Enable job alerts via email!

Lead Security Consultant - Offensive Security

Cyderes co

United States

Remote

USD 90,000 - 150,000

Full time

30+ days ago

Boost your interview chances

Create a job specific, tailored resume for higher success rate.

Job summary

An established industry player in cybersecurity is seeking a Lead Security Consultant specializing in penetration testing. In this pivotal role, you will lead complex security assessments and manage client relationships while mentoring junior consultants. You will execute advanced penetration tests across diverse environments, including networks, applications, and cloud systems. With a focus on identifying and mitigating vulnerabilities, you will play a crucial role in enhancing clients' security postures. This is an exceptional opportunity to contribute to cutting-edge cybersecurity initiatives and make a significant impact in a rapidly evolving field.

Qualifications

  • 5+ years in penetration testing and offensive security.
  • Experience with network, web, and API security assessments.
  • Strong communication skills and ability to lead teams.

Responsibilities

  • Lead advanced penetration tests across various environments.
  • Create detailed reports and present findings to clients.
  • Mentor junior consultants and support internal tool development.

Skills

Penetration Testing
Vulnerability Management
Network Security
Web Application Security
API Security
Scripting (Python, Bash, PowerShell)
Social Engineering
Red Team Operations
Communication Skills
Threat Analysis

Education

Relevant Certifications (OSCP, OSCE, GPEN, GWAPT)

Tools

Burp Suite
Cobalt Strike
Metasploit
Nmap
Nessus

Job description

Cyderes (Cyber Defense and Response) is a pure-play, full life-cycle cybersecurity services provider with award-winning managed security services, identity and access management, and professional services designed to manage the cybersecurity risks of enterprise clients. We specialize in multi-technology, complex environments with the speed and agility needed to tackle the most advanced cyber threats. We leverage our global scale and decades of experience to accelerate our clients’ cyber outcomes through a full lifecycle of cybersecurity services. We are a global company with operating centers in the United States, Canada, the United Kingdom, and India.

About the Role:

We are seeking a highly skilled and experienced Lead Security Consultant specializing in penetration testing to join our cybersecurity consulting team. In this role, you will lead complex security assessments, manage client relationships, and provide technical leadership and mentorship to junior consultants. You will work across various industries to help clients identify and mitigate security vulnerabilities in their networks, applications, and systems.

Responsibilities:
  • Lead and execute advanced penetration tests across internal/external networks, web/mobile apps, APIs, cloud, and wireless environments
  • Perform vulnerability assessments and exploit development to assess system and application security
  • Design and conduct red and purple team exercises simulating real-world adversary tactics (TTPs)
  • Develop assessment plans and tailor testing methodologies to client environments
  • Create detailed, high-quality reports and present findings to technical and executive audiences
  • Serve as client-facing lead throughout the engagement lifecycle (scoping to post-delivery support)
  • Mentor junior consultants and support development of internal tools and methodologies
  • Research emerging threats, attack techniques, and offensive security tools
  • Support presales efforts including scoping, proposals, and client presentations
  • Conduct threat analysis and provide mitigation guidance based on trends and attack patterns
  • Correlate and analyze threat data to identify indicators of compromise and attacker behaviour
  • Produce threat intelligence summaries and track evolving trends across industries
  • Collaborate on cross-functional research projects under tight deadlines
  • Develop tools, scripts, and automated processes to enhance testing and reporting workflows
Requirements:
  • 5+ years of hands-on experience in penetration testing and offensive security in the following areas:
  • Executing network, wireless, web application, and API penetration tests
  • Experience with Active Directory (AD) and Kerberos
  • Experience conducting vulnerability management and assessments
  • Experience conducting social engineering assessments
  • Experience conducting Purple Team and Red Team exercises
  • Deep understanding of network protocols, operating systems, web technologies, and application security concepts
  • Strong experience with industry-standard tools (e.g., Burp Suite, Cobalt Strike, Metasploit, Nmap, Nessus, etc.)
  • Demonstrated experience conducting Red Team operations or simulated adversary engagements
  • Proficiency in scripting or coding (Python, Bash, PowerShell, etc.)
  • Relevant certifications such as OSCP, OSCE, GPEN, GWAPT, or equivalent
  • Excellent communication skills, both written and verbal
  • Ability to lead teams and manage client expectations in high-pressure environments
  • Source code review for control flow and security flaws
  • General knowledge of the MITRE ATT&CK Framework
Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.

Similar jobs

Lead Security Consultant - Offensive Security

Cyderes

On-site

USD 64,000 - 112,000

2 days ago
Be an early applicant

Lead Specialist - Offensive Security

Cyber Advisors

Maple Grove

Remote

USD 80,000 - 120,000

30+ days ago