Offensive Security - Penetration Tester
$95.4k - $192kRSM US LLP
We are the leading provider of professional services to the middle market globally, our purpose is to instill confidence in a world of change, empowering our clients and people to realize their full potential. Our exceptional people are the key to our unrivaled, culture and talent experience and our ability to be compelling to our clients. You'll find an environment that inspires and empowers you to thrive both personally and professionally. There's no one like you and that's why there's nowhere like RSM.
Responsibilities
Responsibilities will vary based on background but will typically include:
- Lead and deliver offensive security and penetration testing engagements across multiple industries, ensuring highquality technical execution and clear, actionable reporting.
- Manage and grow key client relationships, helping shape and advance their offensive security, red teaming, and broader cybersecurity strategies.
- Communicate effectively with client stakeholders and project leaders to maintain strong relationships and ensure alignment on engagement goals.
- Build and maintain deep client trust by consistently delivering highvalue insights and exceptional service.
- Support business development activities, including scoping offensive security engagements and contributing to proposals.
- Conduct offensive security assessments aligned to industry frameworks and regulatory expectations, including but not limited to NIST CSF, NIST SP 80053, ISO 27001, DORA, FFIEC, and other relevant standards.
- Assist clients in designing and implementing remediation strategies to strengthen their security posture, including hardening recommendations, detection engineering insights, and improvements to incident response processes.
- Clearly articulate technical findings, exploitation paths, and recommendations to both technical and executive audiences, in writing and verbally.
- Identify opportunities to enhance engagement methodologies, tooling, and internal processes.
Required Qualifications
- 4+ years of relevant experience in offensive security, penetration testing, red teaming, or a closely related discipline.
- Willingness to travel up to 30% to client sites for engagements.
- Strong technical expertise in areas such as network and application penetration testing, adversary simulation, exploit development, cloud security testing, and/or social engineering.
- Familiarity with key compliance standards and regulatory frameworks (e.g., NIST CSF, NIST SP 80053, ISO 27001, DORA, FFIEC).
- Strong interpersonal skills with experience in a professional services firm, consultancy, or similar clientfacing environment.
- Demonstrated ability to collaborate effectively with crossfunctional teams.
Preferred Qualifications
- Bachelor's degree in cybersecurity, information technology, computer science, or a related field from an accredited institution.
- One or more relevant cybersecurity certifications such as OSCP, CISSP, CISM, CISA, or similar.
- Experience with red team operations, purple team engagements, threat emulation, or adversaryfocused methodologies (MITRE ATT&CK, threat modeling, etc.).
- Familiarity with scripting or development languages commonly used in offensive tooling (e.g., Python, PowerShell, C#, Bash).
At RSM, we offer a competitive benefits and compensation package for all our people.We offer flexibility in your schedule, empowering you to balance life's demands, while also maintaining your ability to serve clients.Learn more about our total rewards at
All applicants will receive consideration for employment as RSM does not tolerate discrimination and/or harassment based on race; color; creed; sincerely held religious beliefs, practices or observances; sex (including pregnancy or disabilities related to nursing); gender; sexual orientation; HIV Status; national origin; ancestry; familial or marital status; age; physical or mental disability; citizenship; political affiliation; medical condition (including family and medical leave); domestic violence victim status; past, current or prospective service in the US uniformed service; US Military/Veteran status; pre-disposing genetic characteristics or any other characteristic protected under applicable federal, state or local law.
Accommodation for applicants with disabilities is available upon request in connection with the recruitment process and/or employment/partnership.RSM is committed to providing equal opportunity and reasonable accommodation for people with disabilities. If you require a reasonable accommodation to complete an application, interview, or otherwise participate in the recruiting process, please call us at View phone number on click.appcast.io or send us an email at View email address on click.appcast.io.
RSM does not intend to hire entry level candidates who will require sponsorship now OR in the future (i.e. F-1 visa holders). If you are a recent U.S. college / university graduate possessing 1-2 years of progressive and relevant work experience in a same or similar role to the one for which you are applying, excluding internships, you may be eligible for hire as an experienced associate.
RSM will consider for employment qualified applicants with arrest or conviction records. For those living in California or applying to a position in California, please click here for additional information.
