Offensive Security Technical Lead

CACI International Inc·Remote, Oregon·Posted 4d ago·via Talent.com

RegionUSA
Apply Now

Job description

Job Description: - Own technical delivery across penetration-testing and red-team workstreams

  • Provide continuous technical assessment support for proactive testing of externally and internally visible federal cyber assets
  • Conduct continual assessments of .gov domains, subdomains, and internet-facing assets
  • Uncover unknown exposures, validate vulnerabilities, and provide actionable remediation guidance
  • Establish methodology, approve complex plans and rules of engagement, govern technical risk, allocate specialized expertise, resolve escalations, and accept final technical deliverables
  • Serve as senior technical authority for penetration testing and red-team delivery across the RFS portfolio
  • Maintain alignment among customer objectives, authorization, safety, methodology, staffing, and deliverables
  • Define and mature assessment standards, rules-of-engagement patterns, technical review gates, evidence requirements, severity methodology, reporting expectations, and reusable playbooks
  • Review and approve engagement plans, adversary scenarios, infrastructure designs, tooling exceptions, exploitation approaches, data-handling controls, and high-risk technical actions
  • Lead, guide, assign specialties, mentor staff, conduct technical readiness reviews, and resolve complex cross-domain problems
  • Provide hands-on support for network, application, Active Directory/identity, cloud, exploit-development, adversary-infrastructure, and defense-evasion challenges
  • Own final technical quality and acceptance for assessment reports, attack-path narratives, severity decisions, remediation recommendations, customer out-briefs, and purple-team scenarios
  • Lead technical customer discussions and communicate mission and business risk
  • Coordinate with project management on schedule, staffing, dependencies, and issue escalation without assuming administrative PM ownership
  • Capture lessons learned, measure technical quality and repeatability, and evolve the capability as customer processes and tools become known
  • Support the CDM Program mission to safeguard and secure cyberspace and strengthen the security posture of U.S. Government networks

Requirements: - U.S. citizenship is required

  • No security clearance is required to begin employment
  • Must meet eligibility requirements for access to sensitive or classified information and obtain a Department of Homeland Security Entrance on Duty (DHS EOD) authorization
  • Ability to work in customer-provided remote environments, use customer-approved tools, and comply with rules of engagement, data-handling requirements, evidence controls, deconfliction procedures, and stop-work criteria
  • Eight or more years of progressively responsible offensive-security experience, including significant hands-on penetration testing and red-team/adversary-emulation delivery
  • Five or more years leading complex technical engagements, multiple concurrent assessments, or senior offensive-security teams
  • Expert ability to scope and govern safe testing across enterprise networks, applications/APIs, Windows/Active Directory and identity, Linux, AWS/Azure, external attack surfaces, and production environments
  • Demonstrated technical authority in rules of engagement, operational risk, deconfliction, exploit validation, evidence quality, severity decisions, report acceptance, and customer out-briefing
  • Strong scripting, automation, or tool-development capability and judgment to approve or reject high-risk technical methods
  • One or more advanced hands-on certifications such as OSEP/OSCE, OSWE, GXPN, GPEN, OSED/OSEE, CRTO/CRTL, or equivalent expert-level experience
  • Travel up to 25% in Continental US
  • Desired: Twelve or more years across offensive security, security research, adversary emulation, or technical-assessment leadership
  • Desired experience leading CISA, DHS, federal high-value-asset, critical-infrastructure, ICS/OT, or similarly sensitive assessment programs
  • Desired experience maturing an offensive-security program, establishing quality metrics, developing training, or building repeatable technical delivery standards
  • Desired advanced cloud, identity, exploit-development, malware/payload, detection-engineering, or purple-team expertise
  • Desired ability to brief senior government leadership and translate technical attack paths into operational and mission risk

Benefits: - Flexible time off benefit

  • Robust learning resources
  • Healthcare benefits
  • Wellness benefits
  • Financial benefits
  • Retirement benefits
  • Family support benefits
  • Continuing education benefits
  • Time off benefits
  • Competitive compensation
  • Learning and development opportunities

first seen 2026-08-21 01:30:01 · last verified 2026-08-21 13:30:01


pentestcareers.com // breach the job market

Offensive Security Technical Lead at CACI International Inc | Pentest Careers