At a Glance
- Tasks: Lead offensive security assessments and strengthen ASOS's defence capabilities.
- Company: Join ASOS, a leading fashion retailer with a strong focus on cybersecurity.
- Benefits: Competitive salary, professional development, and a collaborative work environment.
- Why this job: Make a real impact by identifying security weaknesses and enhancing our security posture.
- Qualifications: Experience in ethical hacking and relevant industry certifications required.
- Other info: Opportunity to mentor junior team members and innovate in cybersecurity.
The predicted salary is between 36000 - 60000 £ per year.
ASOS is recruiting for an Offensive Security Specialist within the SOC. This role will report into the SOC and IR Manager. This role will be key to leading offensive security assessments that strengthen defence capabilities for ASOS. Working closely with the cyber teams, you will identify security weaknesses, validate detection mechanisms, and provide actionable recommendations to enhance our security posture. You will contribute to the SOC team’s continuous validation and improvement in security controls and detection capabilities.
The role will involve the following responsibilities:
- Penetration Testing - Simulating real-world attacks to test the effectiveness of security controls and identify weaknesses.
- Red Teaming - Engaging in adversarial simulations to assess the organisation's overall security posture and identify areas for improvement.
- Collaboration with Defensive Teams - Working closely with defensive security teams to share insights, improve detection capabilities, and enhance incident response processes.
- Developing Offensive Security Strategies - Designing and implementing strategies to proactively identify and mitigate security risks.
- Contribute to processes and SOPs.
- Developing and mentoring junior team members to improve their skills and capabilities, along with wider knowledge transfer to other security and non-security teams to help build a culture of cyber security in departments.
- Maintain awareness of real-world cyber security threats and engage in the innovation of new analytic methods for proactively detecting threats.
Qualifications About You
- Practical experience in ethical hacking, penetration testing, and red team, blue team methodologies.
- Relevant industry certifications like GPEN, OSCP, OSCE, CRTO, CRTP, PNPT, and experience working with frameworks like MITRE ATT&CK/D3FEND.
- Familiar with industry-recognized frameworks for threat simulation and defence.
- Able to communicate technical findings and remediation strategies clearly to both technical and non-technical audiences.
- Skilled in producing accurate and well-structured reports and presentations.
- Strong problem-solving and analytical skills, with a proactive and collaborative mindset.
- Effective interpersonal skills, with the ability to build relationships and influence stakeholders.
- Comfortable working with modern security tools and enterprise environments.
- Committed to continuous learning and passionate about mentoring and developing others.
Offensive Security Specialist employer: hackajob
Contact Detail:
hackajob Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Offensive Security Specialist
✨Tip Number 1
Network like a pro! Get out there and connect with folks in the cybersecurity field. Attend meetups, webinars, or even local conferences. The more people you know, the better your chances of landing that Offensive Security Specialist role.
✨Tip Number 2
Show off your skills! Create a portfolio showcasing your penetration testing projects or red teaming exercises. This will not only demonstrate your expertise but also give you something tangible to discuss during interviews.
✨Tip Number 3
Practice makes perfect! Engage in Capture The Flag (CTF) competitions or online labs to sharpen your skills. This hands-on experience is invaluable and can really set you apart from other candidates.
✨Tip Number 4
Don’t forget to apply through our website! We’re always on the lookout for passionate individuals who want to make a difference in cybersecurity. Plus, it’s a great way to ensure your application gets noticed by the right people.
We think you need these skills to ace Offensive Security Specialist
Some tips for your application 🫡
Tailor Your CV: Make sure your CV reflects the skills and experiences that match the Offensive Security Specialist role. Highlight your practical experience in ethical hacking and penetration testing, and don’t forget to mention any relevant certifications you hold!
Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Use it to explain why you're passionate about offensive security and how your background aligns with ASOS's needs. Be sure to mention your collaborative spirit and how you can contribute to the SOC team.
Showcase Your Problem-Solving Skills: In your application, give examples of how you've tackled security challenges in the past. We love seeing candidates who can think critically and come up with innovative solutions, so don’t hold back on sharing your success stories!
Apply Through Our Website: We encourage you to apply directly through our website for the best chance of getting noticed. It’s super easy, and you’ll be able to keep track of your application status. Plus, we can’t wait to see what you bring to the table!
How to prepare for a job interview at hackajob
✨Know Your Stuff
Make sure you brush up on your ethical hacking and penetration testing skills. Familiarise yourself with the latest tools and techniques in offensive security, as well as frameworks like MITRE ATT&CK. Being able to discuss your practical experience confidently will show that you're not just book-smart but also hands-on.
✨Showcase Your Collaboration Skills
Since this role involves working closely with defensive teams, be prepared to discuss how you've collaborated in the past. Share specific examples of how you've improved detection capabilities or incident response processes through teamwork. This will highlight your ability to communicate effectively with both technical and non-technical audiences.
✨Prepare for Real-World Scenarios
Expect to be asked about real-world cyber threats and how you would approach them. Think of scenarios where you've identified security weaknesses or developed strategies to mitigate risks. This will demonstrate your proactive mindset and problem-solving skills, which are crucial for the role.
✨Mentorship Matters
Since mentoring junior team members is part of the job, be ready to talk about your experience in developing others. Share how you've contributed to knowledge transfer in previous roles and your passion for building a culture of cybersecurity. This will show that you're not just focused on your own growth but also on uplifting the team.