
Junior Penetration Tester at Bugcrowd. Location Information: UK. We are seeking a motivated and driven Junior Penetration Tester to join our team of existing security specialists. This role is a foundational position, focused on developing core skills in offensive security testing under the guidance of more senior team members. . As a Junior Penetration Tester, you will be responsible for working through existing methodologies and applying them against assigned targets to identify security vulnerabilities. This will support the team's overall mission of helping improve our client’s infrastructure and codebase by raising high quality (and often high impact) security concerns as evidenced by your capability to exploit.. This is an excellent opportunity for an individual with a strong passion for cybersecurity to learn and grow within an elite offensive security team.. Primary Role Responsibilities:. Conduct Structured Testing to Identify Security Vulnerabilities:. Demonstrating a functional understanding of modern attack vectors and penetration testing software as well as being technically capable of using them in the identification of security vulnerabilities in Web applications, APIs and network infrastructure.. Consistently complete assigned penetration tests within allocated timeframes, and in accordance with our methodologies.. Continuous Learning:. Actively engage in keeping up-to-date with fundamental security concepts and core testing tools, applying newly acquired knowledge under instruction and supervision.. Problem Identification & Escalation:. Promptly identify and effectively communicate technical blockers or concerns to mentors or Technical Pentest Managers (TPMs) as needed, actively seeking clarification and guidance to avoid missteps.. Team Support & Documentation:. Assist in test retrospectives, documentation of processes, and provide support to more senior team members as directed by the team lead or manager.. Working Hours:. Be able to execute testing within UK core business hours (09:00 - 17:30 GMT). Some tests may fall outside of these hours, but the majority of tests will need to be completed within this timeframe.. Desired Skills & Experience:. Experience: . 6+ months as a penetration tester (or equivalent demonstrable experience) with a foundational understanding of wider cybersecurity concepts and best practices.. Technical Skills:. Familiarity with commonly used security testing tools (e.g. BurpSuite, Nmap) and approach to penetration testing activities.. Soft Skills:. . Strong desire to learn, good communication skills for peer and mentor interactions, and the ability to follow instructions.. Strong written and spoken business English (C1+ or native fluency). . Certifications:. Certifications such as CEH (Certified Ethical Hacker), OSCP(+) (Offensive Security Certified Professional), CPSA (CREST Practitioner Security Analyst), etc. are considered a plus.