Jobiglo

No results.

Senior Red Team Engineer

Confidential · San Jose

Senior 🇬🇧 English
Windows Active Directory Linux administration Networking fundamentals Azure AWS Microsoft 365 security Web application testing API security testing Burp Suite Metasploit Nmap Nessus Qualys BloodHound Impacket Mimikatz NetExec Wireshark Hashcat Sliver Cobalt Strike Python PowerShell Bash

Job description

About the role

We are looking for a Senior Red Team Engineer to lead adversary‑emulation and penetration testing activities across our enterprise, cloud and application environments. The role will work closely with SOC, security engineering and infrastructure teams to validate defenses and improve our overall cyber‑resilience.

Key responsibilities

  • Plan and execute internal and external penetration tests on infrastructure, cloud platforms, Active Directory, web applications, APIs and wireless networks.
  • Conduct full‑scale Red Team engagements that mimic realistic attacker techniques, including privilege escalation, lateral movement, credential theft and persistence.
  • Perform vulnerability chaining to demonstrate business impact and produce clear technical reports with remediation guidance.
  • Support Purple Team exercises with the SOC to validate SIEM, EDR and detection capabilities.
  • Develop proof‑of‑concept exploits or custom scripts when commercial tools are insufficient.
  • Assist incident response teams by recreating attacker techniques as needed.
  • Stay up‑to‑date with emerging vulnerabilities, exploitation methods and adversary tradecraft.

Required profile

  • 5‑8 years of experience in offensive security, penetration testing or cybersecurity engineering.
  • Proven experience delivering enterprise‑scale penetration tests and Red Team engagements.
  • Ability to communicate technical findings to both technical and management audiences.
  • Familiarity with the MITRE ATT&CK framework and common offensive methodologies.

Required skills

  • Windows Active Directory, Linux administration, networking fundamentals.
  • Cloud security (Azure, AWS) and Microsoft 365 security.
  • Penetration testing of infrastructure, web applications, APIs and wireless networks.
  • Tools: Burp Suite, Metasploit, Nmap, Nessus/Qualys, BloodHound, Impacket, Mimikatz, NetExec, Wireshark, Hashcat, Sliver or Cobalt Strike.
  • Scripting: Python, PowerShell, Bash.

Questions fréquentes

Le salaire n'est pas communiqué publiquement par le recruteur. Vous pouvez postuler et négocier directement avec Confidential.
Cliquez sur "Postuler maintenant" en haut de la page. Vous pouvez importer votre CV en 1 clic — Jobiglo extrait automatiquement vos informations et postule pour vous.

Why are you reporting this job?

Thank you for your report. We will review this job.

Apply in 30 seconds

Enter your email to apply. An account will be created automatically.

By continuing, you accept our terms of use.

Already have an account? Login

💬 Chat with us on Telegram Chat on WhatsApp

Published 1 month ago

Expires 2 weeks from now

51 views · 0 interested

Boost your chances

Upload your CV — we will match you with relevant openings.

Analyzing your CV...

Confidential

San Jose