At TransUnion, this role will report to a Director of Cybersecurity. We are seeking an experienced and highly skilled Red Teamer to join our Information Security Department. The Red Teamer will primarily be responsible for conducting in-depth Threat Emulation exercises such as Red Team Operations, Purple Team Operations, and Penetration Tests to assess the security of our systems, networks, and applications. This is a hybrid position and involves regular performance of job responsibilities virtually as well as in-person at an assigned TU office location for a minimum of two days a week. The successful candidate will possess a strong background in network exploitation, email phishing, lateral movement, local privilege escalation, report writing, web application exploitation, C2 infrastructure, payloads, cloud testing, and have a proven track record in the field. Conduct comprehensive threat emulation exercises, actively simulating cyber-attacks to uncover vulnerabilities in systems, networks, and applications. Collaborate with cross-functional teams to perform purple team exercises that challenge the organization’s overall security posture. Perform lateral movement within target environments to assess the effectiveness of internal network segmentation and access controls. Demonstrate expertise in local privilege escalation techniques. Emulate threat actors by replicating their techniques, tactics, and procedures (TTPs) to identify vulnerabilities and gaps in our defensive measures. Develop and utilize custom scripts, tools, and frameworks to enhance red team operations and mimic real-world attacks. Conduct reconnaissance activities to gather intelligence on potential targets and identify attack vectors. Test the security of cloud-based environments and identify weaknesses in configurations, access controls, and data protection mechanisms. Document and communicate findings, risks, and recommendations in clear and concise reports to stakeholders, including technical and non-technical audiences. Stay updated on the latest attack techniques, threat landscape, and cybersecurity trends to continuously enhance the red team’s capabilities. Provide guidance and support to internal teams on remediation strategies and security best practices based on red team findings.
Stand Out From the Crowd
Upload your resume and get instant feedback on how well it matches this job.
Job Type
Full-time
Career Level
Mid Level
Education Level
No Education Listed
Number of Employees
5,001-10,000 employees