Consultant, Application Security Penetration Tester

3 days, 10 hours ago
Full-time
Senior
Operations
Coalfire

Coalfire

Coalfire is a cybersecurity advisor that helps organizations avert threats, reduce risk, and turn security into a competitive advantage, fueling their success.

Internet Software & Services
251-1K
Founded 2001
$9M raised

Description

  • Lead and support penetration testing engagements independently and as part of a team.
  • Perform penetration testing on complex applications from both black-box and white-box perspectives.
  • Assess emerging or custom technologies and adapt testing approaches as needed.
  • Contextualize vulnerabilities and evaluate realistic client impact, including mitigating and aggravating factors.
  • Manage priorities and tasks to meet utilization targets and delivery deadlines.
  • Collaborate with project managers, quality management, sales, and other delivery team members to support customer satisfaction and project deliverables.
  • Operate professionally with clients and internal stakeholders during engagements, kickoff calls, and debriefs.
  • Produce high-quality reports and services efficiently and on time.
  • Maintain deep knowledge of application security testing practices and related technical domains.
  • Mentor teammates and provide subject matter expertise across one or more technical areas.

Requirements

  • Minimum of 2 years of experience in a consulting or professional services role.
  • Minimum of 2 years of experience in application security and/or software development.
  • Experience performing application penetration testing and assessment tradecraft, including browser-based and API testing.
  • Strong working knowledge of at least two programming or scripting languages.
  • Strong understanding of security principles and industry best practices.
  • Proficiency in web application penetration testing.
  • Strong technical expertise in at least one area such as mobile, thick client, hardware, secure code review, container, cloud, network Active Directory, or AI penetration testing.
  • Strong consulting skills, including time management, task prioritization, escalation, verbal communication, and report writing.
  • High school diploma required.
  • UK CREST Certification and eligibility to be approved for and maintain UK SC level clearance are strongly preferred.
  • Preferred certifications include CREST CPSA, CREST CPTIA, AWAE, OSCP, OSCE, and OSEE.
  • Preferred background includes significant development and engineering experience.
  • Preferred experience with cloud service penetration testing across providers such as AWS and GCP.
  • Preferred experience with mobile penetration testing on both iOS and Android.
  • Preferred experience with red/purple team tradecraft and social engineering.
  • Preferred certifications include AWS Certified Solutions Architect – Professional, AWS Certified Security, AWS Certified Advanced Networking, and AWS Certified SysOps Administrator.
  • Preferred network, database, or system administration experience and certifications.

Benefits

  • Competitive salary of £63,000 to £72,810 per year.
  • Eligibility for annual incentive, commission, and/or recognition programs.
  • Flexible work model with the option to work from home or the office.
  • Paid parental leave.
  • Flexible time off.
  • Certification and training reimbursement.
  • Digital mental health and wellbeing support membership.
  • Comprehensive insurance options.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

Consultant - Syphilis Free Start

Evidence Action 251-1K Capital Markets

Evidence Action is seeking 5-7 consultants to provide country-level technical assistance for its Syphilis-Free Start program, supporting Ministries of Health to sustain or expand dual HIV/syphilis testing and syphilis treatment in upcoming Global Fund and domestic funding processes.

3 days, 10 hours ago

JD Edwards Functional Consultant (Czech Republic)

Quistor 51-250 Internet Software & Services

Broadpin is hiring a Senior JD Edwards Functional Consultant to support Financials, Logistics, and Distribution work in a fully remote role based in the Czech Republic.

3 days, 10 hours ago

SAP RE-FX(Flexible Real State Management) Consultant

Muller Internet Software & Services

Müller's Solutions is seeking an SAP RE-FX Consultant to work with clients on real estate process solutions built in SAP and improve the effectiveness of their real estate management operations.

SAP
3 days, 10 hours ago

Consultant, Developer Platform

Cloudflare 1K-5K IT Services

Cloudflare is hiring a Cloud Engineer for Developer Platform to deliver post-sales advisory, implementation, and migration services for enterprise customers building serverless applications on its platform.

Agile Azure Bash CDN CI/CD Cloudflare Cybersecurity DDoS DNS Git HTTP JavaScript OWASP Python Serverless TCP/IP Terraform TLS TypeScript
3 days, 10 hours ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers