Vulnerability and Penetration Testing Engineer

4 weeks ago


Belfast, United Kingdom Baker & McKenzie Rechtsanwaltsgesellschaft mbH Full time
  • Vulnerability and Penetration Testing Engineer
Business Services | Belfast Vulnerability and Penetration Testing Engineer Description

Location: Belfast

Workplace: Hybrid

The Opportunity:

The Vulnerability and Penetration Testing Engineer utilize extensive experience, standardized and custom testing tools, threat intelligence information, and risk management concepts during the assessment process to deliver prioritized findings based on projected business impact.

The role holder will provide extensive post-analysis consulting, both written and verbal, to constituents to ensure all parties adequately understand the findings and how to successfully remediate the vulnerabilities. The role holder will also engage in ongoing industry, technology, and threat research to ensure the Firm maintains an effective assessment program capable of protecting the confidentiality, integrity, availability, and recoverability of information, systems, and facilities in compliance with organizational policies and standards.

The Security Architect, Vulnerability, and Risk Assessment evaluates the security posture of systems, processes, and applications to identify vulnerabilities that expose the Firm to risk as defined and quantified by the Firm’s Risk Management Framework and ISMS Policy.

Baker McKenzie is the world’s leading law firm with offices all over the world. Our Belfast Centre is home to over 400 teammates in both legal and professional services such as finance, IT, marketing and business support.

We offer one of the best workplace benefits packages in the business with comprehensive private health cover, income protection, life assurance and a full employee assistance plan. These and a host of other benefits make us one of the most desirable companies to work for in Belfast.

We are committed to promoting inclusion, diversity and equity for all and are confident we can provide a career as individual and as exceptional as you.

About the role:

As part of this role, the successful candidate will:

Responsibilities:

  • Serve as the subject matter expert within the Firms VAPT team
  • The individual will critically analyze proposed and existing solutions for adherence to recognized standards of secure system design, including requirements resulting from the ISMS Policy, client contracts, the regulatory environment, and professional obligation
  • Architect, implement, and support assessment solutions identified as necessary for the protection of Firm assets
  • Provide effective oversight and guidance for other VAPT team members
  • Continually evaluate relevant products, tools, scripts, and techniques that improve existing assessment capabilities
  • Prioritize assessments to maximize risk reduction efforts relative to business impact and resource availability
  • Develop comprehensive and understandable assessment reports that effectively summarize findings and recommendations
  • Assist constituents with remediation activities by acting in a consulting role, retesting as needed

To be successful in this role you will need:

Skills and Experience:

  • Commanding knowledge of VAPT concepts and best practices, including the requirements for WhiteHat/ethical hacking.
  • Expert understanding of the difference between a vulnerability assessment and a penetration test in the context of assessment scope, objectives, and deliverables
  • Extensive experience with common automated VAPT tools such as Nessus, Appscan, Burp Suite, Nipper, and Trustwave
  • Proficiency with other common attack tools and frameworks such as Wireshark, Kali, and Metasploit, etc.
  • Proficiency with mobile platform security technology, including vulnerability identification and exploitation tools as well as mobile platform security best practices, frameworks, etc.
  • Ability to validate the presence of identified vulnerabilities with accuracy
  • Expert understanding of security concepts, technologies, controls, and best practices
  • Working knowledge of information security frameworks such as ISO27001, NIST, and CIS
  • Ability to synthesize contract language and convert such language to controls
  • Authoritative understanding of security threats, qualitative and quantitative risk valuation models, and effective tools, tactics, and techniques for risk reduction
  • Expertise with risk management principles in the context of application assessments
  • Authoritative understanding of underlying application technologies to assist with robust assessment strategy
  • Authoritative understanding of principles, theories, techniques, and methods of information system analysis and programming, particularly secure coding practices
  • Thorough knowledge of data processing and data communications concepts and services
  • Working knowledge of encryption technologies and standards, both at-rest and in-flight
  • Expert analysis skills, including the gathering and analyzing of facts, formulating objective conclusions modified by subjective and experience-based qualifiers when appropriate, defining problems, and promoting solutions
  • Ability to adapt, integrate, and modify existing programs or vendor-supplied package programs for use with existing information systems
  • Proficient in the delivery of training and informational sessions to technical and non-technical constituencies
  • Expert analytical skills, including the gathering and analyzing of facts, formulating objective conclusions modified by subjective and experience-based qualifiers when appropriate, defining problems, and promoting solutions
  • Proficient in oral and written English
  • Ability to be productive and maintain focus without direct supervision
  • GPEN, OSCP, GWASP, GMOB or equivalent preferred
  • CISSP, SSCP, CISM, CRISC, CISA, or CGEIT optional #J-18808-Ljbffr


