- Company Name
- TD
- Job Title
- Information Security Specialist - Red Team Operator
- Job Description
-
Job title: Information Security Specialist – Red Team Operator
Role Summary: Execute end‑to‑end offensive security engagements to simulate real‑world adversaries, validate defensive controls, and provide actionable insights to improve detection and response. Operate within a regulated enterprise environment, collaborating with Blue, Purple, threat intelligence, and incident response teams.
Expectations: Deliver high‑quality, realistic red‑team operations, maintain governance compliance, produce clear technical reports and executive summaries, mentor junior operators, and continuously refine methodologies and playbooks.
Key Responsibilities:
- Plan and conduct full‑scope red‑team engagements (reconnaissance, initial access, lateral movement, privilege escalation, command‑and‑control, objective completion).
- Emulate threat‑actor TTPs using MITRE ATT&CK framework.
- Design and run phishing and social engineering campaigns within legal/ethical constraints.
- Develop and maintain custom tooling, payloads, and infrastructure.
- Collaborate with Blue/Red/Purple teams and threat intelligence.
- Produce technical and executive‑ready engagement reports.
- Identify gaps in controls, telemetry, and response processes; contribute to detection engineering.
- Support continuous improvement of playbooks, governance, and methodologies.
- Mentor junior operators and share knowledge.
Required Skills:
- 5–8+ years in offensive security, red teaming or penetration testing.
- Expert knowledge of Windows Active Directory, identity abuse, and enterprise authentication flows.
- Proficiency with red‑team tooling (C2 frameworks, phishing platforms, custom payloads).
- Strong understanding of network protocols, operating systems, and endpoint security controls.
- Ability to operate safely under strict scope and approval processes.
- Excellent written and verbal communication; report writing and technical walkthroughs.
- Independent work ethic combined with effective cross‑functional collaboration.
Preferred Skills:
- Familiarity with EDR, SIEM, and cloud security controls from an attacker’s perspective.
- Experience in custom tooling (C#, Python, PowerShell).
- Knowledge of red‑team infrastructure, domain management, and OPSEC best practices.
- Experience in financial services or highly regulated environments.
Required Education & Certifications:
- Bachelor’s degree or equivalent experience in Computer Science, Cybersecurity, or related field.
- Certifications: CRTO, OSCP, GXPN, or other Red Team Ops credentials preferred.