Penetration Tester
UltraViolet CyberFull Time
Senior (5 to 8 years)
Candidates must be authorized to work and reside in the United States and be able to pass a criminal background check. They should possess proficient knowledge of offensive security concepts, security principles, policies, and industry best practices, along with Windows and *NIX-based operating systems, networking concepts, and Active Directory. A working knowledge of programming or scripting languages such as C#/.NET, C++, Python, PowerShell, or Bash is required. Strong written/verbal communication, interpersonal skills, and an aptitude for technical writing are essential. The role also requires experience leading small teams, managing multiple projects, communicating with clients, delivering presentations, independently managing client projects, and the ability to lead and execute most offensive security service offerings. Desired qualifications include being a clear expert in one or more service lines or technical areas, and the ability to travel domestically and internationally up to an average of 25% annually. A desire to embody core company values is also expected.
Consultants will plan and conduct offensive security engagements, effectively communicate findings and strategies to clients through reports and presentations, and build tools to enhance offensive services. They will serve as subject matter experts in areas like initial access, OSINT, adversary tradecraft, or offensive operations on Windows/Linux/macOS. Responsibilities include utilizing offensive security tools, staying updated on adversary tradecraft and vulnerabilities, communicating with team members, interfacing professionally with clients, coordinating meetings, assisting with engagement scoping, mentoring junior staff, and training team members on TTPs and tools. Consultants will also contribute to and deliver training courses.
Cybersecurity services for threat defense
SpecterOps provides cybersecurity services that help organizations defend against advanced cyber threats. Their main services include adversary simulation, penetration testing, hunt operations, and breach assessments, which test and improve an organization's security measures. They also offer specialized tools like BloodHound and PowerForensics, along with training programs to educate clients on the latest tactics used by cyber adversaries. SpecterOps stands out by combining high-level services with proprietary tools and training, aiming to enhance the security posture of both commercial businesses and government agencies.