At a Glance
- Tasks: Conduct hands-on penetration tests and uncover vulnerabilities in diverse systems.
- Company: Join LSEG, a leading global financial markets infrastructure provider.
- Benefits: Enjoy competitive pay, healthcare, retirement planning, and paid volunteering days.
- Why this job: Make a real impact in cybersecurity while working with cutting-edge technologies.
- Qualifications: Experience in penetration testing and strong communication skills required.
- Other info: Be part of a dynamic team that values innovation and continuous improvement.
The predicted salary is between 43200 - 72000 £ per year.
LSEG is seeking a Senior Penetration Tester to join our internal offensive security team. This role is hands‑on and deeply technical, responsible for planning and driving penetration tests across a wide range of systems and applications. The successful candidate will be a skilled offensive security professional with a passion for uncovering vulnerabilities and improving security posture through thorough testing and teamwork.
Key Responsibilities
- Conduct in‑depth penetration tests on applications, infrastructure, and cloud environments.
- Take full ownership of assigned penetration testing engagements end‑to‑end and deliver with limited oversight.
- Compile technical scoping documents, track and document assessment metadata including engagement details (who, what, when, where), testing team members and roles, tools and methodologies used, schedule and timelines, target systems and environments, constraints, exclusions, and limitations, testing activities and event logs.
- Document findings clearly and concisely, providing actionable remediation guidance.
- Collaborate with application teams to scope, perform, and report on security assessments.
- Contribute to team improvement efforts and ensure all initiatives and feedback are well documented for future references.
- Contribute to the continuous improvement of testing methodologies, tooling, automation.
- Stay ahead of emerging threats, vulnerabilities, and offensive security techniques.
- Participate in R&D initiatives as guided from leadership.
- Support educational sessions and mentoring within the team.
- Develop and maintain custom tools, scripts, and exploits to support testing activities.
Required Skills & Experience
- Proven hands‑on experience in penetration testing of Web Applications, APIs, Thick Client and Common Infrastructures (Active Directory, Cloud and Cloud‑native based environments).
- Proficiency with tools such as Burp Suite, common command‑line tools, and ability to write custom scripts when needed.
- Experience in automating pentesting tasks.
- Solid understanding of application security, network protocols, and operating systems.
- Experience with cloud platforms (AWS, Azure, GCP) and containerized environments (Docker, Kubernetes).
- Ability to write clear, technical reports and communicate findings to both technical and non‑technical customers.
- Experience working in large, sophisticated enterprise environments.
- Proficient interpersonal skills in English, both written and verbal.
- Relevant certifications and engagement with the security community is a plus.
- Threat Modelling experience is a plus.
- Proven track record of successfully managing and driving security engagements for various organizations with differing operational and technical profiles.
- Ability to identify, assess, and communicate technical and project risks to partners.
- Understanding project requirements and aligning results with agreed upon objectives and timelines.
Senior Penetration Tester in London employer: London Stock Exchange Group
Contact Detail:
London Stock Exchange Group Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Senior Penetration Tester in London
✨Tip Number 1
Network like a pro! Reach out to folks in the industry, attend meetups, and join online forums. The more connections you make, the better your chances of landing that Senior Penetration Tester role.
✨Tip Number 2
Show off your skills! Create a portfolio showcasing your penetration testing projects, tools you've developed, or any vulnerabilities you've uncovered. This will give potential employers a taste of what you can bring to their team.
✨Tip Number 3
Prepare for interviews by brushing up on common penetration testing scenarios and methodologies. Be ready to discuss your past experiences and how you tackled challenges in previous roles. Confidence is key!
✨Tip Number 4
Don't forget to apply through our website! It’s the best way to ensure your application gets seen by the right people. Plus, it shows you're genuinely interested in joining our awesome team at LSEG.
We think you need these skills to ace Senior Penetration Tester in London
Some tips for your application 🫡
Show Your Passion: When writing your application, let your enthusiasm for offensive security shine through! We want to see your passion for uncovering vulnerabilities and improving security posture. Share any personal projects or experiences that highlight your dedication to the field.
Be Clear and Concise: We appreciate clarity in communication, especially when it comes to technical details. Make sure your application is well-structured and easy to read. Use bullet points where necessary to break down your skills and experiences, so we can quickly see what you bring to the table.
Tailor Your Application: Don’t just send a generic application! Take the time to tailor your CV and cover letter to match the specific requirements of the Senior Penetration Tester role. Highlight your experience with tools like Burp Suite and your knowledge of cloud environments to show us you’re the right fit.
Apply Through Our Website: We encourage you to apply directly through our website. It’s the best way to ensure your application gets into the right hands. Plus, it shows us you’re serious about joining our team at LSEG!
How to prepare for a job interview at London Stock Exchange Group
✨Know Your Tools Inside Out
Make sure you're well-versed in the tools mentioned in the job description, like Burp Suite and command-line tools. Be ready to discuss how you've used them in past projects and any custom scripts you've written. This shows your hands-on experience and technical prowess.
✨Prepare for Technical Questions
Expect deep technical questions about penetration testing methodologies and your approach to identifying vulnerabilities. Brush up on your knowledge of application security, network protocols, and cloud environments. Practising with mock interviews can help you articulate your thought process clearly.
✨Showcase Your Documentation Skills
Since clear documentation is key in this role, prepare examples of your past reports. Be ready to explain how you communicate findings to both technical and non-technical audiences. Highlight your ability to provide actionable remediation guidance based on your assessments.
✨Demonstrate Team Collaboration
This role involves working closely with application teams and contributing to team improvement efforts. Share experiences where you've collaborated effectively, perhaps in mentoring or R&D initiatives. Emphasise your interpersonal skills and how you contribute to a positive team dynamic.