Offensive Security Lead - Penetration Tester
$107k - $214.5kRSM US LLP
We are the leading provider of professional services to the middle market globally, our purpose is to instill confidence in a world of change, empowering our clients and people to realize their full potential. Our exceptional people are the key to our unrivaled, culture and talent experience and our ability to be compelling to our clients. You'll find an environment that inspires and empowers you to thrive both personally and professionally. There's no one like you and that's why there's nowhere like RSM.
We are currently looking for team members to join our Security, Privacy, and Risk Consulting practice. The candidate will work with teams of security and privacy staff in a wide variety of systems environments.Our Security, Privacy and Risk Consulting team serves the Information Security and Data Privacy related needs of our clients. This team helps organizations identify their cyber risk, and design and implement program to address those risks and improve their cyber security posture. We serve a diverse base of clients in a variety of industries and understanding how technology impacts the operation and growth of organizations is what we do best.We are seeking individuals skilled at performing vulnerability assessments, penetration testing, and secure architecture reviews of a variety of operating systems, network devices, wireless solutions, and their related infrastructure.
Examples of candidate's responsibilities include:
- Perform analysis and testing to verify the strengths and weaknesses of client IT environments utilizing commercial and open source security testing tools
- Perform Internet penetration testing (blackbox/greybox /whitebox testing) and network architecture reviews (manual/automated)
- Perform other security testing tasks such as wireless penetration testing, social engineering campaigns (email, web, phone, physical, etc.), mobile application testing, embedded device testing, and similar activities meant to identify critical weaknesses within client environments
- Assist with the development of remediation recommendations for identified findings
- Identify and clearly articulate (written and verbal) findings to senior management and clients
- Help identify improvement opportunities for assigned clients
- Supervise and provide engagement management for other staff working on assigned engagements
Required Qualifications:
- This position is for individuals with 4+ years of experience within the cyber security space, with a preference for prior consulting or professional services backgrounds. Other candidates may be considered based on experience and skill sets.
- Ability to travel as needed
- Must possess a high degree of integrity and confidentiality, as well as the ability to adhere to both company policies and best practices
- Strong verbal and written abilities
- Strong multitasking and project management skills
Preferred Qualifications:
- Bachelor's degree in computer science or related field from an accredited college/university
- Technical background in networking/system administration, security testing or related fields
- In-depth knowledge of TCP/IP
- Two or more years of Perl, Python, Bash, or C experience
- Operating System Configuration and Security experience (Windows, HP-UX, Linux, Solaris, AIX, etc.)
- Configuration and Security experience with firewalls, switches, routers, VPNs
- Experience with security and architecture testing and development frameworks, such as the Open Web
- Application Security Project (OWASP), Open Source Security Testing Methodology Manual (OSSTMM), the Penetration Testing Execution Standard (PTES), Information Systems Security Assessment Framework (ISSAF), and NIST SP800-115
- Familiar with security testing techniques such as threat modeling, network discovery, port and service identification, vulnerability scanning, network sniffing, penetration testing, configuration reviews, firewall rule reviews, social engineering, wireless penetration testing, fuzzing, and password cracking and can perform these techniques from a variety of adversarial perspectives (white-, grey-, black-box)
- Experience with discovering, utilizing, and possibly writing exploits for such vulnerabilities as buffer and stack overflows
- Familiar with the logistics of security testing such as acquiring authorization for testing, reporting, risk analysis of findings, data handling, and legal considerations
- Commercial Application Security tools experience (Nessus, Nexpose, Qualys, Appdetective, Appscan, etc.)
Open source and free tools experience (Kali Linux suite, Metasploit, nmap, airsnort, Wireshark, Burp Suite, Paros, etc.) - One or more of the following testing certifications: Certified Ethical Hacker (CEH); GIAC Certified Penetration Tester (GPEN); Offensive Security Certified Professional (OSCP); or equivalent development or testing certification (ECSA, CEPT, CPTE, CPTS, etc)
- In addition, one or more of the following governance certifications is preferred: Certified Information Systems Security Professionals (CISSP); Certified Information Systems Auditor (CISA); Certified Information Security Manager (CISM)
- Strong leadership and communication skills, technical knowledge, and the ability to write at a "publication" quality level in order to communicate findings and recommendations to the client's senior management
At RSM, we offer a competitive benefits and compensation package for all our people.We offer flexibility in your schedule, empowering you to balance life's demands, while also maintaining your ability to serve clients.Learn more about our total rewards at
All applicants will receive consideration for employment as RSM does not tolerate discrimination and/or harassment based on race; color; creed; sincerely held religious beliefs, practices or observances; sex (including pregnancy or disabilities related to nursing); gender; sexual orientation; HIV Status; national origin; ancestry; familial or marital status; age; physical or mental disability; citizenship; political affiliation; medical condition (including family and medical leave); domestic violence victim status; past, current or prospective service in the US uniformed service; US Military/Veteran status; pre-disposing genetic characteristics or any other characteristic protected under applicable federal, state or local law.
