





Mid-level requirement and metro location increase applicant pool, but niche offensive security skills moderate competition.
Role requires specialised offensive security experience and certifications, making cross-industry transferability limited.
Explicit 5+ years requirement plus mandatory offensive security skills and certifications implies strict candidate filtering.
Login to See Your Match Score
Create a free account or log in to unlock your CV match score across:
Lead and execute advanced penetration tests across networks, web/mobile apps, APIs, cloud, and wireless environments.
Design and conduct red and purple team exercises simulating real-world adversary tactics; manage client engagements end-to-end including scoping, delivery, and post-support.
Mentor junior consultants, develop internal tools, report findings to technical and executive audiences, and support presales activities.
Minimum 5 years of hands-on experience in penetration testing and offensive security.
Expertise with network, wireless, web application, API testing; Active Directory and Kerberos knowledge; experience in red/purple team exercises.
Proficiency in scripting/coding (Python, Bash, PowerShell) and use of tools like Burp Suite, Cobalt Strike, Metasploit.
Relevant certifications such as OSCP, OSCE, GPEN, GWAPT, or equivalent.
Experienced in leading complex offensive security assessments across diverse environments and industries.
Skilled in client-facing roles managing full lifecycle of security engagements with ability to translate findings for technical and executive stakeholders.
Capable mentor and developer of methodologies and internal tools, with active involvement in threat research and presales support.