Senior Penetration Tester

Reference: SPT_1750930094

As a Senior Security Penetration Tester, you will be responsible for supporting the design, implementation, and maintenance of TVM (Threat & Vulnerability Management) solutions, controls and processes across the organisation. You will be liaising with Digital teams to ensure appropriate mitigation and remediation of vulnerabilities detected across our IT estate.

This role requires an understanding of TVM concepts, technologies, and best practices, as well as the ability to collaborate effectively with cross-functional teams. The ideal candidate will possess strong communication skills and will be committed to ensuring the highest level of security, compliance, and user experience.

What you'll be doing as a Senior Security Penetration Tester

  • Help support and develop an internal penetration testing function.
  • Conduct network, application penetration testing, code and security reviews.
  • Identify and exploit vulnerabilities through proof-of-concept testing.
  • Support vulnerability management across the enterprise, ensuring that a framework for identification, categorisation and mitigation exists and is implemented and maintained.
  • Responsible for supporting the creation of the operating model for vulnerability management, which is shared, agreed and operates effectively across the business.
  • Develop and maintain penetration testing documentation, policies, and procedures.
  • Integrate cybersecurity solutions (e.g. vulnerability scanning tools) with existing systems, applications, and infrastructure.
  • Evaluate and recommend technologies, tools, and vendors to meet business needs.
  • Investigate newly identified cybersecurity vulnerabilities and provide appropriate mitigation actions.
  • Liaise and coordinate with technology and business stakeholders in relation to cybersecurity patching and vulnerability management issues/actions.
  • Maintain a cyber threat assessment methodology, align with evolving industry standards and integrate into BAU and project-based business processes.
  • Support with proactive threat hunting for new and emerging cyber threats.
  • Develop and maintain dashboards with cybersecurity threat and vulnerability metrics.
  • Support compliance with relevant industry standards, regulations, and best practices, such as GDPR, NIS and ISO 27001.

What you should bring to the role

  • Strong knowledge of manual penetration testing techniques and confident with operating systems and tools such as Tenable, Burp Suite, Kalli Linux.
  • Exposure to remediating vulnerabilities and patch management in a complex business environment.
  • Experience in remediating cyber risks in the ever-changing digital estate.
  • 3 years of experience in a penetration testing enterprise environment.
  • Prepare detailed reports and have the ability to present findings to key stakeholders.
  • Cyber security industry certification(s) such as CSTM/ CRT/ OSCP/CTL.
  • Understanding of different patching management techniques and approaches for different technology stacks (e.g. SaaS, IaaS, End-User Computing, Server Estate, etc.).

Knowledge of TVM concepts, technologies, and best practices, including OSINT tools, vulnerability assessment, threat modelling, etc

GCS is acting as an Employment Agency in relation to this vacancy.

£60,000.00 - £62,000.00
Per annum
GBP60000 - GBP62000 per annum

Berkshire

Full Time

Added 26/06/2025
Reference: SPT_1750930094

Senior Penetration Tester

Berkshire
Full Time

Other similar jobs

Integration Tester (SC Cleared)

Added 06/06/2025

Hi,We are looking for a System Integration Tester to join the ISS project. Please find key details regarding the role below:Logistics:Location: The project is loosely based between Stoke and Birmingham, so candidates located in or near this area would be ideal. Occasional, ad-hoc travel to these locations will be required.Clearance: SC clearance is a mandatory requirement.Contract Duration: 2-3 monthsBudget: Up to £250 -300 per day IR35 Status: Inside IR35Role Overview:System-based testing rather than software development. The primary objective is to validate communication between systems (e.g., System A communicating effectively with System B), alongside business process verification.Key Skills:Strong experience with APIs...

Learn more

Integration Tester (SC Cleared)

Added 06/06/2025

Hi,We are looking for a System Integration Tester to join the ISS project. Please find key details regarding the role below:Logistics:Location: The project is loosely based between Stoke and Birmingham, so candidates located in or near this area would be ideal. Occasional, ad-hoc travel to these locations will be required.Clearance: SC clearance is a mandatory requirement.Contract Duration: 2-3 monthsBudget: Up to £250 -300 per day IR35 Status: Inside IR35Role Overview:System-based testing rather than software development. The primary objective is to validate communication between systems (e.g., System A communicating effectively with System B), alongside business process verification.Key Skills:Strong experience with APIs...

