Cyderes (cyderes.com) Logo

Cyderes (cyderes.com)

Consultant - Offensive Security

Posted Yesterday
Be an Early Applicant
Remote
Hiring Remotely in United States
Mid level
Remote
Hiring Remotely in United States
Mid level
Consultant will perform penetration testing, threat analysis, and vulnerability assessments while developing automated processes for clients across industries. They will engage in red and purple team exercises, produce reports, and enhance security postures.
The summary above was generated by AI
Cyderes (Cyber Defense and Response) is a pure-play, full life-cycle cybersecurity services provider with award-winning managed security services, identity and access management, and professional services designed to manage the cybersecurity risks of enterprise clients.  We specialize in multi-technology, complex environments with the in speed and agility needed to tackle the most advanced cyber threats. We leverage our global scale and decades of experience to accelerate our clients’ cyber outcomes through a full lifecycle of cybersecurity services. We are a global company with operating centers in the United States, Canada, the United Kingdom, and India.

About the Role:
Cyderes is looking for a Consultant to join Cyderes’ Offensive Security team to assist clients across a range of topics to support requests for information from organizations of many sizes and in several industries. This consultant will focus on PEN Testing, Red Team and Purple team simulation and supervising intelligence to support a general range of topics, but may also need to support other cadences of reports, such as weekly, monthly, and quarterly reports. Writing these reports requires the ability to work with or automate datasets from Cyderes platforms. The Consultant should have a technical proficiency in but not limited to network operations, application security, vulnerability management, and operating system functionality. They will assist in identifying gaps and improving the overall security posture for Cyderes’ clients.

Responsibilities:

  • Performing threat analysis and recommends appropriate course of action, mitigation, and remediation in response to security events and trends 
  • Correlates and analyzes threat data from various sources to establish the identity of malicious users active in the computing environment. 
  • Produce and review intelligence summaries accessible to all clients. 
  • Engage with clients across report lifecycle: Initial scoping, finished intelligence delivery, and follow-up review / support 
  • Develop novel, automated, or simpler processes for regular research and analysis 
  • Track cyber threat trends across industries and technologies, and generate better ways to do so 
  • Work on projects across multiple research teams with sometimes tight deadlines 
  • Perform internal and external penetration testing of network infrastructure, applications, and database 
  • Perform web/mobile application, wireless network, and vulnerability assessments 
  • Provide support in design and development of purple team and red team exercises performing adversary simulations to test client controls. 
  • Create comprehensive reports and effectively communicate findings to key stakeholders (technical and/or executive). 
  • Identify and safely apply attacker tactics, techniques, and procedures (TTPs). 
  • Develop scripts, tools, or methodologies to enhance Cyderes’ red teaming processes. 

Requirements:

  • Certifications such as OSCP, CISSP are preferred 
  • 2-3 years of experience in three of the following areas: 
  • Executing network, wireless, web application, and API penetration tests 
  • Experience with Active directory (AD) and Kerberos 
  • Experience conducting vulnerability management and assessments 
  • Experience conducting social engineering assessments 
  • Experience conducting Purple Team and Red Team exercises 
  • Experience with Tenable.IO, Recorded Future, PlexTrac and Cymulatepreferred 
  • Experience with programming using one or more of the following: Perl, Python, ruby, bash, C or C++, C#, or Java, including scripting, automation, and editing existing code 
  • Developing, extending, or modifying exploits, shellcode or exploit tools 
  • Reverse engineering malware, data obfuscators, or ciphers 
  • Source code review for control flow and security flaws 
  • General knowledge of the MITRE ATT&CK Framework 
  • Thorough understanding of network protocols, data on the wire, and covert channels 
  • Mastery of Unix/Linux/Mac/Windows operating systems, including bash and PowerShell 

Cyderes is an Equal Opportunity Employer (EOE). Qualified applicants are considered for employment without regard to race, religion, color, sex, age, disability, sexual orientation, genetic information, national origin, or veteran status.

Note: This job posting is intended for direct applicants only. We request that outside recruiters do not contact us regarding this position.

Top Skills

Application Security
Bash
C
C#
C++
Cymulate
Java
Linux
macOS
Network Operations
Pen Testing
Perl
Plextrac
Powershell
Purple Team
Python
Recorded Future
Red Team
Ruby
Tenable.Io
Unix
Vulnerability Management
Windows

Similar Jobs

Yesterday
Remote
United States
Mid level
Mid level
Security • Cybersecurity
Consultant will perform PEN testing, conduct threat analysis, develop automated processes, and produce reports for clients, supporting various security assessments.
Top Skills: BashCC#C++CisspCymulateJavaOscpPerlPlextracPowershellPythonRecorded FutureRubyTenable.Io
11 Days Ago
Remote
USA
Mid level
Mid level
Information Technology • Consulting
The Security Consultant will conduct offensive security engagements, advise teams on methods, and mentor associates while interfacing with clients.
Top Skills: JavaNode.jsPython
41 Minutes Ago
Remote or Hybrid
Addison, IL, USA
Senior level
Senior level
Artificial Intelligence • Cloud • HR Tech • Information Technology • Productivity • Software • Automation
The Solution Sales Executive leads strategy and sales for GRC/Risk and Security products, improving customer engagement and digital transformation.
Top Skills: AIGrcRisk ManagementSecurity

What you need to know about the Boston Tech Scene

Boston is a powerhouse for technology innovation thanks to world-class research universities like MIT and Harvard and a robust pipeline of venture capital investment. Host to the first telephone call and one of the first general-purpose computers ever put into use, Boston is now a hub for biotechnology, robotics and artificial intelligence — though it’s also home to several B2B software giants. So it’s no surprise that the city consistently ranks among the greatest startup ecosystems in the world.

Key Facts About Boston Tech

  • Number of Tech Workers: 269,000; 9.4% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Thermo Fisher Scientific, Toast, Klaviyo, HubSpot, DraftKings
  • Key Industries: Artificial intelligence, biotechnology, robotics, software, aerospace
  • Funding Landscape: $15.7 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Summit Partners, Volition Capital, Bain Capital Ventures, MassVentures, Highland Capital Partners
  • Research Centers and Universities: MIT, Harvard University, Boston College, Tufts University, Boston University, Northeastern University, Smithsonian Astrophysical Observatory, National Bureau of Economic Research, Broad Institute, Lowell Center for Space Science & Technology, National Emerging Infectious Diseases Laboratories

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account