Buy an Instant VAPTTalk to us

Careers

Do the work, not the timesheet.

We are a small practice, which means you will own engagements rather than fragments of them, talk directly to clients, and be in the room when the findings are presented.

Where we usually have room

We hire against capability rather than a fixed headcount plan. If you are strong in one of these, it is worth writing to us even when nothing is advertised.

  • Penetration testers — network, web, mobile and API
  • Red team operators and adversary emulation specialists
  • SOC analysts across all shifts, L1 through L3
  • Detection engineers and SIEM content developers
  • Cloud security engineers (AWS and Azure)
  • GRC consultants with ISO 27001 and RBI or NHB experience
  • OT and ICS security specialists

What we offer

  • Certification support — OSCP, CISSP, CEH and lead auditor tracks
  • Rotation across testing, operations and compliance work
  • Direct client exposure from early on
  • A lab budget and time to use it

How to apply

Send a CV and a short note about the work you want to be doing. If you have public research, write-ups, CVEs or CTF results, include them — we read them.