In this role you will be an active participant in end-to-end adversary simulations across enterprise, cloud, and hybrid infrastructures. You will provide input to planning complex Red Team engagements from reconnaissance and initial access through persistence, lateral movement, and data exfiltration. You will execute network, application, wireless, physical, and cloud penetration tests. You will also build, operate, and maintain Red Team infrastructure, including command-and-control (C2) ecosystems, phishing platforms and operational security (OPSEC) tooling. Additionally, you will develop and operationalize custom tooling, payloads, automation and exploitation chains, and research and implement advanced evasion techniques against SIEM, EDR, and XDR platforms. You will ensure operational realism, safety, and compliance with internal policy, legal constraints, and regulatory requirements, and align Red Team operations with the MITRE ATT&CK framework and threat-led testing standards (e.g., TIBER). In collaboration with SOC, Threat Intelligence, Risk Management, and Engineering teams, you will partner to strengthen detection and response maturity. You will also mentor and develop junior team members, sharing techniques, lessons learned, and tooling improvements. You will interpret technical exploitation in the context of business risk, control effectiveness, and defensive improvement, and communicate technical risk clearly to security leadership and key stakeholders. Finally, you will produce high-quality After-Action Reports (AARs), executive summaries, and technical documentation.
Stand Out From the Crowd
Upload your resume and get instant feedback on how well it matches this job.
Job Type
Full-time
Career Level
Senior