Offensive Security Technical Lead
RegionUSA
Job description
Job Description: - Own technical delivery across penetration-testing and red-team workstreams
- Provide continuous technical assessment support for proactive testing of externally and internally visible federal cyber assets
- Conduct continual assessments of .gov domains, subdomains, and internet-facing assets
- Uncover unknown exposures, validate vulnerabilities, and provide actionable remediation guidance
- Establish methodology, approve complex plans and rules of engagement, govern technical risk, allocate specialized expertise, resolve escalations, and accept final technical deliverables
- Serve as senior technical authority for penetration testing and red-team delivery across the RFS portfolio
- Maintain alignment among customer objectives, authorization, safety, methodology, staffing, and deliverables
- Define and mature assessment standards, rules-of-engagement patterns, technical review gates, evidence requirements, severity methodology, reporting expectations, and reusable playbooks
- Review and approve engagement plans, adversary scenarios, infrastructure designs, tooling exceptions, exploitation approaches, data-handling controls, and high-risk technical actions
- Lead, guide, assign specialties, mentor staff, conduct technical readiness reviews, and resolve complex cross-domain problems
- Provide hands-on support for network, application, Active Directory/identity, cloud, exploit-development, adversary-infrastructure, and defense-evasion challenges
- Own final technical quality and acceptance for assessment reports, attack-path narratives, severity decisions, remediation recommendations, customer out-briefs, and purple-team scenarios
- Lead technical customer discussions and communicate mission and business risk
- Coordinate with project management on schedule, staffing, dependencies, and issue escalation without assuming administrative PM ownership
- Capture lessons learned, measure technical quality and repeatability, and evolve the capability as customer processes and tools become known
- Support the CDM Program mission to safeguard and secure cyberspace and strengthen the security posture of U.S. Government networks
Requirements: - U.S. citizenship is required
- No security clearance is required to begin employment
- Must meet eligibility requirements for access to sensitive or classified information and obtain a Department of Homeland Security Entrance on Duty (DHS EOD) authorization
- Ability to work in customer-provided remote environments, use customer-approved tools, and comply with rules of engagement, data-handling requirements, evidence controls, deconfliction procedures, and stop-work criteria
- Eight or more years of progressively responsible offensive-security experience, including significant hands-on penetration testing and red-team/adversary-emulation delivery
- Five or more years leading complex technical engagements, multiple concurrent assessments, or senior offensive-security teams
- Expert ability to scope and govern safe testing across enterprise networks, applications/APIs, Windows/Active Directory and identity, Linux, AWS/Azure, external attack surfaces, and production environments
- Demonstrated technical authority in rules of engagement, operational risk, deconfliction, exploit validation, evidence quality, severity decisions, report acceptance, and customer out-briefing
- Strong scripting, automation, or tool-development capability and judgment to approve or reject high-risk technical methods
- One or more advanced hands-on certifications such as OSEP/OSCE, OSWE, GXPN, GPEN, OSED/OSEE, CRTO/CRTL, or equivalent expert-level experience
- Travel up to 25% in Continental US
- Desired: Twelve or more years across offensive security, security research, adversary emulation, or technical-assessment leadership
- Desired experience leading CISA, DHS, federal high-value-asset, critical-infrastructure, ICS/OT, or similarly sensitive assessment programs
- Desired experience maturing an offensive-security program, establishing quality metrics, developing training, or building repeatable technical delivery standards
- Desired advanced cloud, identity, exploit-development, malware/payload, detection-engineering, or purple-team expertise
- Desired ability to brief senior government leadership and translate technical attack paths into operational and mission risk
Benefits: - Flexible time off benefit
- Robust learning resources
- Healthcare benefits
- Wellness benefits
- Financial benefits
- Retirement benefits
- Family support benefits
- Continuing education benefits
- Time off benefits
- Competitive compensation
- Learning and development opportunities
first seen 2026-08-21 01:30:01 · last verified 2026-08-21 13:30:01
pentestcareers.com // breach the job market