Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Offensive Security Lead - Penetration Tester

$107k - $214.5k

RSM US LLP

We are the leading provider of professional services to the middle market globally, our purpose is to instill confidence in a world of change, empowering our clients and people to realize their full potential. Our exceptional people are the key to our unrivaled, culture and talent experience and our ability to be compelling to our clients. You'll find an environment that inspires and empowers you to thrive both personally and professionally. There's no one like you and that's why there's nowhere like RSM.

We are currently looking for team members to join our Security, Privacy, and Risk Consulting practice. The candidate will work with teams of security and privacy staff in a wide variety of systems environments.Our Security, Privacy and Risk Consulting team serves the Information Security and Data Privacy related needs of our clients. This team helps organizations identify their cyber risk, and design and implement program to address those risks and improve their cyber security posture. We serve a diverse base of clients in a variety of industries and understanding how technology impacts the operation and growth of organizations is what we do best.We are seeking individuals skilled at performing vulnerability assessments, penetration testing, and secure architecture reviews of a variety of operating systems, network devices, wireless solutions, and their related infrastructure.

Examples of candidate's responsibilities include:

  • Perform analysis and testing to verify the strengths and weaknesses of client IT environments utilizing commercial and open source security testing tools
  • Perform Internet penetration testing (blackbox/greybox /whitebox testing) and network architecture reviews (manual/automated)
  • Perform other security testing tasks such as wireless penetration testing, social engineering campaigns (email, web, phone, physical, etc.), mobile application testing, embedded device testing, and similar activities meant to identify critical weaknesses within client environments
  • Assist with the development of remediation recommendations for identified findings
  • Identify and clearly articulate (written and verbal) findings to senior management and clients
  • Help identify improvement opportunities for assigned clients
  • Supervise and provide engagement management for other staff working on assigned engagements

Required Qualifications:

  • This position is for individuals with 4+ years of experience within the cyber security space, with a preference for prior consulting or professional services backgrounds. Other candidates may be considered based on experience and skill sets.
  • Ability to travel as needed
  • Must possess a high degree of integrity and confidentiality, as well as the ability to adhere to both company policies and best practices
  • Strong verbal and written abilities
  • Strong multitasking and project management skills

Preferred Qualifications:

  • Bachelor's degree in computer science or related field from an accredited college/university
  • Technical background in networking/system administration, security testing or related fields
  • In-depth knowledge of TCP/IP
  • Two or more years of Perl, Python, Bash, or C experience
  • Operating System Configuration and Security experience (Windows, HP-UX, Linux, Solaris, AIX, etc.)
  • Configuration and Security experience with firewalls, switches, routers, VPNs
  • Experience with security and architecture testing and development frameworks, such as the Open Web
  • Application Security Project (OWASP), Open Source Security Testing Methodology Manual (OSSTMM), the Penetration Testing Execution Standard (PTES), Information Systems Security Assessment Framework (ISSAF), and NIST SP800-115
  • Familiar with security testing techniques such as threat modeling, network discovery, port and service identification, vulnerability scanning, network sniffing, penetration testing, configuration reviews, firewall rule reviews, social engineering, wireless penetration testing, fuzzing, and password cracking and can perform these techniques from a variety of adversarial perspectives (white-, grey-, black-box)
  • Experience with discovering, utilizing, and possibly writing exploits for such vulnerabilities as buffer and stack overflows
  • Familiar with the logistics of security testing such as acquiring authorization for testing, reporting, risk analysis of findings, data handling, and legal considerations
  • Commercial Application Security tools experience (Nessus, Nexpose, Qualys, Appdetective, Appscan, etc.)
    Open source and free tools experience (Kali Linux suite, Metasploit, nmap, airsnort, Wireshark, Burp Suite, Paros, etc.)
  • One or more of the following testing certifications: Certified Ethical Hacker (CEH); GIAC Certified Penetration Tester (GPEN); Offensive Security Certified Professional (OSCP); or equivalent development or testing certification (ECSA, CEPT, CPTE, CPTS, etc)
  • In addition, one or more of the following governance certifications is preferred: Certified Information Systems Security Professionals (CISSP); Certified Information Systems Auditor (CISA); Certified Information Security Manager (CISM)
  • Strong leadership and communication skills, technical knowledge, and the ability to write at a "publication" quality level in order to communicate findings and recommendations to the client's senior management

