Own end-to-end offensive security assessments—web/API/mobile, infra/cloud, and Active Directory—and ship findings that matter. Act as the anchor for most pentest delivery while contributing to purple-team detection tuning. Core Responsibilities 1. Assessment DeliveryPlan and execute scoped tests across web, API, mobile, external/internal networks, AD, and AWS/Azure/GCPEmulate APT-style adversaries when scope allows (priv-escalation, lateral movement, data-exfil). 2. Impact Validation & RemediationProve practical business impact (auth bypass, sensitive-data exposure, lateral paths).Draft remediation steps that developers/administrators can realistically implement3. Content & AutomationBuild and maintain reusable checks: Nuclei/Burp/ZAP templates, Semgrep rules, custom scripts (Python/PowerShell/Bash).Automate evidence collection and reporting where it eliminates grunt work.4. Engagement Leadership (rotational)Own scoping calls, daily stand-ups, mid-engagement risk reviews, and final report sign-offEnforce ROE and quality gates (evidence completeness, exploit reproducibility)5. Purple-Team RotationMap top attacker TTPs to detections with Blue Team; validate coverage, tune SIEM/EDR rules, and document gaps6. Research & ToolingTrack emerging TTPs, EDR bypass techniques, and cloud IAM abuses; integrate the useful ones into playbooks.