Offensive Security Lead - Penetration Tester
$107k - $214.5kRSM US LLP
We are the leading provider of professional services to the middle market globally, our purpose is to instill confidence in a world of change, empowering our clients and people to realize their full potential. Our exceptional people are the key to our unrivaled, culture and talent experience and our ability to be compelling to our clients. You'll find an environment that inspires and empowers you to thrive both personally and professionally. There's no one like you and that's why there's nowhere like RSM.
We are currently looking for team members to join our Security, Privacy, and Risk Consulting practice. The candidate will work with teams of security and privacy staff in a wide variety of systems environments.Our Security, Privacy and Risk Consulting team serves the Information Security and Data Privacy related needs of our clients. This team helps organizations identify their cyber risk, and design and implement program to address those risks and improve their cyber security posture. We serve a diverse base of clients in a variety of industries and understanding how technology impacts the operation and growth of organizations is what we do best.We are seeking individuals skilled at performing vulnerability assessments, penetration testing, and secure architecture reviews of a variety of operating systems, network devices, wireless solutions, and their related infrastructure.
Examples of candidate's responsibilities include:
- Perform analysis and testing to verify the strengths and weaknesses of client IT environments utilizing commercial and open source security testing tools
- Perform Internet penetration testing (blackbox/greybox /whitebox testing) and network architecture reviews (manual/automated)
- Perform other security testing tasks such as wireless penetration testing, social engineering campaigns (email, web, phone, physical, etc.), mobile application testing, embedded device testing, and similar activities meant to identify critical weaknesses within client environments
- Assist with the development of remediation recommendations for identified findings
- Identify and clearly articulate (written and verbal) findings to senior management and clients
- Help identify improvement opportunities for assigned clients
- Supervise and provide engagement management for other staff working on assigned engagements
Required Qualifications:
- This position is for individuals with 4+ years of experience within the cyber security space, with a preference for prior consulting or professional services backgrounds. Other candidates may be considered based on experience and skill sets.
- Ability to travel as needed
- Must possess a high degree of integrity and confidentiality, as well as the ability to adhere to both company policies and best practices
- Strong verbal and written abilities
- Strong multitasking and project management skills
Preferred Qualifications:
- Bachelor's degree in computer science or related field from an accredited college/university
- Technical background in networking/system administration, security testing or related fields
- In-depth knowledge of TCP/IP
- Two or more years of Perl, Python, Bash, or C experience
- Operating System Configuration and Security experience (Windows, HP-UX, Linux, Solaris, AIX, etc.)
- Configuration and Security experience with firewalls, switches, routers, VPNs
- Experience with security and architecture testing and development frameworks, such as the Open Web
- Application Security Project (OWASP), Open Source Security Testing Methodology Manual (OSSTMM), the Penetration Testing Execution Standard (PTES), Information Systems Security Assessment Framework (ISSAF), and NIST SP800-115
- Familiar with security testing techniques such as threat modeling, network discovery, port and service identification, vulnerability scanning, network sniffing, penetration testing, configuration reviews, firewall rule reviews, social engineering, wireless penetration testing, fuzzing, and password cracking and can perform these techniques from a variety of adversarial perspectives (white-, grey-, black-box)
- Experience with discovering, utilizing, and possibly writing exploits for such vulnerabilities as buffer and stack overflows
- Familiar with the logistics of security testing such as acquiring authorization for testing, reporting, risk analysis of findings, data handling, and legal considerations
- Commercial Application Security tools experience (Nessus, Nexpose, Qualys, Appdetective, Appscan, etc.)
Open source and free tools experience (Kali Linux suite, Metasploit, nmap, airsnort, Wireshark, Burp Suite, Paros, etc.) - One or more of the following testing certifications: Certified Ethical Hacker (CEH); GIAC Certified Penetration Tester (GPEN); Offensive Security Certified Professional (OSCP); or equivalent development or testing certification (ECSA, CEPT, CPTE, CPTS, etc)
- In addition, one or more of the following governance certifications is preferred: Certified Information Systems Security Professionals (CISSP); Certified Information Systems Auditor (CISA); Certified Information Security Manager (CISM)
- Strong leadership and communication skills, technical knowledge, and the ability to write at a "publication" quality level in order to communicate findings and recommendations to the client's senior management
At RSM, we offer a competitive benefits and compensation package for all our people.We offer flexibility in your schedule, empowering you to balance life's demands, while also maintaining your ability to serve clients.Learn more about our total rewards at
All applicants will receive consideration for employment as RSM does not tolerate discrimination and/or harassment based on race; color; creed; sincerely held religious beliefs, practices or observances; sex (including pregnancy or disabilities related to nursing); gender; sexual orientation; HIV Status; national origin; ancestry; familial or marital status; age; physical or mental disability; citizenship; political affiliation; medical condition (including family and medical leave); domestic violence victim status; past, current or prospective service in the US uniformed service; US Military/Veteran status; pre-disposing genetic characteristics or any other characteristic protected under applicable federal, state or local law.
