Apply

Ready to go for it?

AI Apply speeds things up—apply directly if you prefer.

FREE ACCESS
5,000–10,000 jobs/day
Scoutfield Logo

See all jobs on Scoutfield

Search thousands of fresh jobs every day.

Discover
  • Fresh listings
  • Fast filters
  • No subscription required
Create a free account and start exploring right away.
Keeggo

Mid-Level Offensive Security Analyst – Red Team

Keeggo

. Perform penetration testing on web applications, APIs, mobile applications, infrastructure, and internal and external networks .

Posted 9/29/2026full-timeSão Paulo • BrazilMid-LevelSeniorWebsite

Core Competencies

Role fit
Core Competencies

Use this summary to align your resume positioning with the role.

Demonstrates expertise in penetration testing, offensive security, and vulnerability assessment across web applications, APIs, and networks. Proficient in scripting and technical reporting, with strong communication skills for client interactions and team collaboration.

Highest-signal resume keywords
Penetration TestingOffensive SecurityBurp SuitePython ScriptingTechnical Reporting

ATS Keywords

Tailor your resume
Applicant Tracking System Keywords

Tip: use these terms in your resume and cover letter to boost ATS matches.

Hard Skills
Vulnerability AssessmentExploit TechniquesWeb Application TestingAPI TestingNetworking KnowledgeWindows Operating SystemLinux Operating SystemRed Team AssessmentPost-Exploitation TechniquesCloud Security
Soft Skills
Strong Communication SkillsOrganizational Skills
Tools & Technologies
NmapMetasploitAWSAzureGCP
Certifications & Qualifications
OSCPEJPTCEH
Industry Keywords
OWASP Top 10MITRE ATT&CKPTESCTFsBug Bounty Programs

Tech Stack

Tools & technologies
AWSAzureGoogle Cloud PlatformLinuxPython

About the role

Key responsibilities & impact
  • Perform penetration testing on web applications, APIs, mobile applications, infrastructure, and internal and external networks
  • Participate in Red Team Assessment projects, supporting attack scenarios defined with the team
  • Identify, manually exploit, and validate vulnerabilities
  • Apply industry-standard methodologies in security assessments
  • Analyze evidence and validate the technical impact of vulnerabilities
  • Develop and adapt scripts to support testing activities
  • Prepare technical reports covering vulnerabilities, evidence, risks, impact, and remediation recommendations
  • Support the preparation of executive reports
  • Participate in kickoff meetings, technical alignment sessions, and results presentations
  • Present technical findings to client teams
  • Conduct retesting to validate remediation efforts
  • Research new techniques, vulnerabilities, and offensive security tools
  • Contribute to improvements in the department’s methodologies, processes, and automation

Requirements

What you’ll need
  • Experience in offensive security and penetration testing
  • Hands-on experience testing web applications and APIs
  • Knowledge of networking and Windows and Linux operating systems
  • Knowledge of vulnerabilities and exploitation techniques
  • Ability to manually exploit vulnerabilities
  • Experience with Burp Suite, Nmap, Metasploit, or equivalent tools
  • Knowledge of the OWASP Top 10 and security testing methodologies
  • Experience preparing technical reports
  • Knowledge of scripting or programming, especially Python, Bash, or PowerShell
  • Strong communication skills when working with technical teams and clients
  • Strong organizational skills to manage activities independently and meet project deadlines
  • Completed or ongoing higher education in Computer Science, Information Systems, Engineering, Information Security, Computer Networks, or a related field; practical experience and technical knowledge will also be considered during the evaluation
  • Technical English for reading documentation, advisories, CVEs, and technical materials
  • Offensive security certifications such as OSCP, eJPT, CEH, or equivalent are a plus
  • Experience testing infrastructure and internal networks is a plus
  • Knowledge of Active Directory and enterprise environments is a plus
  • Experience with Red Team Assessment projects or adversary simulations is a plus
  • Experience with AWS, Azure, or GCP cloud security is a plus
  • Experience testing mobile applications is a plus
  • Knowledge of post-exploitation techniques is a plus
  • Experience automating offensive security activities is a plus
  • Participation in CTFs, bug bounty programs, or security research is a plus
  • Knowledge of PTES, MITRE ATT&CK, and OWASP WSTG is a plus

Benefits

Comp & perks
  • Flex Meal Card
  • Comprehensive medical and dental coverage
  • Wellhub membership with access to gyms, studios, and fitness activities
  • Childcare assistance
  • Extended parental leave
  • Home office allowance
  • Transportation allowance