Be at the heart of actionFly remote-controlled drones into enemy territory to gather vital information.

Apply Now

Penetration Tester

Lloyds Banking Group
Edinburgh
3 days ago
Create job alert

JOB TITLE: Penetration Tester

SALARY: £47,790 - £53,100

LOCATION(S): Leeds, Bristol, Manchester or Edinburgh

HOURS: Full-time

WORKING PATTERN: Our work style is hybrid, which involves spending at least two days per week currently, or 40% of our time, at one of our office locations.

About this opportunity

The Chief Security Office (CSO) plays a vital role in delivering Lloyds Banking Group's vision of putting customers at the heart of everything we do, helping Britain prosper, and protecting the Group and its customers and suppliers from security threats.

Growing our in-house capacity for penetration testing allows us to improve the pace, quality and agility of our security testing services and allow us to better support customers in delivering change securely, delivering higher value outcomes and ROI over time, while reducing our dependence on third-party suppliers.

Key Responsibilities

  • Plan, execute and report on penetration testing engagements against Web, API, Mobile or infrastructure assets

  • Perform manual exploitation and post-exploitation activities

  • Document and review findings from testing engagements to ensure accuracy and quality

  • Design and implement repeatable detection mechanisms to identify recurring weaknesses at scale

Why Lloyds Banking Group

We're on an exciting journey to transform our Group and the way we're shaping finance for good. We're focusing on the future, investing in our technologies, workplaces, and colleagues to make our Group a great place for everyone. Including you.

What you'll need

  • Significant experience as a penetration tester

  • Strong experience in any three of the following areas - Web, API, Mobile, Infra and Cloud testing (incl. cloud native technologies), AI testing

  • Relevant security testing certifications such as CREST (CRT, CCT), OSCP, OSCE, GPEN, GXPN

  • Demonstratable knowledge of the common vulnerabilities (incl. OWASP Top 10)

  • Strong analytical thinking, effective communication skills, and the ability to engage confidently with technical and non-technical customers

  • A collaborative demeanour with a passion to mentor others and contribute to a culture of continuous improvement

Any experience of these would be really useful

  • Experience testing applications hosted in cloud native and containerised environments

  • Experience working with and testing against AI/LLM models

  • Strong understanding of security testing practices and capabilities (VM, SAST/DAST, SCA etc.)

  • Any relevant cloud related or other cyber security certifications

  • Experience operating in a large and complex enterprise environment

  • Experience in developing software and/or reviewing source code in various programming languages

  • Experience operating in a large and complex enterprise environment

About working for us

Our ambition is to be the leading UK business for diversity, equity and inclusion supporting our customers, colleagues and communities and we're committed to creating an environment in which everyone can thrive, learn and develop.

We were one of the first major organisations to set goals on diversity in senior roles, create a menopause health package, and a dedicated Working with Cancer Initiative.

We offer reasonable workplace adjustments for colleagues with disabilities, including flexibility in office attendance, location and working patterns. And, as a Disability Confident Leader, we guarantee interviews for a fair and proportionate number of applicants who meet the minimum criteria for the role with a disability, long-term health or neurodivergent condition through the Disability Confident Scheme.

We provide reasonable adjustments throughout the recruitment process to reduce or remove barriers. Just let us know what you need.

We also offer a wide-ranging benefits package, which includes

  • A generous pension contribution of up to 15%

  • An annual performance-related bonus

  • Share schemes including free shares.

  • Benefits you can adapt to your lifestyle, such as discounted shopping.

  • 28 days' holiday, with bank holidays on top

  • A range of wellbeing initiatives and generous parental leave policies

Want to do amazing work, that's interesting and makes a difference to millions of people? Join our journey.


#J-18808-Ljbffr

Related Jobs

View all jobs

Penetration Tester

Penetration Tester

Penetration Tester

Penetration Tester

Penetration Tester

Penetration Tester

Subscribe to Future Tech Insights for the latest jobs & insights, direct to your inbox.

By subscribing, you agree to our privacy policy and terms of service.

Industry Insights

Discover insightful articles, industry insights, expert tips, and curated resources.

Why the UK Could Be the World’s Next Cyber Security Jobs Hub

Cyber security has become one of the defining challenges of the digital age. From protecting personal data and financial transactions to defending national infrastructure and corporate systems, the demand for strong cyber defences has never been higher. As businesses, governments, and individuals depend more heavily on digital services, the scale and sophistication of cyber threats have risen dramatically. Ransomware attacks, data breaches, state-sponsored cyber operations, and insider threats are now everyday risks. In response, organisations worldwide are investing heavily in cyber security talent. The United Kingdom is uniquely positioned to become a global cyber security jobs hub. With its strong tech sector, world-class universities, advanced defence capabilities, and established financial markets, the UK already has the foundations. The question is whether it can scale up, attract, and retain the right talent to meet global demand. This article explores why the UK is poised to become the world’s next cyber security jobs hub, the opportunities available, the challenges ahead, and what needs to happen for this vision to be realised.

The Best Free Tools & Platforms to Practise Cyber Security Skills 2025/26

Cyber security is one of the most in-demand career fields in the UK. From preventing data breaches to monitoring networks and defending against ransomware, the role of cyber professionals is critical across every industry. With organisations of all sizes facing increasing threats, demand for skilled professionals continues to rise. But employers don’t just want theory—they want proof that you can analyse systems, detect vulnerabilities, and respond to incidents. The good news is that you don’t need to pay thousands of pounds for training to build practical experience. A wide range of free tools and platforms allow you to practise cyber security skills safely, ethically, and at no cost. This article explores the best free resources available in 2025 to help you gain hands-on skills in ethical hacking, penetration testing, digital forensics, network monitoring, and incident response.

Top 10 Skills in Cyber sScurity According to LinkedIn & Indeed Job Postings

In today’s digital age, cyber security is no longer optional—it’s mission-critical. From financial institutions to healthcare providers, government departments to tech startups, every sector in the UK is under rising cyber threats. As a result, employers are constantly on the hunt for skilled professionals who can defend, detect, and respond effectively. But with cyber threats evolving at pace, what exactly are employers seeking? By analysing job postings on LinkedIn and Indeed, this article reveals the Top 10 cyber security skills UK organisations are demanding in 2025. Read on to discover how to present these skills effectively on your CV, in interviews, and through practical proof of experience.