Penetration Tester (CHECK / CREST) in Glasgow

Penetration Tester (CHECK / CREST) in Glasgow

Glasgow Full-Time 55000 - 90000 £ / year (est.) Home office possible
Oscar Associates (UK) Limited

At a Glance

  • Tasks: Conduct penetration tests on web applications, APIs, and infrastructure while leading client engagements.
  • Company: Join a leading UK consultancy in offensive security with a dynamic team of 70 testers.
  • Benefits: Enjoy a competitive salary, remote work, travel expenses, and a pension scheme.
  • Other info: Flexible roles available with excellent career growth and mentorship opportunities.
  • Why this job: Make a real impact in cybersecurity while working remotely and visiting clients as needed.
  • Qualifications: Must have CHECK or CREST qualifications and hands-on penetration testing experience.

The predicted salary is between 55000 - 90000 £ per year.

Location: Fully Remote, UK (with client site visits as required)

Salary: £55,000 - £90,000 DOE + expenses + overnight bonus for site work

Type: Permanent, Full-Time

Summary:

We are looking for experienced Penetration Testers to join one of the UK's larger dedicated offensive security practices. With a team of around 70 testers split across CHECK and CREST work, this is a well-established consultancy delivering high-quality assessments across a broad client base, with genuine variety in engagement type, sector, and technical depth.

The team is structured across two streams, more commercially-driven engagements through CREST, and deeper, security-led work through CHECK, so there's a clear path whichever direction you want to lean. Multiple roles are available across mid and senior levels, and the company is flexible on starting clearance level.

This role is fully remote with client site visits as required. No two weeks look the same.

Key Responsibilities:

  • Deliver web application, API, and infrastructure penetration tests, taking ownership of engagements end-to-end from scoping through to final report delivery.
  • Lead client-facing engagements, communicating high-risk findings as they are identified to support swift remediation.
  • Produce clear, professional reports tailored to client-specific context and business risk.
  • Support broader offensive security activities including red and purple team engagements, phishing simulations, and assumed-breach style assessments where relevant.
  • Contribute to internal QA, mentor more junior consultants, and support report quality across the team.
  • Stay up to date with the evolving threat landscape and contribute to internal R&D, tooling, and knowledge sharing.

Requirements:

  • CHECK Team Member (CTM), CHECK Team Leader (CTL), CREST Registered Tester (CRT), or CREST Certified Tester (CCT) qualified, or actively progressing along either pathway at a senior level.
  • Hands-on experience delivering web application, API, and/or infrastructure penetration tests in a professional consultancy setting.
  • Strong understanding of common vulnerability classes (e.g. OWASP Top 10), exploitation techniques, and remediation guidance.
  • Confident client-facing communication skills, with the ability to explain technical findings to both technical and non-technical audiences.
  • Strong written reporting skills, with the ability to produce clear, well-structured deliverables.
  • A genuine passion for offensive security, demonstrated through CTFs, labs (e.g. Hack The Box, TryHackMe), research, certifications, or community involvement.

Clearance:

Clearance requirements vary by role, some do not require any clearance, others are looking for SC or DV. The company will put successful candidates through the relevant clearance process where required, so existing clearance is welcomed but not essential across the board.

Benefits:

  • Salary: £55,000 - £90,000, depending on experience, certifications and clearance level
  • Fully remote working
  • Overnight bonus for client site visits
  • Travel and expenses covered for client work
  • Clearance sponsorship (SC / DV) where required for the role
  • Company pension scheme

Penetration Tester (CHECK / CREST) in Glasgow employer: Oscar Associates (UK) Limited

Join a leading consultancy in the UK's offensive security landscape, where you can thrive in a fully remote role that offers flexibility and variety. With a strong focus on employee growth, mentorship opportunities, and a supportive work culture, you'll be part of a dynamic team dedicated to delivering high-quality assessments across diverse sectors. Enjoy competitive salaries, travel expenses, and the chance to contribute to cutting-edge security practices while advancing your career in a stimulating environment.
Oscar Associates (UK) Limited

Contact Detail:

Oscar Associates (UK) Limited Recruiting Team

StudySmarter Expert Advice 🤫

We think this is how you could land Penetration Tester (CHECK / CREST) in Glasgow

✨Tip Number 1

Get your networking game on! Connect with other Penetration Testers and industry professionals on platforms like LinkedIn. Join relevant groups and participate in discussions to get your name out there and learn about potential job openings.

✨Tip Number 2

Show off your skills! Create a portfolio showcasing your penetration testing projects, CTF achievements, or any relevant research. This will give potential employers a taste of what you can do and set you apart from the competition.

✨Tip Number 3

Prepare for interviews by brushing up on your communication skills. Practice explaining technical concepts in simple terms, as you'll need to convey findings to both tech-savvy clients and those who might not be as familiar with the jargon.

✨Tip Number 4

Don't forget to apply through our website! We have multiple roles available, and applying directly can sometimes give you an edge. Plus, it shows you're genuinely interested in joining our team!

We think you need these skills to ace Penetration Tester (CHECK / CREST) in Glasgow

Penetration Testing
Web Application Testing
API Testing
Infrastructure Testing
Client-Facing Communication
Report Writing
Vulnerability Assessment
Exploitation Techniques
Remediation Guidance
Offensive Security
Knowledge of OWASP Top 10
Mentoring
Research Skills
Clearance Processing

Some tips for your application 🫡

Keep Your CV Fresh: Before you hit that apply button, make sure your CV is up to date. Highlight your relevant experience in penetration testing and any certifications you've got under your belt. We want to see what makes you stand out!

Tailor Your Application: Read through the job specs carefully and tailor your application to match. Use the same language and keywords from the job description to show us you're a perfect fit for the role. It’s all about making that connection!

Show Off Your Skills: When writing your cover letter or application, don’t just list your skills—show us how you've used them in real-world scenarios. We love seeing examples of your work, especially in web application and API penetration testing.

Apply Through Our Website: We encourage you to apply directly through our website. It’s the best way to ensure your application gets into the right hands. Plus, it shows us you’re keen on joining our team at StudySmarter!

How to prepare for a job interview at Oscar Associates (UK) Limited

✨Know Your Stuff

Make sure you brush up on your technical skills, especially around web application and infrastructure penetration testing. Be ready to discuss common vulnerabilities like those in the OWASP Top 10 and demonstrate your understanding of exploitation techniques.

✨Show Off Your Communication Skills

Since this role involves client-facing engagements, practice explaining complex technical findings in a way that non-technical clients can understand. Think about how you would communicate high-risk issues and remediation strategies clearly and effectively.

✨Tailor Your Reports

Prepare to discuss how you produce clear and professional reports. Bring examples if you can, and be ready to explain how you tailor your deliverables to fit the specific context and business risks of different clients.

✨Stay Current with Trends

Demonstrate your passion for offensive security by discussing recent trends or threats you've researched. Mention any participation in CTFs or labs like Hack The Box or TryHackMe, as this shows your commitment to staying ahead in the field.

Penetration Tester (CHECK / CREST) in Glasgow
Oscar Associates (UK) Limited
Location: Glasgow

Land your dream job quicker with Premium

You’re marked as a top applicant with our partner companies
Individual CV and cover letter feedback including tailoring to specific job roles
Be among the first applications for new jobs with our AI application
1:1 support and career advice from our career coaches
Go Premium

Money-back if you don't land a job in 6-months

>