Penetration Tester (CHECK / CREST)
Core
Delivering web application, API, and infrastructure penetration tests in a professional consultancy environment, leading client-facing engagements, and producing clear security reports.
Role type
Senior Penetration Tester (Offensive Security)
Builds
Security assessments and remediation guidance for clients
Domain
Cybersecurity / Offensive Security
Deliverable
client delivery
Required skills
Web application penetration testing, API security testing, infrastructure penetration testing, vulnerability exploitation (OWASP Top 10), technical reporting, client communication, red teaming, phishing simulation, threat landscape analysis
Preferred skills
CHECK (CTM/CTL) or CREST (CRT/CCT) qualifications, CTF participation, Hack The Box/TryHackMe experience, security research, community involvement, security clearance (SC/DV)
Technologies
OWASP, API frameworks, Web technologies
Responsibilities
Deliver end-to-end penetration tests from scoping to report delivery, lead client-facing engagements and communicate high-risk findings, produce professional reports tailored to client risk, support red team and purple team engagements, contribute to internal QA and mentor junior consultants, support report quality across the team, contribute to internal R&D and tooling, attend client site visits
Seniority
Mid to Senior level, hands-on IC with potential for leadership