Advisor Red Team

TransUnionChicago, IL
Hybrid

About The Position

At TransUnion, this role will report to a Director of Cybersecurity. We are seeking an experienced and highly skilled Red Teamer to join our Information Security Department. The Red Teamer will primarily be responsible for conducting in-depth Threat Emulation exercises such as Red Team Operations, Purple Team Operations, and Penetration Tests to assess the security of our systems, networks, and applications. This is a hybrid position and involves regular performance of job responsibilities virtually as well as in-person at an assigned TU office location for a minimum of two days a week. The successful candidate will possess a strong background in network exploitation, email phishing, lateral movement, local privilege escalation, report writing, web application exploitation, C2 infrastructure, payloads, cloud testing, and have a proven track record in the field. Conduct comprehensive threat emulation exercises, actively simulating cyber-attacks to uncover vulnerabilities in systems, networks, and applications. Collaborate with cross-functional teams to perform purple team exercises that challenge the organization’s overall security posture. Perform lateral movement within target environments to assess the effectiveness of internal network segmentation and access controls. Demonstrate expertise in local privilege escalation techniques. Emulate threat actors by replicating their techniques, tactics, and procedures (TTPs) to identify vulnerabilities and gaps in our defensive measures. Develop and utilize custom scripts, tools, and frameworks to enhance red team operations and mimic real-world attacks. Conduct reconnaissance activities to gather intelligence on potential targets and identify attack vectors. Test the security of cloud-based environments and identify weaknesses in configurations, access controls, and data protection mechanisms. Document and communicate findings, risks, and recommendations in clear and concise reports to stakeholders, including technical and non-technical audiences. Stay updated on the latest attack techniques, threat landscape, and cybersecurity trends to continuously enhance the red team’s capabilities. Provide guidance and support to internal teams on remediation strategies and security best practices based on red team findings.

Requirements

  • Minimum of 5 years of active experience in conducting penetration tests and actively working as a red teamer.
  • Proficiency in ability to compromise a modern organization, escalate privileges, move laterally through complex networks, and achieve adversary goals.
  • Strong experience and expertise in phishing techniques, social engineering tactics, and other initial access methods.
  • Extensive experience in writing comprehensive and well-structured reports detailing findings, risks, and actionable recommendations.
  • Proven track record in performing red team operations and purple team operations.
  • Strong analytical and problem-solving skills with the ability to think creatively to simulate real-world threat scenarios.
  • Excellent communication skills, with the ability to effectively convey technical information to both technical and non-technical stakeholders.
  • Basic development experience (python/bash/git/etc) to create custom solutions for bleeding edge problems.

Nice To Haves

  • Industry certifications such as OSCP, OSCE, GPEN, GWAPT, CISSP, or equivalent would be an advantage.

Responsibilities

  • Conduct comprehensive threat emulation exercises, actively simulating cyber-attacks to uncover vulnerabilities in systems, networks, and applications.
  • Collaborate with cross-functional teams to perform purple team exercises that challenge the organization’s overall security posture.
  • Perform lateral movement within target environments to assess the effectiveness of internal network segmentation and access controls.
  • Demonstrate expertise in local privilege escalation techniques.
  • Emulate threat actors by replicating their techniques, tactics, and procedures (TTPs) to identify vulnerabilities and gaps in our defensive measures.
  • Develop and utilize custom scripts, tools, and frameworks to enhance red team operations and mimic real-world attacks.
  • Conduct reconnaissance activities to gather intelligence on potential targets and identify attack vectors.
  • Test the security of cloud-based environments and identify weaknesses in configurations, access controls, and data protection mechanisms.
  • Document and communicate findings, risks, and recommendations in clear and concise reports to stakeholders, including technical and non-technical audiences.
  • Stay updated on the latest attack techniques, threat landscape, and cybersecurity trends to continuously enhance the red team’s capabilities.
  • Provide guidance and support to internal teams on remediation strategies and security best practices based on red team findings.

Benefits

  • Enjoy day-one eligibility for medical, dental, and vision coverage, plus supplemental plan options.
  • Spousal, domestic partner, and other eligible dependent coverage is available on select plans.
  • Choose tax‑advantaged HSA and FSA accounts to make everyday care more affordable.
  • We’ve got your back with company‑paid basic life and AD&D, optional voluntary life and AD&D for you and your family, and short‑ and long‑term disability.
  • You can also opt into a legal plan, pet insurance, and travel accident coverage.
  • From adoption assistance and fertility planning coverage to caregiver support, we’re here for every chapter.
  • Access Dependent Care FSA for possibility of an employer match, a complimentary Care@Work membership, and up to 12 weeks of paid parental leave with eligibility for a thoughtful, gradual return.
  • Build toward what’s next with our 401(k) with employer match and Employee Stock Purchase Plan (ESPP).
  • Tap financial wellness resources, career coaching, and optional long‑term care insurance to plan confidently.
  • Grow and recharge with tuition reimbursement, flexible time off for exempt employees or paid time off for nonexempt employees, up to 12 paid holidays per year, commuter benefits, employee discounts, charitable gift matching, and paid volunteer time off, plus corporate volunteer events that make it easy to give back.
  • Access 24/7 support including professional therapy, coaching, and emotional well‑being programs alongside guided meditation and resources that support physical, mental, social, and financial wellness.

Stand Out From the Crowd

Upload your resume and get instant feedback on how well it matches this job.

Upload and Match Resume

What This Job Offers

Job Type

Full-time

Career Level

Mid Level

Education Level

No Education Listed

Number of Employees

5,001-10,000 employees

© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service