CHECK or CREST Penetration Tester

CHECK or CREST Penetration Tester

Full-Time 40000 - 45000 £ / year (est.) Home office (partial)
Oscar Associates (UK) Limited

At a Glance

  • Tasks: Conduct penetration tests on web apps, APIs, and infrastructure while owning projects from start to finish.
  • Company: Join a dynamic security team in Leeds with a focus on innovation and collaboration.
  • Benefits: Enjoy a competitive salary, hybrid working, and a company pension scheme.
  • Other info: Stay ahead of the threat landscape and contribute to team knowledge sharing.
  • Why this job: Make a real impact in offensive security and grow your skills in a supportive environment.
  • Qualifications: CHECK Team Member status or working towards CREST Registered Tester, with hands-on testing experience.

The predicted salary is between 40000 - 45000 £ per year.

We are looking for a skilled and motivated Penetration Tester to join a growing security team in Leeds. The main purpose of this role is to deliver high-quality offensive security assessments across web applications, APIs, and infrastructure, helping clients understand and remediate vulnerabilities across their environments.

This is a great opportunity for a CHECK Team Member (CTM) or a tester actively progressing along the CREST pathway (CRT) to take ownership of engagements end-to-end, work alongside experienced consultants, and continue developing technically across a varied client base. This role operates on a hybrid basis in Leeds, with occasional site visits required.

Key Responsibilities:
  • Carry out web application, API, and infrastructure penetration tests, taking ownership of engagements from scoping through to final report delivery.
  • Support purple team activities including phishing simulations and malicious insider style assessments.
  • Produce clear, professional reports for clients, tailoring findings to client-specific context and business risk.
  • Communicate high-risk vulnerabilities to clients as they are identified, supporting swift remediation.
  • Support junior team members and assist with quality assurance on reports where required.
  • Assist with the maintenance of internal penetration testing infrastructure, including device setup and tooling updates.
  • Stay up to date with the evolving threat landscape, contributing to internal knowledge sharing and continued team development.
Requirements:
  • CHECK Team Member (CTM) status, or actively working towards CREST Registered Tester (CRT) on the CREST pathway.
  • Hands-on experience delivering web application, API, and/or infrastructure penetration tests in a professional setting.
  • Strong understanding of common vulnerability classes (e.g. OWASP Top 10), exploitation techniques, and remediation guidance.
  • Confident client-facing communication skills, with the ability to explain technical findings to both technical and non-technical audiences.
  • Strong written reporting skills, with the ability to produce clear, well-structured deliverables.
  • A genuine passion for offensive security, demonstrated through CTFs, labs (e.g. Hack The Box, TryHackMe), research, or community involvement.
Benefits:
  • Salary: £40,000 - £45,000 DOE
  • Hybrid Working
  • Company Pension Scheme

CHECK or CREST Penetration Tester employer: Oscar Associates (UK) Limited

Join a dynamic and innovative security team in Leeds, where your expertise as a Penetration Tester will be valued and nurtured. With a hybrid working model, competitive salary, and a strong focus on employee development, you'll have the opportunity to take ownership of projects while collaborating with experienced professionals. Our supportive work culture encourages continuous learning and growth, making it an ideal environment for those passionate about offensive security.
Oscar Associates (UK) Limited

Contact Detail:

Oscar Associates (UK) Limited Recruiting Team

StudySmarter Expert Advice 🤫

We think this is how you could land CHECK or CREST Penetration Tester

✨Tip Number 1

Network like a pro! Attend local meetups or online webinars related to penetration testing. It's a great way to connect with industry professionals and might just lead to your next job opportunity.

✨Tip Number 2

Show off your skills! Create a portfolio showcasing your penetration testing projects, whether they're from CTFs or personal labs. This gives potential employers a taste of what you can do.

✨Tip Number 3

Don’t be shy about reaching out! If you see a role that excites you, drop a message to the hiring manager on LinkedIn. A little initiative can go a long way in making you stand out.

✨Tip Number 4

Apply through our website! We love seeing applications directly from candidates who are passionate about joining our team. Plus, it shows you're serious about the role!

We think you need these skills to ace CHECK or CREST Penetration Tester

Penetration Testing
Web Application Security
API Security
Infrastructure Security
CHECK Team Member (CTM)
CREST Registered Tester (CRT)
Vulnerability Assessment
Exploitation Techniques
OWASP Top 10
Client-Facing Communication
Technical Reporting
Offensive Security
Knowledge Sharing
Quality Assurance

Some tips for your application 🫡

Tailor Your CV: Make sure your CV highlights your relevant experience in penetration testing, especially any CHECK or CREST qualifications. We want to see how your skills align with the role, so don’t hold back on showcasing your hands-on experience!

Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Use it to explain why you’re passionate about offensive security and how your background makes you a great fit for our team. Keep it professional but let your personality come through!

Showcase Your Technical Skills: In your application, mention specific tools and techniques you’ve used in past penetration tests. We love seeing candidates who are up-to-date with the latest trends and threats in the security landscape, so don’t be shy about your technical prowess!

Apply Through Our Website: We encourage you to apply directly through our website. It’s the best way for us to receive your application and ensures you’re considered for the role. Plus, it shows you’re keen on joining our team at StudySmarter!

How to prepare for a job interview at Oscar Associates (UK) Limited

✨Know Your Stuff

Make sure you brush up on your technical knowledge, especially around web applications, APIs, and infrastructure penetration testing. Be ready to discuss common vulnerabilities like those in the OWASP Top 10 and share your experiences with exploitation techniques.

✨Tailor Your Communication

Since you'll be dealing with both technical and non-technical clients, practice explaining complex concepts in simple terms. Think about how you can convey your findings clearly and professionally, as this will be crucial during the interview.

✨Show Your Passion

Demonstrate your genuine interest in offensive security. Talk about any Capture The Flag (CTF) competitions you've participated in, labs you've worked on, or community events you've attended. This shows you're not just in it for the job but truly care about the field.

✨Ask Insightful Questions

Prepare some thoughtful questions about the company's approach to security assessments and team dynamics. This not only shows your interest in the role but also helps you gauge if the company is the right fit for you.

Land your dream job quicker with Premium

You’re marked as a top applicant with our partner companies
Individual CV and cover letter feedback including tailoring to specific job roles
Be among the first applications for new jobs with our AI application
1:1 support and career advice from our career coaches
Go Premium

Money-back if you don't land a job in 6-months

>