Learn more

Senior Network & Security Engineer

Added 17/07/2025

I'm seeking a Senior Network & Security Engineer to spearhead the design and deployment of cutting-edge networking solutions that drive my client's business forward. Working closely with the client's Global IT Team and reporting to the Global Head of IT, you will ensure network infrastructure is robust, scalable, and secure - ready to support current needs and future growth. Dublin-based, hybrid role. What You'll Do:Lead the design and implementation of scalable, agile network solutions aligned with business goals.Troubleshoot complex issues related to routing, switching, security, and data centre environments.Plan and execute network capacity upgrades to maintain optimal performance.Refine and document...

Learn more

Senior Project Manager

Added 14/07/2025

Senior Project Manager - Initial 12 month contract (Outside IR35)My client who are a global known Energy company are looking for a Senior Project Manager to join their team on an initial 12 month contract role.This role will require you to be on site 3 days a week in their Surrey offices and 2 days wfh.My client is looking for a PM with experience in Cloud Migrations or Change Transformation projects.The ideal candidate will have a proven track record of delivering complex projects across both Agile and Waterfall methodologies, demonstrating the ability to lead cross-functional teams, manage stakeholder expectations, and...

Learn more

Senior Data Protection Consultant

Added 10/07/2025

tMy client is seeking a Senior Data Protection Consultant to provide expert data protection and privacy compliance advice to a diverse portfolio of clients. This role involves leading advisory engagements, ensuring GDPR and wider regulatory compliance, and offering practical, risk-based guidance to internal teams. Reporting to a Service Manager or Practice Lead, the successful candidate will be instrumental in managing data protection strategy, risk assessments, and client relationships.Key ResponsibilitiesDeliver advisory services independently for clients, such as drafting privacy notices, briefing documents, consent models, and reviewing policies.Perform data protection impact assessments (DPIAs), gap analyses, risk assessments, and data mapping.Draft and review...

Learn more

Senior .NET/C# Developer

Added 07/07/2025

Role: Sr Developer C# .Net DeveloperType: Contract (Inside IR35)Nature: Hybrid (1 day per week in Nottingham) Overview of the role- Required Skills & Experience5+ years of experience in .NET/C# development, with a strong focus on backend services and data access layers.Proven experience in migrating legacy systems, especially from Oracle to PostgreSQL or similar.Strong understanding of PL/SQL and experience translating stored procedures into application logic.Familiarity with PostgreSQL, including performance tuning and SQL dialect differences.Experience working in hybrid environments where legacy and modern systems coexist.Comfortable using AI tools (e.g., GitHub Copilot, ChatGPT, code translators) to assist in development and migration tasks.Solid understanding...

Learn more

Senior Oracle Developer (C#/.NET)

Added 07/07/2025

Hi,We are hiring for below:JOB DESCRIPTION: 🚀 Now Hiring: Role: Senior Oracle Developer - Oracle to .NET (C#) Migration ProjectType: Contract Inside IR35 Location : Nottingham[ 1 day in office / week - Hybrid ]Rate : £500 - 560 p/d Inside IR35 Job DescriptionRequired Skills & Experience5+ years of experience developing in Oracle PL/SQL, including deep knowledge of stored procedures, triggers, and packages.Proven experience in migrating business logic from Oracle to .NET (C#), with a focus on re-architecture rather than direct translation.Strong understanding of Oracle internals and how database logic integrates with external systems.Experience migrating data from Oracle to other...

Learn more

Senior Analytical Engineer

Added 04/07/2025

I'm hiring for a Senior Analytics Engineer to join a fast-growing company in Utrecht that's building an entirely new data team from scratch. This is a fantastic opportunity to shape the data strategy from the ground up and create impactful solutions in the finance sector. We're looking for someone who: ✅ Has strong SQL and DBT experience (DBT is a must-have)✅ Comes with a solid background in the finance domain✅ Understands cloud data warehousing and modern ELT pipelines✅ Knows how to turn data into real business value✅ Is fluent in Dutch✅ Can work 2 days a week onsite in Utrecht...

Learn more

Senior Infrastructure Operations Engineer

Added 30/06/2025

We are looking for a skilled and experienced Senior Infra Ops Engineer to join our technology team. You will play a critical role in managing and enhancing IT infrastructure, ensuring the performance, reliability, and security of both on-premise and cloud environments. This is a hands-on role, ideal for someone who thrives in a fast-paced, collaborative environment. Job Title: Senior Infrastructure Operations Engineer Location: Dublin, Ireland (Hybrid)Type: Permanent role Key Responsibilities:Manage and maintain cloud and on-prem infrastructure, including servers, networking, and storage.Monitor system health, troubleshoot issues, and optimise performance.Apply and maintain security controls, in alignment with InfoSec policies and audit requirements.Lead...

