Consultant, Penetration Tester - Red Team | Remote UK

Coalfire
united kingdom
1 year ago
Applications closed

Related Jobs

View all jobs

Penetration Tester - Nato Cleared

Penetration Tester

Penetration Tester

Penetration Tester

Remote Senior Penetration Tester - Growing Cyber-Sec Consultancy

Penetration Tester

About CoalfireCoalfire is on a mission to make the world a safer place by solving our clients’ toughest cybersecurity challenges. We work at the cutting edge of technology to advise, assess, automate, and ultimately help companies navigate the ever-changing cybersecurity landscape. We are headquartered in Denver, Colorado with offices across the and , and we support clients around the world.But that’s not who we are – that’s just what we do.We are thought leaders, consultants, and cybersecurity experts, but above all else, we are a team of passionate problem-solvers who are hungry to learn, grow, and make a difference. And we’re growing fast.We're looking for a Consultant to join our Penetration Testing Team.Position SummaryThe Consultant works closely with Project Managers, Delivery Directors, and other Delivery team members to lead engagements, assessing the security and compliance of various types of client applications and supporting infrastructure against regulatory and industry requirements and standards, as well as security best practice frameworks. The Consultant is a technical leader with broad and deep technical skills, meeting the objectives of their engagements, collaborating with clients, mentoring teammates, and providing subject matter expertise across one or more technical domains. The Consultant is a trusted advisor to clients, and through objective testing and results reporting, supports the client in making well-informed, risk-based decisions to improve overall security posture.

What You"ll Do

Work independently and collaboratively with a team to support Conduct network, web, mobile application penetration testing, code reviews, social engineering, red team engagements, and physical security assessments Conduct security assessments on a wide variety of technologies and implementations Simulate sophisticated cyberattacks for clients worldwide Advise clients on technical security or compliance activities Manage priorities and tasks to achieve delivery utilization targets Operate with professionalism both internally and with clients Ensure quality products and services are delivered on time Continue to develop professional skills with relevant industry specific certifications. Maintains strong depth of knowledge in the practice area Collaborate with project managers, quality management, sales and other delivery team members to drive customer satisfaction and meet project deliverables

What You"ll Bring

UK CREST Certification and eligibility to be approved for and maintain UK SC level Clearance  Strongly preferred CREST Certifications  CREST Practitioner Security Analyst (CPSA)  CREST Practitioner Threat Intelligence Analyst (CPTIA)  3+ years experience in information security with web application and network penetration testing experience Hands-on experience with two or more scripting languages such as Python, Powershell, Shell, or Ruby Experience with one or more IT security compliance frameworks, such as PCI, FISMA, HIPAA, FedRAMP, or HITRUST One to three (1-3) years of experience in an IT Security Audit and/or Compliance role Experience or knowledge of IT security risk assessments and gap analysis Experience interacting with management in a consultative manner Strong IT understanding with respect to networks, servers, workstations, and applications Excellent communication and presentation skills High school diploma required Ability to travel up to 10%

Bonus Points

Deep experience engaging clientele in consulting-related environments Experience leading or participating in Red Team engagements Reverse engineering malware, data obfuscators, or ciphers An aptitude for technical writing, including assessment reports, presentations, and operating procedures Strong understanding of security principles, policies, and industry best practices

Why You'll Want to Join UsAt Coalfire, you’ll find the support you need to thrive personally and professionally. In many cases, we provide a flexible work model that empowers you to choose when and where you’ll work most effectively – whether you’re at home or an office.Regardless of location, you’ll experience a company that prioritizes connection and wellbeing and be part of a team where people care about each other and our communities. You’ll have opportunities to join employee resource groups, participate in in-person and virtual events, and more. And you’ll enjoy competitive perks and benefits to support you and your family, like paid parental leave, flexible time off, certification and training reimbursement, digital mental health and wellbeing support membership, and comprehensive insurance options.At Coalfire, equal opportunity and pay equity is integral to the way we do business. A reasonable estimate of the compensation range for this role is £50,427 to £65,555 based on national salary averages. The actual salary offer to the successful candidate will be based on job-related education, geographic location, training, licensure and certifications and other factors. You may also be eligible to participate in annual incentive, commission, and/or recognition programs. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran.#LI-Remote#LI-HJ1

Subscribe to Future Tech Insights for the latest jobs & insights, direct to your inbox.

By subscribing, you agree to our privacy policy and terms of service.

Industry Insights

Discover insightful articles, industry insights, expert tips, and curated resources.

SOC Analyst Jobs UK 2026: Salaries, Skills & How to Get Hired

Cyber security is one of the UK's fastest-growing career paths — and SOC analyst is where most people begin. It's in high demand, genuinely accessible, and you don't need a degree or years of experience to get started. But knowing what UK employers actually want in 2026 — what they pay, which certs matter, and how to stand out — is a different matter. This guide covers all of it.

How Many Cyber Security Tools Do You Need to Know to Get a Cyber Security Job?

If you are trying to build or move forward in a cyber security career, it can feel like the list of tools you are expected to know never ends. One job advert asks for SIEM platforms, another mentions penetration testing tools, another lists cloud security, threat intelligence platforms, endpoint detection, scripting languages and compliance frameworks. Scroll LinkedIn and it gets worse. Everyone seems to “know” dozens of tools, certifications and platforms. Here is the reality most cyber security hiring managers agree on: they are not hiring you because you know every tool. They are hiring you because you understand risk, can think like an attacker and a defender, follow process, communicate clearly and make good decisions under pressure. Tools matter — but only when they support those outcomes. So how many cyber security tools do you actually need to know to get a job? For most job seekers, the answer is far fewer than you think. This article explains what employers really expect, which tools are essential, which are role-specific and how to focus your learning so you look credible, not overwhelmed.

What Hiring Managers Look for First in Cyber Security Job Applications (UK Guide)

If you want to stand out in the highly competitive world of cyber security job applications, you need to understand what hiring managers look for before they even finish reading a CV. Cyber security hiring managers scan applications quickly and with specific priorities in mind. They assess not just your technical ability, but your judgement, professionalism, clarity, risk awareness and evidence of impact. This guide explains what hiring managers look for first in cyber security applications across roles like Security Analyst, Security Engineer, Penetration Tester, Incident Responder, Security Architect, Governance Risk and Compliance specialists and Cloud Security positions. Use this as a practical, step-by-step checklist to sharpen your CV, LinkedIn profile, cover letter and portfolio before you apply on www.cybersecurityjobs.tech .