Talent.com
Sr. Security Consultant - Offensive Security
Sr. Security Consultant - Offensive SecuritySHI • Saint Paul, MN, US
serp_jobs.error_messages.no_longer_accepting
Sr. Security Consultant - Offensive Security

Sr. Security Consultant - Offensive Security

SHI • Saint Paul, MN, US
job_description.job_card.variable_days_ago
serp_jobs.job_preview.job_type
  • serp_jobs.job_card.full_time
job_description.job_card.job_description

About Us

As a digital and cybersecurity services company, Stratascale exists to help the Fortune 1000 transform the way they use technology to advance the business, generate revenue, and respond quickly to market demands. We call it Digital Agility.

To learn more about how we're shaping the future of digital business and a more secure world, visit stratascale.com.

Job Description Summary

The Senior Security Consultant - Offensive Security is a critical role within Stratascale's Adversarial Operations team who will assist in leading and supporting the development and delivery of a diverse range of continuous threat and exposure management consulting, penetration testing, and operational service programs to a portfolio of our clients.

The Security Consultant supports the development and delivery of a diverse range of continuous threat and exposure management consulting, penetration testing, and operational service programs to a portfolio of our clients. This role involves developing governance models, collaborating with sales and technical teams, delivering training content, and staying informed on industry trends to ensure successful solution delivery and continuous improvement in security practices.

This position is remote with a Home Office setup as determined by Stratascale management.

Role Description

  • Perform penetration testing against complex environments covering both external, internal, web application, and other forms of offensive security engagements.
  • Consult and document attack surface, threats, and vulnerability improvements based on team's overall assessment of client's environment.
  • Perform full assessment and threat modeling against industry best practices to identify control weaknesses and assess the effectiveness of existing controls.
  • Perform root cause analysis on identified vulnerabilities and attack surface weaknesses to determine technical solutions to be presented to client along with recommendations for remediations.
  • Collaborate with client's security teams to understand mitigation or resolutions for findings discovered by analysts.
  • Review threat intelligence for specific threat vectors that align with client's industry or potentially impacted by to utilize in attack path modeling.
  • Assist in defining, measuring, and quantifying business risk and vulnerability impacts to clients and their stakeholders.
  • Provide subject matter expertise and technical support on remediation, cloud security, governance, compliance, and core infrastructure systems.
  • Assist customers with strategies, use of platforms, technical and compliance analysis, and implementing automation.
  • Develop and deliver governance models, security frameworks, compliance reporting, and security assessments.
  • Collaborate with internal sales and technical teams to support the solution sales cycle, qualify opportunities, and ensure successful solution delivery.
  • Identify customer needs and requirements, recommend appropriate solutions, and proactively identify areas for improvement.
  • Execute consulting projects by creating and completing deliverables, ensuring client needs and practice obligations are met.
  • Develop and deliver training content, curricula, and workforce development programs, including in-person and remote sessions.
  • Participate in customer and internal meetings, providing technical guidance and facilitating discussions.
  • Stay educated on new product technologies, industry trends, and emerging capabilities within the practice.
  • Develop and optimize cross-practice capabilities, collaborate with peer practice leaders, and mentor other consultants.

Behaviors and Competencies

  • Communication : Can effectively communicate complex ideas and information to diverse audiences, facilitate effective communication between others, and mentor others in effective communication.
  • Relationship Building : Can take ownership of complex team initiatives, collaborate with diverse groups, and drive results through effective relationship management.
  • Self-Motivation : Can take ownership of complex personal or professional initiatives, collaborate with others when necessary, and drive results through self-motivation.
  • Negotiation : Can take ownership of complex negotiations, collaborate with others, and drive consensus.
  • Impact and Influence : Can rally a team or group towards a common goal, creating a positive and persuasive influence.
  • Business Development : Can take ownership of significant business initiatives, collaborate with various stakeholders, and drive business results.
  • Emotional Intelligence : Can use emotional information to guide thinking and behavior, manage and / or adjust emotions to adapt to environments or achieve one's goal(s), and help others do the same.
  • Detail-Oriented : Can oversee multiple projects, maintaining a high level of detail orientation, identifying errors or inconsistencies in work, and ensuring accuracy across all tasks.
  • Follow-Up : Can take ownership of tasks, collaborate with others in managing follow-ups, and drive results through effective task completion.
  • Presenting : Can effectively use visual aids, storytelling, and persuasive techniques to enhance presentations and engage audiences.
  • Delegation : Can delegate responsibilities across a team, balancing workload, and ensuring all members understand their roles.
  • Analytical Thinking : Can use advanced analytical techniques to solve complex problems, draw insights, and communicate the solutions effectively.
  • Critical Thinking : Can integrate and synthesize information from various sources to inform strategic decision-making and problem-solving.
  • Technical Troubleshooting : Can take ownership of complex technical problems, collaborate with others to manage solutions, and drive results in problem resolution.
  • Skill Level Requirements

