1

Offensive Security Consultant Jobs (NOW HIRING)

This role will ensure offensive security services evolve from point-in-time testing toward a ... Experience managing third-party vendors/consultants supporting security delivery. Preferred ...

Mentor and develop managers, leads, and senior consultants * Influence hiring standards, interview ... Lead offensive security team members for Cyber Advisors, maximizing the efforts and satisfaction of ...

... consulting or managed services environment. * Domain Expertise : Hands-on background in offensive ... Elevated the quality and consistency of offensive security engagements across red team, application ...

The Offensive Security Supervisor bridges hands-on technical delivery with day-to-day team ... Serve as technical lead or QA reviewer on multi-consultant engagements * Review and approve ...

Offensive Security Engineer

Tempe, AZ ยท On-site

$100K - $120K/yr

The Offensive Security Engineer is a hybrid role combining hands-on penetration testing, adversary ... consulting capacity. * Passion and demonstrated experience for challenging security assumptions.

The Offensive Security Engineer is a hybrid role combining hands-on penetration testing, adversary ... consulting capacity. * Passion and demonstrated experience for challenging security assumptions.

Provide information security consultation to improve awareness and compliance with Enterprise ... Knowledge of offensive security, with the ability to think like an adversary when hunting and ...

Senior Security Consultant

Englewood, CO ยท Remote

$130K - $170K/yr

The Senior Security Consultant at DirectDefense will be a crucial member of our cybersecurity team ... Strong grasp of both offensive and defensive IT concepts, including common attack vectors and ...

Senior Security Consultant

Centennial, CO ยท Remote

$130K - $170K/yr

The Senior Security Consultant at DirectDefense will be a crucial member of our cybersecurity team ... Strong grasp of both offensive and defensive IT concepts, including common attack vectors and ...

Senior Security Consultant

Englewood, CO ยท On-site +1

$130K - $170K/yr

The Senior Security Consultant at DirectDefense will be a crucial member of our cybersecurity team ... Strong grasp of both offensive and defensive IT concepts, including common attack vectors and ...

It is used by ITOps/SecOps teams, consulting pentesters, and MSSPs and MSPs. We are a fusion of ... Summary We're looking for a Webapp Offensive Security Engineer with deep, hands-on web application ...

New

next page

Showing results 1-20

Offensive Security Consultant information

See salary details

$10

$50

$108

How much do offensive security consultant jobs pay per hour?

As of Jun 13, 2026, the average hourly pay for offensive security consultant in the United States is $50.91, according to ZipRecruiter salary data. Most workers in this role earn between $24.76 and $63.70 per hour, depending on experience, location, and employer.

How does an Offensive Security Consultant typically collaborate with clients and internal teams during a penetration testing engagement?

An Offensive Security Consultant works closely with both clients and internal security teams throughout a penetration testing engagement. At the outset, they meet with clients to define the scope, objectives, and rules of engagement. During the assessment, consultants maintain clear communication to share progress updates and any critical findings that require immediate attention. After the test, they collaborate with internal report reviewers and the client's technical team to present findings, answer questions, and recommend practical remediation steps. This collaborative approach ensures transparency, client trust, and actionable security improvements.

What does an Offensive Security Consultant do?

An Offensive Security Consultant is a cybersecurity professional who specializes in identifying and exploiting vulnerabilities in computer systems, networks, and applications. Their work involves conducting penetration tests, simulating cyberattacks, and providing detailed reports on security weaknesses and how to fix them. By proactively testing security defenses, they help organizations strengthen their overall security posture and protect sensitive data from real-world threats. Offensive Security Consultants often use a variety of tools and techniques to mimic the tactics of malicious hackers, but their goal is to improve, not harm, the client's security.

What is the difference between Offensive Security Consultant vs Penetration Tester?

AspectOffensive Security ConsultantPenetration Tester
CertificationsOSCP, OSWE, CEHOSCP, CEH, GPEN
Work EnvironmentConsulting projects, client sites, security assessmentsSecurity testing, vulnerability assessments, simulated attacks
Employer & Industry UsageSecurity firms, corporate security teams, consulting agenciesSecurity firms, internal security teams, freelance roles

While both roles focus on identifying security vulnerabilities, an Offensive Security Consultant often provides strategic advice and comprehensive security solutions for clients, whereas a Penetration Tester primarily conducts hands-on testing to find specific vulnerabilities. The roles overlap in certifications and work environments, but the Consultant role emphasizes broader security consulting and client interaction.

What are the key skills and qualifications needed to thrive as an Offensive Security Consultant, and why are they important?

To thrive as an Offensive Security Consultant, you need a deep knowledge of penetration testing, vulnerability assessment, and network security, typically supported by a degree in computer science or a related field. Familiarity with tools like Metasploit, Burp Suite, Nmap, and certifications such as OSCP or CEH are highly valued. Strong analytical thinking, effective communication, and problem-solving abilities help you translate technical findings into actionable recommendations for clients. These skills are crucial for identifying security weaknesses and helping organizations defend against cyber threats.
More about Offensive Security Consultant jobs
Infographic showing various Offensive Security Consultant job openings in the United States as of June 2026, with employment types broken down into 33% Full Time, and 67% Contract. Highlights an 67% In-person, and 33% Remote job distribution, with an average salary of $105,890 per year, or $50.9 per hour.

Application Offensive Security Consultant

Humetis Group

Jersey City, NJ โ€ข On-site

Contractor

Posted 6 days ago


Job description

Job Title: Application Offensive Security Consultant
Location: Jersey City, NJ
Duration: 6 Months Contract-to-Hire


Position Overview:

We are seeking an experienced Application Offensive Security Consultant to join our Application Security team as part of a broader Technology Risk initiative. This role will focus on manual application security testing and red teaming, going beyond standard vulnerability scanning.

We're looking for a hands-on practitioner with 5โ€“6 years of consistent experience in application securityโ€”someone who enjoys breaking applications, participating in Capture The Flag (CTF) challenges, and uncovering real-world vulnerabilities. Certifications are not required, but demonstrated skill and curiosity are essential.


Key Responsibilities:
  • Perform offensive security testing of applications and APIs.

  • Conduct manual application security assessments (beyond automated scans).

  • Threat hunt across applications to identify risk exposures.

  • Document findings clearly in predefined reporting formats.

  • Collaborate with security architects, risk managers, and engineering teams.

  • Provide subject matter expertise on application security issues.

  • Support continuous improvement of application defense strategies.


Qualifications:

Must-Have:

  • 6+ years of experience testing web applications.

  • 4+ years of hands-on experience using tools like Burp Suite and OWASP ZAP.

  • Strong knowledge of OWASP Top 10, with the ability to manually identify vulnerabilities.

  • Understanding of MITRE ATT&CK framework and adversarial methodologies.

  • Ability to write clear, actionable assessment reports.

  • Bachelorโ€™s degree or equivalent work experience.

Nice-to-Have:

  • Certifications in offensive security (e.g., OSCP, GXPN, etc.)

  • Participation in CTFs or platforms like HackTheBox, TryHackMe, etc.

  • Completion of advanced red teaming/penetration testing training.

  • Strong multitasking skills and ability to thrive under pressure.


This is an excellent opportunity for a passionate security professional who enjoys working on high-impact projects and continuously honing their craft in offensive application security.