Lead Penetration Tester, CTL App

🕒 April 8

Apply Now
Find Similar Remote Jobs

📊 Check your resume score for this job

Improve your chances of getting an interview by checking your resume score before you apply.

Logo of Instil

Instil

51 - 200 employees

Founded 2005

🔒 Cybersecurity

🤖 Artificial Intelligence

🤝 B2B

Cybersecurity • Artificial Intelligence • B2B

Instil is a technology consultancy that helps companies design, build and secure category-defining software. They provide product development and cloud-native engineering, embed cyber security practices to protect products and support compliance, and deliver AI & data services to unlock insights and automation; they also offer accelerated training for developers. Instil focuses on helping other organisations (primarily B2B technology brands) modernise digital experiences and adopt secure, data-driven engineering practices.

📋 Description

• Lead and execute web application and API penetration tests as a CHECK Team Leader (App). • Manage end‑to‑end engagements: from scoping and kick‑off sessions through to delivery and client debriefs. • Perform in‑depth manual testing of modern web applications, authentication flows, APIs, and business logic. • Produce clear, detailed, and actionable reports outlining vulnerabilities and tailored remediation guidance. • Stay ahead of emerging application‑level threats and integrate new testing techniques into our methodology. • Automate repetitive tasks and improve efficiency through scripting and tooling enhancements. • Mentor and coach junior testers, particularly around web application testing techniques and report quality. • Enhance application‑focused tools and methodologies, keeping our services current and effective. • Support pre‑sales efforts as a subject‑matter expert in web application security. • Communicate findings effectively to both technical and non‑technical stakeholders. • Contribute to thought leadership through blogs, white papers, or speaking engagements.

🎯 Requirements

• CHECK Team Lead (CTL) status – Web Applications. • Current UK SC Clearance. • Minimum 5 years’ penetration testing experience, with a strong focus on web applications and APIs. • Proven experience leading and signing off CHECK web application engagements. • Deep expertise in web application, API, and authentication testing methodologies. • Solid understanding of modern application architectures (cloud-hosted apps, microservices, REST APIs). • Working knowledge of cloud environments (AWS, Azure, GCP) as they relate to application security. • Proficiency with tools such as Burp Suite Pro, along with supporting tooling (e.g. Nmap, Kali). • Strong scripting skills (Python, Shell, etc.). • Excellent communication and technical report‑writing skills.

🏖️ Benefits

• A discretionary annual performance bonus that rewards your impact and contribution to our success. • Flexible working arrangements and summer hours, because life isn’t 9 to 5, and balance matters. • A highly competitive pension scheme with generous employer contributions, private healthcare, and life assurance for peace of mind. • Employee Assistance Programme, mental health support, cycle-to-work scheme, and regular social events to keep our culture vibrant. • 35 days holiday, enhanced maternity pay, and family-first policies so you can focus on what matters most. • From courses to certifications, we’ll invest in your development so you can keep growing and shaping what’s next. • Opportunities to volunteer, give back, and be part of initiatives that make Instil a truly inclusive and connected workplace.

Apply Now

Similar Jobs

🕒 April 2

Leadex Systems

51 - 200

☁️ SaaS

💸 Finance

⚕️ Healthcare Insurance

Integration QA Engineer focusing on backend testing for a Fintech project developed for a UK client. Collaborating with cross-functional teams and ensuring robust third-party integrations.

SOAP

SQL

🕒 March 31

RemoteStar

11 - 50

🤝 B2B

🎯 Recruiter

☁️ SaaS

QA Engineer at UK startup establishing testing frameworks and automating QA processes. Collaborating with multiple teams to enhance product robustness and quality.

Cloud

Cypress

Google Cloud Platform

SDLC

Selenium

🕒 March 27

Scarlet

1 - 10

📚 Education

👥 HR Tech

⚡ Productivity

Quality Engineer ensuring compliance with QMS for innovative healthcare companies. Involved in auditing and certifying quality management systems in medical devices.

Cyber Security

🕒 March 24

SourceWhale

51 - 200

🎯 Recruiter

☁️ SaaS

🤝 B2B

QA Engineer responsible for product quality at SourceWhale, an AI-driven recruitment platform. Collaborating with engineers and product managers for a high-performing product experience.

🕒 March 20

Legal & General

10,000+ employees

💸 Finance

👥 B2C

🤝 B2B

Test Analyst managing end to end testing for Legal & General Investment Management. Contributing to improving customers' lives and building society.