Skip to content

Open nowPosted 27 days ago

Offensive Security Consultant

Workable (global search)108,016 open roles

Where
Melbourne, VIC, Australia
Get the CV for this job

From $25 per CV, paid once. No subscription.

Your applicationOpen nowOffensive Security ConsultantWorkable (global search) · Melbourne, VIC, Australia
  1. YouYes, apply to this one.

  2. CV RocketCV written for this posting.

  3. 25 readersRecruiter, hiring manager, skeptic. Round after round.

  4. CV RocketApplied on Workable (global search)'s own form.

The reply lands in your private mailbox

3×more interviews than doing it yourself with ChatGPT.

The clock on this job

Early applications get read.

7.9% of postings close within 7 days. Measured by our own scanner across the market. Workable (global search) postings stay open a median of 7 days.

Share of postings closed within
  1. 1.6%1 day
  2. 3.6%3 days
  3. 7.9%7 days
  4. 14.9%14 days
  5. 34.0%30 days
This job: posted 27 days ago

Workable (global search) median: 7 days open

The posting

Triskele Labs is seeking an experienced offensive security consultant (penetration tester) to join our Offensive Security practice. We are an Australian-owned and operated cyber security firm delivering sovereign security services to clients across Australia, including managed detection and response, digital forensics and incident response, offensive security, and governance, risk and compliance services.

Our Offensive Security team operates within a CREST-accredited environment, providing clients with confidence that engagements are delivered to recognised industry standards by skilled consultants using mature, repeatable methodologies. This role is suited to someone who values technical excellence, trusted client relationships, and contributing to a sovereign Australian cyber security capability.

The Offensive Security Consultant will deliver penetration testing engagements end to end, from set-up and information gathering, execution, through to reporting and close-out. You will test web applications, APIs, mobile applications, thick client applications, internal and external infrastructure, cloud environments, wireless networks, and modern attack surfaces, working to established methodologies and recognised industry frameworks. You will manage client communication throughout each engagement and produce reports that are accurate, practical, and useful to both technical and executive audiences.

Requirements

Key Responsibilities:

  • Execute penetration tests across web, mobile, thick client applications and APIs, internal and external infrastructure, cloud environments, AI/LLM systems, and wireless networks.
  • Contribute to red team, purple team, adversary simulation, and social engineering engagements.
  • Produce comprehensive engagement reports detailing vulnerabilities, impact, technical detail, risk ratings, remediation complexity, and recommendations.
  • Contribute to the continual improvement of testing methodologies, standard operating procedures, and internal tooling.
  • Maintain current knowledge of security threats, tooling, standards, and frameworks.

Essential Qualifications & Skills:

  • A minimum of two years conducting penetration tests in a consulting or professional services environment, or demonstrable equivalent capability.
  • OSCP certification, or an equivalent hands-on offensive security certification.
  • Demonstrated capability across at least three service streams, such as application testing, infrastructure testing, social engineering, cloud security, offensive security operations, and configuration reviews.
  • Working proficiency with at least one scripting language.
  • Sound technical knowledge of networking, Windows and Linux operating systems, and common enterprise security controls.
  • Strong written communication, with the ability to produce client-ready reports that require minimal revision.
  • Tertiary qualification in information security or a related information technology field, or demonstrable equivalent experience.
  • Full Australian working rights.
  • Willingness to undergo police checks and obtain a security clearance where required.

Desirable Qualifications & Skills:

  • Advanced offensive security certifications.
  • CREST Registered Tester (CRT), or the willingness and ability to achieve CRT within twelve months of commencement.
  • Hands-on experience with red teaming, adversary simulation, purple team exercises, source code reviews, and social engineering.
  • Experience with AI tools, AI and LLM security testing, Hardware, OT & IoT Penetration Testing
  • Tool development, published research, CVEs, conference presentations, or bug bounty and CTF results.

Benefits

Team culture is central to Triskele Labs and is one of the reasons we exist. We are a forward-thinking company that continually looks for ways to strengthen our culture and ensure we remain a destination employer. We regularly seek feedback from our team on how we can improve the work environment and team member experience at Triskele Labs.

We provide our team with a range of additional benefits, including:

  • Commitment to training and development.
  • Access to a professional external Employee Assistance Program (EAP).
  • Social functions organised by our People & Culture Team.
  • Enjoy a brand-new office located in the heart of Melbourne CBD.
  • Access to salary packaging options, novated leasing, and other benefits available through Triskele Labs’ employee benefits program.

Application Requirements:

  • Include both a CV and a cover letter addressed to Sarath Nair, Head of Offensive Security, to be considered for this role.

Working Arrangements:

  • Work full-time, Monday to Friday, with hybrid and flexible arrangements. Out-of-hours work may be required to accommodate client change windows, and interstate travel may be required for onsite engagements.
From $25, paid onceGet the CV for this job

What happens when you press

One press. We do the rest.

  1. A CV for this posting

    Written against Workable (global search)'s own wording, from every piece of relevant proof in your profile.

  2. 25 readers review it

    Recruiter, hiring manager, skeptic and more read every draft, round after round. You get the best round.

    The review screen in CV Rocket: how each CV was read, round by round.
  3. We apply on Workable (global search)'s form

    Our application engine gets through the hardest forms there are. Where a question needs you, AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

    An application in CV Rocket: every answer filled in on the employer's form.
  4. Every reply, sorted

    Workable (global search)'s answer lands in your private mailbox, and we classify it on arrival: interview, question, rejection.

    The CV Rocket inbox: each employer reply classified as an interview, an action or a rejection.
  5. Reply with AI

    AI helps you write the email, checks it and sends it. We show you whether the recruiter read it.

  6. The interview in your calendar

    Full integration with your calendar. The invitation goes straight in.

    An interview invitation in the CV Rocket inbox, added to the candidate's calendar.
Get the CV for this job

From $25 per CV, paid once. No subscription.

Why it works

3×

more interviews than doing it yourself with ChatGPT.

ChatGPT writes a CV and never learns what happened to it. We see every reply. For each CV we know:

  • How it was written, and how the review scored it
  • When we applied, and how long after the posting went up
  • Which posting, which company, which city
  • Who got the interview, and who heard nothing

That is how we know which CVs get called.

Get the CV for this job

From $25 per CV, paid once. No subscription.

The numbers game

More applications. More interviews.

Every application goes out with its own CV, written for that posting and paid once. Send enough of them and the law of large numbers finds you the job.

By hand5–10
With CV Rocket100
applications a day

Nearby

Live postings like this one

Same employer first, then the same role elsewhere.

Before you press

Straight answers

Get the CV for this job

From $25 per CV, paid once. No subscription.

What if my background isn't good enough?

We make the most of the background you have. The CV uses every piece of relevant proof your profile holds, and one of the 25 readers reads your whole profile and flags what the CV left out.

Do you really apply for me?

Yes, on the employer's own form, the hardest ones included. Where a question needs you, you answer it right there and AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

Is it a subscription?

No. You pay once per CV, from $25. Every application goes out with its own CV, written for that posting.

One job. One CV.
Paid once.

Pick the posting you want. We write for it, apply for you and catch the reply.

Get the CV for this job

From $25 per CV, paid once. No subscription.