
NCC Group Security Engineer Interview Questions
& Process
Real candidates share what happened, how many rounds they had,
and how the experience turned out.
Based on 5 interview experiences · FREE TO READ
Candidate interview experiences
First-hand accounts from people who interviewed at NCC Group.
Senior Security Engineer
Great communication before, during, and after. A bit slow throughout the process. Continuous communication and feedback. 3 interviews and a final one to deliver the process outcome. No complaints except for the duration of the whole process (3 months).
- Can you analyze ransomware?
- What are macro vulnerabilities and their solutions?
- Prepare a technical report.
Security Architect
I had two interviews for this role, each lasting over an hour. The first interview was more technical than the second. My overall experience with this company has been unprofessional. They promised a response within two weeks, but it's been over four months with no word. This isn't the first time; I interviewed for a Cloud Architect position previously, and the same thing happened – two interviews, a promise to reply, and then silence. I even told them I disliked their process, and a C-level person assured me it wouldn't happen again, but it did. It's incredibly disappointing, and I no longer trust them for work or consulting.
- Technical questions
- General questions
- Questions about customer engagement
Security Engineer
The interview process started with a web application challenge where candidates had to do a pentest and submit a report. If they passed that, they had two phone interviews before an offer was made.
- Could you explain Cross-Site Scripting (XSS) and detail methods for its prevention?
NCC Group Security Engineer Interview Questions
Quoted word for word from NCC Group interview reports.
“Could you explain Cross-Site Scripting (XSS) and detail methods for its prevention?”
Read reports →“What are macro vulnerabilities and their solutions?”
Read reports →“Can you analyze ransomware?”
Read reports →“Can you explain CSRF and XSS?”
Read reports →“Tell me about CSRF and XSS.”
Read report →“Did you have any experience with security challenges given via a USB stick with multiple levels?”
Read report →“Tell me about your experience with in-depth security material.”
Read report →Formats, difficulty and experience
Across all 5 NCC Group interview reports.