
Penetration Tester – Infrastructure, Red Team
Posted 6 days ago

Posted 6 days ago
This is a fully remote position, open to applicants in Florida, +1 more state.
• Plan and implement infrastructure penetration testing projects across on-premises, hybrid, cloud, wireless, and enterprise network environments.
• Conduct internal and external network penetration testing to discover, validate, and exploit security vulnerabilities utilizing manual testing techniques and recognized offensive security tools.
• Evaluate Active Directory, Microsoft Entra ID (Azure AD), Windows and Linux systems, virtualization platforms, cloud services, and related infrastructure.
• Analyze AWS, Microsoft Azure, and Google Cloud Platform environments for configuration flaws, privilege escalation risks, identity threats, and cloud security vulnerabilities.
• Examine containerized environments, Kubernetes platforms, CI/CD pipelines, and cloud-native technologies as applicable.
• Take part in and lead adversary simulations, red team activities, and objective-based security assignments.
• Implement offensive security operations covering reconnaissance, initial access, persistence, privilege escalation, credential access, lateral movement, defense evasion, command and control, and objective execution.
• Assist purple team initiatives by working with defensive teams to validate detections, enhance monitoring, and bolster defensive measures.
• Create and execute attack scenarios that illustrate realistic business impacts while ensuring client system integrity is upheld.
• Compile detailed technical reports that convey vulnerabilities, attack paths, business impacts, risk assessments, and remediation advice.
• Present assessment results to technical teams, executive stakeholders, and client leadership.
• Provide technical advice on remediation strategies, security architecture, and enhancements to defense mechanisms.
• Oversee assigned engagements to meet quality standards, timelines, and client expectations.
• Contribute to testing methodologies, internal tools, technical documentation, and service offerings.
• Engage in technical research, automation projects, internal training, and knowledge-sharing efforts.
• Collaborate with consulting teams to enhance technical quality, consistency, and service delivery.
• Perform additional responsibilities as assigned.
• Bachelor’s degree in Cybersecurity, Computer Science, Information Technology, or a related field; equivalent practical experience may also be accepted.
• At least 3 years of professional experience in infrastructure penetration testing, red teaming, adversary simulation, or offensive security consulting.
• Proven experience in conducting penetration tests across enterprise infrastructure, including Windows, Linux, Active Directory, Microsoft Entra ID, cloud platforms, and enterprise networking.
• Proficient in performing internal and external network penetration testing, privilege escalation, Active Directory security evaluations, and lateral movement testing.
• Familiarity with assessing cloud environments such as AWS, Microsoft Azure, or Google Cloud Platform.
• Strong knowledge of enterprise networking, authentication technologies, identity management, cloud security, and offensive security methodologies.
• Experience utilizing industry-standard offensive security frameworks, tools, and techniques.
• Exceptional technical writing, presentation, and communication abilities, with the capacity to convey findings to both technical and executive audiences.
• Industry certifications like OSCP, OSEP, CRTO, CRTE, CARTP, CARTA, CREST CRT, CREST CCT, PNPT, GPEN, GXPN, or equivalent are advantageous.
• OSCP or equivalent demonstrated technical proficiency is highly preferred.
• Experience in Red Team, Purple Team, adversary simulation, or threat emulation engagements is a plus.
• A customer-first approach.
• Capability to adjust to rapidly changing circumstances.
• Dedication to ongoing learning and professional advancement.
• Self-driven and reliable.
• Humility and a willingness to improve.
• Competitive salary and opportunities for growth.
• Reimbursement for education and professional development to foster ongoing learning, certifications, and technical advancement.
• Flexible work environment that empowers employees to perform at their best.
• One paid volunteer day each year to contribute to your community.
• Paid day off for your birthday.
• Paid U.S. public holidays.
• Fully remote work within Texas or Florida.
GSB Solutions
Carrington Holding Company, LLC
Capgemini
SAI360
Get handpicked remote jobs straight to your inbox weekly.