
Red & Purple Team Operator
Posted 6 days ago

Posted 6 days ago
This is a fully remote position, open to applicants in United States.
• Plan and execute comprehensive Red Team engagements independently, mimicking advanced real-world adversaries and Advanced Persistent Threats (APTs).
• Create realistic attack scenarios informed by organizational risks, threat intelligence, and adversary tactics, techniques, and procedures (TTPs).
• Carry out activities such as reconnaissance, initial access, exploitation, privilege escalation, credential access, persistence, defense evasion, lateral movement, command and control, among other authorized adversarial actions.
• Assess the effectiveness of prevention, detection, investigation, response, and recovery capabilities in the face of sophisticated cyberattacks.
• Detect vulnerabilities within people, processes, technologies, security controls, and operational practices.
• Organize and facilitate collaborative Purple Team exercises alongside Security Operations Center (SOC), Threat Hunting, Incident Response, Detection Engineering, and other security teams.
• Validate alerts, telemetry, detection logic, investigative processes, and newly implemented detection or mitigation strategies.
• Identify gaps in visibility, telemetry, detection, and response, and offer actionable recommendations.
• Conduct penetration testing across a range of environments, including enterprise networks, systems, applications, cloud environments, and security infrastructures.
• Execute manual testing and validation, assess exploitability and organizational impact, and propose remediation strategies.
• Design, deploy, secure, maintain, troubleshoot, and sanitize offensive security infrastructure, including AWS-based systems, redirectors, C2, payload delivery, and testing frameworks.
• Interpret threat intelligence into adversary emulation strategies using the MITRE ATT&CK framework.
• Gather and preserve evidence, document attack vectors, and align activities with MITRE ATT&CK techniques.
• Generate detailed technical reports, executive summaries, and both technical and executive out-briefs.
• Present findings to technical teams and executive stakeholders, translating offensive insights into enhanced detection, response, and mitigation strategies.
• Bachelor’s degree in Cybersecurity, Computer Science, Information Technology, Engineering, or a related field, or equivalent professional experience.
• Over 7 years of experience in offensive cybersecurity, including penetration testing, Red Team operations, adversary emulation, or similar security assessment roles.
• Proven ability to independently plan and conduct Red Team and penetration testing engagements from initial scoping to final reporting.
• Practical experience with advanced attacks targeting networks, Active Directory, identity management, endpoints, applications, and cloud systems.
• In-depth knowledge of the MITRE ATT&CK framework and adversary TTPs.
• Experience in developing and managing offensive security infrastructure in AWS, Azure, or similar cloud environments.
• Familiarity with command-and-control frameworks and offensive security tools.
• Strong comprehension of Windows, Linux, Active Directory, networking principles, authentication protocols, and enterprise security architecture.
• Experience with manual exploitation, privilege escalation, lateral movement, credential attacks, persistence, and defense evasion techniques.
• Proficient in collecting and documenting technical evidence during offensive security operations.
• Excellent technical writing skills with experience in producing professional reports for penetration testing or Red Team activities.
• Capability to work autonomously with minimal technical oversight while adhering to the authorized scope and Rules of Engagement.
• Must be eligible for clearance.
• Employer-covered health insurance premiums (medical, dental, vision) for you and your family.
• Employer-funded short/long term disability insurance and basic life/AD&D insurance.
• 401K plan with a 4% employer contribution.
• Professional development reimbursement options available for training, certification, education, etc.
• Flexible and remote work arrangements for most roles.
• Flexible paid time off (PTO) and holiday schedule.
Gainwell Technologies
Leisure Life Travel
Navigate Realty
Get handpicked remote jobs straight to your inbox weekly.