At RSM, an employee's pay at any point in their career is intended to reflect their experiences, performance, and skills for their current role. The salary range (or starting rate for interns and associates) for this role represents numerous factors considered in the hiring decisions including, but not limited to, education, skills, work experience, certifications, location, etc. As such, pay for the successful candidate(s) could fall anywhere within the stated range.
Compensation Range: $95,400 - $192,000Individualsselected for this role will be eligible for a discretionary bonus based on firm and individual performance.
$186.07k - $218.9k
...is expected and fully supported. The Application Security org at Coinbase is hiring for a Senior Offensive Security Engineer, Offensive Security. We are seeking a highly skilled and experienced Penetration Tester with a proven track record of assessing and securing...SuggestedLocal area- ...Application Penetration Tester This role focuses on identifying, validating, and exploiting security vulnerabilities through hands-on, manual penetration testing across a broad range of application technologies. This position will conduct application penetration...SuggestedWork experience placementMonday to FridayFlexible hours
$104k - $156k
...Posting Type Remote/Hybrid Job Overview As an Advanced Security Engineer focused on Endpoint Security, you will design, build,... ...Required Skills: Endpoint Security, Network Security, Penetration Testing, Security Architecture Design, Security Automation,...SuggestedRemote work- ...Chief Information Security Officer (CISO), Growth About the Company Accomplished provider of top-tier security services Industry Security and Investigations Type Privately Held About the Role The Company is seeking a Chief Information Security...Suggested
- ...Chief Information Security Officer (CISO) About the Company Accomplished executive search firm Industry Staffing and Recruiting Type Privately Held About the Role The Company is seeking a Chief Information Security Officer (CISO) to oversee and...Suggested
$128.4k - $192.6k
...posted. No relocation is offered. Join AT&T and reimagine the communications and technologies that connect the world. Our Chief Security Office ensures that our assets are safeguarded through truthful transparency, enforce accountability and master cybersecurity to...Full timeTemporary workWork at officeLocal areaRemote workRelocation- ...Role Summary We are seeking an experienced IaC Security Engineer to join our Cybersecurity/Application Security team. In this role, you will design, implement, and operate Infrastructure as Code (IaC) security solutions across CI/CD pipelines, leveraging Wiz and other...Work at officeLocal area
- ...New role with Direct client Security Engineer Location- Malvern PA or Charlotte NC Objectives: 1. Preventing vulnerabilities... ...analysis tools, such as SAST, Snyk, EchoAI, and AI-assisted penetration testing tools o Proven ability to identify, prioritize, and...Shift work
- ...Job Description Senior Application Security Engineer - Threat Modeling & AI Security *]:pointer-events-auto R6Vx5W_threadScrollVars scroll-mb-[calc(var(--scroll-root-safe-area-inset-bottom,0px)+var(--thread-response-height))] scroll-mt-[calc(var(--header-height...Contract workRemote work
- ...Tanium Security Engineer | Charlotte, North Carolina, United States Tanium Security Engineer - 12+ Month Contract (Charlotte, NC - Hybrid, 4 Days Onsite) About the Role Are you an experienced security engineer passionate about endpoint protection and cyber resilience...Contract work
- ...POA&M tracking activities, supporting remediation efforts and preparation of recurring cybersecurity scorecard data. - Monitor security tools and alerts, performing initial triage and escalating issues in accordance with defined processes. - Maintain and update incident...Minimum wageContract workTemporary workWork experience placementRemote work
$128.4k - $192.6k
...Senior Security Engineer - IS07FE We’re determined to make a difference and are proud to be an insurance company that goes well beyond coverages and policies. Working here means having every opportunity to achieve your goals – and to help others accomplish theirs,...Temporary workWork at office3 days per week- ...Why Join Us? As the world's leading vendor of Cyber Security, facing the most sophisticated threats and attacks, we've assembled a global team of the most driven, creative, and innovative people. At Check Point, our employees are redefining the security landscape...Remote work
- ...responsible for designing, building, and maintaining advanced security systems to protect an organization's networks, infrastructure,... ..., but also autonomously as needed. Good understanding of penetration testing methodologies, Vulnerability scanning and remediation....Work experience placementCasual workWork at officeRelocation
- ...Security Engineer TrueBridge strives to exceed our clients' expectations and place talented individuals in high impact and fulfilling roles. We have specialized Talent Advisors who cover Project/Program Management, Business Analysis, Data & Analytics, Information Security...