At RSM, we offer a competitive benefits and compensation package for all our people.We offer flexibility in your schedule, empowering you to balance life's demands, while also maintaining your ability to serve clients.Learn more about our total rewards at

All applicants will receive consideration for employment as RSM does not tolerate discrimination and/or harassment based on race; color; creed; sincerely held religious beliefs, practices or observances; sex (including pregnancy or disabilities related to nursing); gender; sexual orientation; HIV Status; national origin; ancestry; familial or marital status; age; physical or mental disability; citizenship; political affiliation; medical condition (including family and medical leave); domestic violence victim status; past, current or prospective service in the US uniformed service; US Military/Veteran status; pre-disposing genetic characteristics or any other characteristic protected under applicable federal, state or local law.

Accommodation for applicants with disabilities is available upon request in connection with the recruitment process and/or employment/partnership.RSM is committed to providing equal opportunity and reasonable accommodation for people with disabilities. If you require a reasonable accommodation to complete an application, interview, or otherwise participate in the recruiting process, please call us at View phone number on click.appcast.io or send us an email at View email address on click.appcast.io.

RSM does not intend to hire entry level candidates who will require sponsorship now OR in the future (i.e. F-1 visa holders). If you are a recent U.S. college / university graduate possessing 1-2 years of progressive and relevant work experience in a same or similar role to the one for which you are applying, excluding internships, you may be eligible for hire as an experienced associate.

RSM will consider for employment qualified applicants with arrest or conviction records. For those living in California or applying to a position in California, please click here for additional information.

At RSM, an employee's pay at any point in their career is intended to reflect their experiences, performance, and skills for their current role. The salary range (or starting rate for interns and associates) for this role represents numerous factors considered in the hiring decisions including, but not limited to, education, skills, work experience, certifications, location, etc. As such, pay for the successful candidate(s) could fall anywhere within the stated range.

Compensation Range: $107,000 - $214,500

Individualsselected for this role will be eligible for a discretionary bonus based on firm and individual performance.

Vacancy posted 4 days ago
Similar jobs that could be interesting for youBased on the Offensive Security Lead - Penetration Tester in Des Moines, IA vacancy
  • $76.4k - $138.6k

     ...business, and everyone in EY Information Security has a critical role to play. Join a global...  ...business value. The opportunity As an Offensive Security Analyst on the Vulnerability Management...  ...of the Vulnerability Exposure Management Lead to identify and mitigate vulnerabilities... 
    Suggested
    Summer holiday
    Local area
    Flexible hours

    Ernst & Young Oman

    Des Moines, IA
    5 days ago
  • $123.4k - $193.93k

     ...Health in Des Moines is seeking a Manager for Information Security & Risk (Purple Team) to lead adversarial testing and detection validation. This...  ...The ideal candidate will have extensive experience in offensive security and personnel leadership, contributing to critical... 
    Suggested

    Cardinal Health

    Des Moines, IA
    4 days ago
  • A technology solutions provider in West Des Moines seeks a Security Analyst responsible for ensuring data systems security. The candidate...  ...to incidents, and maintain systems security solutions while leading technical efforts. A bachelor's degree in Computer Science or IT... 
    Suggested

    ITA Group, Inc.

    West Des Moines, IA
    2 days ago
  •  ...Penetration Tester - Intermediate We are seeking a Penetration Tester - Intermediate to join our Defense...  ...systems, and network enclaves to identify security weaknesses and vulnerabilities. Assess enterprise systems using offensive cybersecurity techniques and provide... 
    Suggested
    Full time
    Contract work
    Temporary work

    TekSynap

    Des Moines, IA
    2 days ago
  • $104k - $156k

     ...Posting Type Remote/Hybrid Job Overview As an Advanced Security Engineer focused on Endpoint Security, you will design, build,...  ...Required Skills: Endpoint Security, Network Security, Penetration Testing, Security Architecture Design, Security Automation,... 
    Suggested
    Remote work

    Relativity

    Des Moines, IA
    4 days ago
  •  ...responsible for maturing Wellmark’s Quality Engineering and Application Security practices across the entire enterprise engineering function....  ...test plan, strategy from high level EPIC concept to Release.  Leads the strategy, standards, and enablement model for modern... 
    Permanent employment
    Work experience placement
    H1b
    Shift work

    Wellmark, Inc.

