Назад
Company hidden
20 часов назад

Senior Red Team Operator (Cybersecurity)

Формат работы
hybrid
Тип работы
fulltime
Грейд
senior
Английский
c1
Страна
Spain
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Senior Red Team Operator (Cybersecurity): Leading long-term, intelligence-led red team campaigns across on-premise, cloud, and hybrid enterprise environments with an accent on covert operations, OPSEC, and custom offensive tooling. Focus on building C2 infrastructure, bypassing EDR and application allow-listing, conducting purple team exercises, and translating complex findings into actionable executive recommendations.

Location: Madrid, Spain; hybrid work with regular days at home and at the ING MAD office

Company

hirify.global Spain designs and delivers technological and operational solutions for ING’s global banking operations, with a tech-first focus on scalable, fast, and secure technology.

What you will do

  • Lead complex, long-running red team campaigns that simulate advanced threat actor tactics across on-premise, Azure, Google Cloud, AWS, and hybrid environments.
  • Execute objective-driven attack campaigns across the full lifecycle, from initial access through data exfiltration, while maintaining stealth against defensive teams.
  • Build, operate, and customize command-and-control infrastructure beyond standard tools such as Cobalt Strike and Sliver.
  • Develop custom tools, implants, and loaders in C++, C#, Go, or Rust to bypass EDR and application allow-listing controls.
  • Partner with SOC and defensive teams in purple team exercises to improve detection rules, playbooks, and defensive capabilities.
  • Produce narrative-style reports with actionable recommendations for business and executive stakeholders.

Requirements

  • At least 5 years of hands-on experience in a dedicated red team role.
  • Strong development skills in at least one low-level language, such as C++, C#, Go, or Rust, plus scripting experience with Python or PowerShell.
  • Deep experience attacking complex enterprise environments, including Active Directory and major cloud providers.
  • Proven ability to conduct covert, objective-driven operations with a strong operational security mindset.
  • Fluent English, both verbally and in writing.

Nice to have

  • Advanced offensive security certifications such as OSEP, OSCE/OSEE, CREST CCSAS, GXPN, or CRTO.

Culture & Benefits

  • Hybrid flexibility with working days agreed between home and the ING MAD office.
  • Health insurance for the employee and family, plus life insurance.
  • Restaurant card, transport allowance, flexible remuneration, and access to training-related benefits.
  • Pension plan eligibility after one month.
  • Office facilities including electric mobility solutions, medical services, hairdresser, gym, and personal assistance services.
  • Multicultural, collaborative environment with continuous learning and global impact across more than 38 countries.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →