Offensive Security Consultant - US

WorkNest

$90K — $130K *
US-AnywhereRemote in United States
Technical Services
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • 5-7 years of experience in offensive security, specifically application and infrastructure penetration testing
  • Strong understanding of Windows and Linux environments, including Active Directory
  • Experience with social engineering campaigns (phishing and vishing)
  • In-depth knowledge of OWASP, PTES, and other methodologies
  • Proficiency in programming or scripting languages
  • Relevant degree in Computer Science, Ethical Hacking, or Engineering
  • Possession of certifications like OSCP, CEH, or GPEN

Responsibilities

  • Perform comprehensive penetration testing on applications and infrastructures
  • Write clear technical and non-technical reports in English
  • Conduct vulnerability assessments and suggest remediation actions
  • Assist in client pre-engagement, including scoping and proposal drafting
  • Manage penetration testing projects to meet strict deadlines
  • Ensure QA processes maintain high-quality report standards according to SLAs
  • Carry out other related duties as required

Benefits

  • 25 days of annual vacation plus 8 public holidays
  • An additional day off for your birthday
  • Pension/401k contributions
  • Subsidized gym membership
  • Frequent team events
  • Private healthcare (individual coverage)
  • Learning allowance benefit
  • Flexible working policy
Full Job Description
As a Offensive Security Consultant, with a focus on Infrastructure and Web App testing, you will perform formal and comprehensive penetration testing assessments, producing full written reports to appropriate standards and within agreed deadlines. In addition, you will support with client pre-engagement activities, including scoping and proposal drafting, as well as researching infrastructure and application vulnerabilities, following responsible disclosure, and sharing such findings within the team.

Responsibilities:
  • Perform formal and comprehensive application, infrastructure and other penetration testing assessments where appropriate and required
  • Provide well-written, concise, technical and non-technical reports in English
  • Perform vulnerability assessments and provide findings with remediation actions
  • Support with various client pre-engagement interactions, including scoping activities and proposal drafting to ensure that client needs are met
  • Manage and deliver penetration testing project activities within strict deadlines
  • Support the QA process to ensure high quality client reports are delivered in accordance with applicable Service Level Agreement (SLA)
  • Any other appropriate job duties in line with the associated skill and experience of the post holder


Skills and experience required:
  • Proven industry experience in application and infrastructure penetration testing
  • Deep knowledge of assessing both Windows and Linux environments, including strong knowledge of Active Directory and wireless technologies
  • Ability in preparing and launching social engineering campaigns (both phishing and vishing)
  • Strong understanding of OWASP, PTES and other penetration testing methodologies
  • Knowledge of how modern web apps are designed, developed and deployed across different platforms
  • Ability to program or script in your preferred language
  • Relevant degree in Computer Science, Ethical Hacking, Engineering or other relevant subject
  • Relevant security qualifications (such as OSCP, CEH, GPEN)
  • Good knowledge and understanding of network and OS principles
  • Good knowledge of various operating systems
  • Good knowledge of virtualisation

Nice to have:
  • Knowledge of assessing cloud and hybrid environments (AWS and Azure)
  • Knowledge of assessing mobile applications (iOS/Android)
  • Knowledge of assessing hardware and embedded IoT devices

Personal Attributes:
  • Excellent spoken and written communication skills with strong attention-to-detail and accuracy
  • A passion for security and networks
  • Analytical and problem-solving skills with a can-do attitude and the ability to think laterally
  • Self-motivation with a commitment to continued development
  • Ability to work independently and as part of a team
  • Influencing and negotiation skills with the ability to build relationships at all levels
  • Willingness to learn


Benefits:
  • 25 days annual holiday plus 8 paid public holidays
  • An additional day's annual holiday for your birthday
  • Pension/401k contribution
  • Subsidised gym membership
  • Frequent team events
  • Private Healthcare (individual cover only)
  • Learning Allowance Benefit
  • Flexible working policy


This is an exciting opportunity to join a fast-growing team at WorkNest Cyber Inc and play a key role in delivering high-quality offensive security services across a diverse range of client environments.

If you are passionate about offensive security, enjoy solving complex technical challenges, and are looking to further develop your career in a collaborative and forward-thinking environment, we would love to hear from you.

Department Penetration Testing Locations Remote - USA Remote status Fully Remote

Similar Jobs

More Jobs at WorkNest

More Technical Services Jobs

Find similar Offensive Security Consultant - US jobs: