Live opening · Posted 5 days ago

Offensive Security Consultant

StickmanCyber · India (Remote)
Linkedin Yes
You are 5 days behind. JobBeeper subscribers saw this role while it was still new.

At a glance

The key details from the original listing.

Posted 5 days ago
CompanyStickmanCyber
LocationIndia (Remote)
Work modeYes
SourceLinkedin
Listed5 days ago

Your early-applicant advantage

Live timing from JobBeeper.

Live data
22 min from Linkedin publishing this role to us finding it
8 min median time from a role going live to a subscriber being told
6 hours subscribers had this role before this page existed
73,335 roles found in the last 24 hours — the newest are not on this site yet
Start your free trial →

About the role

Description supplied by the original job listing.

Summary:
We are seeking an experienced Offensive Security Consultant with strong hands-on expertise in internal and external network penetration testing, Active Directory security, and Red Team operations. The ideal candidate will be capable of conducting advanced security assessments, identifying complex attack paths, performing privilege escalation and lateral movement, and executing realistic adversary simulations beyond automated testing. This role involves developing custom offensive security tooling, defence evasion techniques, and C2 infrastructure, while working closely with global and client-facing teams. The successful candidate will be responsible for delivering high-quality technical reports, communicating attack scenarios and security risks clearly, and providing practical remediation recommendations.
Responsibilities:
Minimum 3+ years of hands-on experience in penetration testing, with demonstrated experience performing advanced internal and external network assessments.
Independently conduct penetration tests, including manual exploitation, vulnerability validation, privilege escalation, lateral movement, and attack-path analysis, without overreliance on automated tools.
Perform security assessments across the following domains:
Internal and External Network Penetration Testing, including on-premises and hybrid Active Directory environments.
Red Team Operations and Attack Simulations, including adversary emulation and end-to-end attack-chain execution.
Defence Evasion and Custom Exploitation, including developing and adapting techniques to bypass endpoint, application, and network security controls.
Custom Tooling and Exploit Development, including the ability to develop or modify payloads, loaders, scripts, and post-exploitation tooling using languages such as C, C++, Rust, Go, Python, or PowerShell.
Command and Control (C2) Infrastructure, including designing and deploying resilient C2 infrastructure, redirectors, and multi-stage operational infrastructure.
Strong understanding of Active Directory attack paths, including credential attacks, Kerberos abuse, privilege escalation, lateral movement, delegation, trust relationships, and common misconfigurations.
Ability to identify and demonstrate complex attack chains, rather than assessing vulnerabilities in isolation.
Ability to perform external attack-surface assessments, including reconnaissance, service enumeration, vulnerability discovery, exploitation, and validation of exposed services.
Ability to conduct internal network assessments from an assumed-breach perspective and demonstrate potential paths to high-value assets.
Ability to use AI effectively for security research, analysis, scripting, and automation, while independently validating generated output.
Analyze security tools, scripts, applications, and infrastructure to identify technical and logical vulnerabilities and clearly document the associated security impact.
Provide practical and technically accurate remediation recommendations for identified vulnerabilities.
Strong understanding of the following frameworks:
MITRE ATT&CK
PTES (Penetration Testing Execution Standard)
NIST SP 800-115
OSSTMM
CIS Controls
MITRE D3FEND
Cyber Kill Chain
Reporting and Communication:
Produce high-quality and timely penetration testing and red team reports, including clear evidence, attack paths, impact, and remediation recommendations.
Clearly communicate technical findings and attack scenarios to both technical and non-technical stakeholders.
Work effectively with remote, cross-functional, and client-facing teams.
Skills & Qualifications:
Bachelor's degree in computer science, Information Technology, Cybersecurity, Information Security, or related field.
Equivalent professional experience in penetration testing or offensive security can also be considered in lieu of a formal degree.
Certificates (Advantage to have but not compulsory):
Either one of the following:
CREST Registered Penetration Tester (CRT)
Offensive Security Certified Professional (OSCP)
Practical Network Penetration Tester (PNPT)
Certified Red Team Operator (CRTO)
Certified Red Team Lead (CRTL)

Work arrangement
Yes

Get JobBeeper Mobile App

Never miss a job opening! Get instant job alerts on your phone.

Subscribers see fresh openings within minutes. Download the JobBeeper App on Google Play to get real-time push notifications and apply before anyone else.

⚡ Instant Push Alerts 🎯 Tailored Filters 🚀 Direct Employer Links
GET IT ON Google Play

More openings worth a look

Recently tracked roles with full details and direct application links.

6 roles
Good roles move before most people even see them. Tell JobBeeper what you want and get fresh matches delivered in minutes.
Start your free trial →
⚡ Get fresh job alerts 📱 Get App