Must Haves
- 3–5+ years of Red Team, Pen Testing, or Offensive Security experience
- Experience executing adversary emulation and red team engagements
- Strong Windows, Linux, Active Directory, networking, and cloud knowledge
- Experience with C2 frameworks, attack infrastructure, and post-exploitation
- Scripting experience (Python, PowerShell, Bash, Go, C#, etc.)
- Knowledge of MITRE ATT&CK and offensive security methodologies
- Ability to document findings and present remediation recommendations
Plusses
- AI/LLM security or AI-assisted offensive security experience
- Cloud security (AWS, Azure, GCP)
- Identity security (SSO, MFA, IAM)
- Purple team collaboration
- Offensive Security certifications (OSCP, OSEP, CRTO, PNPT, etc.)
- Experience with phishing infrastructure or exploit development
Day-to-Day
- Execute red team operations and adversary simulations
- Build and maintain attack infrastructure/C2
- Research threat actors and emulate TTPs
- Develop payloads, scripts, and offensive tooling
- Assess endpoint, identity, network, cloud, and application security
- Partner with detection engineering and incident response teams
- Analyze detections and recommend security improvements
- Produce technical reports and present findings to stakeholder