Offensive Security Senior Consultant

Crowe LLP
Grand Rapids, MI, United States
16 days ago
Apply on jobs.mitalent.org
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
2 years minimum
Compensation
$70,000.0 - $90,000.0
Working hours
Regular working hours

Tech stack

Microsoft Windows Artificial Intelligence Software System Penetration Testing Burp Suite Cyber Security Information Systems Computer Programming Databases Linux Internet Security Intrusion Detection and Prevention OSI Models
+9 more
Nmap Oracle (Applications) Phishing SQL Databases Software Vulnerability Management IT General Controls (ITGC) Information Technology Metasploit Blue Team (Cyber Security)

Job description

What It Means to Be a Consultant at Crowe Consulting is a dynamic business focused on solving problems for our clients and serving our core markets through innovative solutions. As technology and AI continue to reshape the consulting landscape, we are looking for individuals who are curious, adaptable, and eager to learn. At Crowe, consultants are expected to build both technical and transferable skills, think critically, and use technology to solve real business problems. In this role, you will continuously learn, collaborate across teams, and explore how tools, including emerging AI capabilities, can improve efficiency, insights, and client outcomes.

As you grow, you’ll also begin to take ownership of client relationships, contribute to account strategy, and support the delivery of high-impact work. Developing a sense of account leadership, including understanding client needs, ensuring delivery excellence, and building trusted partnerships, is part of what sets successful consultants apart.

Success in this role comes from a growth mindset, strong communication skills, advanced critical thinking, and the ability to navigate new challenges with confidence.

As an Offensive Security Senior Consultant, focusing on Offensive Security, you will help organizations navigate an evolving threat landscape and a complex regulatory environment by delivering high-value, practical cybersecurity and risk solutions. You will work with our Cybersecurity team to perform advanced Offensive Security engagements to clients in a variety of industries. This role is ideal for professionals who thrive in a fast-paced consulting environment, enjoy solving complex problems, and are passionate about delivering results that protect and enable business success.

Key Responsibilities: Lead or support Offensive Security engagements including: Internal and external network penetration testing Web application penetration testing Wireless penetration testing Social engineering (phishing, telephone, onsite) Red teaming/Threat emulation Purple teaming Evaluate and test IT controls, application controls, security configurations, and interface/integration security. Provide practical recommendations for vulnerability remediation. Conduct cybersecurity assessments across a variety of standards/frameworks (NIST CSF, NIST 800.53, CIS, integrated control frameworks, etc.)Present findings and recommendations to stakeholders, including IT, Information Security, C-suite and board-level leadership, through clear, concise written and verbal communication. Serve as an extension of client teams to lead or support program execution activities, including control implementation, metrics/reporting, issue remediation, and continuous improvement initiatives. Mentor and supervise junior consultants; contribute to team development and internal knowledge-sharing. Participate in practice development, including service line/methodology innovation and thought leadership.

Requirements

Bachelor’s degree in information systems, Computer Science, Cybersecurity, Engineering, or related field. 2+ years of experience in cybersecurity, offensive security, or related consulting or industry roles. Deep working knowledge of operating systems (Windows, Linux/Unix) and databases (SQL, Oracle, etc.). Working knowledge of networks and the seven layer OSI model. Proficiency with common offensive security tools and frameworks (e.g., Metasploit, Burp Suite, BloodHound, Nmap, etc.). Detection engineering or blue team operations knowledge including evasion techniques Strong scripting or programming skills. Experience with or curiosity about AI and automation tools in cybersecurity, including secure implementation practices and risk assessments.

Preferred Qualifications: Progress toward or possession of certifications such as CISSP,OSCP, OSCE, or similar Strong project management, critical thinking, and interpersonal skills. Excellent communication and technical writing skills, with the ability to tailor messages to both technical and executive audiences.

About the company

At Crowe, you can build a meaningful and rewarding career. With real flexibility to balance work with life moments, you’re trusted to deliver results and make an impact. We embrace you for who you are, care for your well-being, and nurture your career. Everyone has equitable access to opportunities for career growth and leadership. Over our 80-year history, delivering excellent service through innovation has been a core part of our DNA across our audit, tax, and consulting groups. That’s why we continuously invest in innovative ideas, such as AI-enabled insights and technology-powered solutions, to enhance our services. Join us at Crowe and embark on a career where you can help shape the future of our industry.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on jobs.mitalent.org
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:29 min

Evaluating phishing emails that leverage artificial time constraints

Mauro Verderosa · LIVE

52 sec

Running persistent Linux environments directly on Windows

Ben Breard Ben Breard · World Congress 2025

1:52 min

Refining the agent by automating physical hardware restarts

Marc Plogas Marc Plogas · World Congress 2026 Europe

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

2:39 min

Exposing stored XSS and phishing attacks via markdown

Ramona Schwering Ramona Schwering · World Congress 2026 Europe

3:55 min

Demonstrating .NET installation on Debian and Azure Linux

Silvano Coriani Silvano Coriani · Europe 2026 Virtual

Videos

See all

Related articles

See all