about the company
Our client is an established cybersecurity consulting firm delivering offensive security, penetration testing, and security assessment services to enterprise clients across various industries. Due to continued business growth, they are expanding their Offensive Security team and are looking for an experienced technical leader to drive project delivery and mentor the next generation of penetration testers.
...
about the job
As a Lead Penetration Tester, you will combine hands-on offensive security expertise with technical leadership responsibilities. You will oversee multiple penetration testing engagements while mentoring consultants, ensuring high-quality technical delivery, and strengthening the organisation's offensive security capabilities.
You will be responsible for conducting and reviewing assessments across:
- External & Internal Network Penetration Testing
- Web Application Security Testing
- Mobile Application Security Testing
- API Security Testing
- Active Directory Assessments
- Cloud Security Assessments (AWS, Azure & GCP)
- Wireless Security Testing
- Red Team & Purple Team Exercises
You will also contribute to improving penetration testing methodologies, developing automation, enhancing internal playbooks, and expanding offensive security service offerings.
The ideal candidate should possess:
- Minimum 8 years of Information Security experience
- At least 5 years of hands-on Penetration Testing experience
- Minimum 2 years leading or mentoring technical teams
- Strong knowledge of Windows & Linux Security, Active Directory, Networking, OWASP Top 10, API Security, and Cloud Security
- Hands-on experience with Burp Suite Pro, Nessus, Nmap, Metasploit, BloodHound, Impacket, Mimikatz, Wireshark, Kali Linux
- Scripting experience in Python, PowerShell, or Bash
- Professional certifications such as OSCP, OSEP, GPEN, GXPN, CRTO, or CRTE are highly preferred.
about the manager/team
You will join a highly technical Offensive Security team comprising experienced penetration testers and security consultants who deliver complex security assessments for enterprise clients. This role offers the opportunity to lead technical engagements, mentor security professionals, influence the team's technical direction, and work with cutting-edge offensive security tools and methodologies in a collaborative consulting environment.