Red Team Operator
Core
Execute threat actor emulation engagements using real-world TTPs to train defenders and measure the effectiveness of people, processes, and technology.
Role type
Red Team Operator (Offensive Security)
Builds
Secure Red Team command and control (C2) infrastructure and AI-augmented testing workflows
Domain
Cybersecurity / Offensive Security / Cloud Security
Required skills
Threat actor emulation, C2 infrastructure management, Tool development (BOFs, C2 extensions), EDR evasion, Cloud attack path analysis, AI/LLM tool application, OS internals (Windows/Linux), Active Directory, Networking fundamentals, MITRE ATT&CK framework
Preferred skills
C2 framework deployment (Cobalt Strike, Sliver, Mythic), Cloud platform automation (GCP/AWS IAM & APIs), MCP integrations, AI agent development, Financial services experience
Technologies
Cobalt Strike, Sliver, Mythic, GCP, AWS, C, C#, Go, Python, PowerShell
Responsibilities
Execute threat actor emulation engagements using real-world TTPs, Support multiple concurrent engagements following OPSEC standards, Collaborate on building and maintaining secure Red Team C2 infrastructure, Document and communicate findings in technical reports, Contribute to tool development including beacon object files and EDR evasion techniques, Apply AI tools to speed up threat emulation and malware analysis
Seniority
Mid-level, hands-on IC