  • Expertise in planning, executing, and leading penetration tests across networks, web and mobile applications, APIs, wireless, and cloud environments, including scoping, rules of engagement, and debriefs. - Intermediate
  • Proficiency with offensive security methodologies and frameworks such as PTES, OWASP (WSTG / MASVS / ASVS), MITRE ATT&CK, and threat modeling to drive risk-based testing. - Intermediate
  • Deep hands-on experience with common offensive tooling and techniques, including reconnaissance, enumeration, exploitation, post-exploitation, lateral movement, and data exfiltration, along with strong operational security practices. - Intermediate
  • Ability to assess and attack cloud services (AWS, Azure, GCP) including IAM misconfigurations, storage, serverless, container / orchestration, and cloud networking, and communicate cloud-specific remediation guidance. - Intermediate
  • Strong web application testing skills including auth flows, access control, injection, deserialization, SSRF, XXE, business logic abuse, and modern app architectures (SPAs, microservices, GraphQL, WebSockets). - Intermediate
  • Working knowledge of Active Directory and Azure AD attack paths (Kerberoasting, constrained / unconstrained delegation, ACL abuses, LAPS / MAPS, certificate services), and the ability to simulate realistic enterprise attack chains. - Intermediate
  • Proficiency with social engineering and phishing engagements, including payload development, infrastructure setup, pretexting, and measurement aligned to customer policies and legal constraints. - Intermediate
  • Competence in scripting and automation to accelerate testing and proof-of-concept development using Python, PowerShell, Bash, and basic Go or JavaScript as needed. - Intermediate
  • Ability to develop clear exploit proofs-of-concept, reproduce vulnerabilities reliably, and validate fixes; familiarity with exploit development fundamentals is a plus. - Intermediate
  • Strong reporting and communication skills, including writing executive summaries and technical reports with reproducible steps, risk ratings, and actionable remediation, and presenting findings to both technical and non-technical stakeholders. - Intermediate
  • Experience collaborating in red / purple team exercises, working with blue teams, and translating findings into detection and hardening recommendations (e.g., SIEM detections, EDR tuning, hardening baselines). - Intermediate
  • Familiarity with vulnerability management workflows, responsible disclosure practices, and integration of pen test results into remediation programs and retesting cycles. - Intermediate
  • Proficiency with productivity and documentation tools such as Word, Excel, PowerPoint, and Outlook to efficiently produce statements of work, test plans, and final reports. - Intermediate
  • Other Requirements

  • Completed Bachelor's Degree in a related field or relevant work experience required
  • 5–7 years of hands-on penetration testing / red team experience delivering engagements for mid-to-large enterprises, including leading complex assessments.
  • Ability to travel to SHI, Partner, Customer events, and on-site testing engagements as needed.
  • Advanced industry certifications preferred (e.g., OSCP, OSEP, OSWE, GXPN, GPEN, CRTO, CRTP, PNPT; CISSP or CSSLP a plus).
  • Demonstrated understanding of legal / ethical considerations, testing authorization, and safe handling of client data
  • The estimated annual pay range for this position is $165,000 - $205,000 which includes a base salary and bonus. The compensation for this position is dependent on job-related knowledge, skills, experience, and market location and, therefore, will vary from individual to individual. Benefits may include, but are not limited to, medical, vision, dental, 401K, and flexible spending.

    Equal Employment Opportunity – M / F / Disability / Protected Veteran Status

    J-18808-Ljbffr

    serp_jobs.job_alerts.create_a_job

    Security Security • Saint Paul, MN, US

    Job_description.internal_linking.related_jobs
    Security Officer - Financial Institution

    Security Officer - Financial Institution

    Allied Universal • St. Paul, MN, United States
    serp_jobs.job_card.full_time
    Security Officer - Financial Institution.Monday, Tuesday, Wednesday, Thursday, Friday.Allied Universal, North America's leading security and facility services company, offers rewarding careers that...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Remote XSOAR Consultant

    Remote XSOAR Consultant

    VirtualVocations • Saint Paul, Minnesota, United States
    serp_jobs.filters.remote
    serp_jobs.job_card.full_time
    A company is looking for a Remote XSOAR Consultant to assist with log migration and detection strategy for clients.Key Responsibilities Develop a log ingestion strategy in collaboration with the ...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted
    Security Officer - Multiple Sites

    Security Officer - Multiple Sites

    Allied Universal • Minneapolis, MN, US
    serp_jobs.job_card.full_time
    Allied Universal, North America's leading security and facility services company, offers rewarding careers that provide you a sense of purpose. While working in a dynamic, welcoming, and collaborati...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted
    National Sales Consultant

    National Sales Consultant

    LVC Companies • Golden Valley, MN, USA
    serp_jobs.job_card.full_time
    serp_jobs.filters_job_card.quick_apply
    LVC Companies is seeking a high-performing National Sales Consultant to accelerate growth with Fortune 1000 and large multi-site enterprise clients. This role is designed for a hunter and strategist...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_30
    Executive Services, Lead Corp Security Consultant

