Apply

Ready to go for it?

AI Apply speeds things up—apply directly if you prefer.

FREE ACCESS
5,000–10,000 jobs/day
Scoutfield Logo

See all jobs on Scoutfield

Search thousands of fresh jobs every day.

Discover
  • Fresh listings
  • Fast filters
  • No subscription required
Create a free account and start exploring right away.
Protiviti

Offensive Security Consultant – Red Team, Adversary Simulation

Protiviti

. Plan and execute red team, purple team, and threat-led penetration testing (TLPT) engagements emulating real-world threat actors across on-premises, cloud, identity, and SaaS environments .

Posted 10/9/2026full-timeUnited StatesMid-LevelSenior💰 $121,000 - $192,000 per yearWebsite

Core Competencies

Role fit
Core Competencies

Use this summary to align your resume positioning with the role.

Demonstrates extensive experience in offensive security, including red teaming and penetration testing, with a strong command of TTPs and MITRE ATT&CK. Proficient in developing custom tooling and collaborating with security teams to enhance detection and response capabilities.

Highest-signal resume keywords
Red Team EngagementsPenetration TestingCustom Tooling DevelopmentThreat Intelligence ScenariosCloud Security Platforms

ATS Keywords

Tailor your resume
Applicant Tracking System Keywords

Tip: use these terms in your resume and cover letter to boost ATS matches.

Hard Skills
Offensive SecurityRed TeamingPenetration TestingActive Directory AttacksC2 FrameworksCustom Tooling in C#Python ProgrammingVulnerability DiscoveryOWASP Top 10Network Penetration Testing
Soft Skills
Strong Communication SkillsCoaching and DevelopmentRelationship Building
Tools & Technologies
MythicSliverCobalt StrikeBurp SuiteAWSAzureGCPEntra IDOkta
Certifications & Qualifications
OSCPOSEPOSWEOSEDCRTOCRTLGXPNGPENBSCP
Industry Keywords
Threat-Led Penetration TestingTTPsMITRE ATT&CKRansomware SimulationsEDR EvadingAI/LLM ApplicationsClient Security TeamsTechnical Reports

Tech Stack

Tools & technologies
AWSAzureCloudGoogle Cloud PlatformPythonRustGo

About the role

Key responsibilities & impact
  • Plan and execute red team, purple team, and threat-led penetration testing (TLPT) engagements emulating real-world threat actors across on-premises, cloud, identity, and SaaS environments
  • Test attack surfaces including AI/LLM-powered applications, agentic workflows, and identity platforms
  • Use and build AI-assisted tooling and automation during operations
  • Develop tooling, design novel attacks, and contribute to a lab of testing tools and equipment
  • Partner with defenders to improve detections, response, and measurable security outcomes
  • Lead engagements from scoping through executive readout
  • Build relationships with client security teams and explain attack paths, remediation priorities, and business impact
  • Coach and develop teammates
  • Help shape and build new security services when there is client demand

Requirements

What you’ll need
  • Bachelor's degree in a relevant discipline (e.g., CS, CE, IS, MIS, EE) or equivalent hands-on experience
  • 5+ years of hands-on offensive security experience—red teaming, penetration testing, or adversary simulation—in consulting or in-house
  • Experience running red team engagements that emulate real-world threat actors, with a strong command of TTPs and MITRE ATT&CK
  • Ability to partner with SOC and detection engineering teams to improve detection and response
  • Experience designing threat intelligence–driven scenarios, including ransomware simulations
  • Hands-on experience attacking Active Directory, cloud and identity platforms (AWS, Azure, GCP, Entra ID, Okta), and CI/CD pipelines
  • Proficiency with C2 frameworks such as Mythic, Sliver, or Cobalt Strike
  • Ability to build custom tooling in C#, Go, Rust, Python, or PowerShell
  • Strong OpSec and experience evading EDR and other monitoring tools
  • Experience performing internal and external network penetration tests, including vulnerability discovery, exploitation, and privilege escalation
  • Experience testing web applications, APIs, and mobile apps, with a solid grasp of the OWASP Top 10 and tools like Burp Suite
  • Ability to validate findings manually and chain issues into real attack paths
  • Understanding of attacks against LLM-enabled apps and agents, including prompt injection, data leakage, and tool abuse
  • Ability to turn technical findings into clear, actionable reports and conversations for technical teams and executives
  • Strong written and verbal communication skills, including producing clear, client-ready reports and presentations
  • Certifications such as OSCP, OSEP, OSWE, OSED, CRTO/CRTL, GXPN, GPEN, BSCP, or comparable SANS 600/700-level coursework are a plus
  • Cloud security certifications are a plus
  • Successful completion of a background check

Benefits

Comp & perks
  • Annual bonus plan with 12% bonus target opportunity and/or discretionary stock compensation opportunities
  • Medical, dental, and vision coverages
  • FSA and HSA healthcare accounts
  • Life and accident insurance
  • Adoption and fertility assistance
  • Paid parental leave up to 10 weeks
  • Short- and long-term disability
  • 401(k) savings and investment plan with employer match of 50% on the first 6% of contributions
  • Choice Time Off (CTO) for vacation, personal needs, and sick time; new hires receive up to 20 days per calendar year
  • Up to 11 paid holidays each calendar year
  • Hybrid work model combining in-person and remote work
  • Support for presenting at local, national, and international security conferences
  • Support to develop tooling, research techniques, and build new services