Offensive Security Consultant – Red Team & Adversary Simulation

Protiviti•Tampa, FL
•$129,000 - $205,000•Hybrid

About The Position

Protiviti's Attack & Penetration team is expanding and seeking an offensive security professional to conduct real adversary work, moving beyond basic testing. The role involves joining a team that executes red team, purple team, and threat-led engagements for a diverse range of organizations. The position offers the necessary tools, lab resources, and support to advance the field of offensive security. The consultant will act as both a trusted advisor and a hands-on operator, leading engagements from initial scoping through to executive-level readouts. A key aspect of the role is building strong relationships with client security teams, helping them understand not only vulnerabilities but also how real attackers exploit them and prioritize remediation. Additionally, the role includes coaching and developing teammates, fostering a collaborative learning environment.

Requirements

  • Love offensive security and be energized by finding the path an attacker would take.
  • Stay current on the threat landscape—new TTPs, tooling, vulnerabilities, and how AI is changing both attack and defense.
  • Thrive on the puzzle of targeting an organization, chaining weaknesses together, and evading defensive controls.
  • Enjoy sharing what you know—coaching teammates on engagements, building training, or debating the latest technique.
  • Care about the client outcome and can translate technical risk into business impact that resonates with security teams and executives alike.
  • Comfortable owning work end to end—scoping, execution, reporting, and readout.
  • Curious about clients' businesses and how security risk shows up in their industries.
  • Red & Purple Teaming: Experience running red team engagements that emulate real-world threat actors, with a strong command of TTPs and MITRE ATT&CK.
  • Ability to partner with SOC and detection engineering teams to improve detection and response.
  • Experience designing threat intel–driven scenarios, including ransomware simulations.
  • Hands-on experience attacking Active Directory, cloud and identity platforms (AWS, Azure, GCP, Entra ID, Okta), and CI/CD pipelines.
  • Proficiency with C2 frameworks (e.g., Mythic, Sliver, Cobalt Strike) and building custom tooling in languages like C#, Go, Rust, Python, or PowerShell.
  • Strong OpSec and experience evading EDR and other monitoring tools.
  • Experience performing internal and external network penetration tests, including vulnerability discovery, exploitation, and privilege escalation.
  • Experience testing web applications, APIs, and mobile apps, with a solid grasp of the OWASP Top 10 and tools like Burp Suite.
  • Ability to look past scanner output, validate findings manually, and chain issues into real attack paths.
  • Understanding of attacks against LLM-enabled apps and agents (e.g., prompt injection, data leakage, tool abuse) and interest in using AI to speed up offensive work.
  • Ability to turn technical findings into clear, actionable reports and conversations for both technical teams and executives.
  • Creative problem solving—finding a way forward when the obvious path is blocked.
  • Bachelor's degree in a relevant discipline (e.g., CS, CE, IS, MIS, EE) or equivalent hands-on experience.
  • 5+ years of hands-on offensive security experience—red teaming, penetration testing, or adversary simulation—in consulting or in-house.
  • Strong written and verbal communication skills, including producing clear, client-ready reports and presentations.

Nice To Haves

  • Familiarity with DORA TLPT, TIBER-EU, or CBEST is a plus.
  • Exploit development or reverse engineering skills are a plus.
  • A track record of research, tool releases, blogs, or conference involvement (e.g., Black Hat, DEF CON, BSides) is a plus.
  • Certifications such as OSCP, OSEP, OSWE, OSED, CRTO/CRTL, GXPN, GPEN, BSCP, or comparable SANS 600/700-level coursework are a plus.
  • Cloud security certifications (e.g., AWS Certified Security – Specialty, Microsoft AZ-500, Google Professional Cloud Security Engineer, CCSK) are a plus.

Responsibilities

  • Plan and execute red team, purple team, and threat-led penetration testing (TLPT) engagements that emulate real-world threat actors across on-prem, cloud, identity, and SaaS environments.
  • Test the newest attack surface, including AI/LLM-powered applications, agentic workflows, and the identity platforms that connect them.
  • Use and build AI-assisted tooling and automation to move faster and go deeper during operations.
  • Develop new tooling, design novel attacks, and contribute to a robust lab of testing tools and equipment built to tackle hundreds of adversary simulation scenarios.
  • Partner with defenders to turn findings into better detections, faster response, and measurable improvement.
  • Help shape the future of the practice by developing new services if there is demand.

Benefits

  • Medical coverage
  • Dental coverage
  • Vision coverage
  • FSA and HSA healthcare accounts
  • Life insurance
  • Accident insurance
  • Adoption assistance
  • Fertility assistance
  • Paid parental leave up to 10 weeks
  • Short-term disability
  • Long-term disability
  • Company 401(k) savings and investment plan with an employer match of 50% on the first 6% of your contributions
  • Choice Time Off (CTO) for vacation, personal needs, and sick time (New hires receive up to 20 days of CTO per calendar year)
  • 11 paid holidays each calendar year
  • Annual bonus plan
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service