Offensive Security Team Leader
ืคืืจืกื ืืชืืื ยท 0 ืืืขืืืื
ืฉืืืจื, ืืืฉื ืื ืืืืงืช ืืชืืื. ืคืชืืืช ืืฉืืื ืืื ื ืืืงืืช ืืื ืฉื ืืืช.
- 3+ years of hands-on offensive security experience (penetration testing, red teaming)
- 2+ years leading a technical team or practice
- Proven experience running full red team operations: initial access, C2 infrastructure, evasion, Active Directory and cloud attack paths, lateral movement
- Strong penetration testing background across web applications, external/internal infrastructure, and cloud environments (AWS/Azure/GCP)
- Experience with purple team exercises and detection validation, working alongside blue teams and SOCs
- Experience with AI/LLM red teaming and adversarial testing of AI systems
- Experience building or scaling a services practice (methodologies and packaging)
- Public research, CVEs, conference talks, or CTF background
- Relevant certifications (OSCP, OSEP, OSWE, CRTO, CRTL, GXPN, or equivalent)
ืืืืฅ ืืชืืืืจ ืืืฉืจื ยท ืืชืขืืื ืืืืืืืืช
ืชืืืืจ ืืืฉืจื ืืืื
ืืืฉืจื ืืืงืืจืืช ยท ื ืฉืืจ ืืขืืื๐ Offensive Security Team Leader
๐ Tel Aviv | On-site | Full-time
About the Role
Akita Cyber is looking for a hands-on Offensive Security Team Leader to own and grow our offensive security practice. You will lead the delivery of red team, purple team, and penetration testing engagements for our clients, drive adoption of offensive security platforms (BAS, AI red teaming, ASM), and manage the team end to end, from methodology and quality to hiring and mentoring.
This is a client-facing leadership role that combines deep technical work with pre-sale and post-sale ownership.
What You'll Do
โข Lead and personally deliver offensive security engagements: red team operations, purple team exercises, and penetration testing (web, infrastructure, cloud, mobile).
โข Own delivery of platform-based services, including Breach & Attack Simulation (BAS), AI red teaming, continuous/automated security validation, and Attack Surface Management (ASM).
โข Manage the offensive security team end to end: recruiting, mentoring, training plans, workload and engagement planning, methodology, tooling, and report quality assurance.
โข Run POCs/POVs for offensive security services and platforms - scoping, executing, and presenting results and value to prospective clients.
โข Support pre-sale processes: scoping calls, technical proposals, SOWs, effort estimation, and technical presentations to prospects.
โข Own post-sale success: executive and technical debriefs, remediation guidance, retesting, and identifying opportunities to expand engagements.
โข Build and continuously improve the practice: attack playbooks aligned to MITRE ATT&CK, internal tooling, engagement templates, and service offerings.
โข Stay ahead of the threat landscape and bring new techniques, tools, and service ideas into the practice.
What You'll Bring
โข 3+ years of hands-on offensive security experience (penetration testing, red teaming), including 2+ years leading a technical team or practice.
โข Proven experience running full red team operations: initial access, C2 infrastructure, evasion, Active Directory and cloud attack paths, lateral movement.
โข Strong penetration testing background across web applications, external/internal infrastructure, and cloud environments (AWS/Azure/GCP).
โข Experience with purple team exercises and detection validation, working alongside blue teams and SOCs.
โข Familiarity with offensive security platforms - BAS (e.g., Pentera, Cymulate, SafeBreach, AttackIQ), automated pentesting, ASM/EASM tools; experience running platform POCs is a strong advantage.
โข Excellent client-facing skills: leading scoping calls, presenting findings to both technical teams and executives, and writing high-quality reports.
โข Experience supporting sales cycles (pre-sale scoping, proposals, POC/POV) in a consulting or services environment.
โข Scripting and tool development skills (Python, PowerShell, C#, Go).
โข Fluent English (written and spoken).
Nice to Have
โข Experience with AI/LLM red teaming and adversarial testing of AI systems.
โข Experience building or scaling a services practice (methodologies and packaging).
โข Public research, CVEs, conference talks, or CTF background.
โข Relevant certifications are an advantage: OSCP, OSEP, OSWE, CRTO, CRTL, GXPN, or equivalent.
Why Akita Cyber
โข Lead and shape a growing offensive security practice with real ownership.
โข Work on diverse, technically challenging engagements across industries.
โข Direct influence on service strategy, tooling, and team growth.
โข Budget for training, certifications, and conferences.
******
Candidate Privacy Policy
The Company collects and retains personal information provided by candidates โ including their CV, contact details, and any additional information submitted during the recruitment process โ for the purpose of assessing each candidateโs suitability for open positions and managing the recruitment process.
Such information is stored in the Companyโs systems for a reasonable period of time necessary to complete the recruitment process, in accordance with the Israeli Privacy Protection Law and other applicable legal requirements.
The information is secured using appropriate technological and organizational measures to prevent unauthorized access, misuse, or disclosure.
Candidates may, at any time, submit a request to review, correct, delete, or restrict the use of their personal information by contacting us at: PrivacyProtection@akitacyber.com
By submitting their CV and personal details, candidates confirm that they have read, understood, and agreed to this Privacy Policy.
๐ Learn more about us at: https://akitacyber.com/
ืฉืืืืช ืขื ืืืฉืจื
- ืืืฉืจื ืื ืฆืืื ื ืฉืืจ. ืื ืื ื ืืฆืืืื ืฉืืจ ืจืง ืืฉืืืขืกืืง ืืคืจืกื ืืืชื.
- 3+ years of hands-on offensive security experience (penetration testing, red teaming), 2+ years leading a technical team or practice, Proven experience running full red team operations: initial access, C2 infrastructure, evasion, Active Directory and cloud attack paths, lateral movement, Strong penetration testing background across web applications, external/internal infrastructure, and cloud environments (AWS/Azure/GCP), Experience with purple team exercises and detection validation, working alongside blue teams and SOCs