Cyber Offensive Security Senior Associate

Grant Thornton International Ltd
  • Austin, TX
    2 days ago

    Job Description

    As a Senior Offensive Security Consultant on our Cyber Defense team, you will get the opportunity to lead adversarial testing engagements for clients across a range of industries. In this role, you will simulate real-world adversaries to identify exploitable weaknesses, validate detection and response capabilities, and help clients measurably strengthen their security posture. This is a hands-on technical role with significant client interaction and ideal for someone who thrives on solving complex problems and communicating impact to both technical teams and executive stakeholders.

    From day one, you'll be empowered by the greater Cyber & Risk team to help clients make the moves that will help them achieve their vision and help you achieve more, confidently.

    Your day-to-day may include:

    • Penetration Testing: Plan and execute network, application, API, and cloud penetration tests, from scoping through exploitation, post-exploitation, and reporting.
    • Adversary Emulations: Design and run, threat-informed attack simulations to validate the effectiveness of client security controls and detection coverage.
    • Assume-Breach: Conduct assume-breach engagements, collaborating with defensive teams to test detection, response, and containment capabilities.
    • AI Red Teaming: Perform adversarial testing of AI/ML systems and LLM-enabled applications, including prompt injection, model manipulation, data exfiltration, and abuse-case testing.
    • Threat Emulation: Emulate the tactics, techniques, and procedures (TTPs) of relevant threat actors, mapping activity to frameworks such as MITRE ATT&CK.
    • Reporting & Communication: Produce clear, high-quality deliverables that translate technical findings into prioritized, business-relevant remediation guidance; present results to technical staff, management, and executive/board audiences.
    • Client Advisory: Serve as a trusted technical advisor, helping clients understand risk, prioritize remediation, and mature their security programs.
    • Practice Development: Contribute to methodology development, tooling, automation, and the mentoring of junior team members.

    You have the following technical skills and qualifications:

    • Bachelor's degree in Cybersecurity, Information Technology, Computer Science, or a related field is required
    • 3+ years of hands-on experience in offensive security, penetration testing, or red teaming.
    • Demonstrated expertise across multiple domains (network, application, cloud, and/or internal infrastructure testing).
    • Strong understanding of adversary TTPs and frameworks such as MITRE ATT&CK and ATLAS and OWASP.
    • Proficiency with industry-standard tooling and command-and-control frameworks.
    • Scripting and automation skills (e.g., Python, PowerShell, Bash).
    • Experience conducting assume-breach or adversary emulation engagements.
    • Excellent written and verbal communication skills, including the ability to produce professional, client-ready reports.
    • Ability to work independently, manage multiple engagements, and meet deadlines in a client-service environment.

    Preferred qualifications:

    • Relevant certifications such as OSCP, OSEP, OSWE, GPEN, GXPN, GWAPT or CREST.
    • Prior consulting or professional-services experience.
    • Cloud security testing experience across AWS, Azure, and/or GCP.
    • Experience with AI/ML or LLM security testing and adversarial techniques.
    • Familiarity with breach and attack simulation platforms.
    • Experience testing the security of D365 and integrations a plus.
    • Contributions to the security community (research, tooling, CVEs, conference talks, or publications).

    #hybrid

    #LI-LG1

    At Grant Thornton, we believe in making business more personal and building trust into every result - for our clients and you. Here, we go beyond your expectations of a career in professional services by offering a career path with more: more opportunity, more flexibility, and more support. It's what makes us different, and we think being different makes us better.

    In the U.S., Grant Thornton delivers professional services through two specialized entities: Grant Thornton LLP, a licensed, certified public accounting (CPA) firm that provides audit and assurance services ― and Grant Thornton Advisors LLC (not a licensed CPA firm), which exclusively provides non-attest offerings, including tax and advisory services.

    In 2025, Grant Thornton formed a multinational, multidisciplinary platform with Grant Thornton Ireland. The platform offers a premier Trans-Atlantic advisory and tax practice, as well as independent American and Irish audit practices. With $2.7 billion in revenues and more than 50 offices spanning the U.S., Ireland and other territories, the platform delivers a singular client experience that includes enhanced solutions and capabilities, backed by powerful technologies and a roster of 12,000 quality-driven professionals enjoying exceptional career-growth opportunities and a distinctive cross-border culture.

    Grant Thornton is part of the Grant Thornton International Limited network, which provides access to its member firms in more than 150 global markets.

    Numbers & Facts

    LocationAustin, TX

    Skills

    • Accounting Certificationsunmatched
    • Amazon Web Services (AWS)unmatched
    • Application Programming Interface (API)unmatched
    • Artificial Intelligence (AI)unmatched
    • Automationunmatched
    • Bash Scriptingunmatched
    • Certified Public Accountant (CPA)unmatched
    • Cloud Computingunmatched
    • Communication Skillsunmatched
    • Computer Scienceunmatched
    • Consultingunmatched
    • Customer Experienceunmatched
    • Customer Relationsunmatched
    • Customer Support/Serviceunmatched
    • Data Modelingunmatched
    • Develop Methodologiesunmatched
    • Establish Prioritiesunmatched
    • GCP (Good Clinical Practices)unmatched
    • GPEN - GIAC Penetration Testerunmatched
    • Industry Standardsunmatched
    • Information Technology & Information Systemsunmatched
    • Injectionsunmatched
    • Internet Securityunmatched
    • Machine Toolunmatched
    • Mentoringunmatched
    • Microsoft Windows Azureunmatched
    • Penetration Testingunmatched
    • People Managementunmatched
    • Presentation/Verbal Skillsunmatched
    • Problem Solving Skillsunmatched
    • Professional Servicesunmatched
    • Public Accountingunmatched
    • Publicationsunmatched
    • Python Programming/Scripting Languageunmatched
    • Quality Assurance Methodologyunmatched
    • Riskunmatched
    • Scripting (Scripting Languages)unmatched
    • Security Consultingunmatched
    • Service Deliveryunmatched
    • Simulationunmatched
    • Technical Deliveryunmatched
    • Technical Leadershipunmatched
    • Technical Presentationunmatched
    • Technical Supportunmatched
    • Test Caseunmatched
    • Test Plan/Scheduleunmatched
    • Testingunmatched
    • Time Managementunmatched
    • Windows PowerShellunmatched
    • Writing Skillsunmatched

    Be found by employers

    5,500+ employers search our resume database daily. Add yours to get found by recruiters looking for candidates like you.

    Level up your application

    Professional resume templates

    Browse dozens of recruiter approved resume templates, layouts and formats. Choose your favorite and make it your own in minutes.

    Free resume templates

    Free resume builder

    Improve your existing resume or start from scratch and create a standout, ATS-friendly resume. Add job-specific content, download and apply.

    Free resume builder