NextRaiseNextRaiseFind jobs
Sign inSign up free
Jobs / Cybersecurity Consultant in Australia
13 days ago
Apply with autofill
Apply with autofill
TL
Triskele-labs·13 days ago
13 days ago

Offensive Security Consultant

Melbourne, AustraliaFull-timeHybridMid · 2+ yearsCybersecurity Consultant

Sign up free to see how well your resume matches this role.

Boost your chances at triskele-labs

How you compare FREE

?
Your scoreYour score: not yet known
→
49
Top 10%Top 10%: 49 out of 100

Top 10% of NextRaise users matched against Cybersecurity Consultant roles in Australia.

Must-have skills for this role

  • penetration testing
  • oscp
  • web application testing
  • scripting

PDF or DOCX · no account needed

Apply faster with autofill FREEtriskele-labs uses Workable - autofill it instead of retyping.careers.example.com/applyAutofillingFull namePriya SharmaEmailpriya.sharma@example.comPhone+49 30 1234567LocationBerlGet the extension

What you'll do

  • Execute penetration tests across web, mobile, thick client applications and APIs, internal and external infrastructure, cloud environments, AI/LLM systems, and wireless networks.
  • Contribute to red team, purple team, adversary simulation, and social engineering engagements.
  • Produce comprehensive engagement reports detailing vulnerabilities, impact, technical detail, risk ratings, remediation complexity, and recommendations.
  • Contribute to the continual improvement of testing methodologies, standard operating procedures, and internal tooling.
  • Maintain current knowledge of security threats, tooling, standards, and frameworks.

What they're looking for

  • A minimum of two years conducting penetration tests in a consulting or professional services environment, or demonstrable equivalent capability.
  • OSCP certification, or an equivalent hands-on offensive security certification.
  • Demonstrated capability across at least three service streams, such as application testing, infrastructure testing, social engineering, cloud security, offensive security operations, and configuration reviews.
  • Working proficiency with at least one scripting language.
  • Sound technical knowledge of networking, Windows and Linux operating systems, and common enterprise security controls.
  • Strong written communication, with the ability to produce client-ready reports that require minimal revision.
  • Tertiary qualification in information security or a related information technology field, or demonstrable equivalent experience.
  • Full Australian working rights.
  • Willingness to undergo police checks and obtain a security clearance where required.

Nice to have

  • Advanced offensive security certifications.
  • CREST Registered Tester (CRT), or the willingness and ability to achieve CRT within twelve months of commencement.
  • Hands-on experience with red teaming, adversary simulation, purple team exercises, source code reviews, and social engineering.
  • Experience with AI tools, AI and LLM security testing, Hardware, OT & IoT Penetration Testing
  • Tool development, published research, CVEs, conference presentations, or bug bounty and CTF results.

Summarised by NextRaise from the employer’s description, which follows in full below.

Full description from employer

Triskele Labs is seeking an experienced offensive security consultant (penetration tester) to join our Offensive Security practice. We are an Australian-owned and operated cyber security firm delivering sovereign security services to clients across Australia, including managed detection and response, digital forensics and incident response, offensive security, and governance, risk and compliance services.

Our Offensive Security team operates within a CREST-accredited environment, providing clients with confidence that engagements are delivered to recognised industry standards by skilled consultants using mature, repeatable methodologies. This role is suited to someone who values technical excellence, trusted client relationships, and contributing to a sovereign Australian cyber security capability.

The Offensive Security Consultant will deliver penetration testing engagements end to end, from set-up and information gathering, execution, through to reporting and close-out. You will test web applications, APIs, mobile applications, thick client applications, internal and external infrastructure, cloud environments, wireless networks, and modern attack surfaces, working to established methodologies and recognised industry frameworks. You will manage client communication throughout each engagement and produce reports that are accurate, practical, and useful to both technical and executive audiences.

Requirements

Key Responsibilities:

  • Execute penetration tests across web, mobile, thick client applications and APIs, internal and external infrastructure, cloud environments, AI/LLM systems, and wireless networks.
  • Contribute to red team, purple team, adversary simulation, and social engineering engagements.
  • Produce comprehensive engagement reports detailing vulnerabilities, impact, technical detail, risk ratings, remediation complexity, and recommendations.
  • Contribute to the continual improvement of testing methodologies, standard operating procedures, and internal tooling.
  • Maintain current knowledge of security threats, tooling, standards, and frameworks.

Essential Qualifications & Skills:

  • A minimum of two years conducting penetration tests in a consulting or professional services environment, or demonstrable equivalent capability.
  • OSCP certification, or an equivalent hands-on offensive security certification.
  • Demonstrated capability across at least three service streams, such as application testing, infrastructure testing, social engineering, cloud security, offensive security operations, and configuration reviews.
  • Working proficiency with at least one scripting language.
  • Sound technical knowledge of networking, Windows and Linux operating systems, and common enterprise security controls.
  • Strong written communication, with the ability to produce client-ready reports that require minimal revision.
  • Tertiary qualification in information security or a related information technology field, or demonstrable equivalent experience.
  • Full Australian working rights.
  • Willingness to undergo police checks and obtain a security clearance where required.

Desirable Qualifications & Skills:

  • Advanced offensive security certifications.
  • CREST Registered Tester (CRT), or the willingness and ability to achieve CRT within twelve months of commencement.
  • Hands-on experience with red teaming, adversary simulation, purple team exercises, source code reviews, and social engineering.
  • Experience with AI tools, AI and LLM security testing, Hardware, OT & IoT Penetration Testing
  • Tool development, published research, CVEs, conference presentations, or bug bounty and CTF results.

Benefits

Team culture is central to Triskele Labs and is one of the reasons we exist. We are a forward-thinking company that continually looks for ways to strengthen our culture and ensure we remain a destination employer. We regularly seek feedback from our team on how we can improve the work environment and team member experience at Triskele Labs.

We provide our team with a range of additional benefits, including:

  • Commitment to training and development.
  • Access to a professional external Employee Assistance Program (EAP).
  • Social functions organised by our People & Culture Team.
  • Enjoy a brand-new office located in the heart of Melbourne CBD.
  • Access to salary packaging options, novated leasing, and other benefits available through Triskele Labs’ employee benefits program.

Application Requirements:

  • Include both a CV and a cover letter addressed to Sarath Nair, Head of Offensive Security, to be considered for this role.

Working Arrangements:

  • Work full-time, Monday to Friday, with hybrid and flexible arrangements. Out-of-hours work may be required to accommodate client change windows, and interstate travel may be required for onsite engagements.

Company

TL
Triskele-labs
Melbourne, Australia

Company facts come from this company's own listings. We only show what the postings themselves carry.

Sourced from Triskele Labs's careers site·first seen 15 Sept 2026·last verified 15 Sept 2026·How we source jobs

Similar jobs

  • Security Technician at Johnson ControlsJC Australia, Australia–match not yet calculated
  • Technology & Security Consultant at aecom2Fortitude Valley, Australia–match not yet calculated
  • Enterprise Security Manager at vanguardMelbourne, Australia–match not yet calculated
  • Team Lead, Security at Newmont AustraliaOrange, Australia–match not yet calculated
  • Manager, Security Engineering at snapchatSydney, Australia–match not yet calculated

Browse more jobs

  • Cybersecurity Consultant jobs in Australia
  • Business Analyst jobs in Australia
  • IT Consultant jobs in Australia
  • Digital Transformation Consultant jobs in Australia
  • Cybersecurity Consultant jobs in United States
  • Cybersecurity Consultant jobs in Germany