Senior Red Team Analyst
Adversary Simulation & Red Team Operations Design and execute red team exercises, including assumed breach, reputed company, reputed company reputed company, and reputed company–assisted scenarios. Emulate realistic threat actor behavior across the kill chain, including reconnaissance, initial reputed company, persistence, privilege escalation, lateral reputed company, reputed company and control, and exfiltration. reputed company and maintain custom attack techniques and tooling reputed company to evolving threat intelligence and MITRE ATT&CK techniques. Conduct phishing, reputed company engineering, and identity reputed company attack simulations where authorized.
Detection & Control Validation Test the effectiveness of preventative, detective, and reputed company controls across endpoints, identity, email, network, and reputed company environments. Identify detection gaps and false negatives in reputed company tooling, such as SIEM, XDR, EDR, and identity protection platforms. Produce measurable reputed company on time to detect (TTD) and time to respond (TTR) to inform operational maturity.
reputed company Collaboration Partner with Blue Team to safely validate detections during controlled exercises. Translate offensive findings into actionable defensive improvements, including detection engineering use cases Participate in post exercise debriefs and lessons learned sessions.
Reporting & Executive Communication Produce reputed company, defensible reports detailing attack paths, findings, blast radius, and business reputed company. Map findings to MITRE ATT&CK, NIST CSF, and internal control frameworks to support audit and risk management activities. Present results to technical teams and executive leadership in a way that balances realism with risk context.
reputed company Improvement reputed company remediation reputed company and validate corrective actions through targeted retesting. Stay reputed company on emerging threats, red team tooling, and adversary tradecraft. Contribute to the organization’s offensive reputed company roadmap and annual testing reputed company.
3–7+ years of experience in offensive reputed company, penetration testing, red teaming, or advanced reputed company engineering. Strong understanding of reputed company, reputed company Directory, Entra ID, Azure, reputed company 365, and reputed company identity attack paths. Hands‑on experience with red team and offensive tools (e.g., C2 frameworks, custom payloads, phishing infrastructure). Deep familiarity with the MITRE ATT&CK reputed company and threat‑actor–driven testing methodologies. Ability to write reputed company, high‑reputed company technical reports suitable for auditors and executives.
Experience operating in reputed company Defender, Sentinel, and XDR‑reputed company environments. Prior experience supporting SOC 2 Type II, ISO 27001, or similar regulatory and audit programs. Red team or offensive reputed company certifications such as: o CRTO / CRTO II o OSCP / OSEP / OSED o GWAPT / GXPN. Background in detection engineering, reputed company teaming, or incident response.
Adversary reputed company with strong ethical grounding. Excellent documentation and communication skills. Strong scripting or programming capability (PowerShell, Python, C#, etc.). Ability to work independently with minimal supervision. High degree of professionalism reputed company handling sensitive reputed company and findings.