Offensive Security Specialist
Job Description:
Offensive Security Specialist
Salford Quays / Staines/ Central London
Flexible / Hybrid working options
Permanent
Salary: £51,200 - £64,000 (Depending on experience & location)
Full time - 37.5 hours per week
We make health happen
Here you'll be welcomed. We champion diversity and we understand the importance of our people representing the communities and customers we serve. You'll find an inclusive environment where you can be yourself and where everyone is driven by the same purpose - helping people live longer, healthier, happier lives and making a better world.
At Bupa, we're passionate about technology. With colleagues, customers, patients and residents in mind you'll have the opportunity to work on innovative projects and make a real impact on their lives.
Right from the start you'll become part of our digital strategy, joining us on our journey and developing yourself along the way.
Role Overview
As an Offensive Security Specialist, you will be part of a team responsible for testing, measuring, and reporting on the effectiveness of security controls used across the Bupa IT estate against known adversarial tactics and techniques. You will do this by designing, running and analysing the output of assessments utilising our chosen Breach and Attack Simulation platform and by consuming additional data from multiple sources such as Red Team and Penetration Testing reports, Vulnerability Scanning platforms, and other tools that will identify misconfigurations within the Bupa infrastructure that represent a potential security risk. You will also perform a leading role in designing test strategies based on the MITRE ATT&CK framework, using internal and external Threat Intelligence and your own knowledge and experience of corporate network environments.
What you'll do:
Reviewing and analysing findings from multiple data sources to assess their impact and determine remediation priorities.
Developing remediation plans for high-priority vulnerabilities, using your offensive security expertise to identify potential attack paths.
Collaborating across teams to disrupt those paths effectively, leveraging both your technical knowledge and that of others.
Influencing stakeholders including technology owners and remediation teams to commit to and implement remediation strategies.
Perform risk analysis on test data to ensure the most critical issues are addressed first, aligning with frameworks like MITRE ATT&CK and the Unified Kill Chain.
Use threat intelligence to guide future assessments, ensuring testing is relevant to current controls and risks.
Utilise BAS platforms and engage in continuous self-learning through provided resources to maintain your credibility and expertise.
Partner with internal and external SMEs across Security Operations, Engineering, Threat Intelligence, and Vulnerability Management to design effective solutions.
Mentor and guide colleagues, sharing knowledge and influencing others to resolve identified weaknesses.
Lead small projects, ensuring timely and accurate implementation of solutions, and design unbiased methods to validate their effectiveness.
Challenge and improve existing processes, contributing to documentation and reporting using tools like Kibana, Lucene, and Python.
Communicate technical findings clearly to Risk teams and other stakeholders, ensuring risks are well understood and documented.
What you'll bring:
Experience within any of the following IT Security disciplines: Security Operations, Red teaming, Penetration Testing, Security Engineering. Along with expert knowledge of various enterprise technologies/infrastructure including network architectures, operating systems and security controls.
Confident in their technical expertise and can present themselves as a technically competent SME.
Exposure to Security Monitoring and Security Control technologies
Exposure to Threat Intelligence sources
Good experience of typical enterprise security services including but not limited to:
Threat Intelligence
Penetration testing
Anti-malware
Email/SPAM management
Authentication mechanisms
SIEM
WAF
Firewalls
Proxy technologies
IDS/IPS
DLP
Has a track record of technical delivery within a fast paced & pressured environment.
Engages key stakeholders well
Effective communicator
'not afraid to ask' mentality
Benefits
Our benefits are designed to make health happen for our people. Viva is our global wellbeing programme and includes all aspects of our health - from mental and physical, to financial, social and environmental wellbeing. We support flexible working and have a range of family friendly benefits.
Joining Bupa in this role you will receive the following benefits and more:
• 25 days holiday, increasing through length of service, with option to buy or sell
• Bupa health insurance as a benefit in kind
• An enhanced pension plan and life insurance
• Onsite gyms or local discounts where no onsite gym available
• Various other benefits and online discounts
Why Bupa?
We're a health insurer and provider. With no shareholders, our customers are our focus. Our people are all driven by the same purpose - helping people live longer, healthier, happier lives and making a better world. We make health happen by being brave, caring and responsible in everything we do.
We encourage all of our people to "Be you at Bupa", we champion diversity, and we understand the importance of our people representing the communities and customers we serve. That's why we especially encourage applications from people with diverse backgrounds and experiences.
Bupa takes pride in being a Level 2 Disability Confident Employer and will aim to offer an interview/assessment to disabled applicants who best meet the minimum criteria for the role. We're committed to ensuring you're treated fairly during the recruitment process and offer reasonable adjustments to anyone who may benefit from accommodations to the recruitment process.
Time Type:
Full timeJob Area:
ITLocations:
Angel Court, London, Bupa Place, Staines - Willow HouseRecommended Jobs
Project Manager
As the Project Manager within the GTM PMO team, you will take on a diverse set of responsibilities and serve as a critical member of the team. You will be responsible for ensuring that the GTM segmen…
Service Technician
Location: London, England, United Kingdom Job ID: 79590 We Elevate... Quality of urban life Our elevators, escalators, and moving walks safely transport more than two billion of us up and do…
Senior BIM Coordinator
Sheppard Robson is one of the UK's most established architectural practices, with a reputation for thoughtful and responsible designs. The BIM Team are looking for talented and experienced Senior…
Training Specialist
Van Cleef & Arpels seeks a Training Specialist in London to implement and enhance training programs, focusing on soft skills and team development. The role demands experience in luxury hospitality and…
HR Business Partner
About the Role Antal is proud to partner with a leading software company in the search for an experienced HR Business Partner to cover a 15-month maternity leave. This is a standalone, high-i…
Legal Counsel (UK)
About Us The Company: Dotdigital is a thriving global community of passionate, dedicated professionals, committed to the collective success of the organization and its clients. Our core principl…
Senior PI Underwriter
Are you the kind of PI Underwriter who doesn’t just write business – but wants to shape the direction of the book? I’m partnering with one of the most profitable syndicates in the Lloyd’s market. T…
Senior Housekeeper
Location : Mayfair, London Salary : Competitive, depending on experience Start Date : Dec/Jan Schedule : When the family are not in residence: Monday 8am–5pm, Tuesday–Thursday 8am–4pm,…
Senior Casualty Claims Technician
Join a growing, dynamic and highly respected Lloyd’s brokerage at the heart of the London Insurance market. We’re seeking an experienced Casualty Claims Technician to join our growing team and help d…
Secondary Graduate Teaching Assistant - East London
Graduate Teaching Assistant – Secondary School Location: Hackney, East London Start Date: September 2025 Salary: £90 – £112 per day (PAYE or umbrella) Contract Type: Full-time or Part-time (flexib…