    Des Moines, IA
    10 days ago
  • $21.5 per hour

    A security services provider in West Des Moines is looking for a Security Account Manager to oversee security operations. The ideal candidate will have supervisory experience and a strong background in security management. Responsibilities include ensuring safety protocols... 
    Hourly pay
    Day shift

    Fountain

    West Des Moines, IA
    2 days ago
  • Diversified is seeking a Senior Installation Superintendent in Des Moines, IA. This role requires managing complex installation projects and acting as the primary contact for onsite operations. Ideal candidates will have strong knowledge of access control and CCTV systems...
    Relocation package

    Diversified

    Des Moines, IA
    4 days ago
  • $110k - $120k

    We’re on the hunt for a hands-on, sharp-thinking Security & Compliance Lead to level up the physical and operational security of our data center. If you thrive in fast-moving environments, love solving complex problems, and know how to turn policy into action you’ll fit... 
    For contractors
    Work at office
    Remote work
    Flexible hours
    Weekend work

    Corporate Tools LLC

    Des Moines, IA
    4 days ago
  • $78.4k - $106.1k

    Position Overview The Database Lead provides technical leadership for middleware-focused database environments that support integration...  ..., and connection pools support performance, resilience, and security while establishing standards for backup, recovery, and lifecycle... 
    Contract work
    Work experience placement
    Work at office

    ASM Research, An Accenture Federal Services Company

    Des Moines, IA
    1 day ago
  • $152.41k - $179.3k

     ...times annually to foster collaboration, connection, and alignment. Attendance is expected and fully supported. Coinbase Corporate Security (CorpSec) is seeking a Security Engineer to design, implement, and automate security solutions that protect corporate... 
    Local area

    Coinbase

    Des Moines, IA
    5 days ago
  • $150k - $250k

     ...need to thrive - in our offices or yours. Job Summary The Security Engineer - Google collaborates with account and specialty teams...  ...in working with and understanding security solutions from leading vendors such as Okta, Crowdstrike, Palo Alto, Proofpoint, CyberArk... 
    Work experience placement
    Work at office
    Remote work
    Worldwide
    Flexible hours

    SHI GmbH

    Des Moines, IA
    1 day ago
  • Wellmark-Blue-Cross-and-Blue-Shiel is searching for a Team Leader in Engineering Quality and Security. This full-time position in Des Moines requires at least 7 years of experience in software engineering or DevSecOps. You will manage engineering teams to enhance quality... 
    Full time

    Wellmark-Blue-Cross-and-Blue-Shiel

    Des Moines, IA
    1 day ago
  • Wellmark Blue Cross and Blue Shield in Des Moines is seeking an Engineering Leader to manage Quality Engineering and Application Security practices across the enterprise. This role demands over 7 years of experience in software or quality engineering, and a strong grasp... 

    Wellmark Blue Cross and Blue Shield

    Des Moines, IA
    3 days ago
  • Acord (association For Cooperative Operations Research And Development) is seeking an Airport Security Specialist in Des Moines, Iowa. This role involves overseeing airport security activities, managing the badging office, and ensuring compliance with various federal and... 
    Work at office
    Local area

    Acord (association For Cooperative Operations Research And D...

    Des Moines, IA
    1 day ago
  • $75k - $82k

     ...pipelines to power plants, roadways to reservoirs, schoolyards to security solutions, clients look to TRC for breakthrough thinking backed...  ...skills and certifications. Responsibilities The Sr. ROW/Land Lead Agent possesses an excellent working knowledge of all right of way... 
    Full time
    Temporary work
    Part time
    Work at office
    Local area

    Trc Companies, Inc.

    Des Moines, IA
    2 days ago
  •  ...Job Description Job Description Description: Lead Fire and Security Technician Take the lead in protecting what matters most! Founded in 1969, Security Equipment, Inc. (SEi) has built a reputation as a trusted, forward-thinking provider of integrated life... 
    Full time
    Temporary work
    Local area
    Monday to Friday
    Shift work

    Security Equipment Inc.

