Careers
Do the work, not the timesheet.
We are a small practice, which means you will own engagements rather than fragments of them, talk directly to clients, and be in the room when the findings are presented.
Where we usually have room
We hire against capability rather than a fixed headcount plan. If you are strong in one of these, it is worth writing to us even when nothing is advertised.
- Penetration testers — network, web, mobile and API
- Red team operators and adversary emulation specialists
- SOC analysts across all shifts, L1 through L3
- Detection engineers and SIEM content developers
- Cloud security engineers (AWS and Azure)
- GRC consultants with ISO 27001 and RBI or NHB experience
- OT and ICS security specialists
What we offer
- Certification support — OSCP, CISSP, CEH and lead auditor tracks
- Rotation across testing, operations and compliance work
- Direct client exposure from early on
- A lab budget and time to use it
How to apply
Send a CV and a short note about the work you want to be doing. If you have public research, write-ups, CVEs or CTF results, include them — we read them.

