Cyber - Attack & Penetration Testing - Senior - Consulting

Ernst & Young Oman

Salem (OR)

On-site

USD 140,000 - 180,000

Full time

9 days ago
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Job summary

EY is recruiting a Senior Attack & Penetration Tester to lead complex offensive security engagements across diverse client environments. The role requires threat-informed testing approaches and strong communication to executives.

The candidate will coordinate remote and on-site teams, mentor juniors, and shape testing methodologies while staying current with vulnerabilities and attacker techniques.

Qualifications

  • Bachelor's degree in Computer Science, Computer Engineering, Cybersecurity, MIS, IT, Engineering, or related field; at least five years offensive security experience.
  • Hands-on experience planning and executing advanced red team engagements, adversary emulation, objective-based operations.
  • Advanced experience conducting external and internal network penetration testing, including host and service enumeration, exploitation, privilege escalation, lateral movement.
  • Experience assessing Active Directory environments, including domain and trust configurations, privileged access, authentication protocols, delegation, GPO, credential exposure.
  • Experience performing cloud security testing, including IAM, exposed services, configuration weaknesses, privilege escalation, and attack-path analysis.
  • Experience conducting wireless security assessments, including enterprise and guest wireless configurations.
  • Experience testing web/mobile applications and APIs using manual techniques and recognized methodologies.
  • Experience evaluating security configurations and system-hardening with remediation strategies.
  • Experience with scripting or programming languages such as Python, PowerShell, Bash, C#, Go, Rust, or Java.
  • Experience using pen-testing tools and adapting techniques to client environments.
  • Familiarity with EDR, SIEM, network monitoring, and defensive controls affecting stealth testing.
  • Experience with red team C2 platforms, payload development, redirectors, logging, and campaign management.
  • Experience evaluating and bypassing defensive controls during authorized engagements.
  • Working knowledge of MITRE ATT&CK framework and current vulnerabilities and practices.
  • Experience leading remote and on-site technical teams.

Responsibilities

  • Plan, lead, and execute complex penetration tests and red team engagements across diverse client environments.
  • Apply threat-informed testing to emulate adversary behaviors and identify attack paths.
  • Translate results into actionable insights for technical and executive audiences.
  • Lead technical workstreams, mentor junior members, and develop methodologies.
  • Coordinate testing activities and ensure testing within rules of engagement and safety constraints.
  • Develop remediation strategies including AD security improvements and system hardening.

Skills

Advanced problem solving
Penetration testing
Red team operations
Threat-informed testing
Team leadership
Communication with executives
Cross-functional collaboration

Education

Bachelor's degree in CS / cybersecurity

Job description

Location: Anywhere in Country

At EY, we’re all in to shape your future with confidence.

We’ll help you succeed in a globally connected powerhouse of diverse teams and take your career wherever you want it to go. Join EY and help to build a better working world.

The Opportunity

Cyber threats, social media, artificial intelligence, privacy requirements, and continuity of the business as usual require heavy information security measures. As a Senior Attack & Penetration Tester, you will contribute to our client’s resilience through the execution of sophisticated offensive security operations.

Your key responsibilities

As a Senior on the Attack & Penetration Testing team, you will plan, lead, and execute complex penetration testing and advanced red team engagements across diverse client environments. You will apply an intelligence-led, threat-informed approach to emulate realistic adversary behaviors, identify exploitable attack paths, and evaluate preventive, detective, and responsive security controls. Your work will span external and internal networks, Active Directory, Microsoft Entra ID, web and mobile applications, application programming interfaces (APIs), cloud environments, wireless networks, social engineering, and physical security scenarios, as permitted by the rules of engagement. You will translate technical testing results into clear, actionable insights for technical and executive audiences. You will work collaboratively with client technical teams to validate identified weaknesses and develop practical remediation or mitigation strategies, including Active Directory security improvements, system-hardening measures, and compensating controls aligned with the client environment and operational constraints. You will also lead technical workstreams, coordinate testing activities, mentor junior team members, contribute to methodology and capability development, and remain current on emerging vulnerabilities, adversary tactics, offensive security tooling, and industry research.

Skills and attributes for success

To thrive in this role, you'll need a blend of technical and business skills, along with the ability to navigate complex problems and make informed decisions. Your professional knowledge and experience will guide you in adhering to broad policies and tackling issues with in-depth evaluations.

  • Demonstrate advanced problem-solving and critical-thinking skills when developing and executing attack paths.

  • Plan and conduct penetration tests and advanced red team engagements within defined scopes, rules of engagement, and safety constraints.

  • Identify, validate, and exploit vulnerabilities across external and internal networks, Active Directory, Microsoft Entra ID, cloud, wireless, web, mobile, and API environments.

  • Apply threat-informed testing techniques aligned with the MITRE ATT&CK framework and relevant adversary tactics, techniques, and procedures.

  • Lead technical testers, coordinate distributed workstreams, and provide hands‑on coaching and quality review for junior team members.

