skip navigation
skip mega-menu

Senior Test Engineer (Security) - Companies House - HEO

Government Digital & Data -

Full-time (Permanent)
Base salary is £40,398pa with an additional DDaT allowance of £4,350 - £11,000 available.
Published on
3 July 2025
Deadline
20 July 2025

Location

Remote working (anywhere in the UK)

About the job

Job summary

This is an exciting opportunity in the Digital Services team! You’ll be joining our team at a time of transformation, and you will be part of shaping the future of our department. We use Agile Methodologies and promote a culture of continuous improvement.    

We are looking for an enthusiastic Senior Test Engineer(Non-Functional Security) with great technical skills, able to deliver and support security testing workstreams, including vulnerability assessments and penetration testing. You will also offer guidance to other testers on security testing best practices.   

You will be part of our non-functional testing specialist team, working collaboratively with your team and overseeing the testing journey.   

This provides an opportunity to make the test community thrive by exploring new and emerging tools and approaches and working out how you can help the organisation deliver better services.    

This is a rewarding role within the Test Team and provides an opportunity to contribute to the success of existing and future services provided by Companies House. 

Watch this video to find out more about working in Digital at Companies House 

Companies House offers a flexible and welcoming culture that promotes a healthy work life balance as well as a proactive approach to wellbeing that allows us to be our best at work.  We recognise that people are the key to our success so offer a fantastic benefits package including flexible working with no core hours, 30 days annual leave, 8 bank holidays and 1 privilege day as well as enrolment into the Civil Service Pension scheme with a contribution rate averaging 28%.   

Find out more about what a great place Companies House is to work

We're able to consider both full-time and part-time working patterns for this opportunity.  For part-time, this must be a minimum of 30 hours per week, over 4 or 5 days.  

Please note - Companies House cannot offer Visa sponsorship to candidates through this campaign.   Additionally, a Security Check (SC) is an essential requirement for this role (at least 3 out of the last 5 years in the UK).  Please see 'Things you need to know' section below for more information.  

Job description

As a Senior Test Engineer focusing on security you will;     

  • Working within a delivery team, you’ll contribute to the coordination and execution of security testing across the software development lifecycle. This will involve running vulnerability scans using tools such as Burp, coordinating with relevant teams, testing security related issues.  
  • Support the wider test team by sharing knowledge and guidance on security testing approaches and tooling.    
  • Attend meetings and provide stakeholders with updates.  
  • Design and implement pipeline solutions to support automated security testing and reporting.  

For more information on the Test Engineering profession and skills expected of a Lead, head over to the Government Digital and Data Profession Capability Framework

Person specification

We are looking for the following, which will be assessed at sift, technical stage and interview.  

  • Experience in Security testing.
  • A relevant certification in ethical hacking or penetration testing, such as such as 7Safe CSTA or GIAC Penetration testing, OR currently working towards this OR have proven working experience.   
  • Working knowledge of at least 5 of the following security tools and technologies:
  1. Burp Suite (including Burp Scanner) – for web app vulnerability scanning and manual security testing. 
  2. OWASP ZAP – for DAST and automated security regression testing.
  3. Postman or SOAP UI – for API testing with a security focus (e.g. injection, authorisation, token misuse).
  4. OAuth2 / OpenID Connect – for testing secure authentication and access control scenarios.
  5. Jenkins or Concourse – for integrating security testing into CI/CD pipelines.
  6. Unix/Linux-based systems – for using command-line tools, analysing logs, and running manual tests.
  7. AWS (or similar cloud provider) – with a focus on IAM, S3 access, and common misconfiguration risks.
  8. SQL / MongoDB / Oracle – for testing injection flaws, access controls, and data sanitisation.
  9. Karate DSL or Rest Assured – for automating security-focused API tests.
  10. Git or other version control systems – for secure code handling and integration with security scanners.
  11. Static Application Security Testing (SAST) tools – e.g. SonarQube, Checkmarx, Semgrep.
  12. Dynamic Application Security Testing (DAST) tools – e.g. OWASP ZAP, Burp Suite Pro.
  13. Infrastructure-as-Code (IaC) scanning tools – e.g. tfsec, Checkov.
  14. Secrets detection tools – e.g. GitLeaks, truffleHog, detect-secrets.
  15. Threat modelling approaches – e.g. STRIDE, or creating risk-based test charters.
  16. Familiarity with the OWASP Top 10 – and how to test for each risk category.

