Job Summary
Weare seeking a highly skilled and experienced Senior / Principal Consultant to join our penetration testing team.
You will be responsible for performing technical security assessments for clients and leading selected client engagements. More experienced candidates considered for the Principal Consultant level will take on additional responsibilities in technical leadership, engagement management, service development, and mentoring our team of penetration testers.
Core Responsibilities
- Perform technical security assessment engagements for clients across a range of technologies and environments.
- Act as the project lead for selected client engagements, coordinating testing activities and ensuring successful delivery.
- Perform technical reviews of assessment findings and deliverables to ensure accuracy, completeness, and quality.
- Contribute to the development and continuous improvement of penetration testing methodologies, processes, tools, and capabilities.
- Participate in the development of new technical security assessment services.
- Provide technical guidance and support to other members of the penetration testing team.
Additional Responsibilities for Principal Consultant
Candidates appointed at the Principal Consultant level will additionally be expected to:
- Lead and provide technical expertise and guidance to our team of penetration testers
- Manage complex or high-value technical security assessment engagements.
- Lead the development of new service offerings and assessment capabilities
- Lead initiatives to enhance and mature existing service capabilities
- Mentor consultants and contribute to the continued development of the team's technical capabilities and assessment standards.
Requirements
- Bachelor's degree in Computer Science, Cybersecurity, Information Security, or a related field.
- Professional penetration testing certifications such as OSCP, OSWE, CRT, or equivalent advanced technical certifications.
- Senior Consultant: 5+ years of relevant experience in penetration testing or related technical security assessment work.
- Principal Consultant: 8+ years of relevant experience, including experience leading complex penetration testing engagements and providing technical leadership.
- Strong knowledge of penetration testing methodologies, tools, and frameworks.
- Hands-on experience conducting network security assessments, including wired and wireless networks.
- Hands-on experience conducting application security assessments, including web, mobile, and thick-client applications.
- Ability to independently plan, execute, document, and communicate technical security assessments.
- Strong analytical and problem-solving skills.
- Good written and verbal communication skills.
- Ability to communicate technical findings clearly to both technical and non-technical stakeholders.
- For Principal Consultant candidates, strong leadership, project management, and team coordination skills are required.
Viewed Favorably
The following qualifications and experience will be viewed favorably:
- Credited with publicly disclosed CVEs.
- Active participation in bug bounty or vulnerability research programs.
- Participation in or organization of Capture the Flag (CTF) competitions.
- Publication or presentation of technical security research at security conferences or industry events.
- Experience developing new penetration testing methodologies, tools, or service capabilities.