Offensive Security Technical Lead

CACI

United States

On-site

USD 140,000 - 180,000

Full time

4 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

CACI is seeking an Offensive Security Technical Lead to own technical delivery across the penetration-testing and red-team workstreams. This role provides continuous assessment support for federal assets, including .gov domains and internet-facing infrastructure, aligned with the CDM program.

You will establish engagement standards, supervise teams, mentor staff, and communicate findings to customers. Travel up to 25% in the Continental US; U.S. citizenship is required.

Qualifications

  • U.S. citizenship is required.
  • No security clearance is required to start, eligibility for DHS EOD.
  • Eight+ years of progressively responsible offensive-security experience.
  • Five+ years leading complex technical engagements or teams.
  • Expert ability to scope and govern testing across enterprise networks, apps/APIs, Windows/AD, Linux, AWS/Azure.
  • Strong scripting or tool-development capability and judging high-risk methods.
  • One or more advanced hands-on certifications such as OSEP/OSCE, OSWE, GXPN, GPEN, OSED/OSEE, CRTO/CRTL.

Responsibilities

  • Establish methodology, approve complex plans, govern technical risk, and allocates expertise.
  • Serve as senior technical authority for pentesting and red-team delivery across the portfolio.
  • Define and mature assessment standards, ROE patterns, evidence requirements, and playbooks.
  • Review and approve engagement plans, adversary scenarios, and data-handling controls.
  • Lead the team, mentor staff, and conduct technical readiness reviews.
  • Provide hands-on support for network, AD/identity, cloud, and exploit-development challenges.
  • Own final technical quality and acceptance for reports and out-briefs.
  • Lead technical customer discussions and coordinate with project management.

Skills

Penetration testing
Red-team delivery
Team leadership
Scripting / automation
Cloud platforms AWS/Azure
Active Directory / Windows

Education

Security certifications (OSEP/OSCE, OSWE, GXPN, GPEN, OSED/OSEE, CRTO/CRTL)

Job description

Job Title: Offensive Security Technical Lead

Job Category: Information Technology

Time Type: Full time

Minimum Clearance Required to Start: None

Employee Type: Regular

Percentage of Travel Required: Up to 25%

Type of Travel: Continental US

The Opportunity

CACI is seeking an Offensive Security Technical Lead to own technical delivery across the penetration-testing and red-team workstreams. This position will provide continuous technical assessment support for full‑time, proactive testing of externally and internally visible federal cyber assets. This expands federal visibility by conducting continual assessments of .gov domains, subdomains, and internet‑facing assets to uncover unknown exposures, validate vulnerabilities, and provide agencies with actionable remediation guidance. This role supports the Continuous Diagnostics and Mitigation (CDM) Program's mission to safeguard and secure cyberspace in an environment where the threat of cyber-attack is continuously growing and evolving and is responsible for enhancing the security, resilience, and reliability of the Nation's cyber and communications infrastructure. The CDM Program defends the United States (U.S.) Federal Information Technology (IT) networks from cybersecurity threats by providing continuous monitoring sensors (tools), diagnosis, mitigation tools, and associated services to strengthen the security posture of Government networks.

