Posted on: 23/07/2026
Role Overview :
We are looking for a skilled and highly motivated Red Team Analyst to join our Cyber Security team. The ideal candidate will have hands-on experience in adversary simulation, penetration testing, exploit development, and security assessments across enterprise environments. You will be responsible for emulating real-world cyberattacks to identify security gaps, validate defensive controls, and improve the organization's overall security posture.
Key Responsibilities :
- Conduct advanced Red Team engagements by simulating sophisticated cyber threats targeting enterprise infrastructure, cloud environments, applications, and endpoints.
- Perform internal and external penetration testing on web applications, APIs, networks, Active Directory, wireless networks, and cloud platforms.
- Execute phishing simulations, social engineering exercises, and physical security assessments where applicable.
- Identify vulnerabilities, exploit weaknesses, and demonstrate attack paths while maintaining operational safety.
- Develop custom attack scripts, payloads, and automation using Python, PowerShell, Bash, or similar scripting languages.
- Perform privilege escalation, lateral movement, persistence, and post-exploitation activities during authorized assessments.
- Assess Windows and Linux environments, Active Directory security, identity management, and endpoint security controls.
- Evaluate the effectiveness of security monitoring, detection, and incident response capabilities.
- Collaborate with Blue Team and SOC teams to validate detections and strengthen defensive measures.
- Prepare comprehensive technical reports detailing attack methodology, vulnerabilities discovered, business impact, and remediation recommendations.
- Stay updated with the latest threat actor tactics, techniques, and procedures (TTPs), attack frameworks, and emerging vulnerabilities.
- Support purple team exercises and security maturity improvement initiatives.
Required Skills :
- Strong experience in Red Team operations and advanced penetration testing.
- Hands-on expertise in web application, API, network, and infrastructure security assessments.
- Strong understanding of Active Directory attacks, Windows security, Linux security, and enterprise environments.
- Experience with privilege escalation, lateral movement, credential attacks, and post-exploitation techniques.
- Proficiency in Python, PowerShell, Bash, or other scripting languages for automation and exploit development.
- Knowledge of common attack frameworks such as MITRE ATT&CK and Cyber Kill Chain.
- Experience with vulnerability assessment methodologies and exploitation techniques.
- Familiarity with cloud security testing for AWS, Azure, or GCP environments.
- Strong understanding of authentication protocols, network protocols, and enterprise security architecture.
- Ability to analyze attack paths and recommend practical remediation strategies.
Tools & Technologies :
- Cobalt Strike
- Burp Suite Professional
- Metasploit Framework
- Git
Preferred Qualifications :
- Experience performing enterprise Red Team assessments.
- Knowledge of cloud attack techniques and container security.
- Familiarity with EDR evasion techniques and endpoint security solutions.
- Experience conducting phishing campaigns and social engineering engagements.
- Exposure to Purple Team exercises and threat emulation.
- Relevant certifications such as OSCP, OSEP, CRTO, CRTP, PNPT, GPEN, or GXPN are preferred.
Did you find something suspicious?
Posted by
Posted in
CyberSecurity
Functional Area
Cyber Security
Job Code
1656951