*2 days onsite each week are required in the London office.*
Skills:
- Strong understanding of network protocols, firewalls, VPNs, cloud security and operating systems (Windows, Linux, macOS).
- Experience with penetration testing tools such as Nmap, Metasploit, Burp Suite, Nessus, Kali Linux, Wireshark, etc.
- Proficiency in manual testing techniques beyond automated scanners.
- Knowledge of cloud security testing (AWS, Azure, GCP).
- Familiarity with Active Directory security assessments and privilege escalation techniques.
- Understanding of OWASP, MITRE ATT&CK, CIS benchmarks and NIST security frameworks.
- Scripting and automation experience using Python, PowerShell, Bash, or similar languages.
- Strong analytical and problem-solving skills with an offensive security mindset.
- Excellent report writing and communication skills to explain vulnerabilities and remediation steps to technical and non-technical stakeholders.