Talent.com
Security Consultant - Penetration Testing
Security Consultant - Penetration TestingSHI GmbH • Honolulu, HI, United States
serp_jobs.error_messages.no_longer_accepting
Security Consultant - Penetration Testing

Security Consultant - Penetration Testing

SHI GmbH • Honolulu, HI, United States
job_description.job_card.variable_days_ago
serp_jobs.job_preview.job_type
  • serp_jobs.job_card.full_time
job_description.job_card.job_description

About Us

Since 1989, SHI International Corp. has helped organizations change the world through technology. We've grown every year since, and today we're proud to be a $16 billion global provider of IT solutions and services.

Over 17,000 organizations worldwide rely on SHI's concierge approach to help them solve what's next. But the heartbeat of SHI is our employees - all 7,000 of them. If you join our team, you'll enjoy :

Our commitment to diversity, as the largest minority- and woman-owned enterprise in the U.S.

Continuous professional growth and leadership opportunities.

Health, wellness, and financial benefits to offer peace of mind to you and your family.

World-class facilities and the technology you need to thrive - in our offices or yours.

Job Summary

The Security Consultant - Penetration Testing is a critical?role?within?Stratascale's?Adversarial Operations team who will?assist?in?leading and supporting the development and delivery of a diverse range of continuous threat and exposure management consulting, penetration testing, and?operational?service programs to a portfolio of our clients.

Role Description

Independently perform penetration testing against complex environments covering both external, internal, web application, and other forms of offensive security engagements.?

Consult and document attack surface, threats, and vulnerability?improvements based onteam'soverall assessment ofclient'senvironment.??

Perform full assessment and threat modeling against industry best practices to?identify?control weaknesses and assess the effectiveness of existing controls.??

Perform root cause analysis on?identified?vulnerabilities and attack surface weaknesses to?determine?technical solutions to be presented to client along with recommendations for remediations.??

Collaborate withclient'ssecurity teams to understand mitigation or resolutions for findings discovered by analysts.??

Review threat intelligence?for specific threat vectors that align with client's industry or potentially?impacted?by to?utilize?in attack path modeling.??

Assist?in defining,?measuring, and?quantifying?business risk and vulnerability impacts toclientstheir stakeholders.?

Provide subject matterexpertiseand technical support on remediation, cloud security, governance, compliance, and core infrastructure systems.

Assistcustomers with strategies, use of platforms, technical and compliance analysis, and implementing automation.

Execute consulting projects by creating and completing deliverables, ensuring client needs and practice obligations are met.

Develop and deliver training content, curricula, and workforce development programs, including in-person and remote sessions.

Participate in customer and internal meetings,providingtechnical guidance andfacilitatingdiscussions.

Stay educated on new product technologies, industry trends, and emerging capabilities within the practice.

Develop andoptimizecross practicecapabilities, collaborate with peer practice leaders, and mentor other consultants.

Behaviors and Competencies

Communication : Can effectively communicate complex ideas and information to diverse audiences, facilitate effective communication between others, and mentor others in effective communication.

Relationship Building : Can take ownership of complex team initiatives, collaborate with diverse groups, and drive results through effective relationship management.

Self-Motivation : Can take ownership of complex personal or professional initiatives, collaborate with others when necessary, and drive results through self-motivation.

Negotiation : Can take ownership of complex negotiations, collaborate with others, and drive consensus.

Impact and Influence : Can rally a team or group towards a common goal, creating a positive and persuasive influence.

Business Development : Can take ownership of significant business initiatives, collaborate with various stakeholders, and drive business results.

Emotional Intelligence : Can use emotional information to guide thinking and behavior, manage and / or adjust emotions to adapt to environments or achieve one's goal(s), and help others do the same.

Detail-Oriented : Can oversee multiple projects, maintaining a high level of detail orientation, identifying errors or inconsistencies in work, and ensuring accuracy across all tasks.

Follow-Up : Can take ownership of tasks, collaborate with others in managing follow-ups, and drive results through effective task completion.

