Penetration Tester

Company: Sanderson
Apply for the Penetration Tester
Location:
Job Description:

Senior Penetration Tester

Remote

£70000-£85000 + Bonus + Benefits

A leading enterprise organisation is seeking a Senior Information Security Tester / Senior Penetration Tester to join a growing cyber security function. This is a highly visible, hybrid role combining hands-on penetration testing with strategic input, stakeholder engagement, and mentoring responsibilities.

This position is ideal for a well-rounded security professional who can act as a “go-to” resource across the business. You will deliver a mix of web application and API penetration testing, security assessments, and advisory work – going beyond pure testing to help shape how security engagements are approached, scoped, and executed.

Key Responsibilities

  • Perform web application, API, and infrastructure penetration testing
  • Lead and contribute to end-to-end security assessments, from scoping through to reporting and remediation advice
  • Act as a subject matter expert, providing guidance to internal teams on testing strategies and best practice
  • Support and mentor junior team members, raising overall security capability
  • Contribute to secure design and vulnerability management discussions across the business
  • Engage with stakeholders to clearly communicate risks and remediation actions

What We’re Looking For

  • Strong experience in web application and API penetration testing (core focus)
  • Broad technical capability across multiple domains – a true “jack of all trades” with deep specialism
  • Experience delivering practical security guidance, not just identifying vulnerabilities
  • Understanding of penetration test scoping and methodology design
  • Exposure to malware development and advanced testing techniques
  • Knowledge of PCI-DSS and regulated environments
  • Relevant industry certifications (e.g. OSCP, CREST, GIAC or similar) preferred
  • Strong communication skills, with the ability to influence both technical and non-technical stakeholders

Why Apply?

  • Opportunity to operate as a trusted security advisor, not just a tester
  • Hybrid role balancing hands-on technical work with strategic influence
  • Access to complex, large-scale environments and varied testing challenges
  • Collaborative culture with a strong focus on learning, mentoring, and continuous improvement

This is an excellent opportunity for a senior tester looking to step into a broader, more consultative role while still remaining technically hands-on.

Posted: June 5th, 2026