Назад
Company hidden
15 часов назад

Senior Consultant, Offensive Security (Cybersecurity)

Формат работы
hybrid
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
India
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Senior Consultant, Offensive Security (Cybersecurity): Delivering advanced penetration tests and adversary simulations across networks, applications, APIs, cloud, and wireless environments with an accent on vulnerability discovery, exploit development, and client-facing security consulting. Focus on leading red and purple team exercises, correlating threat data, developing testing automation, and mentoring junior consultants.

Location: Bengaluru, Karnataka, India; hybrid with 2–3 days in the office

Company

hirify.global provides cybersecurity consulting and managed security solutions spanning identity and access management, exposure management, risk programs, managed detection and response, and its Meridian entity fabric.

What you will do

  • Lead advanced penetration tests across internal and external networks, web and mobile applications, APIs, cloud, and wireless environments.
  • Perform vulnerability assessments, exploit development, threat analysis, and mitigation guidance.
  • Design and conduct red team and purple team exercises that simulate real-world adversary tactics.
  • Lead client engagements from scoping through reporting, presentations, and post-delivery support.
  • Mentor junior consultants and contribute to internal tools, testing methodologies, scripts, and automated reporting workflows.
  • Support presales activities, including scoping, proposals, and client presentations, while researching emerging threats and offensive security techniques.

Requirements

  • 5+ years of hands-on experience in penetration testing and offensive security.
  • Experience with network, wireless, web application, and API penetration testing, as well as vulnerability management and assessments.
  • Experience with Active Directory, Kerberos, network protocols, operating systems, web technologies, and application security concepts.
  • Experience conducting social engineering assessments, red team operations, and purple team exercises.
  • Proficiency with tools such as Burp Suite, Cobalt Strike, Metasploit, Nmap, and Nessus, plus scripting or coding in Python, Bash, or PowerShell.
  • Relevant certifications such as OSCP, OSCE, GPEN, GWAPT, or equivalent.

Culture & Benefits

  • Hybrid work model with 2–3 days in the office.
  • Medical insurance covering employees and dependents, plus life insurance.
  • Retirement match program, paid time off, sick and casual leave, and bereavement and volunteer time.
  • Maternity and paternity leave.
  • Professional development reimbursement and access to the LinkedIn Learning platform.
  • Mobile phone reimbursement.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →