Penetration Tester Team Lead Penetration Testing Remote - UK
Posted 5 days 11 hours ago by Bulletproof incorporated
As a Penetration Tester Team Lead, you will be responsible for the day-to-day management of a small team of Penetration Testers, including coaching, guiding, and mentoring. In addition to this, you will perform formal and comprehensive penetration testing assessments, including producing full written reports to appropriate standards and within agreed deadlines. Furthermore, you will support recruitment, quality assurance of reports, and client pre-engagement activities such as scoping and proposal drafting. Additional management time of one day a week will be assigned to help support management activities.
Supervisory ResponsibilitiesThe Penetration Tester Team Lead will be responsible for the day-to-day management of a team of Penetration Testers, including coaching, guiding, and mentoring.
Responsibilities- Manage, coach, guide, and mentor a team of Penetration Testers;
- Complete performance reviews, including 1-2-1s, and support with appropriate follow-up actions;
- Work with the Penetration Testing Managers to support continuous improvement, efficiency, and effectiveness of the team;
- Support the Service Delivery team in assigning penetration testing projects;
- Assist the Marketing team with content development (including blogs, social media posts, and articles) to raise the profile of Bulletproof's Penetration Testing services;
- Support the Sales & Pre-sales teams with client pre-engagement interactions, including scoping call activities and proposal drafting;
- Assist in the recruitment pipeline, reviewing candidate submissions, CTF results, and conducting interviews;
- Manage the QA process to ensure high-quality client reports are delivered in accordance with applicable Service Level Agreements (SLA);
- Perform formal and comprehensive application, infrastructure, and other penetration testing assessments as required;
- Conduct vulnerability assessments and provide findings with remediation actions;
- Deliver well-written, concise, technical and non-technical reports in English;
- Manage and deliver penetration testing project activities within deadlines;
- Perform any other appropriate job duties in line with the associated skill and experience of the post holder.
- Proven industry experience in penetration testing;
- Previous management or mentoring experience is advantageous but not essential as full support will be provided;
- Strong understanding of multiple penetration testing fields & frameworks, including OWASP, PTES, and other methodologies;
- Experience testing web and mobile applications (iOS/Android);
- Experience reviewing infrastructure and associated technologies (such as AD & network controls/devices);
- Experience reviewing cloud platforms;
- Experience preparing and launching social engineering campaigns;
- Knowledge of how modern solutions are designed, developed, and deployed across different platforms;
- Ability to program or script in your preferred language;
- Relevant security qualifications (such as OSCP, OSCE, CREST CRT, CREST CCT);
- Good knowledge and understanding of network and OS principles;
- Good knowledge of various operating systems;
- Good knowledge of virtualization.
- Excellent spoken and written English communication skills with strong attention to detail and accuracy;
- A passion for security and networks;
- Analytical and problem-solving skills with a can-do attitude and the ability to think laterally and creatively;
- Self-motivated with a commitment to continued development;
- Ability to work independently and as part of a team;
- Influencing and negotiation skills with the ability to build relationships at all levels;
- Willingness to learn.
- 25 days annual holiday;
- An additional day's annual holiday for your birthday;
- Company Pension contribution;
- Subsidized gym membership;
- Perkbox employee benefits platform;
- Frequent team events;
- Private Healthcare (individual cover only);
- Learning Allowance Benefit - a reimbursable benefit of £100 per annum for personal career development;
- Flexible working policy.
Bulletproof is a trusted provider of innovative cyber security and people-powered solutions. Our cyber security services are the best way to stay ahead of hackers, take control of infrastructure, and protect business-critical data.
We provide a full spectrum of cyber security services including CREST-certified penetration testing, 24/7 threat monitoring, compliance support, and security training to help organizations protect against today's evolving threat landscape.
Please note that as part of the recruitment process, a criminal records check will be carried out by an authorized third party.