First & only Managed Detection & Response solution covering all attack surfaces for enterprises & the mid-market.
Offensive Security Specialist
Location
California
Posted
4 days ago
Salary
0
Seniority
Senior
Job Description
Offensive Security Specialist
DeepSeas
• Conduct internal and external network penetration tests including enumeration, exploitation, lateral movement, and post-exploitation within defined scope. • Perform web application assessments aligned to OWASP Top 10 and API security testing standards. • Conduct basic cloud security assessments (AWS, Azure, GCP) including misconfiguration identification, IAM review, and exposed services enumeration. • Support AI/LLM security assessments including prompt injection, model abuse scenarios, and OWASP LLM Top 10 coverage under senior guidance. • Produce complete, client-ready findings reports with clear technical narratives, reproduction steps, risk ratings, and remediation guidance. • Participate in client kick-off calls and debrief walkthroughs, communicating findings professionally to technical and non-technical stakeholders. • Maintain accurate engagement documentation, time tracking, and artifact organization in project management systems. • Pursue continuous development through assigned training, lab environments, and certification advancement. • May be required to travel up to 50% of the time. • Must be a US Citizen.
Job Requirements
- 1–3 years of professional penetration testing or applied offensive security experience; strong candidates with equivalent demonstrated skills will be considered.
- Hands-on penetration testing certification preferred. Examples include PNPT (TCM Security), OSCP (Offensive Security), CompTIA PenTest+, or eWPT/eJPT with demonstrated experience.
- Proficiency with standard toolsets: Nmap, Metasploit, Burp Suite, Nessus/OpenVAS, BloodHound, or equivalents.
- Solid understanding of networking fundamentals (TCP/IP, DNS, HTTP/S, AD, VPNs) and common vulnerability classes.
- Familiarity with at least one scripting language (Python, Bash, or PowerShell) for basic automation and tooling.
- Exposure to cloud platforms (AWS, Azure, or GCP) and awareness of common cloud misconfiguration patterns.
- Strong written communication with the ability to produce accurate, professional-quality findings documentation.
Benefits
- Understanding and following DeepSeas’s information security policies and procedures.
- Remaining vigilant and reporting any suspicious activity or possible weaknesses in DeepSeas’s information security.
- Actively participating in DeepSeas’s efforts to maintain and improve information security.
- DeepSeas considers this position is as Moderate Risk with a potential to view/access/download restricted/private client/internal data.
- This information must be treated with sensitivity and in the most secure manner.
- HR reserves the right to perform random background/drug screens to ensure the safety of client/DeepSeas data
Related Guides
Related Categories
Related Job Pages
More Security Engineer Jobs
Role Description The School of Professional Studies (SPS) at Albright College invites applications for adjunct faculty to teach undergraduate, general education theatre courses in a 7.5-week, fully online asynchronous format. SPS serves adult learners through flexible, career-relevant programs designed to support academic and professional success. - Facilitate engaging undergraduate-level courses in an asynchronous online environment using a course blueprint model - Provide timely, substantive feedback on student work - Support critical thinking, applied learning, and professional skill development - Maintain an active and consistent instructional presence - Foster a supportive and inclusive learning environment for adult learners Qualifications - Master’s degree or higher in Theatre or a closely related field - Experience teaching in online, accelerated, asynchronous formats - Familiarity with D2L Brightspace is preferred - Comfort using experiential learning strategies (e.g., applied research, simulations, certifications, AI-supported activities) within a pre-designed course - Strong communication, feedback, and student engagement skills - Professional or clinical experience preferred
Role Description The School of Professional Studies (SPS) at Albright College invites applications for adjunct faculty to teach undergraduate criminal justice courses in a 7.5-week, fully online asynchronous format. SPS serves adult learners through flexible, career-relevant programs designed to support academic and professional success. - Facilitate engaging undergraduate-level courses in an asynchronous online environment using a course blueprint model - Provide timely, substantive feedback on student work - Support critical thinking, applied learning, and professional skill development - Maintain an active and consistent instructional presence - Foster a supportive and inclusive learning environment for adult learners Qualifications - Master’s degree or higher in Criminal Justice or a closely related field - Experience teaching in online, accelerated, asynchronous formats - Familiarity with D2L Brightspace is preferred - Comfort using experiential learning strategies (e.g., applied research, simulations, certifications, AI-supported activities) within a pre-designed course - Strong communication, feedback, and student engagement skills - Professional or clinical experience preferred
Identity & PAM Security Engineer
Sporty GroupOur mission is to build everyday entertainment platforms For Everybody.
• Manage privileged access controls, including Privileged Identity Management (PIM), just-in-time (JIT) access, approval workflows, and privileged role assignments. • Define and maintain administrative access processes for high-risk roles, privileged sessions, and break-glass accounts. • Lead and support access review processes, track remediation activities, and ensure access rights remain aligned with least-privilege principles. • Manage the lifecycle of service and machine accounts, including ownership, permissions, credential rotation, monitoring, and decommissioning. • Configure, maintain, and monitor conditional access policies, multi-factor authentication (MFA), and identity risk controls. • Design and implement automation for identity workflows, approvals, access validation, reporting, and remediation activities. • Collaborate with Security, Infrastructure, and Engineering teams to strengthen identity security across cloud and enterprise environments. • Support security audits, incident response activities, and identity-related investigations. • Contribute to the ongoing improvement of identity governance, privileged access management, and security operations practices.
Principal Technical Program Manager, Physical Security
VultrVultr is on a mission to make high-performance cloud computing easy to use, affordable, and locally accessible.
• Define and own the roadmap for data center physical security programs, including access control, surveillance, intrusion detection, and perimeter protection. • Translate business and security objectives into executable program plans with measurable outcomes. • Lead global initiatives spanning new builds, retrofits, and operational enhancements. • Drive end-to-end program execution across design, procurement, deployment, and operations. • Manage dependencies across engineering, construction, compliance, and vendor teams. • Ensure programs are delivered on time, within scope, and aligned with risk posture. • Partner with security engineers to define scalable, standardized physical security architectures. • Establish global design standards for systems such as CCTV, badge access, biometrics, and monitoring platforms. • Continuously evaluate emerging technologies and integrate improvements. • Identify, assess, and mitigate physical security risks across data center environments. • Ensure compliance with industry standards (e.g., ISO 27001, SOC 2, NIST frameworks). • Lead audits, incident reviews, and corrective action programs. • Collaborate with executive leadership, regional operations, legal, and compliance teams. • Communicate program status, risks, and tradeoffs clearly to technical and non-technical audiences. • Influence decision-making across organizational boundaries. • Manage relationships with security vendors, integrators, and consultants. • Oversee RFP processes, vendor selection, and performance management. • Drive cost efficiency without compromising security posture.


