Senior Cybersecurity Expert Consultant
Quick Summary
A. Security Evaluation Conduct internal and external penetration tests. Perform Active Directory audits. Evaluate the security of Microsoft Windows, Linux, Microsoft Entra ID, and Azure environments.
Dutch or FrenchLevel Elementary proficiency
As part of the ongoing enhancement of its cybersecurity posture, our client seeks to engage the services of a Senior Cybersecurity Expert Consultant to provide independent expertise in assessing the security of its information system and to support IT teams in sustainably improving their level of protection. This position is a consultancy mission at a client site representing Keystone Solutions.
The consultant will have the following objectives:
- Evaluate the actual security level of the information system.
- Identify technical and organizational vulnerabilities that could be exploited.
- Conduct internal and external penetration tests.
- Assess the security of Microsoft, Microsoft Entra ID, Azure, Linux, and network infrastructures.
- Analyze attack paths that could compromise the information system.
- Verify the effectiveness of existing security measures.
- Evaluate the compliance of infrastructures with the security standards adopted by the company and industry best practices.
- Assist technical teams in defining and prioritizing corrective measures.
- Provide independent expertise in infrastructure evolution projects.
- Contribute to the continuous improvement of the company's cybersecurity posture.
Responsibilities
~2 min readA. Security Evaluation
- →Conduct internal and external penetration tests.
- →Perform Active Directory audits.
- →Evaluate the security of Microsoft Windows, Linux, Microsoft Entra ID, and Azure environments.
- →Analyze the security of networks, authentication mechanisms, exposed services, and privileged access.
- →Review security configurations and identify gaps against best practices.
- →Validate the effectiveness of existing protection measures.
- →Identify exploitable technical vulnerabilities and assess their impact.
B. Offensive Analysis
- →Simulate attack scenarios representative of current threats.
- →Analyze compromise chains and attack paths.
- →Identify privilege escalation and lateral movement opportunities.
- →Evaluate network segmentation and security mechanisms.
- →Analyze the security of identities, privileges, delegations, and authentication mechanisms.
- →Identify technical risks that could affect the confidentiality, integrity, or availability of the information system.
C. Consulting, Architecture, and Support
- →Act as the technical reference for all cybersecurity-related questions.
- →Advise IT teams on technical choices impacting security.
- →Participate in architecture reviews from a cybersecurity perspective.
- →Evaluate the impacts of new projects on the company's security posture.
- →Formulate technical recommendations to reduce risks while considering operational constraints.
- →Participate in technical risk analyses.
- →Support teams in implementing remediation measures and in the continuous improvement of security.
D. Documentation and Knowledge Transfer
- →Produce detailed technical reports and executive summaries for management.
- →Prioritize recommendations based on their criticality, exploitability, and feasibility.
- →Document findings, analyses, security architectures, and remediation measures.
- →Develop best practice guides and contribute to the standardization of security practices.
- →Ensure knowledge transfer and contribute to the skill enhancement of internal teams.
- →Present mission results to both technical audiences and management, adapting the level of discourse and formulating clear, reasoned, and pragmatic recommendations.
Cybersecurity
- Internal and external penetration testing.
- Active Directory audits.
- Securing Microsoft environments.
- Securing Microsoft Entra ID and Azure.
- Securing Linux environments.
- Identity and Access Management (IAM).
- Privilege and authentication mechanism analysis.
- Attack path analysis.
- Security architecture evaluation.
- Configuration review and hardening of systems.
- Vulnerability analysis and remediation recommendations.
Infrastructures
- Microsoft Windows Server.
- Active Directory.
- Microsoft Entra ID.
- Microsoft Azure.
- Microsoft 365.
- Linux (Debian, Ubuntu, or equivalent distributions).
- TCP/IP networks.
- Switching, routing, and VLAN.
- Enterprise Wi-Fi infrastructures.
- Firewalls and VPNs.
- Knowledge of virtualized environments (VMware, Hyper-V, or equivalents) to assess their security level.
Methodologies
- OWASP Testing Guide.
- OWASP Top 10.
- MITRE ATT&CK.
- NIST Cybersecurity Framework.
- CIS Benchmarks.
Documentation
- Excellent writing skills.
- Production of technical and executive reports.
- Documentation of architectures, findings, and recommendations.
- Ability to simplify technical subjects for non-specialized audiences.
The consultant must have significant experience in cybersecurity acquired in complex environments. They should demonstrate:
- At least 7 years of professional experience in the field of cybersecurity.
- Complete autonomy in managing complex missions.
- Excellent mastery of Microsoft, Microsoft Entra ID, Azure, and Linux environments.
- Strong experience in conducting penetration tests and technical audits.
- Strong analytical and synthesis skills.
- A methodical, rigorous, structured, and results-oriented approach.
- Excellent organizational and prioritization skills.
- Aptitude for dialogue with both technical teams and management.
- A critical mindset to formulate pragmatic, proportionate, and context-adapted recommendations.
- The ability to act as a cybersecurity reference for internal teams.
- Excellent documentation, communication, and knowledge transfer skills.
The consultant should demonstrate professional maturity and prioritize a pragmatic approach to cybersecurity, based on objective risk assessment, realistic solution seeking, and supporting teams in their implementation.
Minimum Certification
- The consultant must hold at least one recognized certification in offensive cybersecurity, such as:
- Offensive Security Certified Professional (OSCP) or equivalent certification.
Certifications that are an asset
- Burp Suite Certified Practitioner (BSCP).
- Practical Network Penetration Tester (PNPT).
- Certified Red Team Operator (CRTO).
- Certified Red Team Professional (CRTP).
- GIAC Exploit Researcher and Advanced Penetration Tester (GXPN).
- Certified Information Systems Security Professional (CISSP).
- Microsoft Certified: Azure Security Engineer Associate.
- Any Microsoft certification related to security or Microsoft Entra ID.
If you are ready to tackle technical and strategic challenges in a dynamic consultancy environment, apply today at Keystone Solutions Career Portal.
- Active Directory - Level: Expert - Most recent: This year
- Linux - Level: Expert - Most recent: This year
- OWASP - Level: Expert - Most recent: This year
- Python - Level: Expert - Most recent: This year
- Rapid7 - Level: Expert - Most recent: 1 to 3 years ago
- Scripting - Level: Expert - Most recent: This year
- Vulnerability Assessment - Level: Expert - Most recent: This year
- Web Application Pentest (Burp) - Level: Expert - Most recent: This year
- Whireshark - Level: Expert - Most recent: This year
- Wifi Pentest - Level: Expert - Most recent: This year
Requirements
~1 min readDutch or French
Level Elementary proficiency
Location & Eligibility
Listing Details
- First seen
- August 17, 2026
- Last seen
- August 17, 2026
Posting Health
- Days active
- 0
- Repost count
- 0
- Trust Level
- 51%
- Scored at
- August 17, 2026
Signal breakdown
Please let keystone-solutions know you found this job on Jobera.
3 other jobs at keystone-solutions
View all →Explore open roles at keystone-solutions.
Similar Consultant jobs
View all →Browse Similar Jobs
Stay ahead of the market
Get the latest job openings, salary trends, and hiring insights delivered to your inbox every week.
No spam. Unsubscribe at any time.