We Help the World Be Everyday Ready™
Today's threatscape is relentless. So are we. At Cyderes, we build practical Identity & Access Management (IAM), Exposure Management, and risk programs, helping organizations stop active threats fast with Managed Detection & Response (MDR) that integrates with existing tools. Powering it all is Meridian, our entity fabric that connects identities, assets, and access into one trusted reality. Augmented by AI and driven by seasoned operators, our tireless global team arms organizations with the people, platforms, and perspectives they need to conquer whatever tomorrow throws their way.
🏆 Great Place to Work® Certified™ | United States | Canada | United Kingdom | India
Role Summary
We are looking for an accomplished and experienced Senior Consultant specialising in penetration testing to join our cybersecurity consulting team. You will lead complex security assessments, manage client relationships, and provide technical leadership and mentorship to junior consultants. You will work across different industries to help clients identify and mitigate security vulnerabilities in their networks and applications.
Responsibilities
Deliver advanced penetration tests across internal/external networks, web/mobile apps, APIs, cloud, and wireless environments
Perform vulnerability assessments and exploit development to assess system and application security
Design and conduct red and purple team exercises simulating real-world adversary tactics (TTPs)
Develop assessment plans and tailor testing methodologies to client environments
Create detailed, high-quality reports and present findings to technical and executive audiences
Be a client-facing lead throughout the engagement lifecycle (scoping to post-delivery support)
Mentor junior consultants and support development of internal tools and methodologies
Research new threats, attack techniques, and offensive security tools
Support presales efforts including scoping, proposals, and client presentations
Conduct threat analysis and provide mitigation guidance based on trends and attack patterns
Correlate and analyse threat data to identify indicators of compromise and attacker behaviour
Produce threat intelligence summaries and track evolving trends across industries
Develop tools, scripts, and automated processes to enhance testing and reporting workflows
Requirements
5+ years of hands-on experience in penetration testing and offensive security in of the following areas:
Execute network, wireless, web application, and API penetration tests
Experience with Active directory (AD) and Kerberos
Experience conducting vulnerability management and assessments
Experience conducting social engineering assessments
Experience conducting Purple Team and Red Team exercises
Experience with network protocols, operating systems, web technologies, and application security concepts
Experience with industry-standard tools (e.g., Burp Suite, Cobalt Strike, Metasploit, Nmap, Nessus)
Demonstrated experience conducting Red Team operations or simulated adversary engagements
Proficiency in scripting or coding (Python, Bash, PowerShell)
Relevant certifications such as OSCP, OSCE, GPEN, GWAPT, or equivalent
WHY CYDERES?
Benefits that go beyond the basics, we support our people so they can do their best work.
✔ Medical Insurance - Employee + dependents covered
✔ Life Insurance - Protection for what matters most
✔ Retirement Match Program - We invest in your future
✔ Hybrid Work Model - 2–3 days in office
✔ Maternity & Paternity Leave - Time for the moments that matter
✔ Paid Time Off - PTO + sick & casual leave
✔ Bereavement & Volunteer Time - Give back to your community
✔ Professional Development - Reimbursement program
✔ LinkedIn L&D Platform - Thousands of courses at your fingertips
✔ Mobile Phone Reimbursement - Stay connected, on us
Cyderes is an Equal Opportunity Employer (EOE). Qualified applicants are considered for employment without regard to race, religion, color, sex, age, disability, sexual orientation, genetic information, national origin, or veteran status.
Note: This job posting is intended for direct applicants only. We request that outside recruiters do not contact us regarding this position.