Skip to main content

Important: Be aware of Job Employment Scams.

Read more

Senior Penetration Tester

Melbourne, Australia

Apply
Posted 03/07/2025 Job Number 51429 Work type Permanent - Full Time Posting End Date 17/07/2025

Permanent Opportunity

At Bupa, we’re committed to protecting the value we create by delivering innovative, secure, and scalable solutions for the future of healthcare. We are looking to hire a Senior Penetration Tester who plays a critical role in identifying, assessing, and mitigating security vulnerabilities within Bupa applications, networks, and IT systems. They conduct simulated attacks to evaluate the effectiveness of security measures and ensure that systems are resilient against real-world threats and validate the exploitability of identified vulnerabilities.

 Responsibilities 

  • Perform thorough penetration testing on Bupa’s applications, networks, and IT systems to identify security weaknesses and vulnerabilities and identify and exploit vulnerabilities in both internal and external systems. 
  • Conduct assessments on web applications, mobile applications, network infrastructures, cloud environments, and endpoints. 
  • Simulate real-world cyberattacks to evaluate the security posture of Bupa’s systems and applications.
  • Safely exploit vulnerabilities to demonstrate the potential impact and exploitability of identified security weaknesses. 
  • Provide a risk analysis of identified vulnerabilities based on severity, exploitability, and potential business impact. 
  • Prioritise findings based on risk and collaborate with technical teams to address the most critical issues first.
  • Document and report all findings, including vulnerabilities, exploits, and recommendations for remediation. 
  • Deliver executive-level summaries to communicate the potential business impact of security risks. 
  • Work closely with development, security, and IT teams to ensure vulnerabilities are remediated effectively and in a timely manner.
  • Provide guidance and support for the implementation of security best practices within development processes and system configurations.
  • Participate in security incident response for pipeline and application-level security events, performing root cause analysis and implementing long-term remediation. 
  • Ensure all testing activities comply with organizational security policies, legal requirements, and industry standards (e.g., CREST, OWASP, NIST, GDPR). 

Qualifications, Training and Experience

  • 15+ years of experience in Information Technology, minimum 10 years’ experience in Security 
  • 10 years of pentesting experience Certifications:
  • Certified Ethical Hacker (CEH): Industry-standard certification focused on ethical hacking and penetration testing techniques.
  • Offensive Security Certified Professional (OSCP): Highly regarded certification for penetration testers, demonstrating practical skills in offensive security.
  • GIAC Penetration Tester (GPEN): A certification focused on penetration testing and ethical hacking methodologies. 
  •  Certified Cloud Security Professional (CCSP): Relevant if working with cloud environments (AWS, Azure, GCP). Additional Certifications (Optional but Beneficial): • CREST Registered Penetration Tester (CRT): A certification specifically for penetration testers, focusing on best practices. • SANS GPEN or GWAPT: For deeper knowledge in web application penetration testing.
  • Certified Red Team Professional (CRTP): Focuses on advanced tactics used by attackers and security testing. Experience: 
  • Vendor and partner management experience, including professional services and technology vendors.

What’s in it for you?

As well as a competitive salary, a range of Bupa benefits and flexible working/ work from home, you’ll be challenged and encouraged to innovate. You will collaborate strongly with colleagues who are committed to delivering exceptional experiences. We trust, respect, and consider everyone, knowing your difference will make the difference.

  • Discount on our health insurance, travel, car, home, contents, and pet insurance products as well as Bupa services such as Dental and Optical
  • A ‘People First’ wellness program – SMILE. Provides a range of services such as health coaches, annual skin checks and flu vaccinations, assistance with nutrition, mental and general well-being guides, and product discounts. You will feel happier & healthier for working at Bupa!

At Bupa, we are striving to create and sustain a safe and inclusive workplace. We welcome applicants from all cultural backgrounds, genders, and abilities. If you require any adjustments to participate in our recruitment process, please let us know at the time of your application. 

Apply

Customer care during COVID

When COVID-19 hit we knew we had a responsibility to care for our customers by putting them at the heart of our decisions.

For this reason, in April 2020 our Health Insurance team invested over $50M and created the hardship team to support our customers when they most needed it.

Celebrate Wear it Purple Day and be the change

Wear it Purple was started to raise awareness of the discrimination faced by LGBTIQ+ youth, and the higher levels of suicide, depression and anxiety they experience as a result.

Read more

Forbes ranks Bupa one of the world’s best employers

Bupa has been ranked one of the world's best employers in Forbes' annual 'World's Best Employers' survey.

Read more

Thank you aged care workers

Today is ‘Aged Care Employee Day’, and there’s never been a more important time to thank aged care workers.

Read more

Ban the asterisk

Our customers have told us that our products can be confusing and complex when we add an asterisk (*) with fine print in our policies. To respond to our customers’ needs, in 2020 the Product Deisgn Squad was created to make our products simpler, more relecant and personalised. Here’s how putting our customers at the heart of everything helped the team ban the *.

Job Alerts

Don’t see a role that’s right for you? You can sign up for our job alerts and we’ll make sure to let you know when the right one comes up.

Job alerts

We're always looking for talented individuals. Make sure you sign up for job alerts so you can bring your difference to make the difference.

Interested InSelect options from the fields below and click “Add” to customise what jobs you would like to be notified about.

Join Our Talent Community

Looking to shape a brighter future for everyone? Sign up to our talent community and be the first to learn about new roles.

Join Now