Listing Description
This is an exciting opportunity to build and grow our Red Team program to provide adversary emulation and control validation services. You will be responsible for creating Red/Purple team exercises that mimic real threat actor tactics and techniques and are expected to create reports that document methodologies, findings, and remediation strategies.
This position will report to the Cyber Threat Intelligence manager who is responsible for oversight of Red Team operations, Threat Intelligence operations and deception technology, and Threat Hunting operations.7+ years of total experience in a cyber security role
5+ years of Red Team/Pen Testing experience
Minimum of 1 year of experience in a team lead or leadership role is preferred
Ability to act as primary contact and lead for Red Team operations
Ability to provide guidance to other team members in red team operations and prioritize resources
Familiar with red team operations and phases/penetration testing framework
Proficient at evading EDR and AV detection using different obfuscation methods
Ability to code attack tools
Passionate about attack simulation and security control validation
Proficient with multiple penetration testing tools within Kali/Parrot Linux including Metasploit and/or Cobalt Strike and Burp Suite Pro.
Strong understanding of operations systems (Windows/Linux/Mac)
Strong understanding of TCP/IP and Cloud Providers (AWS, Azure, GCP)
Good understanding of SIEM, Proxy, DNS and IPS/IDS technologies
Deep understanding of threat actor tactic, techniques and procedures
Offensive Security (OSCP), GIAC SANS (GXPN, GPEN, GWAPT etc.) certifications are a plus
Ability to leverage MITRE ATT&CK framework to inform red teaming methodology
Willingness to go above and beyond to achieve objectives with a positive ‘can do attitude’
Strong understanding of web technologies and frameworks (OWASP Top 10)
Coding and scripting ability with Python or PowerShell preferred
Experience with Breach and Attack Simulation (BAS) products such as Verodin, SafeBreach or AttackIQ preferred
Listing Details
- Citizenship: Us Citizen
- Incentives: Bonus
- Education: No Requirements
- Travel: No Travel
- Telework: Full Telecommute