--- title: 'Sr. Offensive Security Consultant (Alpha Group) at VerSprite - LinkedIn' canonical: 'https://feeny.ai/job/sr-offensive-security-consultant-alpha-group-versprite-linkedin-united-states-96k9fsb3jwpj' type: 'job' last_seen: '2026-09-05' --- # Sr. Offensive Security Consultant (Alpha Group) at VerSprite - LinkedIn - **Company:** VerSprite - LinkedIn - **Location:** United States - **Work type:** remote - **Posted:** 2026-03-31 - **Last confirmed live:** 2026-09-05 - **Apply:** https://job-boards.greenhouse.io/versprite/jobs/5841904004 ## Job description VerSprite VerSprite is an Inc. 5000 2020 fastest growing company and industry leader in PASTA threat modeling. Founded in 2007, VerSprite is a private cybersecurity consulting firm helping organizations tighten their risk-gaps with evolved security solutions and advanced threat intel tools. VerSprite has a 97% client retention rate providing organizations with services like penetration tests, evolved red teaming engagements, vCISO, vSOC and VerSprite’s advanced security tools Cloud Security Assessment Platform and Cyber Threat Intelligence Portal. Sr. Offensive Security Consultant (Alpha Group) Location: Remote - within the United States This is a fully remote role. Candidates must be authorized to work in the United States. While remote, candidates located in Georgia or nearby states are strongly preferred to facilitate collaboration with internal teams and clients. ## Overview VerSprite is seeking an experienced Sr. Offensive Security Consultant to lead complex security assessments across modern enterprise environments. This role focuses on advanced penetration testing and application security engagements while working closely with clients to identify real-world attack paths and security risks. The ideal candidate combines strong technical expertise with consulting experience and the ability to clearly communicate security risk to both technical and executive audiences. ## Responsibilities - Lead penetration testing engagements across web applications, APIs, and enterprise infrastructure - Perform advanced application security testing including business logic flaws and authentication weaknesses - Conduct internal and external network penetration testing - Lead Red Teaming engagements. - Perform threat modeling exercises (e.g., PASTA methodology) - Conduct cloud security assessments across AWS, Azure, and GCP - Perform mobile application security testing (Android and iOS) - Develop custom payloads and exploitation techniques - Produce detailed technical reports including proof-of-concept exploitation scenarios - Communicate technical findings and risk to client stakeholders - Mentor junior consultants during engagements - Contribute to internal research initiatives and security methodology improvements Required Qualifications - 7+ years of experience in offensive security or penetration testing - Strong experience in web application, API penetration testing, external and internal network assessments. Experience testing Active Directory environments. - Experience leading Red Teaming engagements. - Strong experience writing penetration testing reports and technical documentation - Ability to communicate security risks to technical and non-technical stakeholders - Strong communication skills both written and spoken. - Experience working in consulting or client-facing environments ## Nice to Have - Offensive security certifications such as OSCP, OSWE, OSEP, CRTO, or similar - Experience performing hardware / product security testing. - Public vulnerability disclosures - Participation in bug bounty programs - Security research publications or blog posts - Contributions to open-source security tools - Active participation in the security community (CTFs, conferences, etc.) ## Benefits We offer a competitive compensation package where you’ll be recognized for the value you bring to our business, along with: - Opportunities to develop new skills and progress your career; - The freedom and flexibility to handle your role in a way that’s right for you; and - A collaborative environment where everyone works together to create a better working world If this seems intriguing to you, please apply! We will reach out promptly to discuss your fit and additional job details. ## About VerSprite - LinkedIn ## Company Overview - **One-liner**: VerSprite is a cybersecurity firm specializing in risk-based threat modeling (PASTA methodology), penetration