Senior Penetration Tester

  • Posted Today
  • Permanent
  • 141216
  • Flexible, Bristol, Edinburgh, Leeds, Manchester
Apply now

End date

Friday 26 September 2025

Salary range

£70,929 - £78,810

Agile Working Options

Job Share; Hybrid Working

Job description

JOB TITLE: Senior Penetration Tester

SALARY: £70,929 - £78,810

LOCATION(S): Leeds, Bristol, Manchester or Edinburgh

HOURS: Full-time

WORKING PATTERN: Our work style is hybrid, which involves spending at least two days per week currently, or 40% of our time, at one of our office locations.

About this opportunity

The Chief Security Office (CSO) plays a vital role in delivering Lloyds Banking Group's vision of putting customers at the heart of everything we do, helping Britain prosper, and protecting the Group and its customers and suppliers from security threats.

Growing our in-house capacity for penetration testing allows us to improve the pace, quality and agility of our security testing services and allow us to better support customers in delivering change securely, delivering higher value outcomes and ROI over time, while reducing our dependence on third-party suppliers.

Key Responsibilities

  • Plan, execute and report on complex penetration testing engagements against Web, API, Mobile, infrastructure and cloud assets  

  • Design and implement repeatable and efficient testing mechanisms to identify weaknesses at scale 

  • Review and QA findings from testing engagements to ensure accuracy and quality 

  • Define appropriate scope, methodology and mechanism for security testing of the group's assets, including regulatory testing 

  • Stay up to date on active and emerging threats faced by the UK financial service sector 

  • Champion team development by mentoring and coaching junior team members 

Why Lloyds Banking Group

We’re on an exciting journey to transform our Group and the way we’re shaping finance for good. We’re focusing on the future, investing in our technologies, workplaces, and colleagues to make our Group a great place for everyone. Including you.

What you’ll need

  • Extensive experience as a penetration tester including experience in a lead role  

  • Be a subject matter expert in at least 2 of the following domains: Web, API, Mobile, Infra and Cloud testing

  • Relevant security testing certifications such as CREST (CRT, CCT), OSCP, OSCE, GPEN, GXPN 

  • Demonstrable knowledge of the common vulnerabilities (OWASP) and attacker TTPs (MITRE ATT&CK)  

  • Strong analytical thinking, effective communication skills, and the ability to engage confidently with senior stakeholders 

  • A collaborative demeanour with a passion to mentor others and contribute to a culture of continuous improvement 

  • Experience operating in a large and complex enterprise environment 

Any experience of these would be really useful

  • Experience testing applications hosted in cloud native environments and containerised solutions 

  • Experience working with and testing against AI/LLM models 

  • Strong understanding of DevOps testing principles and different testing capabilities (SAST/DAST, SCA etc.) 

  • Any relevant cloud or cyber security certifications (CCSP, CISM, CISSP etc.) 

  • Experience in developing software and/or reviewing source code in various programming languages

  • Experience in threat modelling and red/purple team exercises

About working for us

Our ambition is to be the leading UK business for diversity, equity and inclusion supporting our customers, colleagues and communities and we’re committed to creating an environment in which everyone can thrive, learn and develop.

We were one of the first major organisations to set goals on diversity in senior roles, create a menopause health package, and a dedicated Working with Cancer Initiative.

We offer reasonable workplace adjustments for colleagues with disabilities, including flexibility in office attendance, location and working patterns. And, as a Disability Confident Leader, we guarantee interviews for a fair and proportionate number of applicants who meet the minimum criteria for the role with a disability, long-term health or neurodivergent condition through the Disability Confident Scheme.

We provide reasonable adjustments throughout the recruitment process to reduce or remove barriers. Just let us know what you need.

We also offer a wide-ranging benefits package, which includes

  • A generous pension contribution of up to 15%

  • An annual performance-related bonus

  • Share schemes including free shares.

  • Benefits you can adapt to your lifestyle, such as discounted shopping.

  • 30 days’ holiday, with bank holidays on top

  • A range of wellbeing initiatives and generous parental leave policies

Want to do amazing work, that’s interesting and makes a difference to millions of people? Join our journey.

Can't find the role you want right now?

By joining our Talent Community your profile will be visible to our recruitment teams, who are constantly looking to match outstanding talent with our current and future opportunities. Just complete the short form and we’ll be able to keep you up to date.
 

Join our Talent Community

At Lloyds Banking Group, we're driven by a clear purpose; to help Britain prosper. Across the Group, our colleagues are focused on making a difference to customers, businesses and communities. With us you'll have a key role to play in shaping the financial services of the future, whilst the scale and reach of our Group means you'll have many opportunities to learn, grow and develop.

We're focused on creating a values-led culture and are committed to building a workforce which reflects the diversity of the customers and communities we serve. Together we’re building a truly inclusive workplace where all of our colleagues have the opportunity to make a real difference.