At a Glance
- Tasks: Lead offensive security assessments and strengthen ASOS's defence capabilities.
- Company: Join ASOS, a leading fashion retailer with a strong focus on cybersecurity.
- Benefits: Competitive salary, professional development, and a collaborative work environment.
- Why this job: Make a real impact by identifying security weaknesses and enhancing our security posture.
- Qualifications: Experience in ethical hacking and relevant industry certifications required.
- Other info: Opportunity to mentor junior team members and contribute to a culture of cybersecurity.
The predicted salary is between 36000 - 60000 £ per year.
ASOS is recruiting for an Offensive Security Specialist within the SOC. This role will report into the SOC and IR Manager. This role will be key to leading offensive security assessments that strengthen defence capabilities for ASOS. Working closely with the cyber teams, you'll identify security weaknesses, validate detection mechanisms, and provide actionable recommendations to enhance our security posture. You will contribute to the SOC team’s continuous validation and improvement in security controls and detection capabilities.
Responsibilities
- Penetration Testing - Simulating real-world attacks to test the effectiveness of security controls and identify weaknesses.
- Red Teaming - Engaging in adversarial simulations to assess the organisation's overall security posture and identify areas for improvement.
- Collaboration with Defensive Teams - Working closely with defensive security teams to share insights, improve detection capabilities, and enhance incident response processes.
- Developing Offensive Security Strategies - Designing and implementing strategies to proactively identify and mitigate security risks.
- Contribute to processes and SOPs.
- Developing and mentoring junior team members to improve their skills and capabilities, along with wider knowledge transfer to other security and non-security teams to help build a culture of cyber security in departments.
- Maintain awareness of real-world cyber security threats and engage in the innovation of new analytic methods for proactively detecting threats.
Qualifications
- Practical experience in ethical hacking, penetration testing, and red team, blue team methodologies.
- Relevant industry certifications like GPEN, OSCP, OSCE, CRTO, CRTP, PNPT, and experience working with frameworks like MITRE ATT&CK/D3FEND.
- Familiar with industry-recognized frameworks for threat simulation and defence.
- Able to communicate technical findings and remediation strategies clearly to both technical and non-technical audiences.
- Skilled in producing accurate and well-structured reports and presentations.
- Strong problem-solving and analytical skills, with a proactive and collaborative mindset.
- Effective interpersonal skills, with the ability to build relationships and influence stakeholders.
- Comfortable working with modern security tools and enterprise environments.
- Committed to continuous learning and passionate about mentoring and developing others.
Offensive Security Specialist in London employer: hackajob
Contact Detail:
hackajob Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Offensive Security Specialist in London
✨Tip Number 1
Network like a pro! Reach out to current employees at ASOS or in the cybersecurity field on LinkedIn. A friendly chat can give you insider info and maybe even a referral, which can really boost your chances.
✨Tip Number 2
Show off your skills! If you’ve got a portfolio of your penetration testing projects or red teaming exercises, make sure to share it during interviews. Real-world examples can set you apart from the crowd.
✨Tip Number 3
Prepare for technical interviews by brushing up on your problem-solving skills. Practice common scenarios you might face as an Offensive Security Specialist, and be ready to demonstrate your thought process.
✨Tip Number 4
Don’t forget to apply through our website! It’s the best way to ensure your application gets seen by the right people. Plus, it shows you’re genuinely interested in joining the ASOS team.
We think you need these skills to ace Offensive Security Specialist in London
Some tips for your application 🫡
Tailor Your CV: Make sure your CV highlights your practical experience in ethical hacking and penetration testing. We want to see how your skills align with the responsibilities of the Offensive Security Specialist role, so don’t be shy about showcasing relevant projects or certifications!
Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Use it to explain why you’re passionate about offensive security and how you can contribute to our SOC team. We love seeing candidates who can communicate technical findings clearly, so make sure to keep it engaging and informative.
Showcase Your Problem-Solving Skills: In your application, highlight specific examples where you've tackled security challenges. We’re looking for strong problem-solving abilities, so share stories that demonstrate your analytical mindset and proactive approach to identifying and mitigating risks.
Apply Through Our Website: We encourage you to apply directly through our website! It’s the best way for us to receive your application and ensures you’re considered for the role. Plus, it gives you a chance to explore more about our culture and values at StudySmarter.
How to prepare for a job interview at hackajob
✨Know Your Stuff
Make sure you brush up on your ethical hacking and penetration testing skills. Be ready to discuss specific methodologies you've used in the past, especially around red teaming and blue teaming. Familiarity with frameworks like MITRE ATT&CK will definitely give you an edge.
✨Showcase Your Communication Skills
Since you'll need to communicate technical findings to both techies and non-techies, practice explaining complex concepts in simple terms. Prepare examples of how you've done this before, as it shows you can bridge the gap between teams effectively.
✨Bring Real-World Examples
Be ready to share specific instances where you've identified security weaknesses or improved detection capabilities. This not only demonstrates your experience but also shows your proactive approach to security challenges.
✨Emphasise Team Collaboration
Highlight your experience working with defensive teams and mentoring junior members. Discuss how you've contributed to a culture of cybersecurity in previous roles, as teamwork is crucial in this position.