$152.41k - $179.3k
...times annually to foster collaboration, connection, and alignment. Attendance is expected and fully supported. Coinbase Corporate Security (CorpSec) is seeking a Security Engineer to design, implement, and automate security solutions that protect corporate...Local area- ...The Security Engineer role will be responsible for designing, implementing, and maintaining security measures to protect the organization's IT systems, networks, and data. In addition, this role will partner with highly skilled professionals across the business to identify...
- ...Senior Security Engineer - PKI Dallas, TX/Charlotte, NC/ Newark, DE Senior Security Engineer position on the team responsible for all engineering aspects of the company's Public Key (PKI) infrastructure. This technical team also supports both internally and externally...
- ...Responsible for developing and maintaining the technical IT/cyber security capabilities necessary for safeguarding the firm's information... ...(SCA), dynamic application security testing (DAST), and penetration testing. Lead efforts related to designing, planning, enhancing...Work experience placement
- ...containerized workloads, serverless architecture, and automated CI/CD pipelines to manage IaaS Perform scripting and coding to build security tooling and automate repetitive tasks Use Terraform to deploy security baseline controls, conduct code reviews, and recommend...
- ...Tanium Security Engineer Duration: 12+ months contract Location: Charlotte, NC - hybrid; onsite 4 days, remote 1 day Required Skills: Must have 5+ years of security engineering/cyber security experience Must have 2+ years of Tanium experience (Patch,...Contract workRemote work
- ...Senior Security Engineer The Senior Security Engineer on the Proxy Team is responsible for evolving and sustaining the enterprise... .... Deep knowledge of threat modeling, security testing, and penetration testing. Experience implementing and managing complex information...Work at office
- ...Hi, Our client is looking for Security Engineer / Lead for Charlotte, NC / Mt Laurel Township, NJ locations below is the detailed requirements. Job Title: Security Engineer / Lead Locations: Charlotte, NC / Mt Laurel Township, NJ Job Description:...Immediate start
$218.03k - $256.5k
...annually to foster collaboration, connection, and alignment. Attendance is expected and fully supported. Coinbase Infrastructure Security (InfraSec) is at the forefront of protecting the foundation of Coinbase’s infrastructure and platform services. This role partners...Local area$218.03k - $256.5k
...underpins our position as the world's most trusted crypto platform. The Identity and Access Management (IAM) program, housed within Security, is a cross-functional team that designs, builds, and governs workforce identity services, privileged access controls, and...For contractorsLocal area- ...Overview We are looking for an exceptional security leader to strategize, design, and guide the implementation of our rapidly expanding security capabilities to secure applications and data in multi-/hybrid-cloud environments. With strong technical competency in the...Local area
- ...-83ea-a474-bcc20bc986cf-46" data-testid="conversation-turn-232" data-scroll-anchor="false" data-turn="assistant" Information Security Engineer 4 - Kubernetes & Cloud Security (CNAPP / Wiz) Locations (Hybrid Onsite) Charlotte, NC - 300 S. Brevard St....Contract workImmediate start
- ...GenAI Security Engineer Our client, a leader in innovative technology solutions, is seeking a passionate and skilled GenAI Security Engineer to join their dynamic team. As a GenAI Security Engineer, you will be an integral part of the cybersecurity department supporting...
- ...way we help customers to manage risk. Join us as a Database Security Engineer to play your part in that transformation. It's an opportunity... ...0 banking (Strongly preferred) Information security Penetration testing and attack forensics IT risk management IS...Work at office
- ...Security Configuration Baseline Engineer Our client, a leading organization in the technology and security sector, is seeking a dedicated Security Configuration Baseline Engineer to join their dynamic team. As a Security Configuration Baseline Engineer, you will be...
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Offensive Security - Penetration Tester. Be the first to apply!


