We are the leading provider of qualified services to the middle market globally, our purpose is to instill confidence in a world of change, empowering our clients and people to realize their full potential. Our exceptional people are the key to our unrivaled, inclusive culture and talent experience and our ability to be compelling to our clients. You’ll find an environment that inspires and empowers you to thrive both personally and professionally. There’s no one like you and that’s why there’s nowhere like RSM.
Role Responsibilities
- Lead and conduct security assessments, including Web & API Penetration Testing, Network Penetration Testing, and Application Security Testing
- Conduct Red Teaming and Adversary Simulation exercises using real-world attack techniques and TTPs
- Perform Active Directory security assessments, including privilege escalation, lateral movement, and attack-path analysis
- Conduct Cloud Security Assessments and Penetration Testing across AWS, Azure, and GCP environments
- Perform Purple Team Exercises and Breach & Attack Simulation (BAS) to assess and improve security controls and detection capabilities
- Conduct AI/LLM Security Testing and AI Red Teaming to identify security risks associated with emerging AI technologies
- Apply offensive security techniques including EDR/AV evasion, Command & Control (C2), privilege escalation, lateral movement, and post-exploitation in authorized testing environments
- Perform Application Security assessments and Code Reviews as required
- Collaborate with clients across different technology environments and clearly articulate technical findings, attack scenarios, risks, and remediation recommendations
- Stay current with the latest Offensive Security techniques, adversary TTPs, vulnerabilities, AI/LLM security, and emerging technologies
- Lead and foster teamwork and open communication to deliver successful engagements
- Sup