Millennium logo
MillenniumPosted 1 month ago

Red Team Security Engineer III

On-siteHuntsville, Alabama, United States

Full TimeBachelors DegreeMedium

Job Summary

Conduct multiple penetration tests of global customer networks, rapidly develop domain-specific tools leveraging identified vulnerabilities, and research latest exploitation techniques and threat vectors. Design and configure representative test environments while supporting various training events, conferences, and demonstrations to ensure compliance with certification requirements. Manage multiple penetration test engagements from cradle to grave, utilizing offensive tool sets including Kali Linux, Metasploit, and CobaltStrike, and perform web application security assessments. Assist with business development activities including technical interviews, documentation creation, and proposal writing support. Requires active Secret Clearance with eligibility for Top Secret/SCI, Bachelor's degree or equivalent experience, and OSCP or RIOT certification. 15-30% travel required.

Required Qualifications

  • Active Secret Clearance with eligibility to obtain a Top Secret/SCI Clearance
  • Bachelor's degree from an accredited college or university in computer science, information systems, engineering, scientific or a mathematics-intensive discipline or a Relevant Technical Discipline
  • At least 5-8 years of practical experience
  • Two years of relevant experience with an Associate's degree
  • Four years of relevant experience
  • Offensive Security Certified Professional (OSCP) Certification
  • At least 3 years of practical experience
  • NSA Remote Interactive Operators Training (RIOT) Certificate
  • Red Team Apprentice (Level I) Certificate
  • CEH & CISSP Certification
  • Specialized experience in Red Teaming
  • Specialized experience in Computer Network Attack (CNA)
  • Specialized experience in Computer Network Exploitation (CNE)
  • Specialized experience in Computer Network Defense (CND)
  • Specialized experience in penetration testing
  • Ability to independently and rapidly develop tools and scripts from concept to production in a high-stress, short deadline, under-resourced environment using multiple programming languages
  • Experience with at least one of the following scripting languages (PowerShell, Bash, Python, Ruby, Node.js)
  • Experience performing web application security assessments
  • Experience with TCP/IP protocols as it relates to network security
  • Experience with offensive tool sets including: Kali Linux, Metasploit, CobaltStrike, Intercepting Proxies, etc.
  • Experience in using network protocol analyzers and sniffers
  • Ability to decipher packet captures
  • Excellent independent (self-motivational, organizational, personal project management) skills
  • Proven ability to work effectively with management, staff, vendors, and external consultants
  • Ability to think outside the box and emulate adversarial approaches
  • Capable of conducting penetration tests on applications, systems and network utilizing proven/formal processes and industry standards
  • Capable of managing multiple penetration test engagements, from cradle to grave, at the same time
  • In depth understanding of emerging threats, vulnerabilities, and exploits
  • 15-30% (or less) travel as required by the program
  • Must be comfortable with prolonged periods of sitting at a desk and working on a computer
  • Must be able to lift up to 10-15 pounds at a time

Additional Requirements

  • Must have an active Secret Clearance

Hiring someone like this?

Get your role in front of qualified candidates on Sorce.

Get started

Apply to this job in one click with Sorce

Apply on Sorce