Offensive Security Consultant

NEPSE Trading

Northern (KY)

Hybrid

USD 120,000 - 150,000

Full time

3 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Health insurance
Paid holidays
401(k) with company match
Professional development allowance
Remote work stipend

Job summary

SpecterOps is seeking an Offensive Security Consultant to join the Consulting Services team as operators, trainers, and program developers. The Adversary Simulation service line conducts red team assessments, penetration tests, web app tests, and maturity assessments for large commercial enterprises, supporting internal programs and executive briefings.

Remote work is supported in the U.S. with travel for events and meetings.

Qualifications

  • Experience with offensive security concepts and assessments.
  • Knowledge of security principles, policies and industry best practices.
  • Familiarity with Windows, Unix-like operating systems and AD.

Responsibilities

  • Plan and conduct offensive security engagements ranging in size, scope, focus, and approach.
  • Effectively communicate findings, attack paths, recommendations, and strategy to technical and executive client stakeholders through written reports and verbal presentations.
  • Build scripts, tools, or methodologies to enhance offensive services.
  • Serve as a SME in initial access, OSSINT, adversary tradecraft, offensive Windows/Linux/macOS operations, evasion, or tool development.
  • Utilize common offensive security testing tools and tradecraft.
  • Stay up to date with cutting-edge adversary tradecraft and vulnerabilities.
  • Coordinate and prepare for internal and customer facing meetings.
  • Assist with scoping engagements, participate in testing from kickoff through remediation, and mentor staff.
  • Train team members in adversary TTPs and tools.
  • Contribute to training content and deliver courses.

Skills

Offensive security concepts
Networking concepts
Programming or scripting (C#/.NET, C++

Education

Bachelor's degree in a technical field

Tools

Windows OS
Linux OS
macOS
Active Directory

Job description

SpecterOps is looking for an Offensive Security Consultant to work on the Consulting Services team as operators, trainers, and program developers. The Adversary Simulation service line primarily works in large commercial enterprises conducting offensive security assessment services (red team assessments, penetration tests, offensive maturity assessments, web application tests, and specialty security assessments), supporting internal offensive programs, delivering training courses, and supporting research and development efforts. Our consultants work both onsite and offsite in diverse environments supporting our customers, anywhere from developing toolsets in support of operations to briefing executives. A successful candidate will have excellent technical skills, impeccable soft skills, and be a well-organized, self-directed individual.

Salary Range : Base salary annually, commensurate with experience. Consultant - $120,000 - $150,000

Location : This position is remote, based in the U.S. with travel quarterly for in person company events and other ad hoc meetings.

Candidate must be authorized to work and reside in the United States; we do not currently sponsor immigration visas.

