Jobs and Careers
GU

Managing Security Consultant-Threat & Attack Simulation- Remote (Anywhere in the U.S.)

GuidePoint Security LLC
United StatesRemotefull_timeVerifiedPosted 23 Feb 2023

About the role

GuidePoint Security provides trusted cybersecurity expertise, solutions and services that help organizations make better decisions and minimize risk. By taking a three-tiered, holistic approach for evaluating security posture and ecosystems, GuidePoint enables some of the nation’s top organizations, such as Fortune 500 companies and U.S. government agencies, to identify threats, optimize resources and integrate best-fit solutions that mitigate risk.

Summary

GuidePoint Security’s Threat & Attack Simulation Practice provides attack-oriented professional services, including Penetration Testing, Social Engineering, Red/Purple Teaming, IoT/Hardware Assessments, ICS/OT penetration testing, Active Directory Security Reviews, Vulnerability Assessments, and various ad hoc Custom Assessments to address unique information security concerns for prestigious clients.   As a Managing Security Consultant, you will be a trustworthy and reliable team member who leverages your knowledge, skills, and experience to define the practice's future. Your primary responsibilities will be split between technical and managerial tasks and include providing guidance, leadership, and oversight to your direct reports, refining existing Practice offerings, developing new Practice offerings, assisting with pre-sales activities, and performing technical assessments.   With this role, the expectation is that you will start on the team in a delivery capacity (Senior Consultant) to get comfortable with the team members, the culture, and processes that will give you the opportunity to earn trust and be an effective and empathetic member of the management team.

Role Responsibilities

  • Manage a team of talented information security professionals and clearly communicate unmet needs to practice leadership
  • Deliver Threat & Attack Simulation's professional services as needed to enable your team and cover for busy seasons, unexpected absences and client requests
  • Author and review comprehensive assessment deliverables that are tailored to both technical and managerial audiences with fully detailed technical execution steps, core deficiencies, and realistic remediation strategies
  • Contribute to marketing initiatives via activities such as publishing research, speaking at industry conferences, authoring blog articles and whitepapers, hosting webinars, and developing security tools
  • Support pre-sales activities by providing guidance to the scoping team to enable them to make adjustments to standard project scoping guidelines as needed based on feedback from the delivery team
  • Assist with Practice development, including improving existing offerings, creating new offerings, and mentoring team members
  • Perpetually strengthen relevant skills, knowledge, and abilities to stay at the forefront of the information security industry
  • Foster strong client relationships and represent GuidePoint well by providing interactive and collaborative support, information, and guidance to ensure delivery of maximum value
  • Work closely with delivery team members to address customer concerns and disarm incendiary client interactions by working towards a mutually agreeable solution
  • Maintain a strong desire to learn, adapt, and improve along with a rapidly-growing company
  • Perform typical managerial functions such as performance reviews, expense approvals, time entry approvals, etc. in a timely manner
  • Continue fostering team culture by building relationships with team members and embracing the "No Jerks" culture
  • Unwavering loyalty to a particular word processing tool (e.g. nano, vim, emacs, etc.) and willingness to argue about which is superior on a weekly basis
  • Strong desire to work collectively with the team to mentor, coach, and guide the next generation of professionals
  • Perform other duties as assigned

Education, Credentials, and Experience

  • InfoSec community involvement, such as conference speaking, blog/whitepaper authoring, and podcast speaking/producing experience is preferred, or at least the willingness to try
  • 3+ years of recent penetration testing experience is preferred; penetration testing experience is required
  • Several years of experience delivering work as a consultant and practicing soft skills, interacting with clients, and improving process efficiency and documentation is strongly preferred
  • Experience leading a team of consultants is directly relevant to this role and is preferred, but not explicitly required as long as you are willing to be coached and have very strong consulting and recent penetration testing experience
  • Internal operational experience is strongly preferred
  • Lab-based certifications, such as OSCP and OSCE along with practical training from providers such as HackTheBox pro

Apply for this role

Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.

Apply Now →Generate Application Kit

Free account required — sign up in 30s

Company

GuidePoint Security LLC

View company profile →