At a Glance
- Tasks: Conduct security testing and provide expert assessments for a leading law firm.
- Company: Join a top-tier law firm focused on cybersecurity excellence.
- Benefits: Competitive salary, remote work options, and professional growth opportunities.
- Why this job: Make a real difference in protecting systems while advancing your career.
- Qualifications: OSCP certification and strong knowledge of VAPT tools required.
- Other info: Dynamic role with a focus on ethical hacking and security best practices.
Hawksworth are now recruiting for a Security Vulnerability and Penetration Testing Engineer for a Permanent opportunity with a leading Law firm. Salary depending on suitability and experience, but the range is between £80,000 and £100,000 base salary.
Location: Belfast preferred. Alternatively Remote
Main responsibilities:
- Perform security penetration testing of the Firm’s systems, platforms, and applications
- Serve as a Subject Matter Expert (SME) for the VAPT function
- Serve as the system owner for common VAPT toolsets, platforms, and processes
- Provide technical assessment reports that are easily understandable by the target audience and include practical and reasonable recommendations based upon sound risk management principles
Required skills and experience:
- A Computer Science bachelor’s degree or substantially equivalent experience
- CISSP is required
- GIAC GPEN or GWAPT is preferred
- Offensive Security OSCP is required
- Commanding knowledge of VAPT concepts and best practices, including the requirements for WhiteHat/ethical hacking
- Extensive experience with common automated VAPT tools such as Nessus, Appscan, Burp Suite, Nipper, and Trustwave
- Authoritative mastery of OWASP, CVE, general security controls, and other foundational topics, such as the latest application and operating system exploits
- 3 to 5 years of relevant experience in Web Application penetration testing or 2 years relevant experience plus 3+ years overall IT experience
- Can create/write report, articulate and explain technical findings to non-technical people
- CISP and Offensive Security OSP certifications are required
- Experience in VAPT Tools such as Nessus, Appscan, Burp Suite, Nipper, and Trustwave and Expert in common attack tools and frameworks such as Wireshark, Kali, Metasploit
If you have the above skills and experience and are looking for your next opportunity, please apply now!
Security Vulnerability & Penetration Testing Engineer’ (OSCP) - £80K - £100K - UK employer: Hawksworth
Contact Detail:
Hawksworth Recruiting Team
Some tips for your application 🫡
Tailor Your CV: Make sure your CV highlights your relevant experience and skills that match the job description. We want to see how your background aligns with the role of a Security Vulnerability & Penetration Testing Engineer, so don’t hold back on showcasing your OSCP and VAPT expertise!
Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Use it to explain why you’re passionate about security testing and how your experience makes you the perfect fit for our team. We love hearing personal stories that connect your skills to the role.
Showcase Your Technical Skills: When detailing your experience, be specific about the tools and methodologies you've used. Mention your familiarity with Nessus, Burp Suite, and other VAPT tools. We want to know how you’ve applied your knowledge in real-world scenarios!
Apply Through Our Website: We encourage you to apply directly through our website. It’s the best way for us to receive your application and ensures you’re considered for the role. Plus, it shows you’re keen on joining our team at Hawksworth!
How to prepare for a job interview at Hawksworth
✨Know Your Tools Inside Out
Make sure you’re well-versed in the VAPT tools mentioned in the job description, like Nessus and Burp Suite. Be ready to discuss your experience with these tools and how you've used them in past projects.
✨Prepare for Technical Questions
Expect to face technical questions that test your knowledge of OWASP, CVE, and ethical hacking principles. Brush up on these topics and be prepared to explain complex concepts in simple terms, as you may need to communicate findings to non-technical stakeholders.
✨Showcase Your Reporting Skills
Since creating understandable reports is a key part of the role, prepare examples of past reports you've written. Highlight how you tailored your findings for different audiences, ensuring clarity and actionable recommendations.
✨Demonstrate Your Passion for Security
Let your enthusiasm for cybersecurity shine through during the interview. Share any personal projects, ongoing learning, or community involvement related to security. This shows you're not just qualified but genuinely interested in the field.