Назад
Company hidden
обновлено 1 месяц назад

Senior Penetration Tester (Cybersecurity)

Формат работы
hybrid
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
UK
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Senior Penetration Tester (Cybersecurity): Conducting white-box and black-box penetration tests across applications, infrastructure, and APIs with an accent on vulnerability discovery, root cause analysis, and practical remediation. Focus on analyzing Java and Node.js code, assessing AWS microservices and third-party integrations, and building Python-based automation for security testing.

Location: London Area, United Kingdom; hybrid

What you will do

  • Conduct white-box and black-box penetration tests across applications, infrastructure, and APIs.
  • Investigate vulnerabilities, bug bounty reports, third-party tools, and integrations to identify root causes and related variants.
  • Build scalable tools for reconnaissance, automation, and security insights.
  • Work with engineers, product teams, security, and the SOC to turn findings into practical fixes.
  • Deliver security demos, workshops, and hands-on knowledge-sharing sessions.
  • Help prioritize security improvements and evolve the security programme.

Requirements

  • Solid experience in penetration testing and offensive security.
  • Ability to identify vulnerabilities in code, particularly Java and Node.js.
  • Understanding of AWS, microservices, and APIs.
  • Strong communication skills and ability to provide actionable remediation advice.
  • Comfort with scripting and contributing to larger Python projects.
  • Ownership, curiosity, and a pragmatic approach to security problem-solving.

Nice to have

  • OSCP, OSWE, CREST, GIAC, AWS certifications, or equivalent experience.
  • CTF participation, bug bounty hunting, or involvement in the security community.

Culture & Benefits

  • Permanent hybrid role based in the London Area.
  • Hands-on work with direct impact on security resilience.
  • Close collaboration with engineering, product, security, and SOC teams.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →