Description:
As a Red Team Security Engineer you will be a key member of the Product Security Team. You will be the primary Security partner for software and engineering teams focusing on evaluating security posture across the organization. The Red Team Engineer will be responsible for conducting adversary emulation and offensive security assessments across cloud environments while driving remediation efforts of issues.
What You'll Do
- Plan and execute red team operations, adversary simulations, and targeted security assessments focused on cloud environments.
- Evaluate the security of cloud infrastructure, identity architectures, CI/CD pipelines, containerized workloads, and cloud-native services.
- Identify and validate attack paths involving IAM misconfigurations, overprivileged roles, secrets exposure, metadata abuse, insecure automation, and weaknesses in cloud service configurations.
- Assess detection and response coverage by exercising logging, alerting, monitoring, and incident response processes in partnership with blue team and detection engineering functions.
- Track emerging attacker techniques, cloud exploitation trends, and new abuse paths relevant to modern enterprise environments.
What We're Looking For
- 5+ years of experience in offensive security, red teaming, penetration testing, and detection validation
- Familiarity with attacker tactics, techniques, and procedures, and the ability to map findings to frameworks such as MITRE ATT&CK.
- Ability to write concise, actionable reports and communicate complex technical issues to diverse stakeholders
- Relevant industry certifications such as OSCP, OSEP, GXPN, GPEN, or cloud security certifications.