    Urbandale, IA
    20 days ago
  •  ...led world. Serving more than 1,500 customers globally and as the leading contributor to the vibrant and fast-growing PostgreSQL...  ...availability with mission critical capabilities built in such as security, compliance controls, and observability. For more information,... 
    Remote work

    EDB

    Des Moines, IA
    2 days ago
  • $218.03k - $256.5k

     ...The Identity and Access Management (IAM) program, housed within Security, is a cross-functional team that designs, builds, and governs workforce...  ...requirements. What you’ll be doing (ie. job duties): Lead the architectural vision and security engineering execution for... 
    For contractors
    Local area

    Coinbase

    Des Moines, IA
    4 days ago
  • $130k - $153.9k

     ...about how we’re shaping the future of digital business and a more secure world, visit stratascale.com. Job Description Summary The...  ...organization, both internally and externally. Ability to influence and lead all aspects of sales cycle and engage appropriate internal and... 
    Work experience placement
    Remote work
    Home office
    Flexible hours

    SHI GmbH

    Des Moines, IA
    4 days ago
  • $150.2k - $225.4k

     ...About the team: The Information Security organization advances the overall state of security at Rubrik through purposeful initiatives...  ...Rubrik (RBRK), the Security and AI Operations Company, leads at the intersection of data protection, cyber resilience, and enterprise... 
    Local area
    Remote work

    Rubrik

    Des Moines, IA
    6 days ago
  • $105.79k - $141.05k

     ...our expansive fiber network and connected ecosystem. We enable secure, high‑performance connectivity across cloud, edge, and AI workloads...  ...‑ready connectivity, join us today. The Role As a Senior Lead Project Controls Specialist, you will be responsible for leading... 
    Full time
    Temporary work
    Work at office
    Remote work

    Lumen

    Des Moines, IA
    1 day ago
  • A staffing agency is seeking an experienced Application Security Engineer for a contract-to-hire role in Wilmington, DE. The candidate will design, implement, and maintain information security systems while collaborating with architects and developers to protect sensitive... 
    Contract work

    Liberty Personnel Services, Inc.

    Des Moines, IA
    5 days ago
  •  ...us, and let’s improve lives together. The Senior Technology Security Engineer will be responsible for the design, build, deploy and...  ...meets with stakeholders to assess impacts and dependencies. Leads project activities to ensure timely deliverables and supports the... 

    Pointwest Technologies Corp

    Des Moines, IA
    4 days ago
  •  ...Job Description Are you an amazing Access Control/Physical Security Technician who wants to make great money working at a great company...  ...not only in Iowa but also on a regional and national level. Lead Security Technician Position Description: Installation of projects... 

    Communication Innovators, Inc.

    Pleasant Hill, IA
    17 days ago
  • $102.5k - $121.5k

     ...Record. Job Summary: The Systems Security Engineer is responsible for establishing...  ...' requests. The Systems Security Team Lead works to assess network risk and cyber security...  ...cyber security vulnerabilities using penetration testing tools for information gathering... 
    Work at office
    Local area

    Bankers Trust

    Des Moines, IA
    4 days ago
  •  ...Our Downtown Des Moines client is searching for a Systems Security Engineer III to join their team. This team will be responsible...  ...Analyze cyber security vulnerabilities and network risk utilizing penetration testing tools for information gathering, vulnerability... 

    The Palmer Group

    Des Moines, IA
    4 days ago
  •  ...file(s) to start uploading OR Browse files Resume is required. Security Architect - Contract to Hire 4 Days Onsite NO THIRD PARTIES Must...  ...architecture across EDR, SIEM, WAF, firewalls, cloud, and on-prem systems. Lead development of secure integrations, RESTful APIs, and automated... 
    Contract work
    Local area

    Liberty Personnel Services, Inc.

    Des Moines, IA
    4 days ago
  •  ...organizations more efficiently and profitability. One way MMIT does this is through our Managed IT services, offering managed help desk, security, network design, and other services to businesses across central Iowa.  WHAT WILL YOU BE DOING?  You will support multiple... 
    Work at office

    MMIT Business Solutions Group

    Urbandale, IA
    2 hours ago
  • A staffing agency in Des Moines is seeking a Security Architect to design and implement enterprise-wide cybersecurity architecture. The...  ...managing security architecture across various environments and leading incident response strategies. This role requires strong communication... 

    Liberty Personnel Services, Inc.

    Des Moines, IA
    4 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Offensive Security Lead - Penetration Tester. Be the first to apply!