SlipstreamJobsFresh Startup & VC-Backed Jobs

Senior Offensive Security Consultant

Horizon3.ai - Remote - Remote - posted 2026-07-31

Apply on the company site

SlipstreamJobs tracks this role from the company's public career site. Apply directly on the employer's site.

Horizon3.ai is seeking a Senior Offensive Security Consultant to lead end-to-end penetration testing and red team engagements for diverse clients ranging from small institutions to Global 100 enterprises. You will assess production environments—internal networks, web applications, cloud infrastructure—to uncover vulnerabilities, validate attack paths, and deliver actionable risk insights. In this role, you'll lead remote engagements (typically 1–2 weeks) combining pure red team exercises with compliance-focused testing (PCI DSS, SOC 2). You'll identify business-logic flaws and high-impact attack chains that automated tools miss, then deliver professional reports with clear risk ratings and remediation guidance. You'll also mentor junior consultants, collaborate with sales and engineering teams to drive product improvements, and contribute to methodology and tooling enhancements. Required: 5–10 years of hands-on offensive security, red teaming, or penetration testing experience. Strong background in web application testing and internal network assessments. Compliance engagement experience required. U.S. citizenship required. Excellent written and verbal communication skills to explain technical issues to both technical and executive audiences. Technical expertise required: Burp Suite Professional (essential), OWASP ZAP, Postman, SQLMap, CrackMapExec, BloodHound, Impacket, Metasploit, cloud tools (Pacu, Scout Suite, Prowler, AzureHound), C2 frameworks (Cobalt Strike/Sliver/Covenant), Nmap, John the Ripper/Hashcat, and custom scripting (Python, PowerShell, Bash). Strong professional report-writing skills. Stand-out qualifications: AI-assisted testing or agentic workflow experience, published research or community contributions, relevant certifications (OSCP, OSCE, CRTP, OSEP, GXPN). Minimal travel (<10%) for occasional company or client meetings. Fully remote with flexible scheduling, competitive compensation, equity, and professional development support.

Similar roles