07 Aug
|
Accelon Consulting
|
India
07 Aug
Accelon Consulting
India
Job Description
- Plan and execute hands-on Red Team operations across enterprise, cloud, identity, endpoint, network, product, AI/LLMs, and infrastructure environments through controlled threat actor emulation and security control validation.
- Design adversary emulation scenarios using threat intelligence that reflect relevant threat actors, TTPs, attack paths, and business-impacting objectives.
- Support the development of Red Team methodologies, rules of engagement, tooling standards, reporting formats, metrics, and operational processes.
- Support external penetration testing vendors to define scope, provide technical guidance, review results, and validate identified security findings.
- Collaborate with Threat Intelligence, Detection Engineering, Threat Hunting, SIRT, Security Engineering, Cloud Security, Application Security, Infrastructure, and AI Security teams.
- Assess newly disclosed vulnerabilities and validate exploitability through controlled testing while supporting detection and response improvements.
- Participate in purple team exercises to validate telemetry, detections, response procedures, and security control effectiveness.
- Perform threat-informed Red Team assessments during merger and acquisition due diligence and onboarding activities.
- Partner with Application Security teams to validate exploitable weaknesses and support remediation.
- Produce high-quality Red Team reports, executive summaries, technical findings, and remediation guidance.
- Design and implement phishing and vishing campaigns for controlled social engineering testing.
- Continuously improve offensive security tools,
methodologies, testing standards, and operational processes.
- Mentor junior team members through technical coaching and operational guidance.
Must-Have:
- Demonstrated experience building, scaling, and operating a Red Team, penetration testing, or offensive security program from inception through maturity.
- Proven hands-on experience safely compromising enterprise environments through controlled offensive security operations designed to emulate real-world adversaries.
- Proven experience designing, building, and leading adversary emulation capabilities, including development of realistic attack scenarios, threat-informed testing Methodologies, purple team exercises, detection validation programs, and control effectiveness assessments aligned to frameworks such as MITRE ATTCK.
- Solid understanding of adversary tactics, techniques, and procedures and their application within offensive security assessments.
- Advanced knowledge of cloud platforms, including AWS and Azure, from both offensive and defensive perspectives.
- Strong understanding of enterprise networking, operating systems, security architectures, and common attack paths.
- Experience measuring Red Team effectiveness through metrics, reporting, and continuous improvement initiatives.
- Practical experience using AI within Red Team workflows.
- BA/BS in computer science, information security, or a related field or equivalent experience.
Nice-to-Have:
- Relevant certifications such as OSCP, OSEP, OSWE, CRTO, CRTM, GXPN, GPEN, CISSP, or equivalent offensive security certifications are an added plus.
📌 Sr Red Team Analyst (India)
🏢 Accelon Consulting
📍 India