Jobs · Virginia

Red Team Operator.

OneZero Solutions · Alexandria, VA · 5 days ago
Full-time

We are an employee-centric company that truly values our team members and the contributions they make to our customers and the missions they support. We pride ourselves on being forward-leaning thinkers and on building teams that are, and continue to be, technically proficient across a broad range of cyber mission areas.

About the role

OneZero is looking for a Red Team Operator to join our diverse team supporting the United States Coast Guard in Alexandria, Va. In this role the candidate will be responsible for engaging in Red Team assessments, utilizing Command & Control (C2) frameworks to conduct adversary simulations. This role involves standing up, managing, and maintaining attacker infrastructure, utilizing GitLab for script and tooling repositories, and applying established adversary tactics, techniques, and procedures (TTPs).

Responsibilities

  • Adversary Simulation:
    • Deploy, configure, and operate C2 frameworks such as Cobalt Strike, Havoc, Mythic, and Sliver.
    • Apply TTPs for initial access, lateral movement, privilege escalation, persistence and data exfiltration.
    • Leverage proprietary and open-source offensive security tool sets effectively to achieve engagement objectives.
    • Execute phishing assessments.
  • Infrastructure:
    • Monitor, manage, and maintain cloud and on-premise infrastructure used during assessments.
    • Understand the use of Git Repositories for maintaining operational tools and scripts.
  • Penetration Testing:
    • Internal and external penetration testing.
    • Network mapping and enumeration.
    • Assess web and mobile applications.
    • Perform database scans.
    • Assess Active Directory attack paths using tools such as BloodHound.
  • Security Assessments:
    • Assess Coast Guard's cyber security posture of operational networks through adversary emulation.
    • Develop reports and briefs detailing findings and recommendations for all assessments completed.
    • Perform cyber threat emulation during scripted exercises, to train DoD Cyber Protection Teams.

Requirements

  • Relevant Years of Experience: 5+
  • Education: BA/BS or equivalent years of relevant experience
  • Certifications: IAT II or IAT III, GPEN, Red Team Apprentice Course (RTAC), or equivalent

Skills & Expertise

  • Hands on experience with computers and network security.
  • Experience conducting phishing campaigns or social engineering.
  • Hands on experience with red team tasks and pen testing.
  • Familiarity with malware development and EDR/AV bypass strategies.
  • Experience with PowerShell, C, C++, or Python.
  • Hands on experience utilizing Command and Control (C2) Frameworks such as Cobalt Strike, Sliver, Havoc.

Benefits

  • Health, dental, vision, and life insurance
  • 401(k) with company matching
  • Paid time off and holidays
  • Employee referral program
  • Educational assistance

Location: Alexandria, VA (Hybrid)
Clearance: TS/SCI

Similar jobs

Team Member

Ben & Jerry's ConnecticutOld Saybrook, CT· 1 mo ago
Management$18–$22/hrapply on benjerrysct.discovered.ai

Team Member

Quick Quack Car WashSan Antonio, TX· 2 mo ago
Managementapply on quickquack.rec.pro.ukg.net

Team Member

Bruegger's BagelsEast Greenbush, NY· 2 mo ago
Management$14–$21/hrapply on coffeeandbagelbrands.wd1.myworkdayjobs.com

Team Member

Smoothie King (SKFI)Wexford, PA· 1 mo ago
Managementapply on jobs.smoothieking.com

Team Member

RegalYoungstown, OH· 2 mo ago
Management$12/hrapply on recruiting.ultipro.com

Team Member

Goodwill Greater Milwaukee & ChicagoMundelein, IL· 1 mo ago
Management$15/hrapply on recruiting2.ultipro.com