Haystack
← Back to Jobs
Temporary/Casual
Technology
LA

CTL/CTM Penetration Tester

Layer7United Kingdom🇬🇧United KingdomPosted 10 Sept 2026

Why This Role Stands Out

This role offers you the chance to lead high-assurance security testing for a major public sector client, significantly impacting critical infrastructure and enterprise environments. You'll thrive here if you possess strong CTL/CTM certifications and SC clearance, with a passion for mentoring others and tackling complex technical challenges in a flexible hybrid setting. Apply now to leverage your expertise and grow your career in a rewarding capacity.

Quick Overview

Seniority
Mid Senior
Employment type
Temporary/Casual
Work mode
Hybrid
Location
United Kingdom
DockerOracleAWSAzureContinuous ImprovementKubernetesPenetration Testing

Job Description

CTL/CTM Penetration Tester

Remote - With occasional travel to Manchester and Newcastle-Upon-Tyne

Rate - £785 per day Outside IR35

Must have Valid SC

About the Role

We are seeking an experienced CTL/CTM Penetration Tester to join a large Public Sector client delivering high-assurance security testing.

This role offers the opportunity to work on complex infrastructure, cloud, containerised, and enterprise environments, helping clients identify vulnerabilities and strengthen their security posture. You will be responsible for leading and delivering penetration testing engagements while providing expert guidance, coaching, and technical leadership to colleagues and clients.

Essential Requirements/Certifications

  • Cyber Scheme Team Leader (CSTL) or Crest Certified Tester (CCT)
  • Principal UK Cyber Security Council Professional (PriCSP)
  • Security Cleared

Experience

  • Demonstrable experience conducting penetration testing and security assessments within:
    • Public Sector organisations
    • Critical National Infrastructure (CNI)
    • Large enterprise environments
  • Experience delivering advanced penetration testing engagements and leading teams of testers assessing complex environments, including public cloud, infrastructure, Kubernetes, web applications and APIs.
  • Strong understanding of current attack techniques, threat actors, and defensive controls

Technical Skills

  • Manual penetration testing across:
    • Internal and external infrastructure
    • Web applications
    • Networks and operating systems
  • Cloud security testing:
    • Microsoft Azure
    • Amazon Web Services (AWS)
    • Oracle Clound Infrastructure (OCI)
  • On-premises infrastructure security assessments
  • Container and orchestration platform security:
    • Docker
    • Kubernetes
  • Identity and Access Management (IAM) security
  • CI/CD pipeline security assessments
  • Cloud-native and hybrid environment testing
  • Security architecture and security control reviews
  • Security Code Review
  • Firewall Configuration Reviews
  • Server and Workstation Build Reviews

Key Responsibilities

  • Lead and perform penetration testing engagements across infrastructure, applications, cloud services, and containerised environments.
  • Deliver detailed technical reports and executive-level findings.
  • Conduct security assessments of Azure, AWS, Kubernetes, IAM, and CI/CD environments.
  • Work directly with stakeholders to communicate complex technical risks clearly and effectively.
  • Provide mentorship, coaching, and skills development to junior penetration testers.
  • Support the continuous improvement of testing methodologies, tooling, and service offerings.
  • Contribute to client workshops, security awareness sessions, and technical training activities.

Similar jobs