CREST Penetration Tester

CREST Penetration Tester

Posted 2 days ago by SR2 - Socially Responsible Recruitment

£500 Per day
Outside
Remote
London, UK

Summary: The role of Crest Penetration Tester involves conducting advanced security assessments across infrastructure, web, and cloud environments for a Cyber Security consultancy. The position requires a Crest-certified professional to contribute to a high-assurance testing program aimed at protecting critical systems from real-world threats. The role is primarily remote with occasional on-site work in London and is outside IR35 regulations. The contract duration is for 6 months at a rate of £500 per day.

Key Responsibilities:

  • Perform advanced security assessments across infrastructure, web, and cloud layers.
  • Contribute to the protection of critical systems against real-world threats.
  • Conduct infrastructure and web application penetration testing.
  • Document findings and communicate effectively with stakeholders.

Key Skills:

  • Active Crest CRT (or equivalent) certification.
  • Proven experience in penetration testing.
  • Strong understanding of OWASP Top 10 and CVSS scoring.
  • Hands-on experience with testing tools such as Burp Suite, Nmap, Nessus, and Metasploit.
  • Solid grounding in red team methodologies.
  • Excellent documentation and communication skills.

Salary (Rate): £500 per day

City: London

Country: UK

Working Arrangements: remote

IR35 Status: outside IR35

Seniority Level: undetermined

Industry: IT

Detailed Description From Employer:

Crest Penetration Tester
Infrastructure & Web App Testing/Red Team/Cloud/CHECK/Outside IR35/Remote with London Onsite/£500 pd/6 months

We've partnered with a Cyber Security consultancy seeking an experienced Crest-certified Penetration Tester to support a high-assurance testing programme across enterprise environments. You'll perform advanced security assessments across infrastructure, web, and cloud layers-contributing to the protection of critical systems against real-world threats.

Required
Active Crest CRT (or equivalent) certification.
Proven experience conducting infrastructure and web application penetration testing.
Strong understanding of OWASP Top 10, CVSS scoring, and common exploitation techniques.
Hands-on experience with testing tools such as Burp Suite, Nmap, Nessus, Metasploit, and custom scripts.
Solid grounding in red team or simulated adversary methodologies.
Excellent documentation and communication skills.

Desirable
Active or previously held CHECK Team Member or CHECK Team Leader status.
Exposure to regulated projects.
Experience testing within cloud environments (AWS, Azure, GCP).
Knowledge of ISO27001, NIST, and other compliance frameworks.

Contract Details
6 months
Outside IR35
£500 per day
Remote with occasional London on-site work
ASAP Start
1-Stage Interview Process

Please apply now or contact me directly if this role looks like a good fit. From there I'll be in touch to discuss the opportunity in more detail.

Infrastructure & Web App Testing/Red Team/Cloud/CHECK/Outside IR35/Remote with London Onsite/£500 pd/6 months