At a Glance
- Tasks: Lead hands-on penetration testing across web apps, APIs, and cloud environments.
- Company: Join a growing security consultancy focused on high-quality security testing.
- Benefits: Competitive salary, flexible working, and opportunities for professional growth.
- Why this job: Make a real impact by identifying and mitigating security risks.
- Qualifications: Experience in penetration testing and strong communication skills required.
- Other info: Collaborative team environment with a focus on continuous improvement.
The predicted salary is between 55000 - 70000 ÂŁ per year.
About the Role
Great role for an experienced Senior Penetration Tester to join a growing security consultancy and play a key role in delivering high‑quality, security testing across a wide range of environments. This role is suited to someone who enjoys being hands‑on, is comfortable leading engagements end‑to‑end and takes pride in producing clear, defensible findings that help organisations reduce real security risk. You will work closely with technical teams and stakeholders to test applications and infrastructure, explain risk in practical terms, and support effective remediation.
What You’ll Be Doing
- Plan, scope, and deliver manual penetration testing engagements across web applications, APIs, infrastructure and cloud environments.
- Lead testing activities from initial scoping through execution, reporting and client or stakeholder read‑outs.
- Identify, validate and exploit security weaknesses using a combination of tooling and manual techniques.
- Clearly document findings, impact and remediation guidance in high‑quality technical and non‑technical reports.
- Communicate risk effectively to a range of audiences, including engineers, product owners and non‑technical stakeholders.
- Support remediation efforts by working collaboratively with development, infrastructure and security teams.
- Contribute to internal quality assurance, peer review and continuous improvement of testing methodologies.
- Share knowledge within the team through mentoring, tooling contributions and technical discussions.
- Maintain awareness of emerging attack techniques, vulnerabilities and defensive controls relevant to modern environments.
What you’ll need
- Hands‑on penetration testing experience, delivering tests across multiple environments.
- Strong understanding of web application and infrastructure security, including common attack vectors and misconfigurations.
- Confidence using industry‑standard tools such as Burp Suite, Nmap, Metasploit, and similar assessment tooling.
- Ability to perform manual testing beyond automated findings, including business logic flaws and chained vulnerabilities.
- Strong communication skills and confidence discussing security risk with non‑technical audiences.
- A methodical, ethical approach to testing and handling sensitive information.
Desirable but not essential
- Experience testing mobile applications, cloud‑native architectures, or containerised environments.
- Scripting or programming experience (e.g. Python, Bash, PowerShell) to support testing or automation.
- Involvement in internal research, tooling development, or methodology improvement.
- Relevant industry certifications such as OSCP, CREST CRT, or equivalent.
- Experience supporting compliance‑driven testing (e.g. Cyber Essentials Plus or similar).
Interested? Apply now for more information!
Penetration Tester in Manchester employer: The Engage Partnership Recruitment
Contact Detail:
The Engage Partnership Recruitment Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Penetration Tester in Manchester
✨Tip Number 1
Network like a pro! Attend industry meetups, conferences, or webinars where you can connect with fellow penetration testers and security professionals. You never know who might have the inside scoop on job openings or can refer you to their company.
✨Tip Number 2
Show off your skills! Create a portfolio showcasing your penetration testing projects, including detailed reports and findings. This not only demonstrates your expertise but also gives potential employers a taste of what you can bring to the table.
✨Tip Number 3
Don’t just apply blindly! Tailor your approach for each role by researching the company and its security needs. When you apply through our website, make sure to highlight how your experience aligns with their specific requirements.
✨Tip Number 4
Follow up after interviews! A quick thank-you email reiterating your interest in the position and summarising how you can add value can leave a lasting impression. It shows you're proactive and genuinely interested in the role.
We think you need these skills to ace Penetration Tester in Manchester
Some tips for your application 🫡
Tailor Your CV: Make sure your CV is tailored to the Penetration Tester role. Highlight your hands-on experience, tools you’ve used, and any relevant certifications. We want to see how your skills match what we’re looking for!
Showcase Your Projects: Include specific examples of past penetration testing projects you've led or contributed to. This helps us understand your approach and the impact of your work. Don’t be shy about sharing your successes!
Be Clear and Concise: When writing your application, keep it clear and to the point. We appreciate well-structured documents that communicate your findings and risk assessments effectively. Remember, clarity is key!
Apply Through Our Website: We encourage you to apply directly through our website. It’s the best way for us to receive your application and ensures you don’t miss out on any important updates. Let’s get started on this journey together!
How to prepare for a job interview at The Engage Partnership Recruitment
✨Know Your Tools Inside Out
Make sure you're well-versed in the industry-standard tools like Burp Suite, Nmap, and Metasploit. Be ready to discuss how you've used these tools in past projects and the specific outcomes they helped you achieve.
✨Showcase Your Hands-On Experience
Prepare to share detailed examples of your hands-on penetration testing experience. Highlight specific engagements where you identified and exploited security weaknesses, and be ready to explain your thought process during those tests.
✨Communicate Clearly with All Audiences
Practice explaining complex security concepts in simple terms. You’ll need to communicate findings to both technical teams and non-technical stakeholders, so being able to tailor your message is key.
✨Stay Updated on Emerging Threats
Demonstrate your awareness of the latest attack techniques and vulnerabilities. Bring up recent trends or incidents in the cybersecurity landscape during your interview to show that you’re proactive about staying informed.