Responsibilities
  • Plan and conduct offensive security engagements ranging in size, scope, focus, and approach
  • Effectively communicate findings, attack paths, recommendations, and strategy to technical and executive client stakeholders through written reports and verbal presentations
  • Build scripts, tools, or methodologies to enhance offensive services
  • Serve as a subject matter expert (SME) in one of the following areas: initial access, open-source intelligence analysis, adversary tradecraft, offensive Windows/Linux/macOS operations, evasion operations, or technical capability development
  • Utilize common offensive security testing tools and tradecraft
  • Stay up to date with cutting-edge adversary tradecraft and vulnerabilities
  • Effectively communicate successes and obstacles with fellow team members and team lead(s)
  • Interface with client contact(s) and staff in a constructive and professional manner
  • Coordinate and prepare for internal and customer facing meetings
  • Assist with scoping prospective engagements, participating in technical testing from kickoff through remediation, and mentoring less experienced staff
  • Train team members in adversary Tactics, Techniques, and Procedures (TTPs) and tools
  • Contribute new or improve existing content for SpecterOps training courses and assist in the delivery of course offerings (instruction, lab support, etc.)
Requirements
  • Ability to travel domestically and internationally; up to an average of 25% annually
  • Must be able to pass a criminal background check
  • Desire to embody our core values of passionate curiosity, consistent improvement, empathy, sustainability, humility, and empowerment through transparency
Desired Qualifications
  • Working knowledge of offensive security concepts and assessments
  • Working knowledge of security principles, policies, and industry best practices
  • Working knowledge of Windows and *NIX-based operating systems
  • Working knowledge of networking concepts
  • Working knowledge of Active Directory
  • Working knowledge of programming or scripting languages, such as C#/.NET, C++, Python, PowerShell, Bash, etc.
  • Aptitude for technical writing, including assessment reports, presentations and operating procedures
  • Proficient written/verbal communication and interpersonal skills
  • Independently contribute to significant services and projects
  • Ability to lead small teams and engagements
  • Ability to manage multiple projects at once
  • Ability to effectively communicate with clients, team members, and management for project delivery
  • Ability to manage client projects with limited supervision
  • Willingness to lead and execute offensive security service offerings (e.g., red team, penetration test, web application security assessment, cloud security assessment, offensive maturity assessment, etc.)
  • Willingness to develop and deliver training content as a lead course instructor
  • Willingness to mentor and train fellow consultants
Nice to Haves
  • Bachelor's degree in a technical field
  • Experience participating in and/or leading Fortune 1000 and/or large Federal Government security assessments
  • Public community contributions (e.g., conference presentations, blog posts, white papers, public tool development)
  • Experience in administering, attacking, or defending Windows/Active Directory, Linux, and/or macOS environments
  • Experience in technical writing
  • Experience working for a service-based information security consultancy
  • Experience developing and/or providing technical training
  • Desire to teach and train students in offensive techniques
  • Desire to travel internationally and domestically on a more frequent basis
What We Offer
  • Health/Dental/Vision/life insurance: 100% covered for both the employee and their family
  • Flexible time off policy
  • 13 paid holidays annually
  • 401(k) with up to 4% company match
  • Equity and quarterly bonuses based on company performance
  • Remote work: $1,500 first year allowance to set up home office
  • $500 annual home office allowance after first year
  • $150 monthly cell phone and internet reimbursement
  • $5,000 annual professional development allowance
  • $5,250 towards continuing education or student loan repayment
  • $1,200 annual budget for lifestyle, wellness, pet insurance and more
  • A one-time $10,000 benefit towards family planning
  • Open intellectual property policies; allow researchers to retain rights over open-sourced research & tools
  • In person and virtual employee events throughout the year
  • And of course, company swag!

All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability or protected veteran status.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Identity Security Architect New Remote, United States
Senior Identity Security Architect New Remote, United States

SpecterOps Inc. • Northern (KY)

Hybrid
USD 175,000 - 200,000
Health insurance
Dental insurance
Vision insurance
+4
Defensive Security Analyst-Washington, DC
Defensive Security Analyst-Washington, DC

SpecterOps • Washington

Hybrid
USD 110,000 - 160,000
Health/Dental/Vision/Life Insurance
Flexible Time Off Policy
401(k) with Company Match
+7
Remote Offensive Security Consultant
Remote Offensive Security Consultant

NEPSE Trading • Northern (KY)

Hybrid
USD 120,000 - 150,000
Health insurance
Paid holidays
401(k) with company match
+2
Defensive Security Analyst-Washington, DC Hybrid, Washington DC
Defensive Security Analyst-Washington, DC Hybrid, Washington DC

Specter Ops, Inc. • Washington

Hybrid
USD 110,000 - 160,000
Health insurance
Flexible time off
401(k) with company match
+2
Senior Consultant, Network Security
Senior Consultant, Network Security

Jobgether • United States

Hybrid
USD 140,000 - 180,000
Flexible work model
Competitive compensation
Parental leave
+3
Offensive Security Consultant
Offensive Security Consultant

Konica Minolta Business Solutions Canada • Kansas City (MO)

On-site
USD 80,000 - 100,000
Lead Cyber Defense Incident ResponderOn-site - TS/SCI
Lead Cyber Defense Incident ResponderOn-site - TS/SCI

S2i2, Inc • Arlington (VA)

On-site
USD 175,000 - 180,000
Certification support
Accessible leadership
Regular company updates
+3
Lead Cyber Defense Incident Responder On-site - TS/SCI
Lead Cyber Defense Incident Responder On-site - TS/SCI

S2i2, Inc • Arlington (VA)

On-site
USD 175,000 - 180,000
Professional certifications support
Leadership development
Regular company updates
+3
Senior Vulnerable Machine Engineer
Senior Vulnerable Machine Engineer

OffSec • United States

Remote
USD 120,000 - 180,000
Associate Principal Red Team Consultant
Associate Principal Red Team Consultant

UltraViolet Cyber • United States

Hybrid
USD 165,000 - 195,000
401(k) with employer match
Medical, Dental, and Vision Insurance
Discretionary Time Off (DTO) Program
+1