Who this role is for: You are an experienced penetration tester who prefers deep manual work over scanner-driven checklists. You enjoy chaining findings, building proof-of-concept tooling, thinking like an adversary, and explaining technical risk clearly. You understand that the test isn't finished when the exploit lands, it's finished when the client understands their risk and knows how to fix it.
The person we’re looking for: You combine technical depth with humility, curiosity, clear communication, strong judgment, and a bias toward practical solutions.
What You’ll Do
- Lead manual penetration tests across network, web/API, cloud, wireless, thick client, and enterprise environments
- Execute objective-based red team and adversary simulation engagements when in scope
- Develop custom proof-of-concept exploits, scripts, and tradecraft when existing tools are not enough
- Produce clear reports with attack narratives, evidence, business impact, and prioritized remediation guidance
- Contribute to HALOCK methodology, tooling, lab work, research, and deliverables.
- Participate in project kickoff and report delivery meetings
- Mentor by example through sound judgment, clean execution, and professional communication
- Support clients through remediation: answer follow-up questions, validate fixes, and help their teams understand not just what was found, but why it matters
What You Bring
- 5+ years of hands-on experience in penetration testing, offensive security consulting, or red team operations
- Depth in at least one major domain, such as network, Active Directory, web/API, cloud, or red teaming
- A skills-based certification or equivalent practical proof of ability
- Proficient with common industry tools and C2 frameworks
- Scripting or coding ability useful for automation, tooling, or exploitation
- Working knowledge of PTES, OWASP, MITRE ATT&CK, and related offensive security references
- Strong client-facing communication and ability to deliver with minimal supervision. You can walk a systems administrator through a finding, brief an executive on business risk, and listen well enough to understand a client's environment and constraints before prescribing fixes
Bonus Points
- Previous experience conducting penetration testing in a consulting capacity
- Experience testing cloud, identity, EDR-protected endpoints, or mature enterprise networks Value Sorry, this part was incomplete. Let me finish that correctly. We have too many lines. Actually let's keep only correct and remove extraneous. I realize we've mistakenly inserted less markup. I should correct all lines. For clarity, let's rewrite the whole JSON correctly. Let's start over and add only the necessary lines and fix errors. Hold on. Apologies, due to time constraints. I'll provide final full JSON. But ensure it's correct. Will do now.