Offensive Security Consultant - US
WorkNest Secure · United States · 1 mo ago
RemoteRemoteInformation TechnologyFull-time
Responsibilities
- Perform formal and comprehensive application, infrastructure and other penetration testing assessments where appropriate and required
- Provide well-written, concise, technical and non-technical reports in English
- Perform vulnerability assessments and provide findings with remediation actions
- Support with various client pre-engagement interactions, including scoping activities and proposal drafting to ensure that client needs are met
- Manage and deliver penetration testing project activities within strict deadlines
- Support the QA process to ensure high quality client reports are delivered in accordance with applicable Service Level Agreement (SLA)
- Any other appropriate job duties in line with the associated skill and experience of the post holder
Requirements
- Proven industry experience in application and infrastructure penetration testing
- Deep knowledge of assessing both Windows and Linux environments, including strong knowledge of Active Directory and wireless technologies
- Ability in preparing and launching social engineering campaigns (both phishing and vishing)
- Strong understanding of OWASP, PTES and other penetration testing methodologies
- Knowledge of how modern web apps are designed, developed and deployed across different platforms
- Ability to program or script in your preferred language
- Relevant degree in Computer Science, Ethical Hacking, Engineering or other relevant subject
- Relevant security qualifications (such as OSCP, CEH, GPEN)
- Good knowledge and understanding of network and OS principles
- Good knowledge of various operating systems
- Good knowledge of virtualisation
Qualifications
- Nice to have: Knowledge of assessing cloud and hybrid environments (AWS and Azure), Knowledge of assessing mobile applications (iOS/Android), Knowledge of assessing hardware and embedded IoT devices
Skills
- Excellent spoken and written communication skills with strong attention-to-detail and accuracy
- A passion for security and networks
- Analytical and problem-solving skills with a can-do attitude and the ability to think laterally
- Self-motivation with a commitment to continued development
- Ability to work independently and as part of a team
- Influencing and negotiation skills with the ability to build relationships at all levels
- Willingness to learn
Benefits
- 25 days annual holiday plus 8 paid public holidays
- An additional day’s annual holiday for your birthday
- Pension/401k contribution
- Subsidised gym membership
- Frequent team events
- Private Healthcare (individual cover only)
- Learning Allowance
- Benefit
- Flexible working policy