skip navigation
skip mega-menu

Senior Test Engineer (Security) - Companies House - HEO

Government Digital & Data -

Full-time (Permanent)
Base salary is £40,398pa with an additional DDaT allowance of £4,350 - £11,000 available.
Published on
3 July 2025
Deadline
20 July 2025

Location

Remote working (anywhere in the UK)

About the job

Job summary

This is an exciting opportunity in the Digital Services team! You’ll be joining our team at a time of transformation, and you will be part of shaping the future of our department. We use Agile Methodologies and promote a culture of continuous improvement.    

We are looking for an enthusiastic Senior Test Engineer(Non-Functional Security) with great technical skills, able to deliver and support security testing workstreams, including vulnerability assessments and penetration testing. You will also offer guidance to other testers on security testing best practices.   

You will be part of our non-functional testing specialist team, working collaboratively with your team and overseeing the testing journey.   

This provides an opportunity to make the test community thrive by exploring new and emerging tools and approaches and working out how you can help the organisation deliver better services.    

This is a rewarding role within the Test Team and provides an opportunity to contribute to the success of existing and future services provided by Companies House. 

Watch this video to find out more about working in Digital at Companies House 

Companies House offers a flexible and welcoming culture that promotes a healthy work life balance as well as a proactive approach to wellbeing that allows us to be our best at work.  We recognise that people are the key to our success so offer a fantastic benefits package including flexible working with no core hours, 30 days annual leave, 8 bank holidays and 1 privilege day as well as enrolment into the Civil Service Pension scheme with a contribution rate averaging 28%.   

Find out more about what a great place Companies House is to work

We're able to consider both full-time and part-time working patterns for this opportunity.  For part-time, this must be a minimum of 30 hours per week, over 4 or 5 days.  

Please note - Companies House cannot offer Visa sponsorship to candidates through this campaign.   Additionally, a Security Check (SC) is an essential requirement for this role (at least 3 out of the last 5 years in the UK).  Please see 'Things you need to know' section below for more information.  

Job description

As a Senior Test Engineer focusing on security you will;     

  • Working within a delivery team, you’ll contribute to the coordination and execution of security testing across the software development lifecycle. This will involve running vulnerability scans using tools such as Burp, coordinating with relevant teams, testing security related issues.  
  • Support the wider test team by sharing knowledge and guidance on security testing approaches and tooling.    
  • Attend meetings and provide stakeholders with updates.  
  • Design and implement pipeline solutions to support automated security testing and reporting.  

For more information on the Test Engineering profession and skills expected of a Lead, head over to the Government Digital and Data Profession Capability Framework

Person specification

We are looking for the following, which will be assessed at sift, technical stage and interview.  

  • Experience in Security testing.
  • A relevant certification in ethical hacking or penetration testing, such as such as 7Safe CSTA or GIAC Penetration testing, OR currently working towards this OR have proven working experience.   
  • Working knowledge of at least 5 of the following security tools and technologies:
  1. Burp Suite (including Burp Scanner) – for web app vulnerability scanning and manual security testing. 
  2. OWASP ZAP – for DAST and automated security regression testing.
  3. Postman or SOAP UI – for API testing with a security focus (e.g. injection, authorisation, token misuse).
  4. OAuth2 / OpenID Connect – for testing secure authentication and access control scenarios.
  5. Jenkins or Concourse – for integrating security testing into CI/CD pipelines.
  6. Unix/Linux-based systems – for using command-line tools, analysing logs, and running manual tests.
  7. AWS (or similar cloud provider) – with a focus on IAM, S3 access, and common misconfiguration risks.
  8. SQL / MongoDB / Oracle – for testing injection flaws, access controls, and data sanitisation.
  9. Karate DSL or Rest Assured – for automating security-focused API tests.
  10. Git or other version control systems – for secure code handling and integration with security scanners.
  11. Static Application Security Testing (SAST) tools – e.g. SonarQube, Checkmarx, Semgrep.
  12. Dynamic Application Security Testing (DAST) tools – e.g. OWASP ZAP, Burp Suite Pro.
  13. Infrastructure-as-Code (IaC) scanning tools – e.g. tfsec, Checkov.
  14. Secrets detection tools – e.g. GitLeaks, truffleHog, detect-secrets.
  15. Threat modelling approaches – e.g. STRIDE, or creating risk-based test charters.
  16. Familiarity with the OWASP Top 10 – and how to test for each risk category.

