Our client, a major financial services organisation, is seeking an experienced Senior Security Consultant to join its cyber security team on a short-term contract. The role will focus on identifying and validating security weaknesses across the organisation's applications, infrastructure, cloud environments and software delivery pipelines. The successful contractor will conduct realistic adversary simulations, penetration testing and security assessments, while working closely with engineering and DevSecOps teams to ensure identified vulnerabilities are understood, prioritised and remediated. This is a hands-on technical role requiring strong offensive security experience, an understanding of modern software development practices and the ability to operate effectively within a highly regulated banking environment.
Plan and execute targeted team exercises that simulate realistic cyber threats against the bank.
Conduct assumed-breach, external perimeter, internal network and hybrid attack scenarios.
Test the effectiveness of security controls, monitoring capabilities and incident response processes.
Perform attack-path analysis across applications, identities, infrastructure and cloud environments.
Identify opportunities for privilege escalation, lateral movement, persistence and data access.
Collaborate with other security teams, SOC and incident response teams through team exercises.
Produce clear evidence of findings without creating unnecessary operational risk.