Penetration Tester - CREST Registered
Core
Conduct advanced security assessments and penetration testing across networks, applications, cloud infrastructure, and mobile platforms to identify and exploit vulnerabilities.
Role type
Senior IC penetration tester (CREST registered)
Builds
Security assessments and remediation guidance for technical and non-technical stakeholders
Domain
Cybersecurity / Offensive Security
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
Penetration testing, vulnerability exploitation, security reporting, OWASP Top 10, NIST, MITRE ATT&CK, Metasploit, Burp Suite, Cobalt Strike, Python, PowerShell, Bash, manual testing, automated testing
Preferred skills
CREST Registered Penetration Tester (CRT) or higher certification (e.g., CCT INF, CCT APP), mentorship experience
Technologies
Metasploit, Burp Suite, Cobalt Strike, Python, PowerShell, Bash
Responsibilities
Plan, execute, and report on penetration tests against web applications, network, infrastructure, and databases; Identify and exploit security vulnerabilities to assess the risk to the business; Produce high-quality technical reports and executive summaries; Collaborate with internal stakeholders to validate findings and recommend mitigation strategies; Stay up to date with the latest security threats, vulnerabilities, and attack techniques; Support security awareness initiatives and contribute to internal security improvements; Provide mentorship to junior testers or team members where applicable