Behaviours

We'll assess you against these behaviours during the selection process:

  • Making Effective Decisions
  • Managing a Quality Service
  • Working Together
  • Seeing the Big Picture

Technical skills

We'll assess you against these technical skills during the selection process:

  • Penetration testing / ethical hacking

More jobs at Government Digital & Data

Interaction Designer - GDS
Full-time (Permanent)
Test Engineer - GDS - SEO
£46,725 - £50,220 (London) / £42,893 - £45,653 (National) plus additional allowance
Full-time (Permanent)
Senior Test Engineer - Infected Blood Compensation Authority - SEO
£47,258 plus additional £3,544 after completing probation
Full-time (Permanent)
Lead Interaction Designer - Crown Prosecution Service - G7
£58,330 - £67,450 (National) / £62,820 - £73,520 + £3,150 RRA (London)
Full-time (Permanent)
Deputy Director DDaT in HO Digital Enterprise Services Technology - Home Office - SCS1
£81,000 - £91,000
Full-time (Permanent)
£55,575
£55,575 plus allowances. London offers an additional £4,218
Full-time (Permanent)
Test Assurance Analyst - National Crime Agency - HEO
£45,326 plus additional allowance. London additional £4,218
Full-time (Permanent)
Supporting Services Senior Officer - National Crime Agency - HEO
£45,326 plus an additional £4,218 for London
Full-time (Permanent)
Senior Enterprise Architect (Data Analytics) - HMRC - G7
£58,541 - £64,624
Full-time (Permanent)
Senior Test Engineer - Infected Blood Compensation Authority - SEO
£47,258 plus additional £3,544 after probationary period
Full-time (Permanent)
Lead Services Manager - Office for Standards in Education, Children's Services and Skills - G7
£68,635 per annum. Rising to £69,322 per annum on successful completion of probation.
Full-time (Permanent)
Lead Developer - Department for Transport - G7
Base pay £57,515 plus an additional allowance up to £22,885
Full-time (Permanent)
Lead Technical Architect - Home Office - G7
National £62,109 London £66,229 plus up to £18,291 additional allowance
Full-time (Permanent)
Senior Technical Architect - Crown Commercial Service - G7
£59,877 - £66,869 plus up to £9,000 technical allowance
Full-time (Permanent)
Principal Technical Architect, Networks & Infrastructure - Home Office - G6
National £76,117 London £80,237 plus up to £19,483 additional allowance
Full-time (Permanent)
SOC Technical Team Lead - Registers of Scotland - SEO
£48,544 - £57,155 plus Digital, Data and Technology Annual Pay supplement of 20%
Full-time (Permanent)
IT Ops Student Placement - HM Land Registry - EO
£32,114
Full-time (Permanent)
Agile Delivery Manager - Intellectual Property Office - SEO
£47,766 earn up to £58,575 with additional allowances
Full-time (Permanent)
Data Analyst - Government Digital Service - SEO
£46,725 - £50,220 (London) & £42,893 - £45,653 (National) including additional allowance
Full-time (Permanent)
Head of Engineering and Operations - Cabinet Office - SCS1
£81,000 - £117,800
Full-time (Permanent)
Deputy Director, Digital Project and Change Delivery - HM Courts and Tribunals Service - SCS1
£81,000 - £117,800
Full-time (Permanent)
Chief Technology Officer - Department for Culture, Media and Sport - SCS1
£81,000
Full-time (Permanent)
Director General for Technology, Digital and Data - Department of Health and Social Care - SCS3
Up to £285,000 per annum dependent upon experience
Full-time (Permanent)
Software Developer - Ofgem - HEO
National £34,123-£45,831 / London £36,824-£48,561
Full-time (Permanent)
