<?xml version="1.0" encoding="UTF-8"?>
<source>
  <jobs>
    <job>
      <externalid>a6a63728-1cf</externalid>
      <Title>Senior Penetration Tester</Title>
      <Description><![CDATA[<p>We&#39;re seeking a Senior Penetration Tester to join our established team, working with talented cyber security professionals to ensure our services are designed, developed, and operated securely. As an internal tester, you&#39;ll gain a strong understanding of how technology works at Starling to enable in-depth testing. You&#39;ll also support remediation processes, seeing your findings lead to tangible security improvements.</p>
<p>Responsibilities:
Scoping and performing mobile, web application, cloud, and infrastructure penetration tests.
Collaborating with engineering teams to facilitate secure development, including reviewing and analysing proposed technical solutions to identify appropriate security controls, conducting code reviews of features and critical security components, and performing in-depth practical security testing.
Advising on the remediation of security issues and identifying solutions to address root causes.
Automating security testing and developing internal tooling to achieve continuous assurance.
Identifying and implementing improvements to the team&#39;s internal processes and procedures.
Mentoring less-experienced team members, leading by example in technical assessments, and promoting a collaborative approach to security across Starling.</p>
<p>Requirements:
5+ years technical information security experience.
Experience in mobile, web application, cloud, and infrastructure penetration testing.
Technical knowledge in mobile security (iOS and Android), web application security, networking and associated protocols, cloud security (AWS and GCP), containers and Kubernetes.
Penetration testing qualifications (e.g. CREST Certified Tester, OSCP) or equivalent industry experience.
Excellent verbal and written communication skills.</p>
<p style="margin-top:24px;font-size:13px;color:#666;">XML job scraping automation by <a href="https://yubhub.co">YubHub</a></p>]]></Description>
      <Jobtype>full-time</Jobtype>
      <Experiencelevel>senior</Experiencelevel>
      <Workarrangement>hybrid</Workarrangement>
      <Salaryrange></Salaryrange>
      <Skills>penetration testing, mobile security, web application security, cloud security, networking, containers and Kubernetes, security testing, code review, automation, Java, Go, Python, CREST Certified Tester, OSCP</Skills>
      <Category>Engineering</Category>
      <Industry>Technology</Industry>
      <Employername>Starling</Employername>
      <Employerlogo>https://logos.yubhub.co/starlingbank.com.png</Employerlogo>
      <Employerdescription>Starling is a digital bank that provides financial services to customers. It has over 3,000 employees across its offices in London, Southampton, Cardiff, and Manchester.</Employerdescription>
      <Employerwebsite>https://www.starlingbank.com/</Employerwebsite>
      <Compensationcurrency></Compensationcurrency>
      <Compensationmin></Compensationmin>
      <Compensationmax></Compensationmax>
      <Applyto>https://apply.workable.com/j/4F1A58C8DC</Applyto>
      <Location>Southampton</Location>
      <Country></Country>
      <Postedate>2026-03-31</Postedate>
    </job>
  </jobs>
</source>