Senior Offensive Security Consultant
Role details
Job location
Tech stack
Job description
As a Senior Offensive Security Consultant at Leonardo UK, you will be responsible for leading the Red Team capability while also delivering as part of a Red Ream Delivery Cell to external customers. Supporting a global aerospace and defence organisation, you will help protect critical systems, sensitive information and operational services against an evolving cyber threat landscape. This role operates within a blended hybrid working model, combining home working with on-site collaboration at Leonardo UK and customer locations to enable effective teamwork and close engagement with internal stakeholders and customers.
What you'll do as a Senior Offensive Security Consultant
-
Deliver Full spectrum adversarial simulation engagements: Deliver engagements into the public sector covering all aspects from initial access, physical intrusion, privilege escalation, through to report delivery, debrief and a post technical replay of actions performed during the engagement
-
Maintaining and developing the adversarial simulation capability: Research and development into current TTPs and maintaining / improving upon infrastructure design choice for hosting security tooling during engagements.
-
Documentation and Knowledge Sharing: Maintain comprehensive documentation of infrastructure configurations, deployment procedures, and troubleshooting guidelines, and facilitate knowledge sharing among team members to ensure operational continuity and efficiency.
-
Cloud Environment Management: Manage cloud environments (e.g., AWS, Azure, GCP) where security tools are deployed, optimizing resource utilization and cost-effectiveness while adhering to security best practices.
-
Infrastructure Provisioning: Provision and manage the infrastructure required to run security tools ensuring high availability, scalability, and reliability.
Requirements
We are looking for a motivated self-managed individual who is willing to help design and adapt a constantly evolving service; someone who can demonstrate above average analytical skills and liaise professionally with peers and customers even under pressure.
Core areas (must have):
-
Comfortable with suitable coding languages for OST / Malware development (C, C#, Python, JS, Go, Rust).
-
Strong technical skills within the following specialisms: Initial Access, Physical Intrusion, EDR Bypass, Cloud Exploitation, Malware Development etc.
-
Demonstrable experience delivering red team engagements.
-
Relevant regulatory certifications relating to red team / pentesting capability (CCRTS, CCRTM, CTL, CTM)
Desirable
-
Experience in projects working within the MOD.
-
A deep understanding of MITRE and CAF frameworks and how they are utilised within reporting.
-
Relevant certifications relating to red teaming / pentesting capability (OSCP, OSEP, OSED, OSCE, RTO, RTO2, etc
Security Clearance
Benefits & conditions
Pulled from the full job description
- Employee discount
- Company pension
- Private medical insurance
- Discounted gym membership
- Flexible schedule, At Leonardo, our people are at the heart of everything we do. We offer a comprehensive, company-funded benefits package that supports your wellbeing, career development, and work-life balance.
- Time to Recharge: Generous leave with the opportunity to accrue up to 12 additional flexi-days each year.
- Secure your Future: Award-winning pension scheme with up to 15% employer contribution.
- Your Wellbeing Matters: Free access to mental health support, financial advice, and employee-led networks.
- Never Stop Learning: Free access to 4,000+ online courses via Coursera and LinkedIn Learning.
- Tailored Perks: Spend up to £500 annually on flexible benefits such as private healthcare, lifestyle discounts, and gym memberships.
- Flexible Working: Flexible hours with hybrid working options.