  • Recognize when to escalation risks, issues, testing impacts, and opportunities to appropriate client and EY leadership.

  • Produce high‑quality technical work products, evidence, client reports, and executive‑ready presentations that clearly explain risk and remediation priorities.

  • Communicate complex offensive security concepts clearly to technical stakeholders, business leaders, and executives.

  • Work collaboratively in cross‑functional, culturally diverse, and geographically dispersed teams while adhering to service quality and engagement management requirements.

To qualify for the role, you must have:
  • A bachelor's degree in Computer Science, Computer Engineering, Cybersecurity, Management Information Systems, Information Technology, Engineering, or a related field, and at least five years of relevant offensive security experience.

  • Hands‑on experience planning and executing advanced red team engagements, including adversary emulation, objective‑based operations, attack‑path development, and testing against mature security monitoring and response capabilities.

  • Advanced experience conducting external and internal network penetration testing, including host and service enumeration, exploitation, privilege escalation, lateral movement, and post‑exploitation activities.

  • Experience assessing Active Directory environments, including domain and trust configurations, privileged access, authentication protocols, delegation, Group Policy, credential exposure, certificate services, security configurations, and other identity‑based attack paths.

  • Experience performing cloud security testing, including identity and access management, exposed services, configuration weaknesses, privilege escalation, and attack‑path analysis.

  • Experience conducting wireless security assessments, including enterprise and guest wireless configurations, authentication controls, segmentation, and authorized wireless attack techniques.

  • Experience testing web applications, mobile applications, and APIs using manual techniques and industry‑recognized testing methodologies.

  • Experience evaluating security configurations and system‑hardening requirements and working with client technical teams to develop practical remediations, mitigations, compensating controls, and validation approaches for identified findings.

  • Experience with scripting or programming languages used to automate testing, analyze data, or develop offensive security tooling, such as Python, PowerShell, Bash, C#, Go, Rust, or Java.

  • Experience using commercial and open‑source penetration testing tools while adapting techniques to client‑specific environments and constraints.

  • Familiarity with endpoint detection and response (EDR), security information and event management (SIEM), network monitoring, and other defensive controls, including how those controls influence authorized stealth and evasion testing.

  • Experience with red team command‑and‑control (C2) platforms and associated operational infrastructure, payload development, redirectors, logging, and campaign management.

  • Experience evaluating and bypassing EDR and other defensive controls during explicitly authorized engagements, including memory, execution, credential access, lateral movement, and persistence techniques designed for stealth testing against mature client environments.

  • Working knowledge of the MITRE ATT&CK framework, current vulnerabilities, exploits, adversary tactics, techniques, and procedures, and security remediation practices.

  • Experience leading remote and on‑site technical teams,

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cyber - Attack & Penetration Testing - Senior - Consulting
Cyber - Attack & Penetration Testing - Senior - Consulting

EY • Birmingham (AL)

On-site
USD 120,000 - 180,000
Cyber - Attack & Penetration Testing - Senior - Consulting
Cyber - Attack & Penetration Testing - Senior - Consulting

EY • Chicago (IL)

On-site
USD 120,000 - 180,000
Cyber - Attack & Penetration Testing - Senior - Consulting
Cyber - Attack & Penetration Testing - Senior - Consulting

EY • Chattanooga (TN)

On-site
USD 120,000 - 160,000
Cyber - Attack & Penetration Testing - Senior - Consulting
Cyber - Attack & Penetration Testing - Senior - Consulting

EY • Greenville (SC)

On-site
USD 120,000 - 190,000
Cyber - Attack & Penetration Testing - Senior - Consulting
Cyber - Attack & Penetration Testing - Senior - Consulting

EY • Charleston (WV)

On-site
USD 140,000 - 190,000
Cyber - Attack & Penetration Testing - Senior - Consulting
Cyber - Attack & Penetration Testing - Senior - Consulting

EY • Tulsa (OK)

On-site
USD 150,000 - 190,000
Cyber - Attack & Penetration Testing - Senior - Consulting
Cyber - Attack & Penetration Testing - Senior - Consulting

EY • Seattle (WA)

On-site
USD 120,000 - 170,000
Cyber - Attack & Penetration Testing - Senior - Consulting
Cyber - Attack & Penetration Testing - Senior - Consulting

Ernst & Young Advisory Services Sdn Bhd • Houston (TX)

On-site
USD 125,000 - 210,000
Cyber - AI-Enabled Vulnerability Management - Senior - Consulting
Cyber - AI-Enabled Vulnerability Management - Senior - Consulting

Ernst & Young Advisory Services Sdn Bhd • Chicago (IL)

On-site
USD 105,000 - 192,000
Cyber - Attack & Penetration Testing - Manager - Consulting
Cyber - Attack & Penetration Testing - Manager - Consulting

EY • Greenville (SC)

Hybrid
USD 145,000 - 266,000