CypherLeap
Company:
https://www.linkedin.com/company/cypherleap
Seniority: Mid-Senior level
Industries: Computer and Network Security
Job details:
𝗦𝗲𝗻𝗶𝗼𝗿 𝗢𝗳𝗳𝗲𝗻𝘀𝗶𝘃𝗲 𝗦𝗲𝗰𝘂𝗿𝗶𝘁𝘆 𝗖𝗼𝗻𝘀𝘂𝗹𝘁𝗮𝗻𝘁 (𝗜𝗺𝗺𝗲𝗱𝗶𝗮𝘁𝗲 𝗝𝗼𝗶𝗻𝗶𝗻𝗴)
Location: India (Remote - Preference for South India)
Employment Type: Full-time
Experience: 7+ Years (10+ preferred)
Client Base: Australia & International
Joining: Immediate / Within 30 Days Preferred
𝗔𝗯𝗼𝘂𝘁 𝗖𝘆𝗽𝗵𝗲𝗿𝗟𝗲𝗮𝗽
CypherLeap is a CREST-accredited cybersecurity consultancy delivering offensive security, governance, compliance and managed security services to organisations across Australia. We are seeking a Senior Offensive Security Consultant to independently deliver complex offensive security engagements for international clients while contributing to the growth of our offensive security capability.
𝗠𝗮𝗻𝗱𝗮𝘁𝗼𝗿𝘆 𝗥𝗲𝗾𝘂𝗶𝗿𝗲𝗺𝗲𝗻𝘁𝘀
• 7+ years of hands-on offensive security consulting experience.
• Demonstrated experience delivering services to international clients (Australian client experience highly desirable).
• Excellent spoken and written English.
• Ability to independently scope, execute and deliver offensive security engagements.
• Author of 50+ professional penetration testing reports.
• Strong client-facing consulting and presentation skills.
• Available to join within 30 days (immediate joiners preferred).
Key Responsibilities
• Lead penetration testing engagements from scoping through final reporting.
• Perform web, API, mobile, external, internal, Active Directory, cloud and wireless security assessments.
• Produce executive-quality reports requiring minimal review.
• Present findings to technical teams, CIOs, CISOs and executive stakeholders.
• Conduct remediation workshops and retesting.
• Support technical scoping, proposal development and effort estimation.
• Review work produced by junior consultants and provide mentoring.
• Contribute to the continuous improvement of CypherLeap's offensive security methodologies.
Research & Capability Development
• Research newly disclosed vulnerabilities (CVEs) and assess customer impact.
• Develop and validate proof-of-concept exploits where appropriate.
• Develop custom offensive security scripts, tooling and automation.
• Build and maintain internal attack labs for research and testing.
• Create reusable methodologies, playbooks and assessment checklists.
• Evaluate emerging offensive security techniques and technologies.
• Publish internal technical documentation and contribute to knowledge sharing.
• Where appropriate, contribute to technical blogs, whitepapers or security research.
𝗧𝗲𝗰𝗵𝗻𝗶𝗰𝗮𝗹 𝗘𝘅𝗽𝗲𝗿𝘁𝗶𝘀𝗲
• External & Internal Infrastructure Penetration Testing
• Active Directory Security Assessments
• Web Application & API Penetration Testing
• Mobile Application Security Testing (Android & iOS)
• AWS, Azure, Microsoft 365 & Entra ID Security Assessments
• Windows & Linux Privilege Escalation
• Kerberos Attacks & Lateral Movement
• Wireless Security Testing
• Red Team Exercises & Social Engineering
• Secure Configuration Reviews
• Container & Kubernetes Security (Desirable)
• Source Code Review (Desirable)
𝗣𝗿𝗲𝗳𝗲𝗿𝗿𝗲𝗱 𝗖𝗲𝗿𝘁𝗶𝗳𝗶𝗰𝗮𝘁𝗶𝗼𝗻𝘀
• OSCP
• OSEP
• OSWE
• PNPT
• CRTO
• CRTP
• CREST CRT/CCT
• GWAPT
• GXPN
• Demonstrated consulting experience is valued more highly than certifications.
𝗪𝗵𝘆 𝗝𝗼𝗶𝗻 𝗖𝘆𝗽𝗵𝗲𝗿𝗟𝗲𝗮𝗽
• Work directly with international enterprise clients.
• Exposure to a broad range of technologies and industries.
• Remote-first working environment.
• Certification and professional development support.
• Opportunity to contribute to research, tooling and innovation.
Click on Apply to know more.