At a Glance
- Tasks: Join our Global Cybersecurity team to conduct technical assessments and enhance security testing.
- Company: Deloitte, a leading global firm focused on technology and innovation.
- Benefits: Hybrid working, professional development, and a supportive culture that values diversity.
- Why this job: Make a real impact in cybersecurity while collaborating with diverse teams worldwide.
- Qualifications: Experience in penetration testing and strong communication skills are essential.
- Other info: Opportunities for continuous learning and career growth in a dynamic environment.
The predicted salary is between 36000 - 60000 £ per year.
Birmingham, Bristol, Cardiff, Manchester, Reading, St Albans
Business Line
Enabling Functions
Job Type
Permanent / FTC
Date published
04-Nov-2025
20597
Connect to your Industry
Deloitte Technology works at the forefront of technology development and processes to support and protect Deloitte around the world. In this truly global environment, we operate not in \”what is\” but rather \”what can be\” to help Deloitte deliver and connect with its clients, its communities, and one another in ways not previously conceived.
Connect to your career at Deloitte
Deloitte drives progress. Using our vast range of expertise, we help our clients\’ become leaders wherever they choose to compete. To do this, we invest in outstanding people. We build teams of future thinkers, with diverse talents and backgrounds, and empower them all to reach for and achieve more.
What brings us all together at Deloitte?It’show we approach the thousands of decisions we make everyday. How we behave, our beliefs and our attitudes. In other words: our values. Whatever we do, whereverwe arein the world, welead the way,serve with integrity, take care of each other ,fosterinclusion, andcollaborate for measurable impact. These five shared values lead every decision wemake and action we take, guiding us to deliver impact how and where it mattersmost .
Connect to your opportunity
As part of the Global Cybersecurity team, responsibilities will be to work with customers to deliver technical assessments against a broad range of services. You will use your strong communication skills to provide consultative guidance to customers on findings identified, how to effectively engage services and the available capabilities.
In this role you will:
- Evolve and enhance approach for managing customer requests and queries for technical testing
- Support the integration of testing analysis across disciplines to improve testing exercises and improve end product to our customers
- Assist in technical scoping of security testing activities
- Curate and assessment of vulnerability data (across multiple platforms/tools)
- Perform security testing activities:
- SAST/DAST
- Software/Web Application/Web Services penetration testing
- Network Penetration Testing
- Mobile Application Penetration Testing
- Thick Client Penetration Testing
- Architecture Security Analysis and Threat Modeling as required
- Provide technical guidance in supporting member firms in conducting necessary remedial actions and responding to client vulnerability questions or disclosures
- Help develop tooling deployment and relevant scanning configurations to enhance practical testing processes
- Operate in the wider organization to drive risk reduction goals and in the continuous improvement vulnerability related service
Connect to your skills and professional experience
- Proven experience working in a professional environment preferably as part of an operational security function (Penetration Testing)
- Experience in any of the following platforms would be highly beneficial; Burp or OWASP ZAP, Kali Linux, Nmap, Metasploit, Postman, Gobuster, Dirbuster, SQLMap
- Experience with OWASP Top Ten
- Familiarity with software security weakness and vulnerabilities
- Demonstrated experience working with diverse stakeholders, preferably on a global multi-national basis
- Bachelor’s degree (or equivalent) in a business or cyber security domain; or Candidates with relevant work experience in an appropriate field
Preferred:
- Ability to communicate strategic information security topics, policies, and standards as well as risk-related concepts to technical and nontechnical audiences
- Threat modeling experience
- Scripting experience (Power shell, Python)
- Sound knowledge of common infrastructure and web application vulnerabilities and common vulnerability categorizations such as OWASP, CVSS
- Knowledge of ticketing and tracking tools such as Service Now – Security Operations
Connect to your business – Enabling Functions
Collaboration is central to everything we do at Deloitte. From IT to HR, marketing and more, our teams help to support the wider business in everything they do. Bringing your individual skills and specialist knowledge, you can make a far-reaching impact. Come join us.
Personal independence
Regulation and controls are standard practice in our industry and Deloitte is no exception. These controls provide important legal protection for both you and the firm. We are subject to a number of audit regulations, one of which requires that certain colleagues abide by specific personal independence constraints (e.g., in relation to any financial interests and employment relationships). This can mean that you and your \”Immediate Family Members\” are not permitted to hold certain financial interests (shares, funds, bonds etc.) with audit clients of the firm, and also prohibitions on certain employment relationships (e.g., you are not permitted to hold a secondary employment role with SEC audit clients of the firm whilst being employed by the firm). The recruitment team will provide further detail as you progress through the recruitment process or you can contact the Independence team upon request.
