openleverjobgether
Offensive Security Technical Lead
Jobgether
LocationUS
EmploymentFull-time
Posted2026-08-21T06:50:41.510000+00:00
Last observed2026-08-26 21:51:40.410433
Job idjobgether-jobgether:lever:c0b4fbf9-693d-44ec-b773-4e2511eaf3c0
This position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for an Offensive Security Technical Lead based in the United States. The Offensive Security Technical Lead will own technical delivery across penetration testing and red-team workstreams supporting critical federal cybersecurity missions. You will provide continuous assessment of external and internal cyber assets, helping uncover unknown exposures and validate vulnerabilities. The role combines deep hands-on offensive security expertise with technical leadership across complex, concurrent assessments. You will establish testing methodologies, govern operational risk, approve engagement plans, and ensure high-quality technical outcomes. The position spans enterprise networks, applications, identity, cloud environments, exploit development, and adversary infrastructure. You will work closely with technical teams, customers, and project leadership to translate attack paths and vulnerabilities into actionable mission and business risk. This is a remote leadership opportunity with up to 25% travel across the Continental United States. Serve as the senior technical authority for penetration testing and red-team delivery across concurrent assessment engagements. Establish and continuously improve assessment methodologies, rules of engagement, technical review gates, evidence requirements, severity standards, reporting expectations, and reusable technical playbooks. Review and approve engagement plans, adversary scenarios, infrastructure designs, tooling exceptions, exploitation approaches, data-handling controls, and other high-risk technical activities. Govern technical risk and ensure testing remains aligned with customer objectives, authorization requirements, safety controls, staffing, methodology, and delivery commitments. Lead technical teams by providing guidance, allocating specialized expertise, mentoring offensive security professionals, conducting technical readiness reviews, and resolving complex cross-domain challenges. Provide hands-on support for advanced network, application, Active Directory and identity, cloud, exploit-development, adversary-infrastructure, and defense-evasion challenges. Own final technical quality and acceptance of assessment reports, attack-path narratives, severity decisions, remediation recommendations, customer briefings, and purple-team scenarios. Lead technical discussions with customers and communicate complex technical findings in terms of mission, operational, and business risk. Coordinate with project management on schedules, staffing, dependencies, and technical escalations without assuming administrative project-management responsibilities. Capture lessons learned, measure technical quality and repeatability, and continuously evolve offensive-security capabilities as customer environments, processes, and tools develop. Requirements U.S. citizenship required. No security clearance is required to begin employment; however, candidates must meet eligibility requirements for access to sensitive or classified information and be able to obtain a Department of Homeland Security Entrance on Duty (DHS EOD) authorization. 8+ years of progressively responsible offensive-security experience, including significant hands-on penetration testing and red-team or adversary-emulation work. 5+ years leading complex technical engagements, multiple concurrent assessments, or senior offensive-security teams. Expert-level ability to scope and safely govern testing across enterprise networks, applications and APIs, Windows/Active Directory and identity environments, Linux, AWS/Azure, external attack surfaces, and production systems. Demonstrated technical authority in rules of engagement, operational risk management, deconfliction, exploit validation, evidence quality, severity decisions, technical report acceptance, and customer out-briefing. Strong scripting, automation, and/or security
This page is generated from the committed OpenOpps static snapshot. Use the source posting or apply link for the employer's current canonical posting state.