (AWS, Azure, GCP)
Client Engagement
Technical Leadership
Offensive Security Tools (Cobalt Strike, Metasploit, PowerShell Empire)
Programming and Scripting (Python, PowerShell, Bash)
MITRE ATT&CK Framework
Threat Hunting Strategies
Stakeholder Management
Communication Skills
Team Management and Development
Performance Evaluation
Knowledge Sharing
Public Speaking

Some tips for your application 🫑

Tailor Your CV: Make sure your CV highlights relevant experience in penetration testing, red teaming, and cloud security. Use specific examples that demonstrate your expertise and align with the job description provided by Cognisys.

Craft a Compelling Cover Letter: Write a cover letter that showcases your passion for cybersecurity and your leadership skills. Mention how your experience aligns with the responsibilities of the Penetration Tester (Principal Consultant) role and express your enthusiasm for contributing to Cognisys.

Showcase Technical Skills: Include a section in your application that details your proficiency with offensive security tools and programming languages. Highlight any relevant projects or contributions to your personal GitHub repository that demonstrate your technical capabilities.

Prepare for Interviews: Anticipate questions related to your experience in client engagement and team management. Be ready to discuss your approach to leading penetration testing projects and how you communicate complex security risks to various stakeholders.

How to prepare for a job interview at Cognisys

✨Showcase Your Technical Expertise

As a Penetration Tester, it's crucial to demonstrate your deep understanding of red teaming and cloud security. Be prepared to discuss specific tools you've used, such as Cobalt Strike or Metasploit, and share examples of how you've applied them in real-world scenarios.

✨Prepare for Client Engagement Scenarios

Since this role involves significant client interaction, practice articulating complex security concepts in a way that non-technical stakeholders can understand. Think of examples where you've successfully communicated risks and solutions to clients.

✨Highlight Leadership Experience

This position requires managing and mentoring a team, so be ready to discuss your leadership style and experiences. Share instances where you've guided a team through challenging projects or helped develop their skills.

✨Demonstrate Continuous Learning

Cybersecurity is an ever-evolving field, so show your commitment to staying updated on the latest threats and techniques. Mention any recent research, courses, or certifications you've pursued, and how they have influenced your work.

Penetration Tester (Principal Consultant)
Cognisys
C
Similar positions in other companies
UK’s top job board for Gen Z
discover-jobs-cta
Discover now
>