Job Title: Offensive Security Lead
Responsibilities:
- Lead purple team activities in collaboration with threat management and defensive blue teams, including adversary emulation and validation of detective, defensive, and vulnerability controls.
- Plan and oversee external red team engagements with external partners.
- Oversee and mentor other offensive security team members, sharing knowledge with all members of the security team.
- Oversee all internal penetration testing efforts as both a player and a coach to other penetration testing engineers, covering penetration testing of all critical infrastructure (e.g., CI/CD systems, Active Directory).
Basic Qualifications:
- Bachelor's Degree from an accredited university or college (preferably in a relevant field such as Computer Science or Cyber Security).
- A track record of commitment to prior employers.
- 3 years of experience performing offensive security activities such as red teaming, penetration testing, and vulnerability research.
- 6 years of total experience in a technical role such as security, networking, systems, or software development.
- Security certification such as OSEP, OSCP, CRTO, GXPN, or similar.
- Scripting/programming skills (Bash, Python, PowerShell).
- Experience planning and executing Red Team and Purple Team scenarios.
Preferred Qualifications and Skills:
- Proficiency with security tools like NMAP, Burp Suite, Kali Linux, Bloodhound, and similar tools.
- Experience with C2 frameworks like Cobalt Strike, Sliver, and Mythic.
- Knowledge of Windows Active Directory exploitation tools and techniques.
- Understanding of payload and exploit development (C/C#/C++).
- Understanding of EDR systems and how to evade them.
Additional Responsibilities:
- Evolve offensive security capabilities to test internal and external facing processes, infrastructure, and applications.
- Develop test plans to validate identified vulnerabilities and demonstrate their exploitation.
- Explain exploits to senior-level management.
- Stay current with trends, techniques, and tools used by adversaries.