Responsibilities
  • The Technical Lead establishes methodology, approves complex plans and rules of engagement, governs technical risk, allocates specialized expertise across concurrent assessments, resolves escalations, and accepts final technical deliverables while remaining credible and hands‑on with offensive‑security tradecraft.
  • Serve as the senior technical authority for penetration testing and red‑team delivery across the RFS portfolio; maintain alignment among customer objectives, authorization, safety, methodology, staffing, and deliverables.
  • Define and mature assessment standards, rules‑of‑engagement patterns, technical review gates, evidence requirements, severity methodology, reporting expectations, and reusable playbooks.
  • Review and approve engagement plans, adversary scenarios, infrastructure designs, tooling exceptions, exploitation approaches, data‑handling controls, and high‑risk technical actions.
  • As a Technical Lead you lead the team for guidance, assign scarce specialties, mentor staff, conduct technical readiness reviews, and resolve complex cross‑domain problems.
  • Provide hands‑on support for the most difficult network, application, Active Directory/identity, cloud, exploit‑development, adversary‑infrastructure, and defense‑evasion challenges.
  • Own final technical quality and acceptance for assessment reports, attack‑path narratives, severity decisions, remediation recommendations, customer out‑briefs, and purple‑team scenarios.
  • Lead technical customer discussions, communicate mission and business risk, and coordinate with project management on schedule, staffing, dependencies, and issue escalation without assuming administrative PM ownership.
  • Capture lessons learned, measure technical quality and repeatability, and evolve the capability as customer processes and tools become known.
Qualifications
Required
  • U.S. citizenship is required.
  • No security clearance is required to begin employment. As a condition of continued employment, the selected candidate must meet eligibility requirements for access to sensitive or classified information and be able to obtain a Department of Homeland Security Entrance on Duty (DHS EOD) authorization.
  • Ability to work in customer‑provided remote environments, use customer‑approved tools, and comply with rules of engagement, data‑handling requirements, evidence controls, deconfliction procedures, and stop‑work criteria.
  • Eight or more years of progressively responsible offensive‑security experience, including significant hands‑on penetration testing and red‑team/adversary‑emulation delivery.
  • Five or more years leading complex technical engagements , multiple concurrent assessments, or senior offensive‑security teams.
  • Expert ability to scope and govern safe testing across enterprise networks, applications/APIs, Windows/Active Directory and identity, Linux, AWS/Azure, external attack surfaces, and production environments.
  • Demonstrated technical authority in rules of engagement, operational risk, deconfliction, exploit validation, evidence quality, severity decisions, report acceptance, and customer out‑briefing .
  • Strong scripting, automation, or tool‑development capability and the judgment to approve or reject high‑risk technical methods.
  • One or more advanced hands‑on certifications such as OSEP/OSCE, OSWE, GXPN, GPEN, OSED/OSEE, CRTO/CRTL, or equivalent expert‑level experience.
  • Travel up to 25% in Continental US.
Desired
  • Twelve or more years across offensive security, security research, adversary emulation, or technical‑assessment leadership.
  • Experience
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Offensive Security Technical Lead Remote (Any State)
Offensive Security Technical Lead Remote (Any State)

CACI International Inc. • Northern (KY)

Hybrid
USD 105,000 - 231,000
Remote Offensive Security Lead: Pen-Testing & Red Team
Remote Offensive Security Lead: Pen-Testing & Red Team

CACI International Inc. • Northern (KY)

Hybrid
USD 105,000 - 231,000
Senior Offensive Security Lead: Pen Test & Red Team
Senior Offensive Security Lead: Pen Test & Red Team

CACI • United States

On-site
USD 140,000 - 180,000
Senior System Security Specialist
Senior System Security Specialist

Compunnel, Inc. • Baltimore (MD)

On-site
USD 120,000 - 150,000
Offensive Cyber Operations Lead
Offensive Cyber Operations Lead

ZETTALOGIX INC • Tampa (FL)

Hybrid
USD 150,000 - 210,000
Penetration Tester / Red Team Operator
Penetration Tester / Red Team Operator

Digital Global Connectors • McLean (VA)

Hybrid
USD 120,000 - 190,000
Penetration Tester / Red Team Operator
Penetration Tester / Red Team Operator

Digital-Global-Connectors • McLean (VA)

Hybrid
USD 110,000 - 170,000
Red Team Penetration Tester
Red Team Penetration Tester

Take2 Consulting, LLC • Virginia Beach (VA)

On-site
USD 180,000 - 240,000
Penetration Testing Team Lead
Penetration Testing Team Lead

ECS • Richmond (VA)

Hybrid
USD 170,000 - 190,000
Equal opportunity employer
Senior Associate, Offensive Security
Senior Associate, Offensive Security

Jobtailor • New York (NY)

Hybrid
USD 120,000 - 160,000