Senior Offensive Security Consultant - FortiGuard Proactive Services
Lacework
Responsibilities:
Customer Engagements: Collaborate with clients to understand their security needs and objectives. Lead and deliver Red Team and penetration testing engagements, ensuring high-quality results that align with customer expectations.
Red Team Operations: Plan and execute realistic and sophisticated Red Team operations to simulate advanced cyber threats. Mimic adversary tactics, techniques, and procedures (TTPs) to identify and exploit vulnerabilities in client environments.
Penetration Testing: Conduct thorough penetration tests on client systems, networks, and applications. Provide actionable insights and recommendations for remediation based on identified vulnerabilities.
Technical Expertise: Demonstrate proficiency in a variety of offensive security tools and techniques. Stay current with industry trends, emerging threats, and advancements in offensive security methodologies.
Documentation and Reporting: Document all testing procedures, findings, and recommendations in clear and concise reports. Communicate technical details effectively to both technical and non-technical stakeholders as well as provide proactive guidance on improving an organization’s security posture.
Required Skills:
- Excellent written and verbal communication skills – English
- Experience developing and conducting red team and penetration testing engagements
- Experience performing application security assessments
- Public speaking experience at known security conferences is a plus
- Capable of performing assessments with common offensive toolsets as well as the ability to build custom tools and implants
- Solid knowledge of scripting languages such as Python, Perl, PowerShell, Ruby
- Development experience using C, C++, .NET, Java, Go
- Solid understanding of Active Directory and Azure AD
- Experience carrying out vulnerability assessments, physical assessments, wireless assessments, and social engineering campaigns.
- Strong understanding of operating system internals and endpoint security controls such as EDR and various evasion techniques
Qualifications:
Bachelor’s Degree in Computer Engineering, Computer Science or related field
Or 8 - 10+ years’ experience in Attack and Penetration testing roles
Certifications in offensive security such as CREST, OSCP, OSEP, GXPN, GRTP, etc.
#LI-BG1
Fortinet makes possible a digital world that we can always trust through its mission to protect people, devices, and data everywhere. This is why the world’s largest enterprises, service providers, and government organizations choose Fortinet to securely accelerate their digital journey. The Fortinet Security Fabric platform delivers broad, integrated, and automated protections across the entire digital attack surface, securing critical devices, data, applications, and connections from the data center to the cloud to the home office. Ranking #1 in the most security appliances shipped worldwide, more than 615,000 customers trust Fortinet to protect their businesses. And the Fortinet NSE Training Institute, an initiative of Fortinet’s Training Advancement Agenda (TAA), provides one of the largest and broadest training programs in the industry to make cyber training and new career opportunities available to everyone.
We are looking for a Senior Offensive Security Consultant – FortiGuard Proactive Services to work in a dynamic and exciting new position reporting to the Director of our FortiGuard Security Consulting Services. In this very hands-on, customer-facing role, your primary responsibilities will be to lead and conduct advanced Red Team engagements both full-scope and objective-lead and penetration tests to identify weaknesses in an organization’s countermeasures ultimately enhancing their overall security posture.