HA

Halock Security Labs

Senior Offensive Security Consultant / Pentester

Job summary

Denver
€125,000+

Work model

Remote first
Only United States
4 days ago
Job description

Requirements

Must have:

  • We want an experienced penetration tester with 5-7 years of hands-on work in penetration testing, offensive security consulting, or red team operations.
  • We need depth in at least one core area such as network, Active Directory, web/API, cloud, or red teaming.
  • We value a skills-based certification or equivalent practical proof of capability.
  • We expect proficiency with common industry tools and C2 frameworks.
  • We look for scripting or coding skills that support automation, tooling, or exploitation.
  • We need working knowledge of PTES, OWASP, MITRE ATT&CK, and related offensive security references.
  • We want strong client-facing communication skills and the ability to deliver independently with minimal supervision.
  • We prefer candidates with 3 years of penetration testing experience.
  • Bonus experience includes consulting-based penetration testing, cloud, identity, EDR-protected endpoint, or mature enterprise network testing, as well as malware development, C2 enhancements, and EDR evasion.

Responsibilities:

  • We lead manual penetration tests across network, web/API, cloud, wireless, thick client, and enterprise environments.
  • We execute objective-based red team and adversary simulation engagements when they are in scope.
  • We develop custom proof-of-concept exploits, scripts, and tradecraft when existing tools are not sufficient.
  • We write clear reports that include attack narratives, evidence, business impact, and prioritized remediation guidance.
  • We contribute to our methodology, tooling, lab work, research, and client deliverables.
  • We participate in project kickoff and report delivery meetings.
  • We mentor by demonstrating sound judgment, clean execution, and professional communication.
  • We support clients through remediation by answering follow-up questions, validating fixes, and helping teams understand the significance of findings.

Company:

We are HALOCK Security Labs, a full-service information security consulting firm based in Schaumburg, Illinois. Since 1996, we have delivered technical security expertise and strategic guidance across penetration testing, red teaming, malware defense, incident response, risk, and compliance. We offer a remote-first environment, challenging client work, paid training and certifications, conference opportunities, experienced teammates, and room to grow our methodology. Our compensation and benefits include bonus potential, health and dental coverage, 401(k), long-term disability, paid time off, professional development assistance, a referral program, and more. We operate as a high-trust, low-ego team that values practical problem-solving, collaboration, and helping clients act on what we find.