Senior Offensive Security Consultant (Cloud)

Soteria LLC
SC, US
Full-time
Quick Apply

As a senior member of Soteria’s Offensive Security team, you will be focused on leading and performing red team assessments, penetration tests, vulnerability assessments in a variety of cloud-based environments.

You will play a key role on the OffSec team as the cloud security assessment subject-matter expert, leading engagements and working with clients to help them identify and solve security challenges.

Core Responsibilities : Perform cloud penetration testing, red teaming, application testing, and vulnerability assessments.

Engage with prospective clients in pre-sales meetings and provide technical input for scoping engagements. Drive Soteria’s Offensive Security cloud offerings.

Support the OffSec team as needed on traditional network penetration testing, web and mobile application security testing, source code reviews, vulnerability analysis, wireless network assessments, red team exercises, physical testing, and social engineering assessments.

Communicate with prospective and existing clients to understand their cloud security needs, business requirements, and other motivating factors.

Develop tailored tactical and strategic recommendations to address findings. Develop comprehensive and accurate reports and presentations for both technical and executive audiences.

Effectively communicate findings and strategy to client stakeholders including technical staff, executive leadership, and legal counsel.

Lead offensive security engagements through the entirety of project lifecycles, including kickoff, delivery, and closeout.

Research and incorporate attacker tools, tactics, techniques, and procedures. Develop scripts, tools, and methodologies to automate and streamline internal processes and engagements.

Perform quality assurance peer reviews of Advisory and Offensive Security assessment reports and deliverables. Assist Soteria Leadership in the development of security standards and best practices for the organization and recommend security enhancements as needed.

Manage relationships with clients post-engagement as a trusted security partner. Maintain competence in security trends, technologies, and practices through self-study and participation in the security community.

Collaborate with Soteria's Detection and Response Team (DART) to develop new capabilities for detecting bleeding edge offensive techniques.

Coach and mentor offensive security team members. Provide continual improvement to offensive security team processes and documentation.

Along with billable consulting, this role will require strong soft skills. Technologies / Platforms : Cloud platforms (AWS, Azure, and GCP) Modern web technologies Network environments (internal, external, and wireless) Active Directory Physical security Mobile applications Experience Requirements : 5-7 years of experience in at least three of the following : Cloud penetration testing and red teaming Network red team operations and purple team delivery, including adversary emulation Network penetration testing and manipulation of network infrastructure Web and / or mobile application assessments Developing, extending, or modifying exploits, shellcode or exploit tools Developing applications in C#, ASP, .

NET, ObjectiveC, Go, or Java (J2EE) Reverse engineering malware, data obfuscators, or ciphers Source code review for control flow and security flaws Previous experience working for internal or external customers in a consultant capacity Strong knowledge of tools used for network, cloud, web application, and wireless security testing.

Thorough understanding of network protocols and data on the wire. Experience with automation of tasks using languages such as Powershell, Perl, Python, Ruby, etc.

Ability to successfully interface with clients (internal and external). Ability to document and explain technical details in a concise, understandable manner.

Ability to manage and balance time among multiple competing tasks. Mastery of *nix / Mac / Windows operating systems GUI and terminal.

Physical Requirements : Prolonged periods of sitting at a desk and working on a computer. Flexible hours as determined by client needs.

Benefits Medical, Dental, Vision, Life and Disability insurance covered 100% for Employee and 50% for family members. Employer funded single HSA account Flexible work hours around core hours Paid time off of 24 days with an additional 12 paid holidays Professional development allowance 401k optional Candidates must be legally authorized to work full time within the United States and able to pass a background check.

Some candidates may require more extensive background checks based on the project. Soteria is an Equal Opportunity Employer.

Soteria does not discriminate on the basis of race, religion, color, sex, gender identity, sexual orientation, age, non-disqualifying physical or mental disability, national origin, veteran status or any other basis covered by appropriate law.

All employment is decided on the basis of qualifications, merit, and business need. Powered by JazzHR

30+ days ago
Related jobs
Soteria LLC
SC, US

As a senior member of Soteria’s Offensive Security team, you will be focused on leading and performing red team assessments, penetration tests, vulnerability assessments in a variety of cloud-based environments. NET, ObjectiveC, Go, or Java (J2EE) Reverse engineering malware, data obfuscators,...

Promoted
PWC
Spartanburg, South Carolina

Demonstrating a track record of success as engagement leader on numerous Oracle Cloud implementations, with various Oracle Cloud Applications, including prioritizing strategy, program/project plans and establishing successful delivery;. As a Senior Manager, you'll work as part of a team of problem s...

Buildertrend
Mount Pleasant, South Carolina
Remote

Security Engineer or Cloud Engineer, with a focus on public cloud security and network security required. The Senior Cloud Network Security Engineer is responsible for designing, implementing, and maintaining secure network infrastructure in cloud environments. Work closely with Cloud Engineers and ...

PricewaterhouseCoopers Advisory Services LLC
Columbia, South Carolina
Remote

As a Senior Associate, you'll work as part of a team of problem solvers, helping to solve complex business issues from strategy to execution. ...

KPMG-UnitedStates
Greenville, South Carolina

Minimum ten years of recent experience with at least three of the following: Security Architecture, threat modelling experience, identity management and authentication, software development, cryptography, penetration testing, cloud security, mobile security, and network security. Advanced knowledge ...

PricewaterhouseCoopers Advisory Services LLC
Spartanburg, South Carolina
Remote

Demonstrating a track record of success as engagement leader on numerous Oracle Cloud implementations, with various Oracle Cloud Applications, including prioritizing strategy, program/project plans and establishing successful delivery;. As a Senior Manager, you'll work as part of a team of problem s...

BDO
Greenville, South Carolina

Designs and implements best in class data ingestion strategies, data warehouse and data mart structures, semantic layers and models, visualizations, streaming processes, API integrations, and automation (RPA) solutions for end-to-end data analytics solutions on primarily, but not limited to, cloud a...

PricewaterhouseCoopers Advisory Services LLC
Spartanburg, South Carolina
Remote

Demonstrating a track record of success as engagement leader on numerous Oracle Cloud implementations, with various Oracle Cloud Applications, including prioritizing strategy, program/project plans and establishing successful delivery;. As a Senior Manager, you'll work as part of a team of problem s...

Promoted
KBR
North Charleston, South Carolina

The Senior Software Engineer will play a critical role in ensuring the reliability, security, and performance of mission-critical software applications. We work closely with government agencies, including the Department of Defense (DoD), to deliver cutting-edge solutions that enhance national securi...

Promoted
Michelin North America
Lexington, South Carolina

Extract and translate business data into actionable data. The successful candidate will play a crucial role in the conversion of data into valuable insights that drive progress and performance for our manufacturing site. If you have a strong analytical attitude, technical expertise, and a passion fo...