Senior Developer - Department for Transport - SEO
Base pay £44,241 plus an additional allowance up to £13,159
Full-time (Permanent)
Delivery Manager - Ofgem - HEO
London £36,824-£48,561 National £34,123-£45,831
Full-time (Permanent)
Agile Delivery Manager - Intellectual Property Office - SEO
£47,766 up to £58,575 with additional allowances
Full-time (Permanent)
Associate IT Delivery Manager - HMRC - HEO
£37,682 - £40,705
Full-time (Permanent)
Principal Delivery Manager - HM Courts and Tribunals Service - G7
National £58,511 - £65,329 London £63,343 - £70,725
Full-time (Permanent)
Head of Transformation for Emergencies - Ministry of Housing, Communities and Local Government - G6
£73,423 (London) or £66,620 (National)
Full-time (Permanent)
AI Delivery and Oversight Lead - Department for Transport - G7
National Minimum Salary: £57,515; London Minimum Salary: £62,034
Full-time (Permanent)
Senior Product Manager (Private Rented Sector Database) - Ministry of Housing, Communities and Local Government - G7
£56,167
Full-time (Permanent)
Technical Product Manager - Companies House - HEO
£42,923 - £47,044
Full-time (Permanent)
Cyber Security Manager - National Savings and Investments - G7
£57,500-£63,000 London; £54,000-60,000 Durham, Lytham, Glasgow
Full-time (Permanent)
Senior Service Designer - Government Digital Service - G7
£55,403 up to £65,163 with additional pay allowance
Full-time (Permanent)
Recruitment Support Officer - Department for Science, Innovation & Technology - HEO
National: £36,728 - £40,670 London: £39,684 - £43,834
Full-time (Permanent)
Network Infrastructure Engineer - Met Office - HEO
£35,145 - £37,701
Full-time (Permanent)
Cloud Infrastructure Engineer - The National Archives - HEO
£42,000 plus £2,998 Market Supplement
Full-time (Permanent)
Lead Infrastructure Engineer - Home Office - G7
National: £62,109 London: £66,229 plus up to £18,291 additional allowance
Full-time (Permanent)
Senior Infrastructure Engineer (Mobile Device Services) - Department for Work and Pensions - G7
£57,946 - £73,205
Full-time (Permanent)
Business Analyst - Government Property Agency - SEO
£42,450 - £46,636
Full-time (Permanent)
Senior DevOps Engineer - Welsh Revenue Authority - SEO
£47,675 - £56,445 including Group 1 DDaT allowance
Full-time (Permanent)
Lead Site Reliability Engineer - Ministry of Justice - G6
National: £71,381 - £80,419, London: £75,674 - £85,257
Full-time (Permanent)
Lead Service Manager - Ministry of Justice - G7
National: £58,511 - £65,329, London: £63,343 - £70,725
Full-time (Permanent)
Senior Technical Architect - Department for Work and Pensions - G7
£57,946 - £83,971
Full-time (Permanent)
Lead Technical Architect (Solutions) - Infected Blood Compensation Authority - G7
£58,655 plus additional allowance of £4,399 after completing probation
Full-time (Permanent)
Lead Service Transition Manager - Home Office - G7
National £62,109 London £66,229 plus up to £11,300 additional allowance
Full-time (Permanent)
Senior Data Architect - Infected Blood Compensation Authority - G7
£58,655 plus additional £4,399 after probation
Full-time (Permanent)
Senior Enterprise Architect (Data) - HMRC - G7
National: £58,541 - £64,624 London: £65,869 - £72,711
Full-time (Permanent)
Interaction Designer - MI5 The Security Service - HEO
£60,358
Full-time (Permanent)
Lead Data Engineer - Department for Transport - G7
£57,515 - £80,400 Plus an additional DDaT allowance up to: £22,885
Full-time (Permanent)

Subscribe to our newsletter

Sign up here