Senior Red Teamer (Cybersecurity)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
TL;DR
Senior Red Teamer (Cybersecurity): Leading full-lifecycle red team engagements and adversary simulations across network, cloud, and web surfaces with an accent on custom tool development and evasion techniques. Focus on operationalizing emerging threat actor TTPs and collaborating with blue teams to enhance detection capabilities.
Location: Remote or Hybrid (Lincoln, NE; Centennial, CO; Eau Claire, WI; Sidney, NE). Must be authorized to work in the United States without current or future visa sponsorship.
Salary: $110,000 – $160,000
Company
is a diversified company providing student loan servicing, payments processing, renewable energy solutions, and higher education expertise.
What you will do
- Own the full lifecycle of red team engagements, including scoping, threat modeling, execution, and post-engagement reporting.
- Conduct advanced penetration testing and adversary simulation across web applications, APIs, cloud environments (IaaS, SaaS, PaaS), and Windows Active Directory.
- Develop and maintain custom offensive tooling, exploits, and payloads to bypass EDR, firewalls, and AV.
- Research and operationalize emerging threat actor TTPs, mapping activities to the MITRE ATT&CK framework.
- Collaborate with the blue team and SOC to validate detection capabilities and lead purple team exercises.
- Provide technical mentorship to junior red team practitioners and deliver risk briefings to executive stakeholders.
Requirements
- Must be already authorized to work in the United States without the need for current or future sponsorship.
- 5–8 years of hands-on experience in penetration testing or red team roles.
- Deep expertise in Active Directory architecture, cloud security, and web application penetration testing.
- Proficiency in scripting and development using PowerShell, Python, C/C++, C#, or Bash.
- Experience operating and customizing C2 frameworks like Cobalt Strike, Havoc, or Sliver.
- Active industry certifications required, with advanced ones (OSCP, OSED, CRTO, CRTE) preferred.
Nice to have
- Experience with reverse engineering tools such as Ghidra, IDA, or x64dbg.
- Contributions to public offensive security research, tooling, or tradecraft.
- Prior experience in a formal mentorship or technical lead capacity within a security team.
- Familiarity with forensic methodologies for post-engagement analysis.
Culture & Benefits
- Comprehensive health benefits including medical, dental, vision, HSA, and FSA.
- Financial perks: 401K, student loan repayment, and employee stock purchase program.
- Professional growth: Tuition reimbursement and performance-based incentive pay.
- Work-life balance: Generous earned time off and a robust wellness program.
- Supportive community environment focused on individual success and accessibility.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →