Job title: Ethical Hacker
Job type: Permanent
Emp type: Full-time
Salary type: Annual
Salary: negotiable
Location: York
Job published: 2025-01-31
Job ID: 34146
Contact name: Richard Padget
Phone number: +441617147120
Contact email: richard@candour-solutions.co.uk

Job Description

Ethical Hacker - York (hybrid / remote)

Overview

#TeamCandour are exclusively on the hunt for an ethical hacker / penetration tester to join the Cyber Fusion Centre team of a thriving financial services global player in York. The organisation is on a rocket ship trajectory with the expansion of their new cybersecurity practice at the forefront of their plans, there's no better time to join!

Benefits

  • Competitive salary
  • Hybrid-working practices
  • Personal & company bonus
  • Private health & dental care

Responsibilities

  • Conduct advanced reconnaissance to gather information about potential high value targets in the network
  • Perform routine penetration tests of infrastructure and applications, and document findings and recommendations for remediation
  • Analyse and prioritise the outputs from penetration tests and translate these into mitigation actions for our Fusion Centre CI/CD pipelines
  • Manage the daily operations and maintenance of our penetration testing tools and technologies
  • Ensure adherence to legal and ethical standards when performing security tests
  • Collaborate with the Blue Team to validate and enhance their detection and response capabilities
  • Prepare detailed reports and briefings for various stakeholders outlining the nature of threats, their potential impact and recommended mitigation approach

Qualifications

  • Significant experience in a penetration testing role, preferably with a CREST registered provider
  • Excellent working knowledge of current TTPs, the cyber kill chain and attack lifecycle
  • Fluent in multiple programming languages, including Python, Java, C++ and Shell Script
  • BSc or MSc in Cybersecurity is desirable
  • Advanced industry recognised qualifications such as GIAC GXPN and GRTP are desirable

If you are passionate about cybersecurity and want to make a difference in safeguarding a true household brand from the emerging threats of the future then drop us a line and we can arrange a call to go through the finer details!