Security Engineer (Offensive) - Red Team Operational Vulnerability Assessor
Core
Plan and conduct Operational Vulnerability Assessments (OVA) for Operational Technology (OT), Industrial Control Systems (ICS), and Internet of Things (IoT) environments to emulate advanced threat actors and improve security posture.
Role type
Senior IC offensive security engineer (Red Team OVA)
Builds
No-notice adversarial assessments, persistent cyberspace operations, and adversary emulation for enterprise and mission-critical environments
Domain
Defense / Cybersecurity / Operational Technology (OT)
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
OT vulnerability assessment, ICS/IoT security, network/host/application exploitation, proof-of-concept exploit development, TTP evolution, technical writing, after-action review analysis
Preferred skills
AV/EDR evasion, custom tooling/C2 development, malware analysis/reverse engineering, cloud platforms (AWS/Azure/GCP), physical security assessments, offensive-security certifications (OSCP/OSCE/CRTO)
Technologies
Windows, Linux, Active Directory, AWS, Azure, GCP
Responsibilities
Plan and execute no-notice and cooperative Red Team operations across enterprise, application, and cloud environments; Identify and exploit network, host, and application-level vulnerabilities; Develop and refine proof-of-concept exploits and techniques to test defensive measures; Produce detailed technical findings and recommendations for remediation; Collaborate with defensive and engineering teams to improve detection and response; Continuously evolve team tactics, techniques, and procedures (TTPs), documentation, and training materials to reflect emerging adversary behaviors
Seniority
Senior, hands-on IC