Red Team Operator enhancing cybersecurity for Mitsubishi UFJ Financial Group. Leading tactical assessments and mentoring junior team members in advanced security measures.
Responsibilities
Developing guidelines for the usage, control, maintenance and audit-readiness of information and computer resources that are used in the distributed processing environment.
Analyzing and addressing customer security requirements for all business applications existing on a distributed platform.
Assisting in the evaluation, selection, and installation of security software products for distributed platforms.
Identifying distributed systems security issues as they arise and coordinating with the security architect to ensure that issues are addressed and resolved in a timely basis.
Conduct tactical assessments that require expertise in social engineering, application security (web and mobile), physical methods, lateral movement, threat analysis, internal and external network architecture and a wide array of products
Document and formally report testing initiatives, along with remediation recommendations and validation
Maintain tools and scripts used in penetration-testing and red team processes
Conduct research into real-world threat actor tactics, techniques, and procedures (TTPs) and apply that knowledge to Red Team Exercises
Assess new technologies, software applications, and devices for potential avenues of exploitation
Develop exploits based on identified vulnerabilities
Develop scripts, tools, or methodologies to enhance Red Team processes
Work with teammates to consistently learn and share advanced skills and foster team excellence
Requirements
Bachelor's Degree in Computer Science or related fields; applicable specialized training; or equivalent work experience - equally preferable
Certified Information Systems Security Professional (CISSP), Global Information Assurance Certification (GIAC), Certified Information Systems Auditor (CISA), Certified in Risk and Information Systems Control (CRISC), Certified Information Security Manager (CISM), OSCP, OSCE, GWAPT, or other security certifications desired
Understanding of one or more compliance frameworks: NIST, FFIEC, GLBA, SOX, PCI, etc.
5-7 year of experience conducting penetration-testing/red team engagements
Experience in planning and executing advanced attacks that evade network and endpoint security controls to demonstrate the potential adverse impact caused by a threat actor
Experience with implementing red team assessment methods, tools, and techniques
Experience identifying and exploiting common web-application vulnerabilities, such as: SQL Injection, DOM Manipulation, Authorization System Bypass, Design Logic issues, bounds checking, role & access validation, and filter evasion.
Experience in developing, extending, or modifying exploits and offensive security tools (shellcode, implants, reflective loaders, etc.), as well as operational experience exploitation, lateral movement, and persistence on Windows and Linux systems, bypassing preventative and detective endpoint and network security controls, C2 frameworks (Cobalt Strike and Metasploit), using common offensive security tools (nmap, CrackMapExec, Impacket, Responder, etc.)
Benefits
comprehensive health and wellness benefits
retirement plans
educational assistance and training programs
income replacement for qualified employees with disabilities
Assistant Vice President managing Aflac Ventures' portfolio management process and business development efforts. Cultivating relationships and leading internal business development initiatives.
Regional Vice President - Advisor Relations in financial services, developing and supporting advisor networks for sustained growth. Building relationships and analyzing practices to facilitate asset retention and compliance.
VP, Head of Casualty for Belgium & Netherlands at Sompo International. Overseeing P&L accountability and managing client relationships while enhancing insurance strategies.
Assistant Vice - President leading strategic growth in agribusiness and agri - food markets. Overseeing sales and underwriting teams to ensure lending process quality and customer relationships.
Vice President managing enterprise nursing workforce and patient placement capacity centers at Advocate Health. Driving strategic vision, operational efficiencies, and quality initiatives with a focus on nursing excellence.
Vice President managing project pursuits and strategic accounts for large global projects. Leading teams to drive differentiated value in complex, multimillion - dollar opportunities across Asia Pacific.
Assistant Vice President responsible for safeguarding financial stability by managing liquidity risk at the bank. Oversee comprehensive risk frameworks, team collaboration and policy development.
Assistant Vice President managing operational efficiency initiatives and implementing changes at Barclays. Overseeing payments, regulatory reporting, and service process improvements in Corporate Banking.
Overseeing EMEA FX & EM Product Control team at Nomura, focusing on reporting and analysis of trading activities. Requires strong product control experience and knowledge of derivatives.
VP, Relationship Management driving strategy and execution within financial professionals. Building partnerships and engagement to enhance retention, satisfaction, and growth.