Back to Careers

Senior Pentester (Europe, UK)

DETAILS

Type: Full-time

Seniority: Senior Level

Locations: Remote work from Home scheme

BENEFITS

  • Flexible work schedule
  • Your birthday is an extra holiday
  • Company Bonus scheme
  • 100% Health Care Plan Covered by Foregenix
  • Plus other country-specific benefits (comprehensive health insurance, pension schemes, and more)

NOTES

  • Please note we only accept docs in PDF format
SHARE

Purpose

 

You will be at the forefront of helping our customers identify, understand, and address security weaknesses across their environments through advanced penetration testing and offensive security services. Your mission is to deliver high-quality security testing and advisory engagements that not only identify vulnerabilities but also demonstrate real-world impact and provide clear, actionable guidance to strengthen resilience.

You will work closely with senior members of the Offensive Security Services and technical teams to deliver security assurance services across multiple disciplines, including network and web application penetration testing, as well as more advanced activities such as social engineering, red teaming, and complex advisory engagements.

As an experienced offensive security specialist, you will combine strong hands-on technical expertise with a structured and analytical approach. You will translate technical findings into meaningful business risk, ensuring clients clearly understand both the implications and the path to remediation.

To succeed in this role

  • You will deliver high-quality penetration testing and offensive security engagements across a variety of environments, consistently meeting our organisation’s standards and methodologies
  • You will think beyond vulnerability identification, focusing on demonstrating real-world exploitation paths and meaningful business impact
  • You will build trust with clients through accurate, insightful, and well-communicated findings
  • You will provide clear, actionable remediation guidance that supports risk reduction and long-term security improvements
  • You will contribute to the continuous development of our offensive security capabilities, including tools, techniques, and infrastructure
  • You will proactively research emerging threats, vulnerabilities, and exploitation techniques to keep our services relevant and effective
  • You will collaborate closely with internal teams, including Offensive Security, CRS, and Sales, to deliver integrated cybersecurity services
  • You will manage challenges with confidence, escalating early where needed and working collaboratively to find solutions
  • You will take ownership of engagements, ensuring timely delivery, high-quality reporting, and effective client communication
  • You will embody the team spirit that defines us: everyone has a voice, and everyone can help shape the future of the company

In this role, you will

  • Execute a wide range of penetration testing engagements, including network, infrastructure, and web application testing across diverse client environments
  • Progressively take part in more advanced offensive security activities, including red teaming, adversary simulations, social engineering engagements, and source code or configuration reviews
  • Simulate attacker behaviour by identifying, chaining, and exploiting vulnerabilities to demonstrate realistic attack paths and impact
  • Support the CRS team in delivering broader cybersecurity services, including design, implementation, and compliance-related activities for clients
  • Conduct in-depth research across a wide variety of cybersecurity domains, including new vulnerabilities, exploitation techniques, and defensive bypass methods
  • Develop, customise, and maintain attack and analysis tools to expand and strengthen our internal offensive capabilities
  • Assist in the design, deployment, and maintenance of Foregenix attack infrastructure, including attack nodes and supporting environments
  • Collect, classify, and analyse scoping documentation to accurately define engagement scope and approach
  • Manage client communications throughout engagements, ensuring clarity on scope, progress, findings, and timelines
  • Manage customer expectations in relation to delivery, deadlines, and technical outcomes
  • Produce high-quality reports that clearly document findings, exploitation paths, risk context, and remediation guidance
  • Ensure timely finalisation of engagements, maintaining a high standard of quality and professionalism
  • Work with the Sales Team to support scoping activities and identify opportunities to expand services within client organisations

You are expected to bring

  • Your background might include formal study in Computer Science, Software Engineering, or Information Security, or you may have built your expertise through hands-on experience, both paths are equally valued
  • Solid experience in penetration testing and offensive security, supported by prior experience in computing roles such as IT Security administration, systems or network administration, or software development
  • Strong technical understanding in at least one of the following areas:
    • Hands-on knowledge of network penetration testing concepts and methodologies
    • Hands-on knowledge of web application and web services penetration testing
    • Proven ability to research, analyse, and apply exploitation techniques in real-world scenarios
  • Exposure to or experience with reverse engineering techniques
  • Solid understanding of cryptography concepts and current implementations
  • Advanced level of English
  • Ability to manage multiple engagements and priorities effectively in a dynamic environment
  • Systems administration experience, preferably within Unix-like operating systems
  • Proficiency in at least one scripting language (e.g. Python, Perl, Ruby) and one programming language (e.g. C, C++, C#, Java), enabling custom tooling and automation
  • Experience working with or contributing to open-source projects is a plus
  • Experience with vulnerability scanning and penetration testing tools; participation in CTFs is highly valued
  • Strong ability to translate technical vulnerabilities and deficiencies into clear business-relevant language
  • Ability to analyse results and provide practical, prioritised mitigation recommendations
  • Ability to work autonomously while also collaborating effectively within a team
  • Strong written and verbal communication skills, including the ability to present findings to different audiences
  • A motivated, self-driven mindset with a strong desire to continuously learn, research, and improve

Advantageous Competencies

  • Having a MSc in Information Security
  • A basic understanding of the PCI DSS and other cybersecurity compliance  programs
CAREERS

Apply for Senior Pentester here

Fill out the fields to apply for the role