At a Glance
- Tasks: Conduct penetration tests and produce detailed reports while collaborating with clients and the team.
- Company: Join a forward-thinking cybersecurity firm that values innovation and teamwork.
- Benefits: Enjoy a birthday holiday, gym membership, and paid volunteer days.
- Other info: Flexible hybrid work model with opportunities for personal and professional growth.
- Why this job: Make a real impact in cybersecurity while developing your skills in a dynamic environment.
- Qualifications: Experience in penetration testing and knowledge of various operating systems required.
The predicted salary is between 50000 - 70000 £ per year.
As a Penetration Tester, with a focus on Infrastructure testing, you will perform formal and comprehensive penetration testing assessments, producing full written reports to appropriate standards and within agreed deadlines. In addition, you will support with client pre-engagement activities, including scoping and proposal drafting, as well as researching infrastructure and application vulnerabilities, following responsible disclosure, and sharing such findings within the team.
Responsibilities
- Perform formal and comprehensive infrastructure and other penetration testing assessments where appropriate and required;
- Provide well‑written, concise, technical and non‑technical reports in English;
- Perform vulnerability assessments and provide findings with remediation actions;
- Support with various client pre‑engagement interactions, including scoping activities and proposal drafting;
- Manage and deliver penetration testing project activities within strict deadlines;
- Research infrastructure and other such components within the wider team to identify new vulnerabilities and follow responsible disclosure;
- Coach and mentor Graduate and Junior penetration testers where appropriate;
- Support the Marketing team with the development of content (including, but not limited to: Blogs, Social Media Posts, and Articles) to help raise the profile of Bulletproof's Penetration Testing and other services;
- Support the QA process to ensure high quality client reports are delivered in accordance with applicable Service Level Agreement (SLA);
- Any other appropriate job duties in line with the associated skill and experience of the post holder.
Skills & Experience Required
- Proven industry experience in infrastructure and a variety of other penetration testing assessment types;
- Deep knowledge of assessing both Windows and Linux environments, including strong knowledge of Active Directory and wireless technologies;
- Deep knowledge of various Operating Systems and network principles;
- Knowledge of assessing cloud and hybrid environments (AWS and Azure);
- Strong understanding of OWASP, PTES and MITRE ATT&CK framework;
- Knowledge of how modern solutions are designed and deployed across different platforms;
- Ability to program or script in your preferred language;
- Relevant security qualifications (such as OSCP, CREST CRT, OSEP, CCT INF);
- Good knowledge of virtualisation.
Nice to have
- Ability to create and implement tactics techniques and procedures (development of scripts, tools, and methods) that can be used in red team engagements (including C2 framework management);
- Knowledge in preparing and launching social engineering campaigns;
- Involvement in previous research projects, tool development and training delivery.
Personal Attributes
- Excellent spoken and written communication skills with strong attention‑to‑detail and accuracy;
- A passion for security and networks;
- Analytical and problem‑solving skills with a can‑do attitude and the ability to think laterally;
- Self-motivation with a commitment to continued development;
- Ability to work independently and as part of a team;
- Influencing and negotiation skills with the ability to build relationships at all levels;
- Willingness to learn.
Benefits
- Birthday holiday
- Discounted Private Medical Insurance
- Gym Membership
- VITO days - X2 paid volunteer days
- Enhanced Family Related Leave Pay
- Standard Life Salary Sacrifice Pension
- Social Events
We understand that job descriptions provide only a brief overview of a role. If you would like more information, please feel free to reach out or submit an application, and we will be happy to share further details. WorkNest is an equal opportunity employer. We celebrate diversity and are committed to fostering an inclusive environment for all employees.
Department: Penetration Testing
Locations: Remote - UK
Remote status: Hybrid
Employment type: Full-time
Penetration Tester - Infrastructure in Stevenage employer: SATOS Jobs
Contact Detail:
SATOS Jobs Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Penetration Tester - Infrastructure in Stevenage
✨Tip Number 1
Network like a pro! Reach out to folks in the industry on LinkedIn or at local meetups. You never know who might have the inside scoop on job openings or can put in a good word for you.
✨Tip Number 2
Show off your skills! Create a portfolio showcasing your penetration testing projects, reports, and any cool tools you've developed. This will give potential employers a taste of what you can do.
✨Tip Number 3
Prepare for interviews by brushing up on common penetration testing scenarios and be ready to discuss your approach. Practice makes perfect, so consider doing mock interviews with friends or mentors.
✨Tip Number 4
Don't forget to apply through our website! It’s the best way to ensure your application gets seen. Plus, we love hearing from passionate candidates who are eager to join our team.
We think you need these skills to ace Penetration Tester - Infrastructure in Stevenage
Some tips for your application 🫡
Tailor Your CV: Make sure your CV is tailored to the Penetration Tester role. Highlight your experience with infrastructure testing and any relevant qualifications. We want to see how your skills match what we're looking for!
Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Use it to explain why you're passionate about penetration testing and how you can contribute to our team. Keep it concise but impactful, and don’t forget to mention your familiarity with OWASP and other frameworks.
Showcase Your Reports: Since producing well-written reports is key in this role, consider including examples of your previous work. If you’ve created technical or non-technical reports, share them to demonstrate your writing skills and attention to detail.
Apply Through Our Website: We encourage you to apply directly through our website. It’s the best way for us to receive your application and ensures you’re considered for the role. Plus, it shows you’re keen on joining our team at StudySmarter!
How to prepare for a job interview at SATOS Jobs
✨Know Your Stuff
Make sure you brush up on your knowledge of infrastructure testing, especially around Windows and Linux environments. Familiarise yourself with the OWASP, PTES, and MITRE ATT&CK frameworks, as these are likely to come up during your interview.
✨Showcase Your Reports
Be prepared to discuss your previous penetration testing reports. Highlight how you’ve produced clear, concise, and technical documentation. If possible, bring examples that demonstrate your ability to communicate findings effectively to both technical and non-technical audiences.
✨Engage in Scoping Discussions
Since client pre-engagement activities are part of the role, practice discussing how you would approach scoping and proposal drafting. Think about how you can tailor your approach based on different client needs and vulnerabilities.
✨Demonstrate Your Passion
Let your enthusiasm for security and networks shine through. Share any personal projects, research, or tools you've developed. This will show your commitment to the field and your willingness to learn and grow within the role.