HimalayasHimalayas logo
VerSpriteVE

Sr. Offensive Security Consultant (Alpha Group)

VerSprite is a global cybersecurity consulting firm specializing in risk-based threat modeling (PASTA), penetration testing, and managed security services to help organizations protect critical assets and manage cyber risks effectively.

VerSprite

Employee count: 11-50

United States only

Stay safe on Himalayas

Never send money to companies. Jobs on Himalayas will never require payment from applicants.

VerSprite

VerSprite is an Inc. 5000 2020 fastest growing company and industry leader in PASTA threat modeling. Founded in 2007, VerSprite is a private cybersecurity consulting firm helping organizations tighten their risk-gaps with evolved security solutions and advanced threat intel tools.

VerSprite has a 97% client retention rate providing organizations with services like penetration tests, evolved red teaming engagements, vCISO, vSOC and VerSprite’s advanced security tools Cloud Security Assessment Platform and Cyber Threat Intelligence Portal.

Sr. Offensive Security Consultant (Alpha Group)

Location: Remote (U.S.) — Georgia preferred

This is a fully remote role. Candidates must be authorized to work in the United States. While remote, candidates located in Georgia or nearby states are strongly preferred to facilitate collaboration with internal teams and clients.

Overview

VerSprite is seeking an experienced Sr. Offensive Security Consultant to lead complex security assessments across modern enterprise environments.

This role focuses on advanced penetration testing and application security engagements while working closely with clients to identify real-world attack paths and security risks.

The ideal candidate combines strong technical expertise with consulting experience and the ability to clearly communicate security risk to both technical and executive audiences.

Responsibilities

· Lead penetration testing engagements across web applications, APIs, and enterprise infrastructure

· Perform advanced application security testing including business logic flaws and authentication weaknesses

· Conduct internal and external network penetration testing

· Lead Red Teaming engagements.

· Perform threat modeling exercises (e.g., PASTA methodology)

· Conduct cloud security assessments across AWS, Azure, and GCP

· Perform mobile application security testing (Android and iOS)

· Develop custom payloads and exploitation techniques

· Produce detailed technical reports including proof-of-concept exploitation scenarios

· Communicate technical findings and risk to client stakeholders

· Mentor junior consultants during engagements

· Contribute to internal research initiatives and security methodology improvements

Required Qualifications

· 7+ years of experience in offensive security or penetration testing

· Strong experience in web application, API penetration testing, external and internal network assessments. Experience testing Active Directory environments.

· Experience leading Red Teaming engagements.

· Strong experience writing penetration testing reports and technical documentation

· Ability to communicate security risks to technical and non-technical stakeholders

· Strong communication skills both written and spoken.

· Experience working in consulting or client-facing environments

Nice to Have

· Offensive security certifications such as OSCP, OSWE, OSEP, CRTO, or similar

· Experience performing hardware / product security testing.

· Public vulnerability disclosures

· Participation in bug bounty programs

· Security research publications or blog posts

· Contributions to open-source security tools

· Active participation in the security community (CTFs, conferences, etc.)

Benefits

We offer a competitive compensation package where you’ll be recognized for the value you bring to our business, along with:

  • Opportunities to develop new skills and progress your career;
  • The freedom and flexibility to handle your role in a way that’s right for you; and
  • A collaborative environment where everyone works together to create a better working world

If this seems intriguing to you, please apply! We will reach out promptly to discuss your fit and additional job details.

About the job

Apply before

Posted on

Job type

Full Time

Experience level

Experience

7 years minimum

Location requirements

Hiring timezones

United States +/- 0 hours

About VerSprite

Learn more about VerSprite and their company culture.

View company profile

At VerSprite, we are at the forefront of cybersecurity innovation, revolutionizing how organizations protect their critical assets and manage risk in an increasingly complex digital landscape. Founded in 2007 and headquartered in Atlanta, Georgia, VerSprite has established itself as a global leader in operational risk management, managed security, and advisory services. Our core philosophy centers on a proactive, risk-based approach, moving beyond traditional, reactive security measures. Through groundbreaking methodologies like the Process for Attack Simulation and Threat Analysis (PASTA), co-created by our CEO Tony UcedaVelez, we empower businesses to understand their unique threat landscapes and make informed, strategic security decisions. This innovative, attacker-centric perspective allows us to identify and prioritize potential security risks with unparalleled precision, ensuring that security investments deliver tangible value and align with overarching business objectives.

VerSprite's commitment to innovation extends to our comprehensive suite of services, which includes advanced threat modeling, penetration testing, virtual CISO (vCISO) and virtual Security Operations Center (vSOC) services, DevSecOps consulting, and cloud security assessments. We leverage cutting-edge technologies, including AI-driven solutions and advanced threat intelligence platforms, to provide our clients with real-time insights and robust defense mechanisms. Our team of seasoned cybersecurity professionals is dedicated to emulating cybercrime and simulating realistic test scenarios that reflect current and emerging attack patterns and threat motives. By integrating security seamlessly into the development lifecycle (DevSecOps) and offering tailored solutions for diverse industries such as Healthcare, FinTech, and Retail, VerSprite is not just a service provider but a trusted partner in navigating the evolving challenges of cybersecurity. We are passionate about helping organizations build resilient security postures, ensuring compliance, and fostering a culture where security and business objectives converge for sustained success.

Employee benefits

Learn about the employee benefits and perks provided at VerSprite.

View benefits

Referral Program

Referral Program

Retirement Plans

Retirement Plans

Wellness Stipend

Wellness Stipend

Education Stipend

Education Stipend

View VerSprite's employee benefits
Claim this profileVerSprite logoVE

VerSprite

View company profile

Similar remote jobs

Here are other jobs you might want to apply for.

View all remote jobs

Remote companies like VerSprite

Find your next opportunity by exploring profiles of companies that are similar to VerSprite. Compare culture, benefits, and job openings on Himalayas.

View all companies

Find your dream job

Sign up now and join over 100,000 remote workers who receive personalized job alerts, curated job matches, and more for free!

Sign up
Himalayas profile for an example user named Frankie Sullivan