Offensive Security Specialist
Core
Mid-level offensive security analyst performing hands-on red teaming, adversary simulation, and penetration testing to identify and exploit vulnerabilities across web applications, networks, and cloud platforms.
Role type
mid-level individual contributor offensive security analyst (red teaming)
Builds
security posture improvements and risk reduction for Vanguard's internal systems and infrastructure
Domain
financial services / cybersecurity
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
red teaming, penetration testing, exploit development, vulnerability assessment, network protocol analysis, shell scripting (Python, PowerShell, Bash), MITRE ATT&CK framework application, OWASP Top 10 knowledge, cloud security (AWS, Azure, GCP)
Preferred skills
threat modeling, DevSecOps integration, CI/CD pipeline security, secure software development practices, multi-phase attack planning, security community participation (CTFs, bug bounties)
Technologies
Python, PowerShell, Bash, MITRE ATT&CK, PTES, NIST, ISO, AWS, Azure, GCP
Responsibilities
Execute full-scope red team engagements covering the kill-chain (reconnaissance, exploitation, lateral movement, data exfiltration); lead targeted adversary simulations (e.g., spear-phishing, endpoint compromise); collaborate with defensive teams to remediate vulnerabilities and validate detection rules; produce detailed penetration test reports with findings and mitigations; research emerging vulnerabilities and exploit techniques.
Seniority
Mid-level, hands-on IC