Offensive Security Consultant
Company
VerSprite
Location
Remote
Type
Full Time
Job Description
VerSprite
VerSprite is an Inc. 5000 2020 fastest growing company and industry leader in PASTA threat modeling. Founded in 2007, VerSprite is a private cybersecurity consulting firm helping organizations tighten their risk-gaps with evolved security solutions and advanced threat intel tools.
VerSprite has a 97% client retention rate providing organizations with services like penetration tests, evolved red teaming engagements, vCISO, vSOC and VerSprite’s advanced security tools Cloud Security Assessment Platform and Cyber Threat Intelligence Portal.
Penetration Tester / Offensive Security Consultant
Are you an ethical hacker looking to turn your early experience into a long-term career? Do you strive to upgrade your technical skills, and take on challenging pentests? VerSprite is looking for a Penetration Tester who’s passionate about deep-dive pentesting and eager to expand their offensive security knowledge. If this sounds like you, we’d like to chat.
Â
---
Responsibilities
- Perform Web (Apps/Services/APIs) and Network (Internal/External/Cloud) Pentests
- Elaborate and properly document proof-of-concepts for real-world exploitation scenarios of the discovered vulnerabilities with enough details so they can be easily reproduced
- Analyze vulnerabilities and deliver clear and coherent written reporting
- Provide clients the technical risk associated to all findings reported while recognizing their true business impact
- Support all reported vulnerabilities with their remediation guidance
- Collaborate with other team members (Test Lead, Team Lead and fellow consultants) on penetration tests and red teaming engagements
- Execute projects according to the alignments defined by the rules of engagements and complete them within defined deadlines as required.
- Continuously learning and staying up-to-date with the latest attack techniques, tools, methodologies
Requirements
- Solid fundamentals in Web (Apps/Services/APIs) and network pentesting (2+ years). Pentesting experience in mobile apps (iOS/Android) is desirable.
- Experience with Social Engineering through Phishing Campaigns, Source Code Analysis, Cloud environments and Auditing Smart Contracts definitely a great bonus.
-
Solid understanding of common webapp vulnerabilities, exploitation techniques, and remediation options
-
Solid foundation on network protocols (HTTP, SSH, SMTP, etc) and their typical security issues
- Solid knowledge of common security concepts (crypto, AAA, AD security, SSO, OS Security, etc.) and practical offensive techniques (SSH tunneling, pivoting, OSCP equivalent knowledge)
- Proficient in developing in at least two languages, ideally one Web and one Scripting: Python, Ruby, Swift, Golang, C/C++, .NET, PHP, JS, BASH, etc.
- Passion for learning new technologies and processes, and contributing to refining existing capabilities
- Experience developing custom scripts or tools to enhance penetration testing and improve automation of repetitive tasks
- Work well under pressure and in a fast pace environment
Â
Benefits
We offer a competitive compensation package where you’ll be recognized for the value you bring to our business, along with:
- Opportunities to develop new skills and progress your career;
- The freedom and flexibility to handle your role in a way that’s right for you; and
- A collaborative environment where everyone works together to create a better working world
If this seems intriguing to you, please apply! We will reach out promptly to discuss your fit and additional job details.
Date Posted
10/30/2023
Views
6
Similar Jobs
Director of Pricing - Garner Health
Views in the last 30 days - 0
Garner Health is a rapidly growing company backed by toptier venture capital firms Their mission is to transform the healthcare economy by delivering ...
View DetailsDirector, Product, Customer, and Lifecycle Marketing - Garner Health
Views in the last 30 days - 0
Garner Health is seeking an experienced Product Marketing Leader to join their team The ideal candidate will lead the product marketing efforts focusi...
View DetailsData Analyst - Agero
Views in the last 30 days - 0
Agero a leading B2B whitelabel provider of digital driver assistance services is revolutionizing the vehicle ownership experience through datadriven t...
View DetailsTechnical Architect - CDW
Views in the last 30 days - 0
CDW offers a rewarding career opportunity for a Technical Architect with expertise in ServiceNow The role involves delighting customers by collaborati...
View DetailsFederal Security Solutions Engineer - Rapid7
Views in the last 30 days - 0
Rapid7 is seeking a Federal Solutions Engineer with 5 years of experience in cybersecurity solutions engineering or technical sales focusing on federa...
View DetailsLead Business Analyst (Insurance) - Agero
Views in the last 30 days - 0
Agero a leading B2B whitelabel provider of digital driver assistance services is revolutionizing the vehicle ownership experience through datadriven t...
View Details