Accommodation for applicants with disabilities is available upon request in connection with the recruitment process and/or employment/partnership.RSM is committed to providing equal opportunity and reasonable accommodation for people with disabilities. If you require a reasonable accommodation to complete an application, interview, or otherwise participate in the recruiting process, please call us at View phone number on click.appcast.io or send us an email at View email address on click.appcast.io.
RSM does not intend to hire entry level candidates who will require sponsorship now OR in the future (i.e. F-1 visa holders). If you are a recent U.S. college / university graduate possessing 1-2 years of progressive and relevant work experience in a same or similar role to the one for which you are applying, excluding internships, you may be eligible for hire as an experienced associate.
RSM will consider for employment qualified applicants with arrest or conviction records. For those living in California or applying to a position in California, please click here for additional information.
At RSM, an employee's pay at any point in their career is intended to reflect their experiences, performance, and skills for their current role. The salary range (or starting rate for interns and associates) for this role represents numerous factors considered in the hiring decisions including, but not limited to, education, skills, work experience, certifications, location, etc. As such, pay for the successful candidate(s) could fall anywhere within the stated range.
Compensation Range: $107,000 - $214,500Individualsselected for this role will be eligible for a discretionary bonus based on firm and individual performance.
$132k - $165k
...campaigns, analyzing vulnerabilities, and collaborating with internal teams on security assessments. Candidates should have at least 6 years of information security experience, with 2 years in offensive security. Strong scripting skills in PowerShell and Python are required....Suggested- Evolvesec is seeking a Senior Application Security Tester & AI Red Team Subject Matter Expert... .... This senior-level role involves leading penetration tests and defining methodologies for... ...candidate has 5-8+ years of experience in offensive security, especially in web and API...Suggested
- Cedar Cares, Inc is looking for a Senior Red Team Specialist to execute advanced offensive security operations and engage in hands-on security engagements. Applicants should have over 5 years of experience in red teaming and strong communication skills. This role follows...Suggested
- ...clients and drive revenue through specialized knowledge of offensive security solutions. The role involves understanding competitive landscapes... ...at least 2+ years of relevant experience, with a focus on Penetration Testing and vulnerability management. This position is...SuggestedRemote workFlexible hours
- ...Senior Offensive Security Engineer - Pentester Denver, Colorado;Seattle, Washington; Charlotte... ...threats, and a hacker mentality. You will lead and participate in collaborative,... ...assessments that leverage a wide range of penetration testing techniques (reconnaissance, weaponization...SuggestedWork at officeRemote workShift workDay shift
$76.4k - $138.6k
...business, and everyone in EY Information Security has a critical role to play. Join a global... ...value. The opportunity As an Offensive Security Analyst on the Vulnerability Management... ...of the Vulnerability Exposure Management Lead to identify and mitigate vulnerabilities...Summer holidayLocal areaFlexible hours- ...Presidio has an exciting opportunity for a Security Practice Lead to join our Cybersecurity National Practice. This... ...Working knowledge and familiarity with GRC and Offensive Security consulting services (e.g., penetration testing, PCI audit, security assessment) is highly...For contractorsLocal area
- The Security Executive Council is seeking a Chief Information Security Officer (CISO) in Chicago, Illinois. The CISO leads the information security strategy, ensuring the protection of sensitive data and compliance with regulatory standards. This role involves advising...
$52 - $74 per hour
...Job Summary Our Financial Services client is seeking a Lead Security Architect to join their enterprise security team! This position... ...integrations, audit logging, alerting, incident response planning, and penetration testing Collaborate with networking and infrastructure...Work at officeLocal area3 days per week- A leading marketing platform is seeking a Senior Anti-Abuse Security Engineer to architect and implement advanced detection systems for abuse prevention. The role involves building automated behavioral analysis pipelines and collaborating with various teams to ensure security...
- ...Solutions Group is looking for an experienced Document Control Lead/Supervisor located in Chicago, IL. Our client is a Natural gas... ...traditional work week and often extend contracts for added job security and stability Position Summary The Document Control...Work at officeShift work
$145k - $192.5k
...America is seeking a Cyber Threat Defense AI Security Senior Engineer to enhance security... ...experience in cybersecurity, focusing on offensive strategies and AI system development.... ....00 and $192,500.00, alongside industry-leading benefits. #J-18808-Ljbffr Bank of America- Evolve Security is looking for a Senior Application Security Tester & AI Red Team Subject Matter Expert in Chicago, IL... ...senior-level role, you will lead application penetration tests and be a key authority... ...should have 5-8+ years of offensive security experience, and proficiency...Flexible hours
$95.86k - $208.27k
...world-class training facility, and leading market tools, we help our people... ...Senior Specialist, MAST Application Penetration Tester to join our Managed Services... ...), Council for Registered Ethical Security Testers (CREST), Offensive Security Web Expert (OSWE), Offensive...H1bLocal area$66 - $95 per hour
Job Summary: Our client is seeking a Lead Security Architect to join their team! This position is located in Chicago, Illinois. Duties... ...with product owner... Job Summary:Our client is seeking a Penetration Tester to join their team! This position is remote.Duties:Analysis...Local areaRemote work- We are seeking a highly skilled and experienced Lead Security Architect to lead a Protocol Analysis & Remediation project. This individual will focus on securing communication protocols between workloads and endpoints to prevent lateral movement, enhance network segmentation...
