Job Description
At EY, we’re all in to shape your future with confidence.
We’ll help you succeed in a globally connected powerhouse of diverse teams and take your career wherever you want it to go.
Join EY and help to build a better working world.
The opportunity
We are looking for experienced penetration testers and red teamers who want to work on complex, realistic attack scenarios, continuously develop their technical expertise, and help shape the future of offensive security.
EY Cyber is expanding its Offensive Security practice across the Nordics and is looking for talented professionals at Senior Consultant to Senior Manager level. Whether your passion lies in advanced penetration testing, Active Directory security, cloud security, adversary emulation or red teaming, we offer an environment where you can deepen your expertise while working alongside some of the most experienced cybersecurity professionals in the region.
You will work with leading organisations across the Nordics, helping them understand how real-world attackers operate and where their most critical security weaknesses lie.
From targeted technical assessments to large-scale red team and purple team exercises, you will be challenged by complex environments where understanding attack paths, detection capabilities and business impact is essential.
This is an excellent opportunity for someone who wants to combine technical depth with client interaction, mentorship and continuous professional development.
About our Offensive Security practice
Our Offensive Security team helps organisations test and strengthen their security posture through realistic, threat-informed security assessments.
Our services include:
Advanced penetration testing
Red Team engagements
Purple Team exercises
Adversary emulation
Cloud security assessments
Active Directory security assessments
Application and API testing
Attack path and exposure analysis
We work across hybrid enterprise environments, cloud-native platforms, modern applications and business-critical infrastructure, helping organisations understand and reduce their real-world exposure to cyber threats.
As part of the team, you will have the opportunity to work across multiple domains or specialise in areas where you have particular interest and expertise.
Your key responsibilities
As a Senior Penetration Tester / Red Teamer, you will:
Lead and deliver advanced penetration testing, red team and purple team engagements
Perform technical security assessments of Active Directory, cloud, application and infrastructure environments
Simulate realistic attack scenarios and identify exploitable attack paths
Validate vulnerabilities and security weaknesses through hands-on testing
Develop clear, actionable reports and recommendations for clients
Present findings to technical teams, security stakeholders and management
Leverage AI and automation to improve efficiency, coverage and quality of testing activities
Contribute to the development of methodologies, tooling and offensive security capabilities
Mentor and support less experienced colleagues and help strengthen the wider team
You will have significant freedom to shape how you work, develop your areas of expertise and contribute to the evolution of our offensive security services.
Skills and attributes for success
We are looking for professionals who combine technical depth with curiosity, creativity and a genuine passion for offensive security.
Ideally, you bring:
Strong hands-on experience in penetration testing, red teaming or offensive security
Experience leading engagements or taking ownership of complex technical workstreams
Practical expertise across Active Directory, web applications, APIs, cloud platforms or infrastructure security
Deep understanding of attack methodology, privilege escalation, lateral movement and post-exploitation techniques
Experience communicating technical findings to both technical and non-technical audiences
Relevant certifications such as OSCP, OSEP, CRTP, CRTE, CARTP or equivalent
Experience developing tools, conducting research, publishing technical content, participating in CTFs or contributing to the security community
A strong technical drive and curiosity for emerging attack techniques and security trends
Experience using scripting, automation and AI-assisted workflows to improve offensive security activities
Excellent communication skills in English
Regardless of your specialisation, we value people who take ownership, care about quality and continuously strive to improve their craft.
Why EY?
At EY, offensive security is part of a broader cybersecurity ecosystem spanning cloud security, identity, resilience, cyber strategy, managed services and security transformation.
This enables us to offer:
Access to complex real-world environments across multiple industries
Opportunities to collaborate with experts across a wide range of cybersecurity disciplines
Strong Nordic collaboration and knowledge sharing across borders
Exposure to global offensive security expertise and methodologies
Freedom to specialise and develop deep technical expertise
Opportunities to influence how AI and automation are integrated into offensive security delivery
Our culture combines strong technical ambitions with collaboration, trust and continuous learning.
What we offer
We offer:
Advanced offensive security engagements across the Nordics
Opportunities to work on complex cloud, Active Directory and red team scenarios
A highly skilled and collaborative technical community
Freedom to specialise in the areas you are most passionate about
Dedicated focus on technical growth and professional development
Flexibility and trust in how you organise your work
Access to global experts, training opportunities and international collaboration
Clear career paths from Senior Consultant through to leadership roles
Whether your ambition is to become a recognised technical specialist, a Red Team lead, or a future practice leader, EY offers a platform to help you get there.
Are you ready to “Shape your future with confidence”?
Apply today, no later than 4.11.2026.
At EY, we value diversity and encourage applications from people of all backgrounds. If you have questions, need support or require adjustments to the recruitment process due to a disability, please do not hesitate to contact us at [email protected]. We are here to support you.
Does this sound interesting?
We receive all applications electronically through our application portal. Please upload your CV, a cover letter explaining why you are applying and what motivates you for the role, and diplomas and transcripts from higher education.
EY | Building a better working world
EY is building a better working world by creating new value for clients, people, society and the planet, while building trust in capital markets.
Enabled by data, AI and advanced technology, EY teams help clients shape the future with confidence and develop answers for the most pressing issues of today and tomorrow.
EY teams work across a full spectrum of services in assurance, consulting, tax, strategy and transactions. Fueled by sector insights, a globally connected, multi-disciplinary network and diverse ecosystem partners, EY teams can provide services in more than 150 countries and territories.
More Information
Application Details
- Organization DetailsErnst & Young


Recommended Comments
There are no comments to display.
Join the conversation
You are posting as a guest. If you have an account, sign in now to post with your account.
Note: Your post will require moderator approval before it will be visible.