Jump to content

Offensive Security Consultant | ErnstYoung Job


 Share

Job Opportunity Details

Type

Full Time

Salary

Not Telling

Work from home

No

Weekly Working Hours

Not Telling

Positions

Not Telling

Working Location

Tel Aviv, Tel Aviv, Tel Aviv, 6706703, Israel   [ View map ]

Job Description

Offensive Security Consultant, responsible for performing hands-on penetration tests and offensive security assessments for local and global clients.

The role includes a broad range of assessments, including white, grey, and black box testing across infrastructure, applications, and other relevant technology environments.

Educating clients on inherent security risks, providing meaningful hardening and mitigation strategies, and supporting engagements with local and global clients through clear communication, technical leadership, and high-quality deliverables.

 

 

Responsibilities:

  • Perform hands-on offensive security assessments across a wide range of technologies and engagement types, including Red Team, Purple Team, external and internal network testing, web and mobile applications, thick client applications, web3 environments, and additional offensive security domains.
  • Deliver end-to-end penetration testing engagements, including preparation, execution, documentation of findings, risk-based recommendations, and professional client-facing reporting.
  • Collaborate with client technical teams to validate security gaps, explain findings clearly, support remediation discussions, and ensure practical, business-relevant security improvements.
  • Participate in client meetings throughout the engagement lifecycle, including kickoff, scoping, technical walkthroughs, and final report presentation.

 

Requirements:

  • At least 3 years hands-on experience in infrastructure, networking, systems administration, IT operations, or related technical infrastructure domains – Must.
  • At least 1 year hands-on experience in Offensive Security, including application and/or infrastructure penetration testing – Must.
  • Hands-on experience identifying and exploiting common security vulnerabilities across applications and infrastructure, such as SQL Injection, Cross-Site Scripting, authentication and authorization weaknesses, misconfigurations, insecure services, and other relevant attack vectors – Must.
  • Experience with common penetration testing tools, including Burp Suite, Kali Linux, Nmap, Metasploit, Nessus, and Wireshark, and similar offensive security tools – Must.
  • Good written and verbal communication skills, with the ability to document technical findings clearly, write professional assessment reports, and present risks and recommendations to technical and non-technical stakeholders – Must.
  • Self-motivated, responsible, and able to manage assigned testing activities independently while working effectively as part of a consulting team – Must.
  • Familiarity with offensive security methodologies and frameworks such as OWASP, PTES, MITRE ATT&CK, or similar references – Significant Advantage.
  • Strong understanding of TCP/IP, networking concepts, common ports and protocols, and how they are assessed during infrastructure and network penetration tests – Significant Advantage.
  • Hands-on familiarity with Active Directory environments, Windows domains, authentication flows, privilege escalation paths, and common enterprise misconfigurations – Significant Advantage.
  • Proven experience in infrastructure penetration testing, including internal and external network assessments – Significant Advantage.
  • Relevant professional certifications from a recognized offensive security institute – Significant Advantage.
  • Familiarity with public cloud environments such as Microsoft Azure, AWS, or Google Cloud Platform, including identity, permissions, exposed services, and common cloud misconfigurations – Significant Advantage.
  • Ability to conduct source code reviews, database security assessments, or additional specialized security testing activities – Advantage.

 


More Information

Application Details

  • Organization Details
    Ernst & Young
 Share


User Feedback

Recommended Comments

There are no comments to display.

Join the conversation

You are posting as a guest. If you have an account, sign in now to post with your account.
Note: Your post will require moderator approval before it will be visible.

Guest
Add a comment...

×  Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×  Your link has been automatically embedded.   Display as a link instead

×  Your previous content has been restored.   Clear editor

×  You cannot paste images directly. Upload or insert images from URL.

Loading...
×
×
  • Create New...