Job type
- Full-time
Job description
We are looking for an experienced Senior Penetration Tester to support a cybersecurity engagement involving automated security testing and validation.
Location: hybrid/remote location is Essex areas
Engagement: Contract (Inside IR35)
Start: Immediate / Short Notice Preferred
The role requires a hands-on security professional who can go beyond automated tooling — validating vulnerabilities, understanding attack paths, assessing real-world risk and providing clear remediation guidance.
Key Responsibilities
- Validate and investigate penetration testing findings generated through automated security testing platforms.
- Distinguish genuine vulnerabilities from false positives, edge cases and low-risk findings.
- Reproduce and demonstrate vulnerabilities where required.
- Analyse attack paths and potential exploitation scenarios.
- Assess the business and technical impact of identified vulnerabilities.
- Prioritise remediation based on risk and exploitability.
- Recommend appropriate remediation and compensating controls.
- Work with technical and security teams to explain findings clearly.
- Provide high-quality technical documentation and reports.
- Apply manual penetration testing expertise to complement automated testing.
- Strong commercial experience in penetration testing / offensive security.
- Proven ability to manually validate automated security findings.
- Strong understanding of vulnerability assessment, exploitation and attack paths.
- Experience identifying false positives and assessing vulnerabilities in context.
- Ability to communicate technical security findings to both technical and non-technical stakeholders.
- Strong knowledge of common attack techniques, vulnerabilities and security controls.
#J-18808-Ljbffr