- Runs red and purple team engagements against critical apps, infrastructure and controls
- Builds and maintains fit-for-purpose red team infrastructure
- Validates controls, detection and logging; finds gaps and proves they are closed
- Owns and matures Breach & Attack Simulation
- Uses AI to scale attack-path analysis and prioritise the gaps that matter
- Closes the loop: proposes remediation, recent detections, log sources and controls; drives findings into the engineering backlog
Must-have skills:
- Hands-on offence: adversary emulation, C2, exploitation, attack-path analysis across cloud / infra / endpoint
- Detection and logging fluency (the purple half)
- BAS and ATT&CK;
- Python and automation; tight rules-of-engagement discipline
- AI coding / agentic tools (GPT-5.5 Trusted Access for Cyber, Codex, Claude Code, Copilot or similar) to find and prove exploitable vulns at repo scale
- GitLab Ultimate; standing up AI-assisted code-analysis infrastructure
- Detection engineering
- Application / code security experience (SAST, DAST, SCA)
📌 Offensive Security Engineer-Sydney/Brisbane
🏢 The HR Ally
📍 Sydney
Reply to this offer
Impress this employer describing Your skills and abilities, fill out the form below and leave Your personal touch in the presentation letter.