Security Test Engineer
Get AI-powered advice on this job and more exclusive features.
McNally Recruitment Ltd provided pay range: This range is provided by McNally Recruitment Ltd. Your actual pay will be based on your skills and experience — talk with your recruiter to learn more.
Base pay range: Direct message the job poster from McNally Recruitment Ltd.
PLEASE NOTE the client will only accept candidates who are authorised to work in the UK, without the requirement for sponsorship or ANY type of visa (e.g. dependant/spousal, post-study etc.).
In addition, this role hybrid based with 4 days in the Scottish office, therefore you should currently be located in Scotland.
Principle Job Responsibilities
* Perform security requirements analysis and threat modeling.
* Conduct risk analysis and define test strategies aligned with security objectives.
* Plan, execute, and report on security testing activities, including:
* Tool and technique selection
* Security requirements testing
* Vulnerability testing
* Abuse case testing
* Attack surface analysis
* Regression testing
* Analyse, report, and track security defects.
* Ensure compliance with internal processes and applicable standards (e.g. IEC 62443, ISO 27001).
* Support internal and external audits as required.
* Drive continuous improvement by staying updated on emerging threats, tools, and best practices.
* Occasional travel may be required, such as training or customer support.
Required Qualifications and Experience
* Minimum 5 years of experience in software and/or firmware testing
* Engineering degree in Software, Computer Science, Cybersecurity or equivalent demonstrated knowledge.
* Proficiency with tools such as Burp Suite, OWASP ZAP, Nessus, Metasploit, Wireshark, Nmap, Fortify, Checkmarx.
* Understanding of encryption algorithms, key management, and secure protocols (TLS, SSH, etc.)
* Strong understanding of common vulnerabilities (e.g., OWASP Top 10, CWE/SANS Top 25).
* Familiarity with Linux, Windows, and network protocols (TCP/IP, DNS, HTTP/S).
* Understanding of industrial protocols (e.g., Serial, Modbus, HART).
* Knowledge of industry standards: IEC 62443, ISO 27001, NIST, OWASP.
* Experience implementing DevSecOps best practices; Azure DevOps experience is a plus.
* Self-directed and motivated in a team orientated environment
Seniority Level
Mid‑Senior level
Employment Type
Full‑time
Job Function
Information Technology
Industries
Staffing and Recruiting
Referrals increase your chances of interviewing at McNally Recruitment Ltd by 2x
Get notified about new Security Engineer jobs in Cumbernauld, Scotland, United Kingdom.
#J-18808-Ljbffr