Offensive & Defensive Security Capability - CONTRACT
Hrvisory Pty Ltd · Johannesburg
Posted 5 August 2026
Stop applying one at a time.
JobAlertsZA auto-applies to South African jobs like this one for you, overnight. Upload your CV once — we do the applying.
Start free — we apply for you →Introduction
We are establishing a lean, high-performing Cybersecurity Capability focused on proactively identifying security weaknesses, simulating real-world attack scenarios, and enabling effective remediation across the organization. The team will operate across both offensive and defensive security functions to strengthen the overall security posture and resilience of the business.
Duties & Responsibilities
- Strong technical backgrounds with a software development and cybersecurity focus.
- Proven experience in offensive security disciplines, including:
- Penetration Testing
- Ethical Hacking
- Red Team Operations
- Attack Simulation and Adversary Emulation
- Demonstrated ability to identify, assess, and validate security vulnerabilities across applications, infrastructure, cloud environments, and networks.
- Experience collaborating with engineering, development, and infrastructure teams to drive vulnerability remediation and security improvements.
- Ability to operate effectively across both offensive and defensive security domains, contributing to threat detection, incident response, security monitoring, and risk mitigation activities.
- Strong analytical, problem-solving, and stakeholder engagement skills.
Desired Experience & Qualification
Essential Qualifications
- Bachelor's Degree in Computer Science, Information Security, Cybersecurity, Information Technology, Software Engineering, or a related discipline.
- Relevant industry certifications such as:
- Certified Ethical Hacker (CEH)
- Offensive Security Certified Professional (OSCP)
- Offensive Security Certified Expert (OSCE) – advantageous
- GIAC Penetration Tester (GPEN)
- GIAC Red Team Professional (GRTP) – advantageous
- CompTIA Security+
- CISSP (for senior-level roles)
- Microsoft, AWS, or Google Cloud Security certifications – advantageous
Experience Requirements
For Senior Offensive/Defensive Security Specialist
Experience: 8–12+ years
- Minimum 5+ years of hands-on penetration testing, ethical hacking, or red team experience.
- Proven experience conducting security assessments across applications, infrastructure, cloud, APIs, and networks.
- Experience leading offensive security engagements and providing remediation guidance.
- Strong understanding of threat detection, incident response, and defensive security operations.
- Experience mentoring junior team members and engaging with senior stakeholders.
Security Engineer / Security Analyst (Mid-Level)
Experience: 4–7 years
- Hands-on experience in vulnerability assessments, penetration testing, or security operations.
- Experience identifying, analyzing, and validating security vulnerabilities.
- Exposure to SIEM platforms, threat monitoring, and incident investigation.
- Knowledge of secure coding practices and application security principles.
- Ability to work with development and infrastructure teams to support remediation efforts.