$145k - $195k
...cash. About The Role We're hiring for a Security Engineer to own the day-to-day defensive and offensive security posture of Coinflow. You'll build the SecOps... ...audit-ready evidence in one place. Internal Penetration Testing : Run continuous internal pentests...WorldwideFlexible hours- ...Ethical Hacker- Web Security Job Location: Chicago, IL Job Type: Contract Role:... ...and advice to team members on attack and penetration test engagements. Perform manual penetration... ...our resources to deliver industry-leading capabilities to our clients and...Contract work
- ...Leading Financial Services Firm based in Downtown Chicago! Long term contract with competitive rate and opportunity for conversion... ...environment and commitment to maintaining the highest security standards in its operations. Job Description ~Run and...Long term contractTemporary workLocal area
$104k - $156k
...Posting Type Remote/Hybrid Job Overview As an Advanced Security Engineer focused on Endpoint Security, you will design, build,... ...Required Skills: Endpoint Security, Network Security, Penetration Testing, Security Architecture Design, Security Automation,...Remote work- Human Agency is seeking a dedicated security leader to define, execute, and elevate AI security strategies for a high-growth environment... ...-on position involves architecting security for AI products, leading incident responses, and representing the company in discussions...Remote work
$94.3k - $122.26k
...how often (in days) to receive an alert: Lead Technical Recruiter - 90410602 -... ..., Customer Focus, and Proactive Safety & Security’ are what every employee needs to know and... ...permanent or interim disqualifying criminal offenses. Note that any education requirement listed...Permanent employmentTemporary workWork experience placementInterim roleLocal areaRelocationFlexible hours$22.33 - $29.33 per hour
...Lead Security Supervisor Chicago, IL 60661 Overview Salary Range $22.33 - $29.33 Hourly Position Type Full Time Job Shift Graveyard Description Employment Opportunity At Inter-Con we take pride in providing customized security solutions for our clients...Hourly payPermanent employmentFull timeContract workFor contractorsLocal areaImmediate startFlexible hoursShift work- Alignerr is seeking a Vulnerability Management Analyst to train and evaluate AI systems using real-world security knowledge. This role involves analyzing vulnerability reports and classifying risks to enhance AI training efforts. The ideal candidate will have over 2 years...Remote jobFlexible hours
- Michael Page is seeking a Vulnerability & InfoSec Analyst in Chicago to identify and mitigate security vulnerabilities in the financial services sector. This role offers an opportunity to enhance infrastructure security and foster collaboration with engineering teams....Temporary work
- The Senior Application Security Tester & AI Red Team Subject Matter Expert is a senior-level offensive security role for a tester who has... ...hands‑on senior application penetration tester for our most complex... ...reports with no editorial rework, leads CISO and engineering‑leader...Local areaFlexible hours
- ...Job Description Unarmed Security Officer Have a passion for service? Ready to build a career, not just find another job? Metro One... ...Deliver exceptional communication to clients and officers. Lead in addressing concerns on site. examples-scheduling breaks, rotations...Weekly payFlexible hours
$106.1k - $214.6k
Fraud Strategy Lead, Sr Job Locations US-IL-Chicago | US-IN-Evansville | US-MN-Lake Elmo Category/Function Risk/Security Position Type Regular Full-Time Requisition ID 2026-19695 Workplace Type On Site Overview...Full time$125k - $175k
...Own the outcome. Shape what comes next. Savant is hiring a GRC Lead to design, build, and own our governance, risk, and compliance program... ...full ownership - setting the foundation for how Savant manages security, risk, and regulatory obligations as we continue to grow. If you...Temporary workWork experience placementSummer workWork at officeImmediate startRemote workWork visaFlexible hours1 day per week$24 - $26 per hour
...Chicago, IL, 60654, United States Base Pay: $24.00 - $26.00 / Hour Job Category: Hourly, full time, part time Industry: Retail Security, Corrections, Customer Service Employee Type: Non-Exempt Manage Others: Yes Contact Information Name: Carmen Malave...Hourly payFull timePart time
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Offensive Security Lead - Penetration Tester. Be the first to apply!

