National AI Awards 2025Discover AI's trailblazers! Join us to celebrate innovation and nominate industry leaders.

Nominate & Attend

Consultant, Penetration Tester - Red Team | Remote UK

Coalfire
united kingdom
1 year ago
Applications closed

Related Jobs

View all jobs

Penetration Tester

Consultant - Cyber Security (Penetration Tester)

Security Testing Consultant

Senior Cyber Security Consultant

Senior Cyber Security Consultant (Manchester)

Senior Cyber Security Consultant

About CoalfireCoalfire is on a mission to make the world a safer place by solving our clients’ toughest cybersecurity challenges. We work at the cutting edge of technology to advise, assess, automate, and ultimately help companies navigate the ever-changing cybersecurity landscape. We are headquartered in Denver, Colorado with offices across the and , and we support clients around the world.But that’s not who we are – that’s just what we do.We are thought leaders, consultants, and cybersecurity experts, but above all else, we are a team of passionate problem-solvers who are hungry to learn, grow, and make a difference. And we’re growing fast.We're looking for a Consultant to join our Penetration Testing Team.Position SummaryThe Consultant works closely with Project Managers, Delivery Directors, and other Delivery team members to lead engagements, assessing the security and compliance of various types of client applications and supporting infrastructure against regulatory and industry requirements and standards, as well as security best practice frameworks. The Consultant is a technical leader with broad and deep technical skills, meeting the objectives of their engagements, collaborating with clients, mentoring teammates, and providing subject matter expertise across one or more technical domains. The Consultant is a trusted advisor to clients, and through objective testing and results reporting, supports the client in making well-informed, risk-based decisions to improve overall security posture.

What You"ll Do

Work independently and collaboratively with a team to support Conduct network, web, mobile application penetration testing, code reviews, social engineering, red team engagements, and physical security assessments Conduct security assessments on a wide variety of technologies and implementations Simulate sophisticated cyberattacks for clients worldwide Advise clients on technical security or compliance activities Manage priorities and tasks to achieve delivery utilization targets Operate with professionalism both internally and with clients Ensure quality products and services are delivered on time Continue to develop professional skills with relevant industry specific certifications. Maintains strong depth of knowledge in the practice area Collaborate with project managers, quality management, sales and other delivery team members to drive customer satisfaction and meet project deliverables

What You"ll Bring

UK CREST Certification and eligibility to be approved for and maintain UK SC level Clearance  Strongly preferred CREST Certifications  CREST Practitioner Security Analyst (CPSA)  CREST Practitioner Threat Intelligence Analyst (CPTIA)  3+ years experience in information security with web application and network penetration testing experience Hands-on experience with two or more scripting languages such as Python, Powershell, Shell, or Ruby Experience with one or more IT security compliance frameworks, such as PCI, FISMA, HIPAA, FedRAMP, or HITRUST One to three (1-3) years of experience in an IT Security Audit and/or Compliance role Experience or knowledge of IT security risk assessments and gap analysis Experience interacting with management in a consultative manner Strong IT understanding with respect to networks, servers, workstations, and applications Excellent communication and presentation skills High school diploma required Ability to travel up to 10%

Bonus Points

Deep experience engaging clientele in consulting-related environments Experience leading or participating in Red Team engagements Reverse engineering malware, data obfuscators, or ciphers An aptitude for technical writing, including assessment reports, presentations, and operating procedures Strong understanding of security principles, policies, and industry best practices

Why You'll Want to Join UsAt Coalfire, you’ll find the support you need to thrive personally and professionally. In many cases, we provide a flexible work model that empowers you to choose when and where you’ll work most effectively – whether you’re at home or an office.Regardless of location, you’ll experience a company that prioritizes connection and wellbeing and be part of a team where people care about each other and our communities. You’ll have opportunities to join employee resource groups, participate in in-person and virtual events, and more. And you’ll enjoy competitive perks and benefits to support you and your family, like paid parental leave, flexible time off, certification and training reimbursement, digital mental health and wellbeing support membership, and comprehensive insurance options.At Coalfire, equal opportunity and pay equity is integral to the way we do business. A reasonable estimate of the compensation range for this role is £50,427 to £65,555 based on national salary averages. The actual salary offer to the successful candidate will be based on job-related education, geographic location, training, licensure and certifications and other factors. You may also be eligible to participate in annual incentive, commission, and/or recognition programs. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran.#LI-Remote#LI-HJ1

National AI Awards 2025

Subscribe to Future Tech Insights for the latest jobs & insights, direct to your inbox.

By subscribing, you agree to our privacy policy and terms of service.

Industry Insights

Discover insightful articles, industry insights, expert tips, and curated resources.

LinkedIn Profile Checklist for Cybersecurity Jobs: 10 Tweaks to Supercharge Recruiter Engagement

In the ever-evolving realm of cybersecurity, having a LinkedIn profile that reflects both your technical prowess and threat-hunting acumen is vital. Organisations are on the lookout for professionals skilled in penetration testing, incident response, security architecture and compliance. With hiring managers scanning dozens of profiles daily, your profile needs to not just rank in searches but convey your expertise in safeguarding digital assets. This step-by-step LinkedIn for cybersecurity jobs checklist offers ten practical tweaks to supercharge recruiter engagement. Whether you’re an aspiring security analyst, a seasoned penetration tester or a chief information security officer aiming for board-level roles, these actionable optimisations will sharpen your LinkedIn presence and position you as a top infosec candidate.

Part-Time Study Routes That Lead to Cyber Security Jobs: Evening Courses, Bootcamps & Online Masters

The frequency and sophistication of cyber-attacks have exploded in recent years, making cyber security one of the UK’s most in-demand skill sets. From safeguarding NHS patient data to defending FTSE 100 financial systems, organisations across sectors require qualified professionals—penetration testers, security analysts, incident responders and security architects—to protect critical infrastructure. Yet many professionals cannot pause their careers to upskill full time. Fortunately, an ecosystem of part-time learning pathways—evening courses, intensive bootcamps and flexible online master’s programmes—enables you to learn cyber security while working. This comprehensive guide explores every route: foundational CPD, immersive bootcamps, accredited online MScs, plus funding options, planning strategies and a real-world case study. Whether you’re an IT support technician, a software developer or a compliance manager aiming to pivot into security, you’ll discover how to build expertise at your own pace.

The Ultimate Assessment-Centre Survival Guide for Cyber Security Jobs in the UK

Assessment centres for cyber security positions in the UK are designed to mirror real-world threat landscapes and test both your technical acumen and soft skills under pressure. Across multiple stages—psychometric assessments, penetration testing exercises, incident response group tasks, case studies, interviews and even informal networking breaks—employers assess your ability to identify vulnerabilities, collaborate in high-stakes scenarios and communicate effectively. This guide walks you through each component, equipping you to stand out and secure your next role in cyber defence.