  • Belfast, United Kingdom SilverSky Full time

    We are excited to share a highly rewarding and hands-on opportunity for a skilled and experienced Web App Penetration Tester to join our Technical Consulting Team. As part of our team, you will be responsible for conducting penetration tests, vulnerability assessments, and reporting findings to help detect legacy and bleeding-edge security vulnerabilities in...

  • Testing Engineer

    4 weeks ago


    Belfast, United Kingdom Baker & McKenzie Rechtsanwaltsgesellschaft mbH Full time

    Vulnerability and Penetration Testing Engineer Business Services | Belfast Vulnerability and Penetration Testing Engineer Hybrid The Vulnerability and Penetration Testing Engineer utilize extensive experience, standardized and custom testing tools, threat intelligence information, and risk management concepts during the assessment process to deliver...

  • Penetration Tester

    1 month ago


    Belfast, United Kingdom Aflac Northern Ireland Full time

    **The Team** At Aflac Northern Ireland, we are building a diverse, multi-function Cyber Security Team to support our Global Security Program protecting our customers in the US & Japan. The Aflac NI Security Team has taken ownership of key components of the security program and are integrating with the Global Security Team to strengthen existing functions...

  • Penetration Tester

    4 weeks ago


    Belfast, United Kingdom Rapid7 Full time

    Do you enjoy attacking networks? Do you want to see the direct results of your work implemented? Do you want to dig deeper into a company’s security posture? Do you want to learn more about how the “blue” team works? As a pentester on our Information Security Operations team you will be fully integrated into the frontlines of Rapid7’s security. Your...

  • Penetration Tester

    4 weeks ago


    Belfast, United Kingdom Rapid7 Full time

    Do you enjoy attacking networks? Do you want to see the direct results of your work implemented? Do you want to dig deeper into a company's security posture? Do you want to learn more about how the "blue" team works? As a pentester on our Information Security Operations team you will be fully integrated into the frontlines of Rapid7's security. Your skills...

  • Penetration Tester

    4 weeks ago


    Belfast, United Kingdom Rapid7 Full time

    Do you enjoy attacking networks? Do you want to see the direct results of your work implemented? Do you want to dig deeper into a company’s security posture? Do you want to learn more about how the “blue” team works? As a pentester on our Information Security Operations team you will be fully integrated into the frontlines of Rapid7’s security....

  • Penetration Tester

    3 weeks ago


    Belfast, United Kingdom Divvy Cloud Corp. Full time

    Do you enjoy attacking networks? Do you want to see the direct results of your work implemented? Do you want to dig deeper into a company’s security posture? Do you want to learn more about how the “blue” team works? As a pentester on our Information Security Operations team you will be fully integrated into the frontlines of Rapid7’s security....

  • Red Team Lead

    4 weeks ago


    Belfast, United Kingdom Aflac Northern Ireland Full time

    **The Team** At Aflac Northern Ireland, we are building a diverse, multi-function Cyber Security Team to support our Global Security Program protecting our customers in the US & Japan. The Aflac NI Security Team has taken ownership of key components of the security program and are integrating with the Global Security Team to strengthen existing functions...

  • Security Consultant

    4 weeks ago


    Belfast, United Kingdom Synopsys Full time

    43075BR - Great Britain - Belfast **Job Description and Requirements** - We’re looking for ethical hackers. Our Security Consultants conduct security engagements alone or in a small team to analyze target systems, penetrate defenses, and exploit vulnerabilities. They think creatively about complex problems and communicate solutions to our clients in an...


