SIXGEN logo
SIXGENPosted 1 week ago

Red & Purple Team Operator

Remote

Full TimeSenior LevelSmallTECH

Job Summary

Independently plan, execute, and document advanced offensive cybersecurity assessments against enterprise systems, networks, applications, cloud environments, and security controls. Conduct penetration testing, adversary emulation, Red Team operations, and Purple Team exercises to evaluate the organization's ability to prevent, detect, respond to, and recover from sophisticated cyberattacks. Establish secure cloud-based attack infrastructure, develop attack scenarios, perform reconnaissance and exploitation, and produce comprehensive technical and executive-level reports. Collaborate with SOC, Threat Hunting, and Incident Response teams to validate detection capabilities and translate offensive findings into measurable improvements to enterprise defenses. Maintain operational security throughout engagements and adhere strictly to established Rules of Engagement.

Required Qualifications

  • Bachelor's degree in Cybersecurity, Computer Science, Information Technology, Engineering, or a related discipline, or equivalent professional experience
  • 7+ years of offensive cybersecurity experience involving penetration testing, Red Team operations, adversary emulation, or comparable security assessment activities
  • Demonstrated ability to independently plan and execute Red Team and penetration testing engagements from initial scoping through final reporting
  • Hands-on experience conducting advanced network, Active Directory, identity, endpoint, application, and cloud attacks
  • Strong understanding of the MITRE ATT&CK framework and adversary tactics, techniques, and procedures
  • Experience developing and operating offensive security infrastructure in AWS, Azure, or comparable cloud environments
  • Experience with command-and-control frameworks and offensive security tooling
  • Strong understanding of Windows, Linux, Active Directory, networking, authentication protocols, and enterprise security architecture
  • Experience performing manual exploitation, privilege escalation, lateral movement, credential attacks, persistence, and defense evasion
  • Demonstrated experience collecting and documenting technical evidence during offensive security engagements
  • Strong technical writing skills with demonstrated experience producing professional penetration testing or Red Team reports
  • Ability to work independently with minimal technical oversight while maintaining strict adherence to authorized scope and Rules of Engagement
  • Ability to be Cleared

Desired Qualifications

  • Offensive Security Certified Professional (OSCP)
  • Offensive Security Experienced Penetration Tester (OSEP)
  • Offensive Security Web Expert (OSWE)
  • GIAC Penetration Tester (GPEN)
  • GIAC Exploit Researcher and Advanced Penetration Tester (GXPN)
  • Certified Red Team Operator (CRTO/CRTO II) or comparable Red Team certification
  • Experience conducting Red Team or adversary emulation exercises within federal government environments
  • Experience working directly with SOC, Threat Hunting, Incident Response, and Detection Engineering teams
  • Experience developing custom offensive security tooling, scripts, payloads, or automation
  • Experience with cloud-native offensive security testing across AWS and/or Azure environments
  • Experience leveraging AI-enabled tools to augment reconnaissance, penetration testing, analysis, and reporting activities

Hiring someone like this?

Get your role in front of qualified candidates on Sorce.

Get started

Apply to this job in one click with Sorce

Apply on Sorce