Cybersecurity Professional (Red Team)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
TL;DR
Cybersecurity Professional (Red Team): Conducting advanced adversary simulation and offensive security assessments for global enterprises with an accent on Active Directory exploitation, stealth operations, and perimeter testing. Focus on developing custom offensive tooling, documenting complex attack paths, and delivering actionable risk analysis to technical and executive stakeholders.
Location: Must be based in or able to work from Herzliya, Israel (Hybrid)
Company
is a cybersecurity firm specializing in advanced adversary simulation and exposure management, helping Fortune 500 companies visualize and mitigate risks through their proprietary platform, Hyver.
What you will do
- Execute stealthy Red Team assessments simulating real-world threats against external, internal, and cloud environments.
- Lead offensive operations including perimeter exploitation and post-exploitation within Active Directory.
- Conduct Purple Team engagements to enhance client monitoring and detection capabilities.
- Document attack paths, technical findings, and remediation strategies for diverse audiences.
- Collaborate on the development and maintenance of internal offensive tooling and scripts.
- Continuously research and test emerging attack techniques and tools to improve service capabilities.
Requirements
- 2+ years of hands-on experience in offensive security, red teaming, or penetration testing.
- Proficiency with C2 frameworks such as Cobalt Strike, Mythic, or Sliver.
- Deep understanding of Active Directory, Kerberos, GPO abuse, and privilege escalation.
- Strong knowledge of network protocols (SMB, DNS, LDAP, HTTP) and Windows/Linux system internals.
- Ability to produce clear, actionable technical reports in English.
- Proficiency in Python, PowerShell, C#, or C++.
Nice to have
- Experience with cloud attack surfaces (AWS, Azure, GCP) or Kubernetes security.
- Familiarity with EDR/XDR products and evasion techniques.
- Relevant certifications such as OSCP, OSCE, CRTO, or GXPN.
- Contributions to open-source offensive security research.
Culture & Benefits
- Work with a global leader in adversary simulation and exposure management.
- Engage in high-level security research and development.
- Collaborate with a team of experts on complex, real-world security challenges.
- Professional growth through continuous research and technical skill sharpening.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →