Darktrace Logo

Darktrace

Penetration Tester

Posted 4 Days Ago
Be an Early Applicant
In-Office
London, Greater London, England, GBR
Mid level
In-Office
London, Greater London, England, GBR
Mid level
Conduct hands-on penetration tests across web, network, API, mobile, and cloud environments; simulate attacks, produce technical reports and executive summaries, collaborate on remediation, mentor junior testers, and stay current with emerging threats.
The summary above was generated by AI

Darktrace is a global leader in AI-driven cybersecurity, helping organizations stay ahead of evolving threats every day.    

Darktrace was built on a genuinely differentiated idea: that Adaptive AI could detect and respond to novel, real-time cyber threats. That approach matters more than ever in the era of AI.  Today, our customers depend on us to stay ahead.   

At Darktrace, we are energized by that responsibility.  We work across teams and rally around a shared goal. We own outcomes end to end - step in, step up and see things through without waiting to be asked.   We make decisions with urgency, say the hard thing, and hold each other to high standards with care and directness. We move first and learn fast anticipating where our customers are going next, continuously challenging ourselves.  

We invest in the skills, learning and opportunities that help people deliver at the level their roles demand, and reward the aptitude and curiosity to grow beyond them. 

Our Values: Own It | Win as One | Raise Our Bar | Move First. Learn Fast 


Job Description:

As a Penetration Tester within the internal cybersecurity team, you’ll play a key role in identifying and mitigating security risks across the organisation’s digital landscape. This position requires hands-on experience in offensive security and a deep understanding of network, application, and cloud-based vulnerabilities.

You’ll be responsible for conducting thorough penetration tests, simulating real-world attacks, and delivering actionable insights to both security and development teams. Collaboration and continuous learning are central to the role, ensuring our defences stay ahead of emerging threats.

Please note this is a hybrid role, with a compulsory attendance of 2 days a week in the London office. 

What will I be doing:

  • Performing penetration tests on web applications, networks, APIs, mobile apps, and cloud environments,
  • Simulating real-world attack scenarios to assess system and infrastructure resilience,
  • Producing detailed technical reports and executive summaries for stakeholders,
  • Collaborating with internal teams to validate findings and support remediation efforts,
  • Staying up to date with emerging threats, vulnerabilities, and offensive security techniques.

What experience do I need:

To succeed in this role, you’ll need a solid background in penetration testing or offensive security, along with hands-on experience using industry-standard tools and frameworks. A strong grasp of security principles and methodologies is essential, as is the ability to communicate findings clearly and effectively. Other qualifications and skills include:

  • Proficiency with tools like Burp Suite, Nmap, Metasploit, Nessus, and Kali Linux, plus scripting skills in Python, Bash, or PowerShell,
  • Strong understanding of OWASP Top 10, MITRE ATT&CK, CVSS scoring, and familiarity with cloud platforms (AWS, Azure, GCP) and container security,
  • Relevant certifications such as OSCP, CREST CRT, or eCPPT are highly desirable, along with excellent written and verbal communication skills,
  • The ability to mentor junior testers and contribute to internal tooling.

Benefits:

  • 23 days’ holiday + all public holidays, rising to 25 days after 2 years of service,

  • Additional day off for your birthday,

  • Private medical insurance which covers you, your cohabiting partner and children,

  • Life insurance of 4 times your base salary,

  • Salary sacrifice pension scheme,

  • Enhanced family leave,

  • Confidential Employee Assistance Program,

  • Cycle to work scheme.

As a growing business strengthening its governance and controls, this role plays a part in supporting high standards of integrity and accountability. 

Darktrace is an Equal Opportunity Employer. We consider all qualified applicants for employment without regard to race, color, religion, sex (including pregnancy, childbirth, and related medical conditions), sexual orientation, gender identity or expression, national origin, age, disability, genetic information, marital status, veteran or military status, or any other characteristic protected by applicable federal, state, or local law.

Darktrace is committed to providing reasonable accommodations to qualified individuals with disabilities in accordance with applicable laws. If you require a reasonable accommodation to participate in the application or interview process, please contact your Talent Partner.

Darktrace London, England Office

80 Strand, London, United Kingdom, WC2R 0BP

Similar Jobs

6 Days Ago
In-Office
London, Greater London, England, GBR
Mid level
Mid level
Big Data • Fintech • Information Technology • Machine Learning • Financial Services
Lead and execute penetration tests and vulnerability assessments across infrastructure and applications (Kubernetes, Jenkins, Windows Domain Services). Deliver remediation guidance, assess security controls, support Risk/Compliance and Detection teams, build automation/tooling, and mentor junior team members to improve overall security posture.
Top Skills: AnsibleDevsecopsJenkinsKubernetesPythonWindows Domain Services
17 Days Ago
In-Office
Watford, Hertfordshire, England, GBR
Senior level
Senior level
Consumer Web • eCommerce • Gaming
Lead application penetration testing and enhance internal security capabilities with hands-on experience in advanced security assessments, focusing on web applications, APIs, and cloud environments.
Top Skills: Av EvasionAWSCloud Hosted ApplicationsEdrJavaLinuxRestful ApisSpring BootWindows
22 Days Ago
Hybrid
Senior level
Senior level
Information Technology • Business Intelligence
The Senior Penetration Tester will lead penetration testing projects, provide security advice, analyze findings, and develop security tools while contributing to cybersecurity strategies.
Top Skills: C#C/C++JavaPython

What you need to know about the London Tech Scene

London isn't just a hub for established businesses; it's also a nursery for innovation. Boasting one of the most recognized fintech ecosystems in Europe, attracting billions in investments each year, London's success has made it a go-to destination for startups looking to make their mark. Top U.K. companies like Hoptin, Moneybox and Marshmallow have already made the city their base — yet fintech is just the beginning. From healthtech to renewable energy to cybersecurity and beyond, the city's startups are breaking new ground across a range of industries.

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account