Principal Physical Red Team Analyst - Remote or Hybrid in MN Metro or DC

UnitedHealth GroupEden Prairie, MN
11d$112,700 - $193,200Hybrid

About The Position

Optum is a global organization that delivers care, aided by technology to help millions of people live healthier lives. The work you do with our team will directly improve health outcomes by connecting people with the care, pharmacy benefits, data and resources they need to feel their best. Here, you will find a culture guided by inclusion, talented peers, comprehensive benefits and career development opportunities. Come make an impact on the communities we serve as you help us advance health optimization on a global scale. Join us to start Caring. Connecting. Growing together. The Enterprise Information Security (EIS) team is responsible for cybersecurity across our organization. We support our business and members by reducing risk, rapidly responding to threats, focusing on business resiliency and securing new acquisitions. We are seeking a highly skilled and resourceful offensive security assessment member to join our Physical Red Team. In this role, you will simulate real-world adversaries to evaluate and improve the physical security posture of our facilities, personnel, and processes. You will plan and execute covert operations—such as facility penetration, surveillance, and social engineering—and provide detailed reporting to help strengthen defenses against sophisticated threats. You’ll enjoy the flexibility to work remotely from anywhere within the U.S. as you take on some tough challenges. For all hires in the Minneapolis or Washington, D.C. area, you will be required to work in the office a minimum of four days per week.

Requirements

  • 5+ years of in-depth experience in physical red team assessments
  • 3+ years of demonstrated and practical experience with intelligence gathering and sorting (HUMINT, OSINT, SIGINT, etc.)
  • Demonstrable expertise with physical red team assessments and reporting
  • Hands-on and demonstrated expertise with assessment and exploitation tools including:
  • Key Card Emulators
  • RFID Scanners
  • RaspberryPi
  • Physical and Technological Evasion Techniques
  • Software Defined Radios
  • Kali, Burp, and Metasploit
  • Demonstrated ability to design, source, build, and deploy various offensive security tools (wireless detection, SDR, drone, surveillance)
  • Ability to think critically and creatively to solve complex problems with limited to no guidance
  • Ability to travel up to 50%25 of the time; sometimes outside the United States
  • Ability to integrate with a team and support cross-team functions

Nice To Haves

  • FAA drone license
  • Ham radio license
  • Physical Red Team certification (CCRTS, PSP, CEE, etc.)
  • Offensive security certification (GPEN, OSCP, CRT)
  • Law enforcement, military, or private/government security previous employment
  • AI developer experience
  • Hands-on demonstrated skills with:
  • Key Impression Kits
  • C2 Infrastructure
  • Lockpicks
  • Directional Antennas
  • Located in Minneapolis

Responsibilities

  • Conduct physical security assessments of facilities by attempting to bypass locks, alarms, access controls, and security personnel
  • Perform covert entry operations including reconnaissance, surveillance, and red team exercises
  • Test human-factor vulnerabilities through social engineering, impersonation, or tailgating
  • Conduct intelligence (OSINT, HUMINT, SIGINT) collection on facilities, personnel, and businesses
  • Design, source, build, and deploy physical and technological offensive security tools
  • Create and communicate risk-profiles for executive members
  • Document findings with accurate reporting, photography, and after-action reviews, including remediation recommendations
  • Collaborate with cybersecurity, corporate security, and defensive security teams to ensure findings are integrated into broader risk management strategies
  • Maintain strict compliance with legal, ethical, and safety guidelines during all engagements
  • Stay current with emerging tools, techniques, and threat actor behaviors relevant to physical security testing
  • Effectively communicate successes and obstacles with fellow team members and team lead(s)
  • Create written reports, detailing assessment findings and recommendations
  • Interface with customer contact(s) and staff in a constructive and professional manner
  • Have subject matter expertise in advanced testing specialties: containerization, automation, wireless/IoT, exploit development, hardware and/or mainframe environments
  • Ethically operate with appreciable latitude in developing methodology and applying it in the field
  • Research and analyze adversary methodologies and develop testing models to mimic adversaries
  • Ability to communicate clearly and effectively through oral or written communication with all levels in the organization
  • Ability to initiate, design, execute, complete, and provide metrics on projects independently with minimal direction
  • Drive cross-team efforts to address systemic risks across the business
  • Conduct business/risk portfolio research and test planning work that encompasses holistic testing efforts
  • Act as an overall SME and force multiplier for team through mentoring, education, training, etc.

Benefits

  • comprehensive benefits package
  • incentive and recognition programs
  • equity stock purchase
  • 401k contribution

Stand Out From the Crowd

Upload your resume and get instant feedback on how well it matches this job.

Upload and Match Resume

What This Job Offers

Job Type

Full-time

Career Level

Mid Level

Education Level

No Education Listed

Number of Employees

5,001-10,000 employees

© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service