Authorized Phishing & Pretext Specialist
Budget: $750 – $1,500 USD
RedHat Expertise is an external offensive security firm specializing in authorized human-layer security assessments.
We support organizations by simulating real-world social engineering and phishing attack paths that internal security teams cannot ethically or operationally conduct themselves.
As we prepare for upcoming client engagements, we are seeking two experienced contractors to join our vetted pool and support future assessment work.
All engagements are:
Fully authorized
Clearly scoped
Legally approved
Ethics-driven
Scope of Work
Contractors may be engaged to:
Design realistic phishing scenarios aligned with client environments
Execute authorized phishing simulations using approved tooling
Develop social engineering pretexts (email, phone, workflow-based)
Analyze human response patterns and risk exposure
Contribute to professional assessment reports (technical & executive)
Support remediation guidance and validation
Required Qualifications
Must-have:
Demonstrated experience in authorized phishing or social engineering assessments
Strong understanding of human attack vectors and adversary behavior
Ability to operate within strict scope, documentation, and rules of engagement
Clear, professional written communication
Willingness to sign:
NDA
Code of Conduct
Contractor Agreement
Nice-to-have:
Experience with red teams or security consultancies
OSINT or adversary simulation experience
Enterprise or regulated-industry exposure
Relevant security certifications (optional)
We support organizations by simulating real-world social engineering and phishing attack paths that internal security teams cannot ethically or operationally conduct themselves.
As we prepare for upcoming client engagements, we are seeking two experienced contractors to join our vetted pool and support future assessment work.
All engagements are:
Fully authorized
Clearly scoped
Legally approved
Ethics-driven
Scope of Work
Contractors may be engaged to:
Design realistic phishing scenarios aligned with client environments
Execute authorized phishing simulations using approved tooling
Develop social engineering pretexts (email, phone, workflow-based)
Analyze human response patterns and risk exposure
Contribute to professional assessment reports (technical & executive)
Support remediation guidance and validation
Required Qualifications
Must-have:
Demonstrated experience in authorized phishing or social engineering assessments
Strong understanding of human attack vectors and adversary behavior
Ability to operate within strict scope, documentation, and rules of engagement
Clear, professional written communication
Willingness to sign:
NDA
Code of Conduct
Contractor Agreement
Nice-to-have:
Experience with red teams or security consultancies
OSINT or adversary simulation experience
Enterprise or regulated-industry exposure
Relevant security certifications (optional)
Related categories:
Computer Security
Internet Security
Documentation
Security
Risk Assessment
Contract Management