助理Hive成员(欧洲Hive)
Associate Hive Member (European Hive)
职位描述
在CovertSwarm,我们通过持续、不懈的攻击重新定义进攻性安全。作为Associate Hive Member,你将把不断增长的进攻性安全专业知识应用到真实的客户环境中,与经验丰富的操作员一起,发现他人忽略的漏洞和弱点。
你已超越基础。现在,重点是积累经验,磨练技术技能,并发展所需的技战术深度和独立性,以成为出色的进攻性安全操作员。
机会介绍
这是已经掌握实用网络安全测试技能并准备在客户环境中持续应用这些技能的进攻性安全专业人士的下一步。
你将在安全评估中发挥积极作用,执行诸如OSINT、外部基础设施测试和其他进攻性安全操作等活动。你将直接与客户合作,汇报你的发现,并随着经验的积累逐步承担更多评估责任。
你需要时会得到经验丰富的Hive Members的支持,但我们也期望你能够自主调查、解决问题并负责自己的成长。
目标很简单:建立广度、深度和经验,以迈向完全自主的Hive Member。
核心职责
- 在一个或多个测试领域对客户环境进行网络安全评估
- 执行包括OSINT、侦察、外部基础设施评估、漏洞发现和验证在内的活动
- 应用手动和自动安全测试技术来识别可利用的弱点
- 负责分配的评估活动,在适当的时候升级问题并寻求技术指导
- 通过我们的定制报告门户生成及时、高质量、可操作的基于威胁的发现
- 清晰地向客户传达技术发现、其影响以及适当的修复建议
- 在评估后支持客户简报
- 作为CovertSwarm客户的的技术联系人,与关键利益相关者建立牢固的关系
- 在整个项目中保持清晰专业的客户沟通
- 与其他Hive Members协作,与整个Swarm分享有用的发现和知识
- 持续发展你在进攻性安全各个领域的技术能力
- 负责自己的学习和发展
查看英文原文
The Mission
At CovertSwarm, we're redefining offensive security through constant, relentless attack. As an Associate Hive Member, you'll put your growing offensive security expertise into practice against real-world client environments, working alongside experienced operators to identify vulnerabilities and weaknesses others miss.
You're beyond the foundations. Now it's about building experience, sharpening your tradecraft, and developing the technical depth and independence needed to become an accomplished offensive security operator.
The Opportunity
This is the next step for an emerging offensive security professional who has already developed practical cybersecurity testing skills and is ready to apply them consistently across client environments.
You'll take an active role in security assessments, carrying out activities such as OSINT, external infrastructure testing, and other offensive security operations. You'll work directly with clients, communicate your findings, and take increasing ownership of your assessments as your experience develops.
You'll have the support of experienced Hive Members when you need it, but we'll also expect you to investigate, problem-solve, and take ownership of your own development.
The goal is simple: build the breadth, depth, and experience to progress towards becoming a fully autonomous Hive Member.
The Arsenal (Core Responsibilities)
- Carry out cybersecurity assessments against client environments across one or more testing domains
- Perform activities including OSINT, reconnaissance, external infrastructure assessment, vulnerability discovery, and validation
- Apply manual and automated security testing techniques to identify exploitable weaknesses
- Take ownership of assigned assessment activities, escalating and seeking technical guidance where appropriate
- Produce timely, high-quality, actionable, threat-based findings through our custom reporting portal
- Clearly communicate technical findings, their impact, and appropriate remediation to clients
- Support client debriefs following assessments
- Act as a technical contact for CovertSwarm clients, fostering strong relationships with key stakeholders
- Maintain clear and professional client communication throughout engagements
- Work collaboratively with other Hive Members, sharing useful discoveries and knowledge with the wider Swarm
- Continuously develop your technical capabilities across offensive security disciplines
- Take ownership of your learning and development, actively working towards greater technical independence
The Operator (What Makes You Great)
- Demonstrable practical experience in one or more cybersecurity testing domains
- Foundations in network, infrastructure, and/or application security
- Practical experience using common offensive security tools and methodologies
- Ability to identify, investigate, validate, and clearly communicate security vulnerabilities
- Comfortable carrying out defined assessment activities with a growing level of independence
- Able to approach technical problems methodically while knowing when to seek guidance
- Curiosity about how systems work – and a drive to discover how they can be broken
- Motivation to broaden your testing experience and develop deeper technical expertise
The Human Element
- Sharp analytical mind with keen attention to detail
- Natural problem solver who enjoys investigating technical challenges
- Effective written and verbal communicator
- Able to translate technical findings into clear, useful information for clients
- Takes ownership and accountability for the quality of their work
- Receptive to feedback and able to apply it to future engagements
- Self-driven learner committed to continuous professional development
- Actively maintains and progresses a personal career development plan
- Team player who both learns from and contributes to the collective knowledge of the Swarm
- Engaged with the wider cybersecurity industry through conferences, community events, research, labs, CTFs, or similar activities
The Credentials
At Associate level, practical capability and demonstrated development matter more to us than collecting certifications.
We'd like to see relevant cybersecurity qualifications or evidence of equivalent practical capability, which might include:
- CEH (Certified Ethical Hacker)
- CompTIA qualifications
- Other relevant cybersecurity, networking, or technical qualifications
We'd also be interested if you're working towards more advanced practical certifications such as:
- OSCP (Offensive Security Certified Professional)
- CREST CRT (CREST Registered Penetration Tester)
- CSTM (Cyber Scheme Team Member)
- CRTO (Certified Red Team Operator)
- Other recognised practical offensive security certifications
Certifications aren't the only way to demonstrate your ability. Practical client experience, labs, CTFs, independent research, vulnerability research, home labs, and personal security projects can all demonstrate the skills we're looking for.
The Perks
Join a team that values both excellence and balance:
- True remote flexibility – work from anywhere
- No report writing drudgery – we use our custom portal
- Unlimited training to keep developing your skills
- Work alongside and learn from experienced offensive security operators
- Exposure to multiple cybersecurity testing domains and client environments
- Clear opportunities to develop towards greater technical independence and progression within the Hive
- Unlimited vacation – because burnout helps no one
- Private medical insurance and pension scheme
- Conference speaking bonuses
- Hardware, software, and research materials you need to excel
- A culture of radical candor and continuous improvement
- Company events and local Hub meetups
- The opportunity to attend DEFCON Las Vegas
The Culture
At CovertSwarm, we take pride in pushing the boundaries of offensive security. Our team consists of passionate and humble professionals who value creativity, technical excellence, and delivering results that matter.
As an Associate Hive Member, you've already established your foundations. We'll give you opportunities to apply those skills against real-world targets, learn from experienced operators, and take progressively greater ownership of your work.
We expect curiosity, accountability, and a willingness to challenge yourself. You'll have support when you need it, but you'll also be encouraged to investigate independently, develop your own tradecraft, and contribute what you learn back to the Swarm.
We embrace collaboration, innovation, and a relentless drive to improve. If you share these values and are ready to take the next step in your offensive security career, we want to hear from you.
Ready to join the Swarm?
You've built the foundations. Now it's time to put them to work.
Take the next step in your offensive security career by applying today. Let's talk about how your practical experience, technical skills, and ambition align with CovertSwarm's mission to redefine offensive security.