Red Team Engineer

Overview

On Site
USD 100,000.00 - 155,000.00 per year
Full Time

Skills

Information Technology
FOCUS
Reverse engineering
Threat modeling
Intellectual property
IP
Social engineering
Reporting
Amazon Web Services
Slack
Cloud security
Penetration testing
Web Testing
Unix
Linux
Microsoft Windows
Cloud computing
Python
Microsoft Windows NT

Job Details

Piper Companies is seeking a Red Team Operator/Security Researcher for an award-winning, publicly traded worldwide Information Technology Organization. This role will focus on reverse engineering, penetration testing, and security assessments of all products within the tech stack.

Responsibilities for the Red Team Operator/Security Researcher:
  • Objective Setting: Define the business context, scope, and objectives of the engagement, aligning the Red Team's success criteria with the organization's goals.
  • Reconnaissance and Threat Modeling: Gather extensive information about the target, such as IP ranges, domain names, and employee details. Use frameworks like MITRE ATT&CK to model potential threats and assess associated risks.
  • Initial Access: Exploit vulnerabilities to gain initial access through techniques such as social engineering, physical attacks, or exploiting external attack surfaces.
  • Establish Persistence: Maintain access by setting up backdoors, creating new accounts, and utilizing Command and Control (C2) frameworks.
  • Escalation/Lateral Movement: Escalate privileges and move laterally within the organization, using defense evasion techniques and exploiting further vulnerabilities.
  • Data Exfiltration: Discover, collect, and exfiltrate target data according to the defined objectives.
  • Reporting and Debrief: Present a comprehensive report of findings, including an executive summary, detailed findings, control successes and failures, and recommendations for improvement.
  • The tech stack includes: On-Prem (Windows and Linux), Cloud (AWS), IAM (Okta), O365, Slack, and Python

Requirements for the Red Team Operator/Security Researcher:
  • At least 2 years of experience as part of a red team performing some of the responsibilities listed above
  • Experience in exploit development (or Offensive Programming) and cloud security.
  • Prior experience simulating real-world attack scenarios and/or Penetration Testing Web Applications
  • Prior Experience working in Unix (Linux), Windows, and or Cloud Environments
  • Solid understanding of Python, Go, or a similar language; must be able to code live.
  • ship

Compensation for the Red Team Operator/Security Researcher:
  • Salary Range: $100,000 - $155,000
  • Full Benefits: Medical, Dental, Vision, 20 days of PTO, and 11 Federal Holidays
  • This opportunity is remote but we are only considering candidates in the Eastern Standard or Central Standard Time Zones

LI-NT1

LI-Remote

This job opens for applications on 12/18/2024. Applications for this job will be accepted for at least 30 days from the posting date
Employers have access to artificial intelligence language tools (“AI”) that help generate and enhance job descriptions and AI may have been used to create this description. The position description has been reviewed for accuracy and Dice believes it to correctly reflect the job opportunity.