At a Glance
- Tasks: Simulate attacks to identify security vulnerabilities in networks and systems.
- Company: Join a dynamic team at SecQuest, focused on cutting-edge cybersecurity solutions.
- Benefits: Enjoy flexible working hours, remote options, and opportunities for professional development.
- Why this job: Make a real impact by protecting businesses from cyber threats while developing your skills.
- Qualifications: In-depth knowledge of computer systems and 2-4 years in information security required.
- Other info: Training for certifications like CSTM will be provided to the right candidate.
The predicted salary is between 36000 - 60000 £ per year.
If you are a lateral thinker, have excellent attention to detail, with analytical skills and strong technical abilities, then the role of a SecQuest (‘SQ’) Penetration Tester will suit you. As a SQ Penetration Tester, you'll simulate attacks in order to identify and report security vulnerabilities on networks, systems, and applications, including Mobile, IoT, SCADA and VSAT devices.
To meet your responsibilities, you will need to:
- Understand complex computer systems and technical cyber security terms.
- Carry out remote testing of a client's network, or onsite testing of their infrastructure, to identify security vulnerabilities.
- Work with clients to determine scope, approach and test requirements.
- Plan penetration methods, scripts and tests.
- Consider the impact of security vulnerabilities on the target business.
- Advise on methods to remediate security vulnerabilities.
- Create reports and recommendations from your test findings.
- Present the security vulnerabilities and business risk to technical and non-technical audiences.
What to expect:
You will work from our Southampton Office, in conjunction with agreed home working; plus, on occasion there will be travel to meet clients. You'll have a high level of responsibility; plus, maintain a high level of concentration with attention to detail. You'll need to dress smartly when meeting clients. You need to be a self-starter and be comfortable working on your own.
Qualifications
To join SQ you'll need an in-depth knowledge of computer operating systems and at least two to four years of experience in a role related to information security. Useful degree subjects include: Computer science, Cyber security, Forensic computing, Computing and information systems, Network management, Computer systems engineering.
As well as relevant degree qualifications, you will be expected to have one or more professional qualifications such as:
- GIAC Penetration Tester (GPEN) Certification.
- Offensive Security Certified Professional (OSCP) certification.
- Check Team Member (CTM) or equivalence; and or Company certification schemes from major vendors and equipment providers like Microsoft (MCP, MCSE) or CISCO (CCNA Security).
It is possible to work as a SQ Penetration Tester without a degree, if you have significant experience in information security and hold industry certifications. All applicants will need to undertake the SQ technical on-boarding assessment, in conjunction with UK security clearance checks. Training for a qualification such as CSTM will be offered to the right candidate.
Skills
You will need to have:
- Excellent spoken and written communication to explain your methods to a technical and non-technical audience.
- The ability to think creatively and strategically to penetrate security systems.
- Good time management and organisational skills to meet strict client deadlines.
- Ethical integrity to be trusted with a high level of confidential information.
- Commitment to continuously updating your technical knowledge base.
- Teamwork skills, to support colleagues and share techniques.
- Exceptional problem-solving skills and the persistence to apply different techniques to get the job done.
Working hours
A 37-hour working week is standard in this role; however, flexible working practices are common - plus, you may need to work outside of a typical 9AM to 5:30PM pattern. You must be UK based - we are unable to provide visa sponsorship.
Penetration Tester employer: SecQuest - a NCSC Assured Service Provider
Contact Detail:
SecQuest - a NCSC Assured Service Provider Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Penetration Tester
✨Tip Number 1
Familiarise yourself with the latest penetration testing tools and techniques. Being well-versed in tools like Metasploit, Burp Suite, and Wireshark will not only boost your confidence but also demonstrate your technical abilities during interviews.
✨Tip Number 2
Network with professionals in the cybersecurity field. Attend local meetups or online forums to connect with current penetration testers. This can provide you with insights into the role and potentially lead to referrals.
✨Tip Number 3
Stay updated on the latest security vulnerabilities and trends in the industry. Follow reputable cybersecurity blogs and news sites to discuss these topics during interviews, showcasing your commitment to continuous learning.
✨Tip Number 4
Prepare to discuss real-world scenarios where you've identified and remediated security vulnerabilities. Having concrete examples ready will help you illustrate your problem-solving skills and ethical integrity, which are crucial for this role.
We think you need these skills to ace Penetration Tester
Some tips for your application 🫡
Tailor Your CV: Make sure your CV highlights your relevant experience in information security, particularly any roles related to penetration testing. Include specific projects or tasks that demonstrate your analytical skills and technical abilities.
Craft a Strong Cover Letter: In your cover letter, express your passion for cybersecurity and detail how your skills align with the responsibilities of the Penetration Tester role. Mention your understanding of complex computer systems and your experience with various testing methods.
Showcase Certifications: List any relevant certifications prominently in your application. If you have qualifications like GPEN or OSCP, make sure they are easily visible, as these will strengthen your application significantly.
Prepare for Technical Assessment: Since the company requires a technical onboarding assessment, brush up on your penetration testing skills and be ready to discuss your methodologies. Familiarise yourself with common vulnerabilities and remediation techniques to impress during the assessment.
How to prepare for a job interview at SecQuest - a NCSC Assured Service Provider
✨Showcase Your Technical Knowledge
Be prepared to discuss your understanding of complex computer systems and technical cyber security terms. Brush up on the latest trends in penetration testing and be ready to explain how you would approach identifying vulnerabilities in various systems.
✨Demonstrate Problem-Solving Skills
During the interview, highlight your exceptional problem-solving skills. Share specific examples of challenges you've faced in previous roles and how you creatively overcame them, especially in relation to security vulnerabilities.
✨Communicate Effectively
Since you'll need to present findings to both technical and non-technical audiences, practice explaining complex concepts in simple terms. This will show your ability to communicate effectively, which is crucial for this role.
✨Dress Smartly and Be Professional
As you'll be meeting clients, make sure to dress smartly for the interview. This not only shows professionalism but also reflects your understanding of the importance of first impressions in client interactions.