Setting the Scene
Our client is an Australian-based boutique cybersecurity advisory firm specialising in offensive security, penetration testing, red teaming and security research. They work with enterprise organisations globally, helping clients understand real world cyber threats, assess their security posture and develop practical strategies to strengthen their defences. With a team of highly experienced offensive security professionals, the organisation works on challenging engagements across diverse environments and industries. Their approach is built around an attacker mindset, technical depth and the ability to solve complex security challenges rather than simply following standardised testing processes. Due to continued growth, they are seeking an experienced Senior Penetration Tester / Red Teamer to join their team.
The Role
This role is ideal for an experienced penetration tester or red teamer who is passionate about offensive security and wants to work on technically challenging engagements.
You will conduct comprehensive penetration testing and red team engagements, working across varied client environments to identify vulnerabilities, understand attack paths and assess the effectiveness of security controls. The role also provides the opportunity to develop beyond traditional penetration testing, with exposure to advanced red teaming, adversary simulation, offensive security research, automation and the development of new offensive techniques and tooling. You will work closely with experienced offensive security professionals and directly with clients, providing technical guidance and practical remediation advice.
Key responsibilities:
- Lead and participate in Red Team engagements, simulating real-world attackers across complex environments
- Conduct penetration testing across systems, networks and technology environments
- Identify, exploit, document and communicate technical vulnerabilities
- Develop and present practical remediation strategies based on technical findings and client requirements
- Analyse attack paths and security controls from an end-to-end attacker perspective
- Research and develop new offensive cyber techniques and security control bypasses
- Contribute to offensive security tooling, automation and internal research
- Assess security controls, technologies and processes to identify weaknesses
- Stay current with emerging threats, offensive security methodologies and industry developments
- Work directly with clients and stakeholders to communicate technical findings and security recommendations
- Present complex technical concepts to both technical and non-technical audiences
- Contribute to a collaborative culture of technical learning and knowledge sharing
What you'll bring - 3+ years of experience in penetration testing and/or red team engagements
- University degree highly regarded (cyber security, computer science, mathematics, physics, engineering, IT)
- Strong technical understanding of offensive security methodologies and attack paths
- Experience working across diverse technologies, environments and industries
- Strong networking and operating system fundamentals
- Scripting or programming capability, with Python, PowerShell or Bash highly regarded
- Ability to think beyond individual vulnerabilities and understand broader attack paths
- Strong problem solving skills and the ability to adapt to unfamiliar environments
- Experience developing or contributing to automation, scripts or offensive security tooling
- Strong communication and presentation skills
- Experience working directly with clients or stakeholders in a consulting environment
- A genuine passion for offensive security, security research and continuous technical development
- Ability to work independently while collaborating effectively with a highly technical team
What’s in it for you? - Join a highly technical boutique cybersecurity consultancy focused on offensive security
- Work alongside experienced Senior and Principal offensive security professionals
- Exposure to complex and diverse penetration testing and red team engagements
- Opportunity to develop into areas such as advanced red teaming, adversary simulation and security research
- No utilisation targets, allowing you to develop your expertise in the areas of offensive security you're most passionate about
- Sydney CBD location (remote options considered)
- Hybrid working model- 3 days per week in the office and 2 days from home
- Performance-based annual bonus scheme
- Monthly coffee and meal allowance
- Quarterly team activities
- Birthday work-free day + gift
- Flexible public holiday arrangements
- Learning and professional development opportunities
- Opportunity to contribute to offensive security research and internal tooling
- Collaborative culture focused on technical excellence, learning and innovation
How to apply Applications are treated with absolute confidentiality. Click
APPLY or contact
Clodagh at clodagh@decipherbureau.com for an informal conversation about your next career move. Equal opportunity and diversity are a priority. We encourage applicants from all backgrounds to apply.