Offensive Security Consultant – Reconnaissance / OSINT (M/F)
Job Description
All our positions are open to teleworking.
Joining Deloitte means saying yes to a meaningful experience, one where the encounters and missions push you to grow every day. It means evolving in a work environment based on trust, sharing, and collective intelligence to build the future of our clients. A future that we want to be more responsible, more sustainable, and respectful of the environment by taking concrete initiatives at our level. Joining us also means saying yes to a Great Place to Work company, committed to the well-being and inclusion of our employees without distinction.
And you, ready to say #ISayYes to your future at Deloitte?
Deloitte's Offensive Security Center team is looking to expand its teams and services. As part of this growth, Deloitte is seeking a profile specialized in open source reconnaissance and research .
What will your role be in #TeamDeloitte?
As part of the missions, you will be required to:
• Carry out Cyber exposure assessment missions (OSINT, Threat Intelligence), using tools, databases and scripts to provide visibility into their security and brand image:
• The level of exposure of sites, services, technologies used and vulnerabilities;
• The level of exposure of all or part of their employees (professional profiles, social networks);
• Confidential information, data leaks, passwords.
• Identify flaws allowing intrusions and by extension analyze the security level of exposed infrastructures (external intrusion tests, cloud, etc.);
• Participate in Red-team missions, particularly during the reconnaissance and initial access phase by providing the intelligence necessary to execute advanced attack scenarios;
• Develop a reconnaissance infrastructure to increase Deloitte’s cyber intelligence capabilities tenfold.
Joining the Offensive Security team at Deloitte France is the opportunity to:
- Be part of a team for which training and personal development are at the heart of ambitions, via an investment program on certifications such as GIAC, OSCP, OSWE, OSEP, RTO, etc.;
- Participate in expert missions for clients from all sectors, of different sizes and located both in France (and regions) and abroad;
- Maintain and develop the team's tools, infrastructure and resources with the aim of continuous improvement and adjustment/finetuning of the tools;
- Integrate into an international network of experts and collaborate on eminent subjects with pentesters and specialists in Europe and around the world;
- Carry out actions of eminence, publication and research with a view to developing the team's influence;
- [The most important] Being part of a team, in which each member brings and contributes, both on the operational and strategic side.
By joining us, you will actively contribute to the development of a team whose DNA is:
- Collaborative management and decision-making;
- Team cohesion and initiative;
- Eminence and technical expertise;
- Kindness and envy.
We are actively engaged in research and development, as well as in the eminence of our offensive capabilities. As such, you will have time dedicated to research and publication, the creation and maintenance of internal tools, and the development of skills and capabilities related to open-source intelligence and related topics.
What if it was you?
You are passionate and have successful experience in OSINT and Cyber reconnaissance.
You demonstrate in-depth knowledge in the areas listed below:
• Communication protocols related to Internet networks (web, deep web, dark web)
• Open source data collection techniques
• Social media platforms and their use in recognition actions
• Anonymity / pseudonymity techniques on the internet
• Threat Intelligence, threat research and information leaks
• External and Application Intrusion Testing
• Expertise in security and network architecture (components, firewall, probes, etc.)
• You like challenges and technical challenges, you are looking for a dynamic working environment, giving you the means to be a player in the development of the team.
The pros:
- An Offensive certification in the field of Red Team, Cloud or intrusion testing.
- Presence on networks, maintenance of a security blog
- The development and provision of tools to the community
- Active participation in a technical community (Association, Discord, Forum, etc.)
- Presence on the technical stage or presentation at conferences
- Successful participation in Bug Bounty programs
#ALLIN : All candidates belong at Deloitte. We believe in an inclusive environment where people feel involved, respected, valued, and empowered to bring their authentic selves to the table. Combating all forms of discrimination, promoting equal opportunities, and respecting and valuing diversity are the cornerstones of our HR policy. Therefore, all applications, regardless of age, disability, gender, nationality, religion, sexual orientation, or other factors, have a place in our recruitment process.