Offensive Security Engineer

Client of High Street Resources

Posted on 26 Feb

Experience

3 - 5 Years

Education

Bachelor of Science(Computers)

Nationality

Any Nationality

Gender

Not Mentioned

Vacancy

1 Vacancy

Job Description

Roles & Responsibilities

Deliver web application, API, and mobile application penetration tests aligned to OWASP Top 10 and PTES.
Conduct internal and external network penetration testing and cloud security assessments (Azure, Microsoft 365, AWS, GCP).
Support companys AI-enabled penetration testing model, validating automated findings and performing deep manual exploitation.
Perform LLM and GenAI security assessments as part of companys advanced offensive offerings.
Produce executive-ready reports and lead client readouts with clear remediation guidance.
Collaborate with vCISO, IR, and advisory teams to support broader client security programs.

Success Metrics (First 90 Days)

Independently deliver scoped penetration tests across at least two service lines (application, network, or cloud).
Lead client debriefs and clearly articulate risk and remediation to technical and executive stakeholders.
Demonstrate proficiency in company reporting standards and tooling.
Contribute improvements to testing playbooks or automation workflows.

Required Technical Skills

Strong application security testing experience (web, API, authentication flows).
Proficiency with Burp Suite and API testing tools (Postman/Insomnia).
Solid Linux expertise and comfort operating in mixed OS environments.
Scripting capability in Python, Bash, or PowerShell.
Understanding of network protocols, exploitation paths, and cloud attack surfaces.

Nice-to-Have / Senior-Level Capabilities

Experience with Red Team or Purple Team engagements.
Familiarity with MITRE ATT&CK and modern detection tooling (EDR/XDR).
Cloud penetration testing depth (Azure and Microsoft 365 strongly preferred).
Prior consulting or client-facing security experience.

Working Style & Values

High integrity and discretion when handling sensitive client environments.
Strong written communication and attention to detail.
Comfortable operating autonomously while collaborating with a global team.
Continuous learner with a passion for offensive security.

Certifications (Optional)

OSCP, OSWA, CRTO, PNPT, or equivalent offensive security certifications are valued but not required.

Desired Candidate Profile

Strong application security testing experience (web, API, authentication flows).
Proficiency with Burp Suite and API testing tools (Postman/Insomnia).
Solid Linux expertise and comfort operating in mixed OS environments.
Scripting capability in Python, Bash, or PowerShell.
Understanding of network protocols, exploitation paths, and cloud attack surfaces.

Company Industry

Department / Functional Area

Keywords

  • Offensive Security Engineer

Disclaimer: Naukrigulf.com is only a platform to bring jobseekers & employers together. Applicants are advised to research the bonafides of the prospective employer independently. We do NOT endorse any requests for money payments and strictly advice against sharing personal or bank related information. We also recommend you visit Security Advice for more information. If you suspect any fraud or malpractice, email us at abuse@naukrigulf.com

Similar Jobs

Senior Penetration Tester

SOC L1 or SOC L2

Security Specialist

View All