London
£30000 - £35000 per annum
Full time
Ref: STA090_1781276257
Security Testing Analyst | London (Hybrid) | £30-35k
We are working with a well-established cyber security consultancy that is looking for a Security Testing Analyst to join their growing security testing team.
This is a hands-on role with a clear development path - ideal for someone with around one to two years of experience in vulnerability assessment or junior penetration testing who wants structured progression toward deeper VAPT capability in a real client environment.
The consultancy works with clients across regulated industries and PE-backed businesses, delivering penetration testing, VAPT, GRC advisory, and AI security services. You'll be joining a team that invests in its people: mentoring, funded certifications, and a performance-based progression model, not a time-served one.
About the Role:
The primary focus of the role is vulnerability assessment, external attack surface management, scan management, finding validation, and remediation follow-up. Alongside that, you'll be carrying out practical penetration testing activity - particularly across external infrastructure and internet-facing services - with direct mentoring from senior testers as you build out your capability.
This isn't a role where you run a scan, export the report, and move on. You'll be expected to investigate findings properly, understand exploitability, reduce false positives, and produce technical summaries that hold up to scrutiny. The testing team operates to CREST methodology throughout.
Early on the role will be office weighted so you can get comfortable with the team. Hybrid working will then be available once you are settled in.
What You'll be Doing:
What They're Looking For:
Certs like CPSA, PenTest+, eJPT or PNPT are a nice bonus, as is lab time on HTB or TryHackMe.
Why This Role?
Funded certs, direct mentoring from experienced testers, real client exposure from day one, and progression that's based on what you deliver - not how long you've been there.
Apply now for immediate consideration!
Oscar Associates (UK) Limited is acting as an Employment Agency in relation to this vacancy.
To understand more about what we do with your data please review our privacy policy in the privacy section of the Oscar website.
Lead Cyber Recruitment Consultant
Share job