Red Team Penetration Tester III
We are seeking a highly skilled and motivated Red Team Penetration Tester III to join a cybersecurity team focused on advanced offensive security testing. In this role, you will conduct sophisticated penetration tests and red team engagements that simulate real-world threats to uncover security weaknesses across diverse systems and environments.
About the role
You will emulate advanced persistent threat behaviors, develop and use industry-standard tooling, and partner closely with defenders to translate findings into actionable remediation. This opportunity is well-suited for an experienced offensive operator who brings deep technical expertise and a strong understanding of threat actor tactics.
Responsibilities
- Plan, execute, and document sophisticated red team engagements and penetration tests.
- Emulate advanced persistent threat (APT) behaviors to evaluate enterprise-level defenses.
- Develop and utilize tools such as Metasploit, NMAP, Kali Linux, and Cobalt Strike.
- Perform exploit development and scripting to mimic threat actor capabilities.
- Identify gaps in existing security tools, processes, and defensive technologies.
- Work with various operating systems including Linux, Windows, and macOS.
- Utilize Active Directory to simulate lateral movement and privilege escalation scenarios.
- Apply programming or scripting in at least two languages (e.g., Python, C++, Java, Rust, Assembly, C#).
- Collaborate with Blue Teams and SOC personnel to provide findings and recommendations for remediation.
Requirements
- Bachelor’s degree.
- CSSP Auditor (Baseline Certification) and one of the following: OSCP, OSCE, OSEE, or OSWP.
- Active Top Secret/SCI clearance, which requires U.S. citizenship.
- Seven (7) years of full-time professional experience conducting penetration testing or offensive Cyber operations in the following areas:
- Developing and utilizing penetration tools such as Metasploit, NMAP, Kali Linux, Cobalt Strike.
- Mimicking threat behavior.
- Utilizing various operating systems (e.g., Linux, Windows, macOS).
- Utilizing Active Directory.
- Performing exploit development.
- Identifying gaps in tools and development techniques.
- Performing development with at least two scripting or programming languages (e.g., Python, C++, Java, Rust, Assembly, C#).
Schedule
On-Site at Virginia Beach, VA or Dahlgren, VA.
Pay
Pay range: $150,000.00–$175,000.00 (annual). This pay range is based on qualifications and experience, and assumes all role requirements are met.