Presenting : Can effectively use visual aids, storytelling, and persuasive techniques to enhance presentations and engage audiences.

Delegation : Can delegate responsibilities across a team, balancing workload, and ensuring all members understand their roles.

Analytical Thinking : Can use advanced analytical techniques to solve complex problems, draw insights, and communicate the solutions effectively.

Critical Thinking : Can integrate and synthesize information from various sources to inform strategic decision-making and problem-solving.

Technical Troubleshooting : Can take ownership of complex technical problems, collaborate with others to manage solutions, and drive results in problem resolution.

Skill Level Requirements

Expertisein planning, executing, and leading penetration tests across networks, web and mobile applications, APIs, wireless, and cloud environments, including scoping, rules of engagement, and debriefs. - Intermediate

Proficiencywith offensive security methodologies and frameworks such as PTES, OWASP (WSTG / MASVS / ASVS), MITRE ATT&CK, and threat modeling to drive risk-based testing. - Intermediate

Deep hands-on experience with common offensive tooling and techniques, including reconnaissance, enumeration, exploitation, post-exploitation, lateral movement, and data exfiltration, along with strong operational security practices. - Intermediate

Ability to assess and attack cloud services (AWS, Azure, GCP) including IAM misconfigurations, storage, serverless,container / orchestration,and cloud networking, and communicate cloud-specific remediation guidance. - Intermediate

Strong web applicationtesting?skills?includingauth flows, access control, injection, deserialization, SSRF, XXE, business logic abuse, and modern app architectures (SPAs, microservices,GraphQL,WebSockets). - Intermediate

Working knowledge of Active Directory and Azure AD attack paths (Kerberoasting,constrained / unconstraineddelegation, ACL abuses, LAPS / MAPS, certificate services), and the ability to simulate realistic enterprise attack chains. - Intermediate

Proficiencywith social engineering and phishing engagements, including payload development, infrastructure setup, pretexting, and measurement aligned to customer policies and legal constraints. - Intermediate

Competence in scripting and automation to accelerate testing and proof-of-concept development using Python, PowerShell, Bash, and basic Go or JavaScript as needed. - Intermediate

Ability to develop clear exploit proofs-of-concept, reproduce vulnerabilities reliably, andvalidatefixes; familiarity with exploit development fundamentals is a plus. - Intermediate

Strong reporting andcommunication?skills,including writing executive summaries and technical reports with reproducible steps, risk ratings, and actionable remediation, and presenting findings to both technical and non-technical stakeholders. - Intermediate

Experience collaborating in red / purple team exercises, working with blue teams, and translating findings into detection and hardening recommendations (e.g., SIEM detections, EDR tuning, hardening baselines). - Intermediate

Familiarity with vulnerability management workflows, responsible disclosure practices, and integration of pen test results into remediation programs and retesting cycles. - Intermediate

Proficiencywith productivity and documentation tools such as Word, Excel, PowerPoint, and Outlook to efficiently produce statements of work, test plans, and final reports. - Intermediate

Other Requirements

CompletedBachelor's Degreein a related field or relevant work experiencerequired

3-5years of hands-on penetration testing / red team experience delivering engagements for mid-to-large enterprises, includingleadingcomplex assessments.

Ability to travel to SHI, Partner, Customer events, and on-site testing engagements as needed.

Advanced industry certifications preferred (e.g., OSCP, OSEP, OSWE, GXPN, GPEN, CRTO, CRTP,PNPT;CISSP or CSSLP a plus).

Demonstrated understanding of legal / ethical considerations, testing authorization, and safe handling of client data.

The estimated annual pay range for this position is $110,000 - $145,000 which includes a base salary and bonus. The compensation for this position is dependent on job-related knowledge, skills, experience, and market location and, therefore, will vary from individual to individual. Benefits may include, but are not limited to, medical, vision, dental, 401K, and flexible spending.

