National AI Awards 2025Discover AI's trailblazers! Join us to celebrate innovation and nominate industry leaders.

Nominate & Attend

Consultant Penetration Tester...

Applicable Limited
London
2 weeks ago
Applications closed

Related Jobs

View all jobs

Consultant Penetration Tester

Consultant Penetration Tester

Senior Penetration Tester

Senior Security Penetration Tester

Penetration Testers

Principal Cyber Security Consultant - Critical National Infrastructure

The team you'll be working with:

Consultant - Offensive Security Testing

Role Overview:

We are seeking a highly skilled and experienced Offensive Security Consultant with a strong focus on threat intelligence and attack methods. The ideal candidate will manage and conduct advanced penetration testing engagements, leveraging threat intelligence to simulate real-world attacks across various environments, including OT, IT, web applications, cloud infrastructure, and APIs. This role requires a deep understanding of adversarial tactics, excellent communication skills, and the ability to provide strategic, actionable recommendations to enhance our clients' security posture.

What you'll be doing:

Responsibilities:

  • Lead and manage the full lifecycle of complex penetration testing engagements, applying a threat intelligence-led approach.
  • Execute advanced penetration tests across environments such as applications, infrastructure, web, APIs, O365, Azure, AWS, and OT, using current threat landscape knowledge and attacker TTPs.
  • Develop and maintain detailed test plans and use cases informed by threat intelligence analysis.
  • Identify and prioritize critical OT and IT assets based on potential threats and exposure.
  • Plan and schedule testing engagements based on threat assessments and client needs.
  • Produce clear, detailed reports with technical findings, business impact, and strategic remediation recommendations for diverse audiences.
  • Communicate complex security concepts and threat insights effectively to technical and non-technical stakeholders.
  • Collaborate with client IT and cybersecurity teams to improve security protocols and address vulnerabilities.
  • Monitor remediation efforts and provide updates highlighting threat reduction.
  • Conduct proactive security research and contribute to technical content on emerging threats and attack techniques.
  • Enhance security monitoring by sharing offensive insights to improve detection and response.
  • Drive patching efforts for vulnerabilities based on threat intelligence and exploitation potential.

    What experience you'll bring:

    Skills and Qualifications:

  • At least 5 years of professional penetration testing experience with a focus on adversarial tactics and threat intelligence.
  • Understanding of OT and IT assets, technologies, and security best practices within the current threat landscape.
  • Deep knowledge of network protocols, cryptography, vulnerabilities, and attack vectors used by sophisticated threat actors.
  • Proficiency with a range of penetration testing tools and methodologies, especially those related to threat analysis.
  • Experience in planning and executing complex, threat-driven penetration tests.
  • Excellent communication skills for articulating technical findings and threat insights clearly.
  • Strong organizational skills to manage multiple engagements effectively.
  • Current CREST CRT certification or higher is required.
  • Eligibility for SC Clearance is required.

    Desirable Skills:

  • Experience with Breach Attack Simulation tools and threat-informed vulnerability management.
  • Knowledge of Risk Management frameworks and their integration with threat intelligence.
  • Hands-on experience with cloud security reviews (AWS, Azure, GCP) considering cloud-specific threats.
  • Familiarity with ISO 27001 audits and threat-informed compliance practices.
  • Additional certifications such as CISM, CISSP, ECSA, CREST CCT are advantageous.

    Who we are:

    We’re a global business empowering local teams with exciting work that makes a difference. Our portfolio spans consulting, applications, cloud, and infrastructure services, enabling you to collaborate with talented colleagues and clients on innovative projects.

    Our inclusive environment promotes mutual respect, accountability, and continuous learning, fostering diversity, collaboration, and innovation. We also support various Inclusion Networks such as Women’s Business Network, Cultural and Ethnicity Network, LGBTQ+ & Allies Network, Neurodiversity Network, and Parent Network.

    For more on our Diversity, Equity, and Inclusion initiatives, visit: Creating Inclusion Together at NTT DATA UK | NTT DATA

    What we'll offer you:

    We provide tailored benefits supporting your physical, emotional, and financial wellbeing. Our Learning and Development programs ensure ongoing growth, and flexible work options are available.

    Learn more about us at:https://uk.nttdata.com/

    We are committed to diversity and inclusion. As a Disability Confident Employer, we guarantee an interview for applicants with disabilities who meet the role requirements and offer reasonable adjustments during recruitment. Join us in building a diverse, empowered team.

    Back to search Email to a friend Apply now

    #J-18808-Ljbffr
National AI Awards 2025

Subscribe to Future Tech Insights for the latest jobs & insights, direct to your inbox.

By subscribing, you agree to our privacy policy and terms of service.

Industry Insights

Discover insightful articles, industry insights, expert tips, and curated resources.

Cyber Security Jobs Skills Radar 2026: Emerging Frameworks, Tools & Certifications to Learn Now

Cyber threats are evolving—and so must the people defending against them. As ransomware, AI-enhanced phishing, and supply chain attacks grow more advanced, UK employers are urgently hiring cyber security professionals with the right mix of strategic and hands-on skills. Welcome to the Cyber Security Jobs Skills Radar 2026, your go-to guide for the most in-demand tools, frameworks, certifications, and technologies shaping the UK's cyber workforce. Whether you're a SOC analyst, penetration tester, or cloud security architect, this annual radar is designed to help you stay ahead of the market.

How to Find Hidden Cyber Security Jobs in the UK Using Professional Bodies like BCS, CIISec & More

The demand for skilled cyber security professionals in the UK has never been higher. With threats increasing in sophistication and frequency, organisations are urgently hiring ethical hackers, threat analysts, GRC specialists, and security architects. But many of the most valuable roles—particularly in government, defence, and critical infrastructure—are never publicly advertised. Instead, these jobs are shared behind the scenes through trusted networks, private communities, and professional bodies. In this article, we explore how to uncover hidden cyber security jobs in the UK using organisations like the BCS (The Chartered Institute for IT), CIISec (The Chartered Institute of Information Security), ISACA, and ISC² UK Chapter. We’ll show you how to use membership directories, special interest groups, CPD events and informal networks to gain early access to roles most people never see.

How to Get a Better Cyber Security Job After a Lay-Off or Redundancy

Redundancy is never easy—especially in a fast-moving field like cyber security, where your skills and experience are constantly evolving. But if you’ve recently been made redundant from a cyber security role, know this: the UK cyber workforce remains in high demand, and your expertise is more valuable than ever. Whether you’re a SOC analyst, penetration tester, incident responder, security architect or GRC specialist, there are still thousands of opportunities across sectors including finance, defence, government, retail, and critical infrastructure. This guide will help you turn redundancy into a career relaunch, with a clear action plan tailored to the UK cyber security job market.