  • Belfast, United Kingdom CareerWise Recruitment Full time

    Job Description The Role : Work with a team to develop and test innovative medical diagnostic technology Be the voice of Software Verification in multifunctional project teams, driving industry best practices Solve complex problems Conduct different types of testing including, UAT, Automated, functional, regression, performance and integration ...


  • Belfast, United Kingdom Pearson Carter Full time

    **Cyber Security Engineer - £85k - Hybrid - Growth Opportunities!** Pearson Carter are currently working on a Cyber Security Engineer role for a client who work across the Space, Satellite and Insurance industry. They recently helped create the software for the Artemis space project and work with European Space Agency andNASA. They are currently in search...


  • Belfast, United Kingdom Stryker Full time

    Why engineering at Stryker? At Stryker we are dedicated to improving lives, with a passion for researching and developing new medical device products. As an engineer at Stryker, you will be proud of the work that you will be doing, using cutting-edge technologies to make healthcare better. Here, you will work in a supportive culture...


  • Belfast, United Kingdom Synopsys Full time

    45751BR - Great Britain - Belfast **Job Description and Requirements** **Responsibilities** - Research how security vulnerabilities manifest in the code - Write analysis rules to detect security vulnerabilities - Perform testing and evaluation of the rules on large code bases **Key Qualifications** - Experience in software development, preferably in...


  • Belfast, United Kingdom Synopsys Full time

    45750BR - Great Britain - Belfast **Job Description and Requirements** **Responsibilities** - Research how security vulnerabilities manifest in the code - Write analysis rules to detect security vulnerabilities - Perform testing and evaluation of the rules on large code bases **Key Qualifications** - Experience in software development, preferably in...


  • Belfast, United Kingdom Haloeurope Full time

    HALO Technologies is an advanced body camera and cloud software scaleup, working with some of the biggest names in security, services, and law enforcement. At HALO, we're passionate about safety and innovation, constantly staying ahead of threats and reducing risk. What sets HALO apart is not just the cutting-edge technology we develop but the culture...

  • Test Engineer

    1 week ago


    Belfast, United Kingdom Version 1 Full time

    Job Description Work with automated test tools and programming languages, in particular, Selenium, Java, C# or Python  Automation of both UI and Backend as required Manage and grow the current automated regression / CI test suite Participate proactively in daily stand-up meetings, story grooming sessions, team retrospectives, suggesting and...

  • DevOps Engineer

    8 hours ago


    Belfast, United Kingdom developrec Full time

    Lead DevOps EngineerPermanent - £NegotiableHybrid – 2 days a week in BelfastPrimary purpose of role & level in the business:As the Lead DevOps Engineer, you’ll be responsible for developing high-quality solutions. You’ll work as part of a team and report to the Head of Engineering. It’s a fast-paced environment, so you will need to make sound,...

  • DevOps Engineer

    7 hours ago


    Belfast, United Kingdom developrec Full time

    Lead DevOps EngineerPermanent - £NegotiableHybrid – 2 days a week in BelfastPrimary purpose of role & level in the business:As the Lead DevOps Engineer, you’ll be responsible for developing high-quality solutions. You’ll work as part of a team and report to the Head of Engineering. It’s a fast-paced environment, so you will need to make sound,...

  • DevOps Engineer

    1 day ago


    Belfast, United Kingdom developrec Full time

    Lead DevOps EngineerPermanent - £NegotiableHybrid – 2 days a week in BelfastPrimary purpose of role & level in the business:As the Lead DevOps Engineer, you’ll be responsible for developing high-quality solutions. You’ll work as part of a team and report to the Head of Engineering. It’s a fast-paced environment, so you will need to make sound,...

  • DevOps Engineer

    1 day ago


    Belfast, United Kingdom developrec Full time

    Lead DevOps EngineerPermanent - £NegotiableHybrid – 2 days a week in BelfastPrimary purpose of role & level in the business:As the Lead DevOps Engineer, you’ll be responsible for developing high-quality solutions. You’ll work as part of a team and report to the Head of Engineering. It’s a fast-paced environment, so you will need to make sound,...