Accommodation for applicants with disabilities is available upon request in connection with the recruitment process and/or employment/partnership.RSM is committed to providing equal opportunity and reasonable accommodation for people with disabilities. If you require a reasonable accommodation to complete an application, interview, or otherwise participate in the recruiting process, please call us at View phone number on click.appcast.io or send us an email at View email address on click.appcast.io.
RSM does not intend to hire entry level candidates who will require sponsorship now OR in the future (i.e. F-1 visa holders). If you are a recent U.S. college / university graduate possessing 1-2 years of progressive and relevant work experience in a same or similar role to the one for which you are applying, excluding internships, you may be eligible for hire as an experienced associate.
RSM will consider for employment qualified applicants with arrest or conviction records. For those living in California or applying to a position in California, please click here for additional information.
At RSM, an employee's pay at any point in their career is intended to reflect their experiences, performance, and skills for their current role. The salary range (or starting rate for interns and associates) for this role represents numerous factors considered in the hiring decisions including, but not limited to, education, skills, work experience, certifications, location, etc. As such, pay for the successful candidate(s) could fall anywhere within the stated range.
Compensation Range: $107,000 - $214,500Individualsselected for this role will be eligible for a discretionary bonus based on firm and individual performance.
$76.4k - $138.6k
...business, and everyone in EY Information Security has a critical role to play. Join a global... ...business value. The opportunity As an Offensive Security Analyst on the Vulnerability Management... ...of the Vulnerability Exposure Management Lead to identify and mitigate vulnerabilities...SuggestedSummer holidayLocal areaFlexible hours$123.4k - $193.93k
...Health in Des Moines is seeking a Manager for Information Security & Risk (Purple Team) to lead adversarial testing and detection validation. This... ...The ideal candidate will have extensive experience in offensive security and personnel leadership, contributing to critical...Suggested- A technology solutions provider in West Des Moines seeks a Security Analyst responsible for ensuring data systems security. The candidate... ...to incidents, and maintain systems security solutions while leading technical efforts. A bachelor's degree in Computer Science or IT...Suggested
- ...Penetration Tester - Intermediate We are seeking a Penetration Tester - Intermediate to join our Defense... ...systems, and network enclaves to identify security weaknesses and vulnerabilities. Assess enterprise systems using offensive cybersecurity techniques and provide...SuggestedFull timeContract workTemporary work
$104k - $156k
...Posting Type Remote/Hybrid Job Overview As an Advanced Security Engineer focused on Endpoint Security, you will design, build,... ...Required Skills: Endpoint Security, Network Security, Penetration Testing, Security Architecture Design, Security Automation,...SuggestedRemote work- ...responsible for maturing Wellmark’s Quality Engineering and Application Security practices across the entire enterprise engineering function.... ...test plan, strategy from high level EPIC concept to Release. Leads the strategy, standards, and enablement model for modern...Permanent employmentWork experience placementH1bShift work
$21.5 per hour
A security services provider in West Des Moines is looking for a Security Account Manager to oversee security operations. The ideal candidate will have supervisory experience and a strong background in security management. Responsibilities include ensuring safety protocols...Hourly payDay shift- Diversified is seeking a Senior Installation Superintendent in Des Moines, IA. This role requires managing complex installation projects and acting as the primary contact for onsite operations. Ideal candidates will have strong knowledge of access control and CCTV systems...Relocation package
$110k - $120k
We’re on the hunt for a hands-on, sharp-thinking Security & Compliance Lead to level up the physical and operational security of our data center. If you thrive in fast-moving environments, love solving complex problems, and know how to turn policy into action you’ll fit...For contractorsWork at officeRemote workFlexible hoursWeekend work$78.4k - $106.1k
Position Overview The Database Lead provides technical leadership for middleware-focused database environments that support integration... ..., and connection pools support performance, resilience, and security while establishing standards for backup, recovery, and lifecycle...Contract workWork experience placementWork at office$152.41k - $179.3k
...times annually to foster collaboration, connection, and alignment. Attendance is expected and fully supported. Coinbase Corporate Security (CorpSec) is seeking a Security Engineer to design, implement, and automate security solutions that protect corporate...Local area$150k - $250k
...need to thrive - in our offices or yours. Job Summary The Security Engineer - Google collaborates with account and specialty teams... ...in working with and understanding security solutions from leading vendors such as Okta, Crowdstrike, Palo Alto, Proofpoint, CyberArk...Work experience placementWork at officeRemote workWorldwideFlexible hours- Wellmark-Blue-Cross-and-Blue-Shiel is searching for a Team Leader in Engineering Quality and Security. This full-time position in Des Moines requires at least 7 years of experience in software engineering or DevSecOps. You will manage engineering teams to enhance quality...Full time
- Wellmark Blue Cross and Blue Shield in Des Moines is seeking an Engineering Leader to manage Quality Engineering and Application Security practices across the enterprise. This role demands over 7 years of experience in software or quality engineering, and a strong grasp...