Connect with your colleagues
\”Everyone at Deloitte builds relationships with their peers and puts in effort to get to know one another, making the work more enjoyable.\” – Deloitte Employee
Our hybrid working policy
You’ll be based in one of our UK Offices with hybrid working.
At Deloitte we understand the importance of balancing your career alongside your home life. That’s why we’ll support you to work flexibly through our hybrid working policy. Depending on the requirements of your role, you’ll have the opportunity to work in your local office, virtual collaboration spaces, client sites and remotely. You’ll get the chance to meet face to face when needed, while you collaborate and learn from colleagues, share your experiences, and build the relationships that will fuel your career and prioritise your wellbeing. Please check with your recruiter for the specific working requirements that may apply for your role.
Our commitment to you
Making an impact is more than just what we do: it’s why we’re here. So we work hard to create an environment where you can experience a purpose you believe in, the freedom to be you, and the capacity to go further than ever before.
We want you. The true you. Your own strengths, perspective and personality. So we’re nurturing a culture where everyone belongs, feels supported and heard, and is empowered to make a valuable, personal contribution. You can be sure we’ll take your wellbeing seriously, too. Because it’s only when you’re comfortable and at your best that you can make the kind of impact you, and we, live for.
Your expertise is our capability, so we’ll make sure it never stops growing. Whether it’s from the complex work you do, or the people you collaborate with, you’ll learn every day. Through world-class development, you’ll gain invaluable technical and personal skills. Whatever your level, you’ll learn how to lead.
Connect to your next step
A career at Deloitte is an opportunity to develop in any direction you choose. Join us and you’ll experience a purpose you can believe in and an impact you can see. You’ll be free to bring your true self to work every day. And you’ll never stop growing, whatever your level.
Discover more reasons to connect with us, our people and purpose-driven culture at deloitte.co.uk/careers
#J-18808-Ljbffr
Penetration Tester – Assistant Manager employer: Deloitte LLP
Contact Detail:
Deloitte LLP Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Penetration Tester – Assistant Manager
✨Tip Number 1
Network like a pro! Reach out to folks in the industry on LinkedIn or at local meetups. You never know who might have the inside scoop on job openings or can put in a good word for you.
✨Tip Number 2
Prepare for interviews by practising common questions and scenarios related to penetration testing. Get comfortable explaining your thought process and how you tackle security challenges.
✨Tip Number 3
Showcase your skills! If you’ve got a portfolio of projects or contributions to open-source tools, make sure to highlight them. It’s a great way to demonstrate your expertise beyond just words.
✨Tip Number 4
Don’t forget to apply through our website! It’s the best way to ensure your application gets seen by the right people. Plus, it shows you’re serious about joining the team at Deloitte.
We think you need these skills to ace Penetration Tester – Assistant Manager
Some tips for your application 🫡
Tailor Your CV: Make sure your CV is tailored to the Penetration Tester role. Highlight relevant experience, especially in operational security and penetration testing. Use keywords from the job description to show we’re on the same page!
Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Share your passion for cybersecurity and how your skills align with our values at Deloitte. Keep it concise but impactful – we want to see your personality come through!
Showcase Your Technical Skills: Don’t forget to mention your technical skills! Whether it's your experience with tools like Burp or OWASP ZAP, or your scripting knowledge, make sure we know what you bring to the table. Be specific about your expertise!
Apply Through Our Website: We encourage you to apply through our website for a smoother process. It’s the best way to ensure your application gets into the right hands. Plus, you’ll find all the info you need about the role there!
How to prepare for a job interview at Deloitte LLP
✨Know Your Tools
Familiarise yourself with the tools mentioned in the job description, like Burp, OWASP ZAP, and Kali Linux. Being able to discuss your experience with these tools will show that you're not just a theoretical candidate but someone who can hit the ground running.
✨Understand the OWASP Top Ten
Make sure you have a solid grasp of the OWASP Top Ten vulnerabilities. Be prepared to discuss how you've encountered these in past roles and how you would address them in a penetration testing context. This shows your practical knowledge and readiness for the role.
✨Communicate Clearly
Since the role involves working with diverse stakeholders, practice explaining complex security concepts in simple terms. Think about examples where you've had to communicate technical information to non-technical audiences, as this will demonstrate your ability to bridge the gap between tech and business.
✨Show Your Problem-Solving Skills
Prepare to discuss specific challenges you've faced in previous penetration testing roles and how you overcame them. Use the STAR method (Situation, Task, Action, Result) to structure your answers, which will help you convey your thought process and problem-solving abilities effectively.