Millennium logo
MillenniumPosted 1 month ago

Red Team Security Engineer II

On-siteHuntsville, Alabama, United States

Full TimeBachelors DegreeMedium

Job Summary

Conduct multiple penetration tests of global customer networks, rapidly develop domain-specific tools leveraging identified vulnerabilities, and research latest exploitation techniques and threat vectors. Design and configure representative test environments while supporting training events, conferences, and exercises to ensure compliance with certification requirements. Manage multiple penetration test engagements from cradle to grave, utilizing offensive tool sets including Kali Linux, Metasploit, and CobaltStrike. Perform web application security assessments and network protocol analysis to decipher packet captures. Assist with business development activities including technical documentation creation and proposal writing support. Requires active Secret Clearance with Top Secret/SCI eligibility, CEH and CISSP certifications, and 3-5 years of practical experience. 15-30% travel required.

Required Qualifications

  • Active Secret Clearance with eligibility to obtain a Top Secret/SCI Clearance
  • Bachelor's degree from an accredited college or university in computer science, information systems, engineering, scientific or a mathematics-intensive discipline or a Relevant Technical Discipline
  • At least 3-5 years of practical experience
  • Two years of relevant experience with an Associate's degree
  • Four years of relevant experience
  • CEH & CISSP Certification upon hire
  • Specialized experience in Red Teaming, Computer Network Attack (CNA), Computer Network Exploitation (CNE), Computer Network Defense (CND), and/or penetration testing
  • Ability to independently and rapidly develop tools and scripts from concept to production in a high-stress, short deadline, under-resourced environment using multiple programming languages
  • Experience with at least one of the following scripting languages (PowerShell, Bash, Python, Ruby, Node.js)
  • Experience performing web application security assessments
  • Experience with TCP/IP protocols as it relates to network security
  • Experience with offensive tool sets including: Kali Linux, Metasploit, CobaltStrike, Intercepting Proxies, etc.
  • Experience in using network protocol analyzers and sniffers, as well as ability to decipher packet captures
  • Excellent independent (self-motivational, organizational, personal project management) skills
  • Proven ability to work effectively with management, staff, vendors, and external consultants
  • Ability to think outside the box and emulate adversarial approaches
  • Capable of conducting penetration tests on applications, systems and network utilizing proven/formal processes and industry standards
  • Capable of managing multiple penetration test engagements, from cradle to grave, at the same time
  • In depth understanding of emerging threats, vulnerabilities, and exploits
  • Must be comfortable with prolonged periods of sitting at a desk and working on a computer
  • Must be able to lift up to 10-15 pounds at a time
  • 15-30% (or less) travel as required by the program

Additional Requirements

  • Candidate must have an active Secret Clearance

Hiring someone like this?

Get your role in front of qualified candidates on Sorce.

Get started

Apply to this job in one click with Sorce

Apply on Sorce