testing, and managed security services for enterprises and product teams. - **Entity Type**: Private (bootstrapped/growth stage) - **Headquarters**: Atlanta, Georgia, United States - **Founded**: 2007 - **Founders**: Tony UcedaVelez (CEO & Founder) ## Core Business - Primary industry/industries: Cybersecurity, IT Services and IT Consulting - Target customers: B2B – enterprise organizations, SaaS/technology providers, financial services, healthcare, manufacturing, retail, and critical infrastructure - Mission or purpose: To contextualize security data into operational means of response and risk reduction, helping organizations create sustainable security workflows. ## Products & Services - **PASTA Threat Modeling**: A risk-centric, 7-stage threat modeling methodology (Process for Attack Simulation and Threat Analysis) used globally to prioritize threats based on business impact. - **Penetration Testing**: Web, mobile, API, cloud penetration testing; red teaming and adversary simulation; exploit validation with remediation guidance. - **Managed Security Services**: Managed Detection and Response (MDR), Virtual CISO (vCISO), risk assessments, compliance support (SOC 2, ISO 27001, HIPAA, PCI DSS, GLBA, etc.), and security automation. - **Application Security Services**: Secure SDLC implementation, CI/CD pipeline security, code review, vulnerability management, threat modeling for SaaS and cloud-native applications. - **Offensive Security Consulting**: Specialized red teaming, adversary simulation, and advanced fraud/account takeover testing. ## Market Standing - **Valuation/Market Cap**: Not publicly available - **Key Metric**: Annual Revenue ~$1.5M (latest estimate); Headcount ~36 employees; serves 400+ organizations globally. - **Notable Investors/Partners**: Privately held; no external funding disclosed. Key partner: CREST (accredited for cybersecurity services). - **Growth Signals**: Maintains a 90% client retention rate; operates in 12 countries with a distributed remote team; recently achieved CREST/CIS accreditation (July 2025); publishes annual Geopolitical Critical Threat Report. ## Competitive Advantages - **Creator of PASTA Methodology**: Co-developed by founder Tony UcedaVelez, the PASTA framework is a widely adopted risk-centric threat modeling standard. - **Risk-Focused Approach**: Prioritizes threats based on business impact, not just technical findings, differentiating from compliance-only firms. - **Proven Experience**: 16+ years in cybersecurity, with 2,000+ risk assessments completed and strong long-term client partnerships. - **Global, Remote-First Team**: Operates across 10+ countries; highly specialized consultants (49% consulting, 23% technical). ## Strategic Focus - Continue scaling managed security delivery by blending expert practitioners with automation. - Deepen integration of threat modeling into DevSecOps and CI/CD workflows. - Expand geopolitical threat intelligence (annual enVisions report) to connect global trends to cyber risk. - Grow headcount in offensive security, full-stack development, and sales roles to support increasing demand. ## Why Work Here - **Culture**: Emphasis on challenging the status quo, collaboration, and customer success. Values include “We succeed and grow together” and “Our customers’ success is our success.” - **Remote/Hybrid Policy**: Fully remote global team; positions open in US and outside US. - **Benefits & Perks**: Medical, dental, vision; retirement plans; wellness stipend; education stipend; referral program. - **Engineering Culture**: Strong focus on offensive security, threat modeling, and application security; opportunities to work with cutting-edge tools and methodologies. - **Growth**: 4 active job postings (May 2026) – Sr. Offensive Security Consultant, Account Executive, Sr. Full Stack Developer, Security Engineer. Team is ~36 people with a 33.9% YoY LinkedIn follower growth, indicating increasing brand visibility. ## Sources 1. [LinkedIn Company Profile](https://www.linkedin.com/company/versprite-llc) 2. [VerSprite Official Website](https://versprite.com/) 3. [VerSprite Careers Page (Greenhouse)](https://job-boards.greenhouse.io/versprite) 4. [VerSprite Cybersecurity Careers Page](https://versprite.com/cybersecurity-careers/) 5. [VerSprite Consulting Services Page](https://versprite.com/versprite-cybersecurity-consulting-services/) 6. [Morningstar (CREST Accreditation News)](https://www.morningstar.com) (referenced in search results)