14 Aug
|
CypherLeap
|
Bengaluru
14 Aug
CypherLeap
Bengaluru
?????? ????????? ???????? ?????????? (????????? ???????)
Location: India (Remote - Preference for South India)
Employment Type: Full-time
Experience: 7+ Years (10+ preferred)
Client Base: Australia & International
Joining: Immediate / Within 30 Days Preferred
????? ??????????
CypherLeap is a CREST-accredited cybersecurity consultancy delivering offensive security, governance, compliance and managed security services to organisations across Australia. We are seeking a Senior Offensive Security Consultant to independently deliver complex offensive security engagements for international clients while contributing to the growth of our offensive security capability.
????????? ????????????
- 7+ years of hands-on offensive security consulting experience.
- Demonstrated experience delivering services to international clients (Australian client experience highly desirable).
- Excellent spoken and written English.
- Ability to independently scope, execute and deliver offensive security engagements.
- Author of 50+ professional penetration testing reports.
- Robust client-facing consulting and presentation skills.
- Available to join within 30 days (immediate joiners preferred).
Key Responsibilities
- Lead penetration testing engagements from scoping through final reporting.
- Perform web, API, mobile, external, internal, Active Directory, cloud and wireless security assessments.
- Produce executive-quality reports requiring minimal review.
- Present findings to technical teams, CIOs, CISOs and executive stakeholders.
- Conduct remediation workshops and retesting.
- Support technical scoping, proposal development and effort estimation.
- Review work produced by junior consultants and provide mentoring.
- Contribute to the continuous improvement of CypherLeap's offensive security methodologies.
Research & Capability Development
- Research newly disclosed vulnerabilities (CVEs) and assess customer impact.
- Develop and validate proof-of-concept exploits where appropriate.
- Develop custom offensive security scripts, tooling and automation.
- Build and maintain internal attack labs for research and testing.
- Create reusable methodologies, playbooks and assessment checklists.
- Evaluate emerging offensive security techniques and technologies.
- Publish internal technical documentation and contribute to knowledge sharing.
- Where appropriate, contribute to technical blogs, whitepapers or security research.
????????? ?????????
- External & Internal Infrastructure Penetration Testing
- Active Directory Security Assessments
- Web Application & API Penetration Testing
- Mobile Application Security Testing (Android & iOS)
- AWS, Azure, Microsoft 365 & Entra ID Security Assessments
- Windows & Linux Privilege Escalation
- Kerberos Attacks & Lateral Movement
- Wireless Security Testing
- Red Team Exercises & Social Engineering
- Secure Configuration Reviews
- Container & Kubernetes Security (Desirable)
- Source Code Review (Desirable)
????????? ??????????????
- OSCP
- OSEP
- OSWE
- PNPT
- CRTO
- CRTP
- CREST CRT/CCT
- GWAPT
- GXPN
- Demonstrated consulting experience is valued more highly than certifications.
??? ???? ??????????
- Work directly with international enterprise clients.
- Exposure to a broad range of technologies and industries.
- Remote-first working environment.
- Certification and professional development support.
- Opportunity to contribute to research, tooling and innovation.
📌 Senior Offensive Security Consultant (Immediate Joining) (Bengaluru)
🏢 CypherLeap
📍 Bengaluru