Learn more

Senior System Engineer

Added 25/06/2025

Freelance / ZZP Role for a Senior System Engineer Currently looking for a Senior System Engineer for a new freelance assignment. This would be for a client based in Amsterdam and would be looking for Hybrid working. We are searching for people experienced in: You have experience in programming and automationExperience of running Data platform on public cloud (preferably Azure)Experience with Azure Databricks is a plusExperience with running production environments on Azure is a plusYou are experienced with cloud environments and using desired state configuration to manage them (Terraform is preferred)Containerised workloads have no secrets for youYou have experience with...

Learn more

Senior DevSecOps Engineer - Fully Remote - Financial Services

Added 24/06/2025

The Role:12-month contract with potential for extensionFully remote working modelUp to 450 EurosImmediate StartI'm currently working with a Banking Client aiming to upskill their team with the introduction of an experienced Senior Engineer on a contract basis.As a Senior DevSecOps Engineer, you will be responsible for driving the Design, Implementation, and operational readiness of CI/CD Pipelines during the application migration, ensuring they are secure.Key ResponsibilitiesIndependently manage the full migration lifecycle, including build, test, and deployment automation.Validate systems for security, stability, and readiness for production deployment and sign-off.Assess current CI/CD pipelines and propose enhancements that align with industry standards, regulatory requirements,...

Learn more

Senior SOC Analyst

Added 23/06/2025

As a Senior Cyber Security Analyst, you will play a critical role in strengthening digital defences by maintaining and optimising security operations tools and processes. You'll focus on monitoring, analysing, and responding to cyber threats, while supporting the SOC team and ensuring effective incident management across the business.Your role will involve collaborating with technology and business stakeholders, investigating security alerts, enhancing tooling performance, and supporting the delivery of continuous improvement and risk reduction initiatives. You'll also contribute to readiness for significant incidents and play a key role in proactive threat hunting and compliance reporting.What you'll be doing as a Senior...

Learn more

Senior Control Assurance Assessor - 12 Month Contract - Remote

Added 18/06/2025

Senior Control Assurance Assessor - 12 Month Contract - Remote - Financial ServicesWhat's on offer:12-month contract with potential for extensionFully remote working modelWork with an experienced team on critical security assurance programsExposure to advanced security technologies, automation, and AI-driven testingWe are working with a major financial services organisation to find an experienced Senior Control Assurance Assessor for an initial 12-month contract. This role is fully remote, offering the chance to work on meaningful security programs within a dynamic, high-performing environment.Role Overview: As a Senior Control Assurance Assessor, you will play a key role in ensuring that security both on-prem and...

Learn more

Senior Manager - Data Governance & Analytics

Added 18/06/2025

Overview:Join a global distribution and supply chain leader undergoing a large-scale digital transformation, focused on building a data-driven enterprise. You'll drive data innovation, improve governance, and help deliver enterprise-wide analytics capabilities to empower self-service and informed decision-making. Role: Senior Manager - Data Governance & AnalyticsType: Permanent roleLocation: Dublin, Ireland (Hybrid) Key Responsibilities:Define and implement data strategy and governance frameworks.Support delivery of self-service analytics and data platforms.Drive adoption of cloud, AI/ML, and modern data tools.Align data initiatives with business goals and engage senior stakeholders. Requirements:5-8 years' experience in data governance or consulting in large organizations.Strong knowledge of data strategy, governance, and...

Learn more

Senior Cyber Operations Analyst

Added 13/06/2025

Purpose of the role:To monitor the performance of operational controls, implement and manage security controls and consider lessons learnt in order to protect the bank from potential cyber-attacks and respond to threats. Accountabilities:* Management of security monitoring systems, including intrusive prevention and detection systems, to alert, detect and block potential cyber security incidents, and provide a prompt response to restore normal operations with minimised system damage. * Identification of emerging cyber security threats, attack techniques and technologies to detect/prevent incidents, and collaborate with networks and conferences to gain industry knowledge and expertise. * Management and analysis of security information and...

Learn more
At least 8 characters, 1 uppercase, 1 lowercase and 1 special character or number
Your file must be a doc, docx or pdf. No larger than 5MB