    Executive Services, Lead Corp Security Consultant

    Roundel • Minneapolis, MN, United States
    serp_jobs.job_card.full_time
    Job Title : Executive Services Lead Consultant • • • •Classification : Exempt • • • •Date : August 2025 • •Target is an iconic brand, a Fortune 50 company and one of America’s leading retailers.Working at Targe...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted
    Lead Corp Security Consultant

    Lead Corp Security Consultant

    Target • Minneapolis, MN, US
    serp_jobs.job_card.full_time
    Executive Services Lead Consultant.The Executive Services Lead Consultant is responsible for delivering executive protection and support services that ensure the safety, productivity, and privacy o...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted
    Target Security Specialist

    Target Security Specialist

    Target • Minnetonka, MN, US
    serp_jobs.job_card.full_time
    Starting Hourly Rate / Salario por Hora Inicial : $19.Working at Target means helping all families discover the joy of everyday life. We bring that vision to life through our values and culture.Asset...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted
    Security Officer - Multiple Locations

    Security Officer - Multiple Locations

    Allied Universal • Minneapolis, MN, US
    serp_jobs.job_card.full_time
    Allied Universal, North America's leading security and facility services company, offers rewarding careers that provide you a sense of purpose. While working in a dynamic, welcoming, and collaborati...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Security Specialist

    Security Specialist

    City of Minneapolis • Minneapolis, MN, United States
    serp_jobs.job_card.full_time
    This position, equivalent to a Security Officer, provides essential uniformed security services for facilities owned and operated by the City of Minneapolis. Duties include patrolling, responding to...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Security Officer - Movie Theatres

    Security Officer - Movie Theatres

    Allied Universal • Roseville, MN, United States
    serp_jobs.job_card.full_time
    Security Officer - Movie Theatres.Friday, Monday, Saturday, Sunday, Thursday, Tuesday, Wednesday.Afternoon, Evening, Morning, Overnight. Allied Universal, North America's leading security and facili...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Senior SOC Security Engineer

    Senior SOC Security Engineer

    VirtualVocations • Saint Paul, Minnesota, United States
    serp_jobs.job_card.full_time
    A company is looking for a Senior SOC / Splunk Security Engineer.Key Responsibilities Monitor, detect, and respond to security incidents using SIEM and EDR tools Conduct deep-dive investigations i...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted
    Security Officer - Armed - Open Availability

    Security Officer - Armed - Open Availability

    Allied Universal • Minneapolis, MN, US
    serp_jobs.job_card.full_time
    Allied Universal, North America's leading security and facility services company, offers rewarding careers that provide you a sense of purpose. While working in a dynamic, welcoming, and collaborati...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Sr Target Security Specialist

    Sr Target Security Specialist

    Target • Minneapolis, MN, US
    serp_jobs.job_card.full_time
    Pay is based on several factors which vary based on position.These include labor markets and in some instances may include education, work experience and certifications. In addition to your pay, Tar...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted
    Director Technology - Network Security

    Director Technology - Network Security

    Target • Brooklyn Park, MN, US
    serp_jobs.job_card.full_time
    Pay is based on several factors which vary based on position.These include labor markets and in some instances may include education, work experience and certifications. In addition to your pay, Tar...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted
    Southdale Center - Security Director

    Southdale Center - Security Director

    Andy Frain Services • Minneapolis, MN, US
    serp_jobs.job_card.full_time
    Andy Frain Services is looking for a highly motivated individual that is multi-task-oriented to manage a Security contract. Manages the accountability of all Supervisors and staff for given accounts...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted
    Training Specialist

    Training Specialist

    Securitas Security Services USA, Inc. • Saint Paul, MN, US
    serp_jobs.job_card.full_time
    Training Specialist - Full Time - St Paul, MN.Former Military / Law Enforcement Encouraged To Apply!!.Join Securitas Security USA as a Training Specialist! As a Security Trainer you will use your e...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    SOAR Consultant with XSIAM

    SOAR Consultant with XSIAM

    VirtualVocations • Saint Paul, Minnesota, United States
    serp_jobs.job_card.full_time
    A company is looking for a SOAR Expert with XSIAM for a remote position.Key Responsibilities Manage SIEM technology, ticketing systems, log sourcing, and data source integration Deliver technica...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Lead Security Engineer (Minneapolis)

    Lead Security Engineer (Minneapolis)

    Glocomms • Minneapolis, MN, United States
    serp_jobs.job_card.full_time
    Glocomms is partnering with a fast growing health tech organization to search for a Lead Security Engineer to spearhead the design, implementation, and management of security systems that protect o...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Senior Product Security Consultant

    Senior Product Security Consultant

    VirtualVocations • Minneapolis, Minnesota, United States
    serp_jobs.job_card.full_time
    A company is looking for a Senior Product Security Consultant to join their Product Security Services team.Key Responsibilities Own and lead product security consulting engagements end-to-end, in...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Offensive Security Engineer

    Offensive Security Engineer

    VirtualVocations • Saint Paul, Minnesota, United States
    serp_jobs.job_card.full_time
    A company is looking for an Offensive Security Engineer to identify vulnerabilities and enhance security measures.Key Responsibilities Identify vulnerabilities in systems and controls while leadi...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted