At a Glance
- Tasks: Conduct social engineering and penetration testing, producing detailed reports and training materials.
- Company: Join a leading cybersecurity firm dedicated to innovation and inclusivity.
- Benefits: Enjoy a birthday holiday, gym membership, and paid volunteer days.
- Other info: Opportunity for career growth and a supportive team culture.
- Why this job: Make a real impact in cybersecurity while developing your skills in a dynamic environment.
- Qualifications: Experience in social engineering and penetration testing, with strong communication skills.
The predicted salary is between 60000 - 80000 £ per year.
As a Senior Consultant with a focus on social engineering & physical penetration testing (black team), you will perform formal and comprehensive penetration testing assessments, including producing full written reports to appropriate standards and within agreed deadlines. In addition, you will support training, client pre‑engagement activities (including scoping and proposal drafting), researching vulnerabilities and maintaining process documentation.
Responsibilities
- Perform formal and comprehensive Social Engineering and other penetration testing assessments (i.e. Application and/or Infrastructure based assessments) where appropriate and required;
- Attend customer sites to deliver engagements where required (such as Physical Penetration Testing/Black Team engagements);
- Provide well‑written, concise, technical and non‑technical reports in English;
- Perform vulnerability assessments and provide findings with remediation actions;
- Support with various client pre‑engagement interactions, including scoping activities and proposal drafting;
- Manage and deliver penetration testing project activities within strict deadlines;
- Research Social Engineering trends, new attack vectors and technologies that may improve efficiencies when delivering these engagements;
- Develop and deliver in‑house training to the penetration testing team;
- Coach and mentor Graduate and Junior penetration testers;
- Act as lead tester on large or onsite penetration testing projects (including Physical Penetration Tests);
- Support the Marketing team with the development of content (including, but not limited to: Blogs, Social Media Posts, and Articles) to help raise the profile of Bulletproof's Penetration Testing and other services;
- Support the QA process to ensure high quality client reports are delivered in accordance with applicable Service Level Agreement (SLA);
- Any other appropriate job duties in line with the associated skill and experience of the post holder.
Skills & Experience Required
- Proven industry experience in Social Engineering and Physical Penetration Testing (Black Team);
- Deep knowledge of Social Engineering attack vectors relating to: Phishing (email), Vishing (phone calls), Physical Social engineering (in person during a Physical Penetration Test/Black Team);
- Strong knowledge of Social Engineering and Physical Penetration attack techniques such as: Lock picking, Card cloning, Elicitation, Disguise and Social Engineering scenario creation;
- Strong skills in Open Source Intelligence gathering – specifically targeting organisations and physical locations;
- Knowledge of the additional legal boundaries that are involved for Social Engineering attacks and Physical Site Engagements;
- Proven industry experience in infrastructure and/or application penetration testing;
- Deep knowledge of various Operating Systems and network principles;
- Strong understanding of OWASP, PTES and MITRE ATT&CK framework;
- Knowledge of how modern solutions are designed and deployed across different platforms;
- Ability to program or script in your preferred language;
- Relevant security qualifications (such as OSCP, CREST CRT, OSEP, CCT or relevant Social Engineering exams/training).
Nice to Have
- Deep knowledge of access card cloning techniques and involved technologies;
- Experience operating as part of or in conjunction with a Red Team;
- Strong knowledge of Wireless (WiFi) testing techniques and other Signals Intelligence;
- Good knowledge of SMShing attacks and supporting infrastructure.
Personal Attributes
- Excellent spoken and written communication skills with strong attention-to-detail and accuracy;
- A passion for security and networks;
- Analytical and problem‑solving skills with a can‑do attitude and the ability to think laterally;
- Self‑motivation with a commitment to continued development;
- Ability to work independently and as part of a team;
- Influencing and negotiation skills with the ability to build relationships at all levels;
- Willingness to learn.
Benefits
- Birthday holiday;
- Discounted Private Medical Insurance;
- Gym Membership;
- VITO days – X2 paid volunteer days;
- Enhanced Family Related Leave Pay;
- Standard Life Salary Sacrifice Pension;
- Social Events.
WorkNest is an equal opportunity employer. We celebrate diversity and are committed to fostering an inclusive environment for all employees.
Senior Consultant - Social Engineering in Stevenage employer: WorkNest People
Contact Detail:
WorkNest People Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Senior Consultant - Social Engineering in Stevenage
✨Tip Number 1
Network like a pro! Get out there and connect with folks in the industry. Attend meetups, webinars, or conferences related to social engineering and penetration testing. You never know who might have a lead on your dream job!
✨Tip Number 2
Show off your skills! Create a portfolio showcasing your past projects, reports, and any training you've delivered. This will give potential employers a taste of what you can bring to the table, especially in a hands-on role like this.
✨Tip Number 3
Don’t just apply anywhere; apply through our website! We love seeing candidates who are genuinely interested in joining our team. Tailor your application to highlight your experience in social engineering and physical penetration testing.
✨Tip Number 4
Prepare for interviews by brushing up on the latest trends and techniques in social engineering. Be ready to discuss your approach to vulnerability assessments and how you handle client interactions. Confidence is key!
We think you need these skills to ace Senior Consultant - Social Engineering in Stevenage
Some tips for your application 🫡
Tailor Your Application: Make sure to customise your CV and cover letter to highlight your experience in social engineering and penetration testing. We want to see how your skills match the job description, so don’t hold back on showcasing your relevant projects!
Show Off Your Writing Skills: Since you'll be producing reports, it's crucial to demonstrate your ability to write clearly and concisely. Use your application to showcase your technical writing skills, making sure it’s easy to read and free of jargon where possible.
Be Specific About Your Experience: When detailing your past roles, focus on specific achievements and techniques you've used in social engineering and physical penetration testing. We love numbers and results, so if you’ve improved processes or found vulnerabilities, let us know!
Apply Through Our Website: We encourage you to apply directly through our website for a smoother process. It helps us keep track of applications and ensures you’re considered for the role without any hiccups!
How to prepare for a job interview at WorkNest People
✨Know Your Stuff
Make sure you brush up on your knowledge of social engineering and physical penetration testing techniques. Be ready to discuss specific attack vectors like phishing, vishing, and lock picking. The more you can demonstrate your expertise, the better!
✨Showcase Your Reports
Since you'll be expected to produce well-written reports, bring examples of your previous work to the interview. Highlight how you tailored your findings for different audiences, both technical and non-technical. This will show your ability to communicate effectively.
✨Prepare for Scoping Discussions
Get familiar with the scoping process and proposal drafting. Think about how you would approach a new client engagement and what factors you'd consider. Being able to articulate this will impress your interviewers and show you're ready for the role.
✨Stay Updated on Trends
Research the latest trends in social engineering and penetration testing. Be prepared to discuss new attack vectors or technologies that could improve efficiencies. This shows your passion for the field and commitment to staying ahead of the curve.