Equal Employment Opportunity - M / F / Disability / Protected Veteran Status

serp_jobs.job_alerts.create_a_job

Security Consultant • Honolulu, HI, United States

Job_description.internal_linking.related_jobs
Asset Protection Specialist

Asset Protection Specialist

Home Depot (Retail) • Honolulu, HI, US
serp_jobs.job_card.full_time
The Asset Protection Specialist is primarily responsible for preventing financial loss caused by theft and fraud and supporting safety and environmental program compliance in their assigned store / m...serp_jobs.internal_linking.show_more
serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted
Target Security Specialist

Target Security Specialist

Target • Kapolei, Hawaii, USA
serp_jobs.job_card.part_time
Starting Hourly Rate / Salario por Hora Inicial : $20.Working at Target means helping all families discover the joy of everyday life. We bring that vision to life through our values and culture.They ...serp_jobs.internal_linking.show_more
serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
DCO Watch Analyst Tier I HI

DCO Watch Analyst Tier I HI

Adapt Forward • Pearl City, HI, US
serp_jobs.job_card.full_time
serp_jobs.filters_job_card.quick_apply
Cyber Security Analyst I, Defensive Cyber Operations Watch Analyst Tier I Pearl City, HI Secret required to start, TS SCI required As a Tier 1 Defensive Cyber Operations (DCO) Watch Analyst y...serp_jobs.internal_linking.show_more
serp_jobs.last_updated.last_updated_variable_days
Ubuntu Security Engineer

Ubuntu Security Engineer

Canonical • Honolulu, HI, United States
serp_jobs.job_card.full_time
Be among the first 25 applicants.Get AI-powered advice on this job and more exclusive features.Canonical is a leading provider of open source software and operating systems to the global enterprise...serp_jobs.internal_linking.show_more
serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted
Senior Cyber Manager / Site Lead

Senior Cyber Manager / Site Lead

Leidos Inc • Pearl Harbor, HI, United States
serp_jobs.job_card.full_time
The Digital Modernization Sector is seeking a.DISA GSM-O II TN09 Network Assurance (NA) Program.GSM-O II provides network operations and cyber defense support to the Defense Information Systems Age...serp_jobs.internal_linking.show_more
serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
Senior Secure Architecture Leader for Apps

Senior Secure Architecture Leader for Apps

Datavant • Honolulu, HI, US
serp_jobs.job_card.full_time
A leading health data platform company is seeking a Sr Application Security Architect to enhance the security posture of their products and services. This role involves leading secure architecture r...serp_jobs.internal_linking.show_more
serp_jobs.last_updated.last_updated_variable_hours • serp_jobs.job_card.promoted • serp_jobs.job_card.new
Information Security Engineer - Black Lotus Labs Threat Researcher (Crimeware)

Information Security Engineer - Black Lotus Labs Threat Researcher (Crimeware)

Lumen • Honolulu, HI, United States
serp_jobs.job_card.full_time
We are igniting business growth by connecting people, data and applications – quickly, securely, and effortlessly.Together, we are building a culture and company from the people up – committed to t...serp_jobs.internal_linking.show_more
serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted
Remote Product Tester – $45 / hr + Free Products – Start Now!

Remote Product Tester – $45 / hr + Free Products – Start Now!

OCPA • Waipio, Hawaii, us
serp_jobs.filters.remote
serp_jobs.job_card.part_time +1
Product Testers are wanted to work from home nationwide in the US to fulfill upcoming contracts with national and international companies. We guarantee 15-25 hours per week with an hourly pay of bet...serp_jobs.internal_linking.show_more
serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted
Sr Application Security Architect

Sr Application Security Architect

Datavant • Honolulu, HI, US
serp_jobs.job_card.full_time
Datavant is a data platform company and the world's leader in health data exchange.Our vision is that every healthcare decision is powered by the right data, at the right time, in the right format....serp_jobs.internal_linking.show_more
serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted
Security Engineer IV

