Senior-Led, Technically Rigorous, Real Client Work
We hire people who treat cybersecurity as a craft and want to spend their career deepening it. Real client engagements, real technical depth, no junior pass-through.
Send Your CVWorking at RawSecLabs
We are a senior-led consulting practice. That means real client engagements, real technical depth, and no junior pass-through. If you want to spend more time doing the work and less time managing handovers, we are the kind of place worth a conversation.
Our team works across financial services, healthcare, SaaS, and regulated sectors worldwide. From London to Karachi, we collaborate as one technical team.
Benefits & The Practical Stuff
- Competitive compensation tied to experience and impact
- Flexible working arrangements and remote options
- Continuous technical development and training budget
- Collaborative, ego-free technical culture
Roles We're Hiring
We hire continuously across penetration testing, compliance consulting, and incident response. If you don't see your exact role listed but think you'd be a fit, send us your CV.
Senior Penetration Tester
Lead penetration testing engagements across web, network, and cloud. Industry-standard methodology following NIST and OWASP frameworks. Senior consultants only, no junior pass-through team.
Requirements
- 3+ years hands-on penetration testing experience
- OSCP, OSCE, or equivalent certification
- Web application, network, and cloud security expertise
- Strong report writing and client communication skills
Enterprise Cyber Security & Compliance Consultant
Deliver PCI DSS compliance mapping and pre-audit assessments across UK, US, and Middle East. Mix of gap assessments, readiness reviews, and technical compliance testing.
Requirements
- Deep familiarity with the PCI DSS framework and audit requirements
- 3+ years PCI DSS compliance experience
- Experience with retail, fintech, or payment processing
- Strong audit and documentation skills
Senior Incident Response Consultant
Lead investigations across ransomware, BEC, data exfiltration, and post-breach forensics. Retainer client base plus emergency response.
Requirements
- 5+ years incident response experience
- GCIH, GCFA, or equivalent certifications
- Hands-on SIEM and EDR tool experience
- Strong crisis communication skills
SOC 2 / ISO 27001 Consultant
Lead SOC 2 and ISO 27001 programmes for SaaS, fintech, and regulated tech firms. Combined-framework delivery, evidence reuse across audits.
Requirements
- 2+ years compliance consulting experience
- SOC 2 and ISO 27001 practical implementation
- Experience with SaaS and technology companies
- Strong project management and client skills
Mid-Level Penetration Tester
Join our penetration testing team working across web applications, mobile apps, and network security assessments.
Requirements
- 2+ years penetration testing experience
- Web application and mobile security expertise
- Network penetration testing and AD experience
- Good communication and reporting skills
How to Apply
Send your CV to info@rawseclabs.com with the role title in the subject line. We review every application and respond within a week.