- Acord (association For Cooperative Operations Research And Development) is seeking an Airport Security Specialist in Des Moines, Iowa. This role involves overseeing airport security activities, managing the badging office, and ensuring compliance with various federal and...Work at officeLocal area
$75k - $82k
...pipelines to power plants, roadways to reservoirs, schoolyards to security solutions, clients look to TRC for breakthrough thinking backed... ...skills and certifications. Responsibilities The Sr. ROW/Land Lead Agent possesses an excellent working knowledge of all right of way...Full timeTemporary workPart timeWork at officeLocal area- ...Job Description Job Description Description: Lead Fire and Security Technician Take the lead in protecting what matters most! Founded in 1969, Security Equipment, Inc. (SEi) has built a reputation as a trusted, forward-thinking provider of integrated life...Full timeTemporary workLocal areaMonday to FridayShift work
- ...led world. Serving more than 1,500 customers globally and as the leading contributor to the vibrant and fast-growing PostgreSQL... ...availability with mission critical capabilities built in such as security, compliance controls, and observability. For more information,...Remote work
$218.03k - $256.5k
...The Identity and Access Management (IAM) program, housed within Security, is a cross-functional team that designs, builds, and governs workforce... ...requirements. What you’ll be doing (ie. job duties): Lead the architectural vision and security engineering execution for...For contractorsLocal area$130k - $153.9k
...about how we’re shaping the future of digital business and a more secure world, visit stratascale.com. Job Description Summary The... ...organization, both internally and externally. Ability to influence and lead all aspects of sales cycle and engage appropriate internal and...Work experience placementRemote workHome officeFlexible hours$150.2k - $225.4k
...About the team: The Information Security organization advances the overall state of security at Rubrik through purposeful initiatives... ...Rubrik (RBRK), the Security and AI Operations Company, leads at the intersection of data protection, cyber resilience, and enterprise...Local areaRemote work$105.79k - $141.05k
...our expansive fiber network and connected ecosystem. We enable secure, high‑performance connectivity across cloud, edge, and AI workloads... ...‑ready connectivity, join us today. The Role As a Senior Lead Project Controls Specialist, you will be responsible for leading...Full timeTemporary workWork at officeRemote work- A staffing agency is seeking an experienced Application Security Engineer for a contract-to-hire role in Wilmington, DE. The candidate will design, implement, and maintain information security systems while collaborating with architects and developers to protect sensitive...Contract work
- ...us, and let’s improve lives together. The Senior Technology Security Engineer will be responsible for the design, build, deploy and... ...meets with stakeholders to assess impacts and dependencies. Leads project activities to ensure timely deliverables and supports the...
- ...Job Description Are you an amazing Access Control/Physical Security Technician who wants to make great money working at a great company... ...not only in Iowa but also on a regional and national level. Lead Security Technician Position Description: Installation of projects...
$102.5k - $121.5k
...Record. Job Summary: The Systems Security Engineer is responsible for establishing... ...' requests. The Systems Security Team Lead works to assess network risk and cyber security... ...cyber security vulnerabilities using penetration testing tools for information gathering...Work at officeLocal area- ...Our Downtown Des Moines client is searching for a Systems Security Engineer III to join their team. This team will be responsible... ...Analyze cyber security vulnerabilities and network risk utilizing penetration testing tools for information gathering, vulnerability...
- ...file(s) to start uploading OR Browse files Resume is required. Security Architect - Contract to Hire 4 Days Onsite NO THIRD PARTIES Must... ...architecture across EDR, SIEM, WAF, firewalls, cloud, and on-prem systems. Lead development of secure integrations, RESTful APIs, and automated...Contract workLocal area
- ...organizations more efficiently and profitability. One way MMIT does this is through our Managed IT services, offering managed help desk, security, network design, and other services to businesses across central Iowa. WHAT WILL YOU BE DOING? You will support multiple...Work at office
- A staffing agency in Des Moines is seeking a Security Architect to design and implement enterprise-wide cybersecurity architecture. The... ...managing security architecture across various environments and leading incident response strategies. This role requires strong communication...
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Offensive Security Lead - Penetration Tester. Be the first to apply!




