Share this Job
Job Req ID:  11413

Job Title:  Offensive Security Sr. Consultant

All Covered, IT Services Division of Konica Minolta Business Solutions (KMBS), is the leading national IT services company serving SMB to enterprise markets. Offering a wide variety of career opportunities, All Covered is an excellent choice for motivated IT professionals interested in a stimulating and progressive work environment.

With over 1,000 employees across the U.S. and Canada, All Covered has a highly skilled team of professionals focusing on superior quality service delivery to our customers. We offer hands-on technical training on the most relevant technologies in the industry and career path advancement in all levels of the company.

Please join us in our exciting growth and pursue a rewarding career with All Covered!

Position Objective

The primary role of a Senior Offensive Security Consultant at Depth Security is to perform multidisciplinary assessment services as needed. Examples include Application Security Assessments against web apps, mobile apps, web services, and fat-client applications. Proficiency in delivering Network Vulnerability and Penetration Assessments both externally and internally against wired and wireless targets is also required. Senior Security Consultants can assess external, internal, wired, and wireless networks. Social engineering assessments, both phishing-based and physical, may also be required occasionally. Senior Security Consultants must demonstrate the highest skill levels and help set acceptable assessment standards for the Company.

Essential Job Functions

•    Deliver Application Penetration Tests against web apps, mobile apps, web services, and fat-clients

•    Deliver External, Internal, and Wireless Vulnerability and Penetration Tests

•    Deliver phishing-based and physical Social Engineering Assessments

•    Communicate with customers in a friendly manner, quickly and clearly, and with great accuracy during:

     o    Kickoff and scoping calls

     o    Assessment status updates and ongoing project communication

     o    Report delivery

     o    Wrap-up meetings

•    Assist in enhancing various company methodologies

•    Mentor Security Consultants and assist in their efforts to develop areas of expertise

•    Demonstrate the highest level of offensive skills, pre and post-exploitation

•    Demonstrate excellent writing skills both during email correspondence and report creation

•    Prioritize findings based on perceived risk, using existing knowledge of clients’ business to ascertain finding severity

•    Lead by example in behavior, work ethic, and punctuality

•    Interpret and obey any applicable customer testing restrictions based on scope and kickoff calls

•    Utilize non-billable time to work on company-directed internal projects

•    Contribute to company methodology and vulnerability repositories

•    Contribute to company blog and to company image via speaking engagements

     o    Use Scanner in an appropriate manner to automatically find flaws.

     o    Quickly eliminate false positive based on intuition and response content

•    Burp Extender contributor

•    Github

•    Kali Ninja

•    Metasploit Expert

•    Scripting skills: Whatever gets the job done

Competencies (Knowledge, Skills and Abilities)

•    Demonstrates knowledge of all classes of vulnerabilities and exploits

•    Possess more blue-team knowledge

•    Should have numerous public vulns/exploits/bug bounty write-ups

•    Identifies vulnerabilities and discloses on public software on an ongoing basis

•    Writes exploits from scratch if necessary

•    BurpSuite Expert

     o    Ability to write BurpSuite Extender plugins

     o    Ability to configure working login macros

     o    Use Repeater and Intruder to manually find flaws.

Experience, Educational Reqts and Certifications

•    5+ years’ full-time penetration testing experience

•    Possess longer-term, multi-disciplinary, expert-level IT skills including sysadmin, infrastructure, net-engineering, software development, and security-engineer experience

•    Applicants with common industry certifications such as OSCP, OSCE, SANS, CREST, and etc. will be preferred.

Konica Minolta Offers: 

  • Outstanding benefits package (including medical, dental, vision, life insurance)
  • 401(k) plan with matching company contribution
  • Generous holiday and paid time off schedules
  • Ongoing professional development training
  • Visible, exciting work supporting sales of cutting edge technology and workflow solutions.

Konica Minolta is an equal opportunity and affirmative action employer. We consider all qualified applicants for employment without regard to race, color, religion, creed, national origin, sex, pregnancy, age, sexual orientation, transgender status, gender identity, disability, alienage or citizenship status, marital status or partnership status, genetic information, veteran status or any other characteristic protected under applicable law.

Nearest Major Market: Kansas City