Must have the following in order to apply:
Bachelor's degree
in cybersecurity or computer science required, related field, or equivalent work experience
Three (3) years of security experience,with two (2)+ years of professional experience in conducting PAI/ business intelligence, investigative work, penetration testing, and vulnerability assessments or offensive cyber operations
Bilingual (English / Spanish) written and spoken
Ability to obtain Secret or higher security clearance; preference will be given to candidates with active Secret or higher security clearance
Preferred Qualifications:
Exposure to Open-Source Intelligence (OSINT) or publicly available information (PAI) research through coursework, internships, or professional experience
eJPT, eCPPT, PNPT, GPEN, OSCP, cRTO
Skills:
Knowledge of network protocols and security, operating systems security, firewalls, database infrastructure, scripting, and other network technologies and tools
Communication skills, capable of effectively conveying complex information to various stakeholders
Knowledge of open-source research methodologies, including source evaluation, data verification, and responsible use of publicly available information
Communication, presentation, and team building skills
Required Screenings:
Background Checks; Credit Checks.
Job Description:
The Junior Offensive Cyber Security Specialist supports cybersecurity assessments of organizational and third-party environments by evaluating technology architectures, infrastructure, applications, and security controls to identify vulnerabilities, assess risk, and support improvements to overall security posture. Performs cybersecurity activities such as vulnerability assessments, penetration testing, threat hunting, adversary emulation, security validation, and basic incident identification and analysis under the guidance of senior team members. Utilizes established tools, methodologies, and threat intelligence to identify potential threats, document findings, and contribute to the development of effective security recommendations. Supports senior cybersecurity personnel as a technical team member by assisting with risk assessments, technical reporting, briefings, and security recommendations for leadership, stakeholders, and vendors. Collaborates with team members and other organizational stakeholders to execute cybersecurity assessments, maintain established methodologies and procedures, and support the development of security improvements. Responsible for accurately documenting assessment results, communicating technical findings, completing assigned tasks, and contributing to the successful delivery of cybersecurity objectives within established contractual and organizational timelines.
Key Responsibilities (Principal Duties and Accountabilities *Essential Functions)
Support end-to-end security assessments of vendor and organizational environments, including data architecture, supporting technology stacks, and external-facing infrastructure, utilizing advanced analysis techniques, tools, tactics, and procedures (TTPs) derived from both publicly available and proprietary intelligence sources
Coordinate and participate in vendor and stakeholder engagements to evaluate security posture, including existing protocols, processes, mitigation strategies, and overall risk exposure, with particular attention to foreign infrastructure presence or dependencies
Perform cybersecurity activities such as threat hunting, adversary emulation, penetration testing, and vulnerability management, to assess system resilience, identify misconfigurations, and uncover exploitable weaknesses across networks, systems, and applications
Monitor internal and external environments for security anomalies, suspicious activity, and indicators of compromise; Assist with incident response and forensic analysis to determine rootcause, scope, and adversary TTPs using a broad technical skill set (e.g., networking, systems, malware analysis, and coding)
Research, analyze, and operationalize intelligence on emerging threats, vulnerabilities, exploits, and attack trends to proactively enhance organizational security posture and defensive capabilities
Support the development, implementation, and continuously improve threat detection, monitoring, and response capabilities, incorporating insights from threat intelligence and incident response activities to strengthen security controls and reduce risk exposure
Produce comprehensive technical reports, risk assessments, and executive-level briefings that clearly document findings, threat analyses, and actionable recommendations for remediation, mitigation, and strategic decision-making
Support senior cybersecurity personnel as a technical resource during stakeholder discussions, leadership briefings, and cross-functional initiatives involving cybersecurity, vulnerability management, security assessments, and risk management
Collaborate with internal teams to design, refine, and advance security methodologies, tools, and TTPs, contributing to the development and execution of long-term security initiatives
Assist in Identifying, assessing, and recommending mitigations to cybersecurity risks associated with business operations, ensuring risks are effectively measured, monitored, controlled, and aligned with organi