Behaviours

We'll assess you against these behaviours during the selection process:

  • Making Effective Decisions
  • Managing a Quality Service
  • Working Together
  • Seeing the Big Picture

Technical skills

We'll assess you against these technical skills during the selection process:

  • Penetration testing / ethical hacking

More jobs at Government Digital & Data

Interaction Designer - GDS
Full-time (Permanent)
Test Engineer - GDS - SEO
£46,725 - £50,220 (London) / £42,893 - £45,653 (National) plus additional allowance
Full-time (Permanent)
ICT Senior Systems Engineer - Ministry of Defence - HEO
£37,720
Full-time (Permanent)
Software Developer - HM Courts and Tribunals Service - SEO
The national salary range is £42,914 - £46,182, London salary range is £49,325 - £53,081
Full-time (Permanent)
Lead Technical Architect, Networks & Infrastructure - Home Office - G7
£62,109 for National Roles or £66,229 for London Roles. Up to £18,291 additional allowance
Full-time (Permanent)
Associate AI Engineer - Ministry of Housing, Communities and Local Government - HEO
£38,286 - £44,450 (London), £34,801 - £40,694 (National) plus potential additional allowance
Full-time (Permanent)
Incident and Vulnerability Manager - Intellectual Property Office - SEO
£47,766 up to £58,575 with allowances
Full-time (Permanent)
Senior Infrastructure Engineer (Platform/DevOps) - Companies House - SEO
Base salary is £41,509- £47,044 with an additional DDaT allowance of £4,350 - £11,000 available
Full-time (Permanent)
Senior Infrastructure Engineer (Data Centre) - Home Office - SEO
£46,062 up to £11,338 additional allowance
Full-time (Permanent)
Service Desk Manager - Driver and Vehicle Standards Agency - HEO
£35,663
Full-time (Permanent)
Associate Business Analyst - GCHQ - HEO
£44,044
Full-time (Permanent)
Business Analyst - GCHQ - SEO
£53,496
Full-time (Permanent)
Digital Delivery Senior Automation Tester - Intellectual Property Office - SEO
£47,766 up to £58,575 with additional allowances
Full-time (Permanent)
Technical Architect - HM Revenue and Customs - SEO
National £45,544 - £49,523 London £50,686 - £55,157
Full-time (Permanent)
Lead Technical Architect - Disclosure & Barring Service - G7
£60,380 - £64,882
Full-time (Permanent)
Technical & Security Architect - UK Export Finance - G7
£61,250 - £76,671
Full-time (Permanent)
Knowledge & Information Manager - Cabinet Office - SEO
£43,760 - £47,413
Full-time (Permanent)
Knowledge & Information Manager - Cabinet Office - HEO
£37,922 - £41,992
Full-time (Permanent)
Security Architect - HM Courts and Tribunals Service - SEO
National: £42,914 - £46,182, London: £49,325 - £53,081
Full-time (Permanent)
Interaction Designer - Ministry of Housing, Communities and Local Government - SEO
41,890 - 49,965
Full-time (Permanent)
Chief Artificial Intelligence & Data Officer - Ministry of Defence - SCS2
£185,000 plus up to £25,000 bonus per annum
Full-time (Permanent)
Head of Operations and Live Services (Tax, Benefits & Enterprise Operations) - HMRC - SCS1
£81,000 - £105,000
Full-time (Permanent)
Developer (Appian) - Office for Standards in Education, Children's Services and Skills - SEO
£46,490 per annum. Rising to £46,954 per annum on successful completion of probation.
Full-time (Permanent)
Lead Developer (Appian) - Office for Standards in Education, Children's Services and Skills - G7
£68,635 per annum. Rising to £69,322 per annum on successful completion of probation.
Full-time (Permanent)
Business Relationship Manager - HM Land Registry - HEO
£39,849
Full-time (Permanent)
Senior Front end Developer - Intellectual Property Office - SEO
£47,766 up to £58,575 with additional allowances
Full-time (Permanent)
Digital Delivery Senior Automation Tester - Intellectual Property Office - SEO
£47,766 up to £58,575 with additional allowances
Full-time (Permanent)
Senior Dynamics Developer - Intellectual Property Office - SEO
£47,766 up to £58,575 with additional allowances
Full-time (Permanent)
Product Manager - Office for Standards in Education, Children's Services and Skills - SEO
£46,490 per annum. Rising to £46,954 per annum on successful completion of probation.
Full-time (Permanent)
Lead Developer (.NET) and Lead Developer (Dynamics) - Office for Standards in Education, Children's Services and Skills - G7
£68,635 - £72,791 plus up to £10,000 additional bonus
Full-time (Permanent)
Senior Delivery Manager - Crown Commercial Service - G7
£59,877 - £66,869
Full-time (Permanent)
Senior Delivery Manager - Ministry of Housing, Communities and Local Government - G7
£56,167
Full-time (Permanent)
Service Transition Manager - HMRC - SEO
£45,544 - £49,523
Full-time (Permanent)
Infrastructure Engineer - HMRC - HEO
£42,631 - £46,077
Full-time (Permanent)
Infrastructure Engineer - HMRC - HEO
£37,682 - £40,705
Full-time (Permanent)
Azure Infrastructure Engineer - Ministry of Housing, Communities and Local Government - SEO
£45,649 – £53,445 (London), £41,890 – £49,965 (National) plus additional allowance
Full-time (Permanent)
Senior Infrastructure Engineer (Networks Technical Team Lead) - HM Land Registry - SEO
£48,400 up to £59,300 with additional allowance
Full-time (Permanent)

Subscribe to our newsletter

Sign up here