Candidatei-me online. O processo levou 3 semanas. Fui entrevistado pela NCC Group (Manila, ) em mar. de 2026
Entrevista
very slow and hr is very weak and doesnt know what they are talking about. they also seem to just be looking for keywords. they do not know exactly what ncc pentesters are doing and cant answer these questions
Experiência positiva
Entrevista com nível médio de dificuldade
Candidatura
Fiz uma entrevista na empresa NCC Group (Manchester, Inglaterra).
Entrevista
After CV application I received a initial phone screen call. I was then invited to an online competency based interview which was then followed by an onsite interview with a technical assessment and a presentation delivery. Received briefing documents to help prepare for the onsite assessments. Everyone was very friendly and professional throughout the experience.
Perguntas de entrevista [1]
Pergunta 1
Standard competency questions for competency interview.
Candidatei-me online. O processo levou 2 meses. Fui entrevistado pela NCC Group (Boston, MA) em nov. de 2021
Entrevista
Due to multiple holidays, the process that from the initial phone screen to the offer takes about 2 months, but I am very satisfied with the whole process. The recruiter makes the process very smooth, she always gives me update or feedback on time as promised.
After the initial phone screen, I was offered a web pentesting challenge, I submitted my report twice since my first pentesting report was regarded not quite so detailed. It took about 3-4 weeks (Holidays), I got informed that I passed the challenge and I would have the first interview. The interview was enjoyable, interviewers were friendly, they asked my some tech questions and my backgroup/experience. The second day I was told that I passed and entered the second (final) interview. The second interview went deeped on tech, it was still enjoyable. After about 1 week, I got my offer!
Perguntas de entrevista [1]
Pergunta 1
OWASP Top10
Scenario of broken access and XSS, and mitigation against them
Whole process of active directory exploitation from a normal domain user
Differences between SYSTEM and Administrator
Definition and differences between constrained delegation, unconstrained delegation, and RBCD
Bypass Anti-phishing solution?
Experience of pentesting report