Senior Security Consultant - Offensive Security

Cyderes • USA

Company

Cyderes

Location

USA

Type

Full Time

Job Description

Cyderes (Cyber Defense and Response) is a pure-play full life-cycle cybersecurity services provider with award-winning managed security services identity and access management and professional services designed to manage the cybersecurity risks of enterprise clients.  We specialize in multi-technology complex environments with the in speed and agility needed to tackle the most advanced cyber threats. We leverage our global scale and decades of experience to accelerate our clients’ cyber outcomes through a full lifecycle of cybersecurity services. We are a global company with operating centers in the United States Canada the United Kingdom and India.

About the Role:

Cyderes is looking for a Security Consultant to join Cyderes’ Offensive Security team to assist clients across a range of topics to support requests for information from organizations of many sizes and in several industries. This consultant will focus on Pen Testing Red Team and Purple team simulation and supervising intelligence to support a general range of topics but may also need to support other cadences of reports such as weekly monthly and quarterly reports. Writing these reports requires the ability to work with or automate datasets from Cyderes platforms. The Security Consultant should have a technical proficiency in but not limited to network operations application security vulnerability management and operating system functionality. They will assist in identifying gaps and improving the overall security posture for Cyderes’ clients.

Responsibilities:

  • Performing threat analysis and recommends appropriate course of action mitigation and remediation in response to security events and trends

  • Correlates and analyzes threat data from various sources to establish the identity of malicious users active in the computing environment.

  • Produce and review intelligence summaries accessible to all clients.

  • Engage with clients across report lifecycle: Initial scoping finished intelligence delivery and follow-up review / support

  • Develop novel automated or simpler processes for regular research and analysis

  • Track cyber threat trends across industries and technologies and generate better ways to do so

  • Work on projects across multiple research teams with sometimes tight deadlines

  • Perform internal and external penetration testing of network infrastructure applications and database

  • Perform web/mobile application wireless network and vulnerability assessments

  • Provide support in design and development of purple team and red team exercises performing adversary simulations to test client controls.

  • Create comprehensive reports and effectively communicate findings to key stakeholders (technical and/or executive).

  • Identify and safely apply attacker tactics techniques and procedures (TTPs).

  • Develop scripts tools or methodologies to enhance Cyderes’ red teaming processes.

Requirements:

  • Certifications such as OSCP CRTO GSEC GIAC CPT are preferred

  • 5-7 years of experience in three of the following areas:

  • Executing network wireless web application and API penetration tests

  • Experience with Active directory (AD) and Kerberos

  • Experience conducting vulnerability management and assessments

  • Experience conducting social engineering assessments

  • Experience conducting Purple Team and Red Team exercises

  • Experience with programming using one or more of the following: Perl Python ruby bash C or C++ C# or Java including scripting automation and editing existing code

  • Developing extending or modifying exploits shellcode or exploit tools

  • Reverse engineering malware data obfuscators or ciphers

  • Source code review for control flow and security flaws

  • General knowledge of the MITRE ATT&CK Framework

  • Thorough understanding of network protocols data on the wire and covert channels

  • Mastery of Unix/Linux/Mac/Windows operating systems including bash and PowerShell

Cyderes i s an Equal Opportunity Employer (EOE). Qualified applicants are considered for employment without regard to race religion color sex age disability sexual orientation genetic information national origin or veteran status.

Note: This job posting is intended for direct applicants only. We request that outside recruiters do not contact us regarding this position.

Apply Now

Date Posted

11/09/2024

Views

0

Back to Job Listings ❤️Add To Job List Company Info View Company Reviews
Positive
Subjectivity Score: 0.8

Similar Jobs

Events Marketing Specialist - Finalsite

Views in the last 30 days - 0

Finalsite a leading community relationship management platform for K12 schools is seeking a highly organized and detailoriented Events Marketing Speci...

View Details

Developer II - Eventbrite, Inc.

Views in the last 30 days - 0

Eventbrite is seeking a Web Application Developer to join their highperforming GTM Gotomarket Business Systems team The role involves implementing and...

View Details

National Strategic Channel Director - Vonage

Views in the last 30 days - 0

Vonage a leading provider of UCaaS and CCaaS is seeking a National Strategic Channel Director to develop and expand channel partnerships drive revenue...

View Details

Commercial Account Executive - Mid Market - MariaDB plc

Views in the last 30 days - 0

MariaDB is a leading database for modern application development used by 75 of the Fortune 500 and billions of people daily The company is seeking a C...

View Details

Senior Manager - Customer Success - Contentsquare

Views in the last 30 days - 0

The job posting is for a Senior Manager of Customer Success position in California The role involves leading a team of Customer Success Managers CSMs ...

View Details

Senior Data Scientist - Dropbox

Views in the last 30 days - 0

The text describes a unique opportunity for a Senior Data Scientist to join a new division at Dropbox focusing on AI and ML The role involves partneri...

View Details