Security Engineer IV

Hawaiian Telcom • Honolulu, HI, United States
serp_jobs.job_card.full_time
Security Engineer IV – Hawaiian Telcom.Job Purpose : This customer‑facing position manages technical security controls, communicates vulnerabilities, exploits, and incidents to relevant teams, track...serp_jobs.internal_linking.show_more
serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
Alarm and Security Technical Associate

Alarm and Security Technical Associate

HPM Building Supply • Honolulu, HI, USA
serp_jobs.job_card.full_time
serp_jobs.filters_job_card.quick_apply
We are offering a promotional $1,000 sign-on bonus!.The expected pay range for the Alarm and Security Technical Associate is $19. The pay is determined by several factors, including but not limited ...serp_jobs.internal_linking.show_more
serp_jobs.last_updated.last_updated_variable_days
Alarm and Security Technical Associate for HPM Tech Honolulu, Puunene, or Keaau, Hawaii

Alarm and Security Technical Associate for HPM Tech Honolulu, Puunene, or Keaau, Hawaii

HPM Building Supply • Honolulu, Hawaii, USA
serp_jobs.job_card.full_time
We are offering a promotional $1000 sign-on bonus!.The expected pay range for the Alarm and Security Technical Associate is $19. The pay is determined by several factors including but not limited to...serp_jobs.internal_linking.show_more
serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
Security Engineer

Security Engineer

Zoom • Honolulu, HI, United States
serp_jobs.job_card.full_time
The Security Engineer is responsible for security design and reviews across our products and services, with a specific focus on Platform services and core infrastructure components.The ideal candid...serp_jobs.internal_linking.show_more
serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted
Client-Facing Security Architect & Strategy Leader

Client-Facing Security Architect & Strategy Leader

SHI • Honolulu, HI, United States
serp_jobs.job_card.full_time
A leading IT solutions provider in the United States is seeking a Principal Security Consultant for Security Architecture. This position involves leading client engagements in cybersecurity, develop...serp_jobs.internal_linking.show_more
serp_jobs.last_updated.last_updated_1_hour • serp_jobs.job_card.promoted • serp_jobs.job_card.new
Cloud Security Senior Engineer : Design, Secure & Respond

Cloud Security Senior Engineer : Design, Secure & Respond

Ernst & Young Oman • Honolulu, HI, United States
serp_jobs.job_card.full_time
A leading global professional services firm is seeking a Cloud Security Senior Engineer in Honolulu, Hawaii.The role involves designing and managing security measures for cloud infrastructure, cond...serp_jobs.internal_linking.show_more
serp_jobs.last_updated.last_updated_1_hour • serp_jobs.job_card.promoted • serp_jobs.job_card.new
Security Host / Hostess - Full-Time, $24.15 - $30.20 / Hour

Security Host / Hostess - Full-Time, $24.15 - $30.20 / Hour

Aulani, A Disney Resort & Spa • Kapolei, Hawaii, United States
serp_jobs.job_card.full_time
Come and join the magic with Aulani, A Disney Resort and Spa! Perks and benefits may include : 100% full coverage of healthcare for you and your eligible dependents Tuition paid upfront at network s...serp_jobs.internal_linking.show_more
serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
Managing Principal Consultant - Federal Testing & Quality Assurance - Oracle Health

Managing Principal Consultant - Federal Testing & Quality Assurance - Oracle Health

Hawaii Staffing • Honolulu, HI, US
serp_jobs.job_card.full_time
Manager, Federal Testing & Quality Assurance.We're on a journey to advance how health happens with technologies that empower patients, support clinicians, inspire innovation, and save lives.Our mis...serp_jobs.internal_linking.show_more
serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
System Security Auditor

System Security Auditor

Cymertek Corporation • Honolulu, HI, United States
serp_jobs.job_card.full_time
Be among the first 25 applicants.Get AI-powered advice on this job and more exclusive features.TS / SCI Full Poly (Please note this position requires full U. We are seeking a meticulous and analytical...serp_jobs.internal_linking.show_more
serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted