13 Sep
|
engineersmind
|
India
13 Sep
engineersmind
India
Job DescriptionPrincipal Penetration Tester – Red Team Location: Pune
NExperience: 7 years
NRole Type: Red Team / Offensive Security
NKey Responsibilities
n
N
- Conduct end-to-end Red Team engagements including reconnaissance, initial access, privilege escalation, lateral movement, persistence, and objective-based attacks.
N
- Perform enterprise-level penetration testing and adversary simulation across network, application, cloud, and Active Directory environments.
N
- Identify and exploit weaknesses in Active Directory and Azure Active Directory/Entra ID environments.
N
- Assess Azure cloud infrastructure for security vulnerabilities, misconfigurations, identity and access-control weaknesses.
N
- Perform network security assessments, including internal/external network penetration testing.
N
- Conduct social engineering/phishing simulations where required as part of Red Team engagements.
N
- Execute Red Team exercises against large and complex enterprise infrastructures.
N
- Document attack paths, vulnerabilities, exploitation techniques, business impact, and remediation recommendations.
N
- Prepare detailed technical reports and present findings to technical and client stakeholders.
N
nKey Requirements
N
n
- 7 years of overall experience in Cybersecurity / Offensive Security.
N
- Strong hands-on Red Teaming experience, preferably in enterprise environments.
N
- OSCP certification – Mandatory.
N
- Robust experience with Active Directory and Azure AD/Entra ID attacks.
N
- Hands-on experience with Azure Cloud Security / Cloud Penetration Testing.
N
- Strong understanding ofNetworking concepts and network penetration testing.
N
- Experience with lateralmovement, privilege escalation, credential attacks, persistence and attack-path development.
N
- Experience conducting end-to-end Red Team engagements, not only vulnerability assessment/VAPT.
N
- Ability to work on large and complex client/enterprise infrastructures.
N
- Strong technical reporting and client-facing communication skills.
N
nGood to Have
n
N
- CRTO / CRTP certification
N
- Experience with C2 frameworks such as Cobalt Strike, Sliver, etc.
N
- Experience with AD attack tools and techniques such as BloodHound, Mimikatz, PowerView, Rubeus, etc.
N
- Experience in social engineering / phishing simulations.
N
- Cloud penetration testing experience across Azure/AWS.
N
- Experience with adversary simulation and threat-informed Red Team operations.
N
📌 Principle Penetration Tester - Red Team Expert (India)
🏢 engineersmind
📍 India