09 ago
|
Lancesoft
|
Colombia
09 ago
Lancesoft
Colombia
We're Hiring: Red Team Operator | Colombia | 100% Remote
We are looking for a Red Team Operator to join our team on a 12-month contractor engagement , with the possibility of extension.
This role is adecuado for a mid-career offensive security professional with approximately 3-5 years of experience in red teaming, penetration testing, adversary emulation, offensive security, vulnerability research, or a closely related discipline.
? Work Mode: 100% Remote
? Employment Type: Contractor
⏳ Contract: 12 Months, with possibility of extension
? Work Hours: 40 hours/week
About the Role The Red Team Operator will plan and execute authorized adversary simulations designed to evaluate the organization's ability to prevent, detect, investigate, and respond to realistic cyberattacks.
The role involves executing attack objectives, operating evasive red team infrastructure, adapting tools and techniques to bypass security controls, and identifying weaknesses across endpoint, identity, network, cloud, application, and security-monitoring environments.
The operator will also support AI-enabled offensive security pipelines for reconnaissance, attack-path analysis, tooling, infrastructure management, payload development, and reporting.
Key Responsibilities
- Plan and execute authorized red team operations and adversary emulation scenarios.
- Research threat actors, campaigns, malware, tooling, infrastructure, and emerging attack techniques.
- Conduct reconnaissance, initial access, privilege escalation, credential access, lateral movement, persistence, command-and-control, defense evasion, and data-access simulations.
- Develop attack paths across Windows, Linux, Active Directory, cloud platforms, identity providers, applications, network infrastructure,
and security controls.
- Deploy, operate, monitor, and maintain red team infrastructure.
- Manage command-and-control servers, redirectors, payload-hosting systems, phishing infrastructure, domains, DNS records, TLS certificates, cloud resources, VPNs, and proxies.
- Develop, modify, and troubleshoot payloads, scripts, implants, loaders, tooling, and automation.
- Analyze logs, alerts, and telemetry to determine which activities were detected, prevented, missed, or incorrectly classified.
- Collaborate with threat hunting, detection engineering, incident response, and security operations teams during purple team exercises.
- Assess AI-enabled applications, agents, retrieval systems, model integrations, and automated workflows for exploitable security weaknesses.
- Document attack paths, operational timelines, infrastructure configurations, indicators, evidence, control failures, and detection opportunities.
- Develop technical reports and executive summaries and present findings to technical teams, security leadership, system owners, and other stakeholders.
- Follow authorization requirements, rules of engagement, data-handling procedures, communication plans, and emergency-stop conditions.
Requirements
- 3-5 years of professional experience in red teaming, penetration testing, adversary emulation, offensive security, vulnerability research,
or a closely related discipline.
- Experience conducting offensive security assessments in enterprise environments.
• Working knowledge of red team methodologies and frameworks such as MITRE ATT&CK; .
• Strong working knowledge of Windows, Linux, Active Directory, enterprise networking, authentication systems, web applications, and common infrastructure services .
- Experience deploying and operating command-and-control frameworks and supporting red team infrastructure.
- Experience adapting tools, payloads, or infrastructure to operate against endpoint detection and response, antivirus, network monitoring, email security, application controls, and identity protections.
• Proficiency in one or more of Python, PowerShell, Bash, C#, Go, C, C++, or JavaScript .
- Ability to review, modify, debug, and safely execute offensive security code.
- Experience with endpoint detection and response platforms, SIEM systems, network monitoring, logging platforms, and defensive security controls.
- Experience documenting findings, preserving evidence, developing reports, and presenting technical results.
- Familiarity with AI-assisted software development or AI-enabled offensive security workflows.
- Demonstrated commitment to ethical conduct, authorized testing, data protection, and strict adherence to defined scope.
- A college degree in cybersecurity, computer science, information technology, engineering, or a related field, or equivalent practical experience.
Relevant certifications are preferred and may be substituted with equivalent hands-on experience. Examples include OSCP, OSAI, OSEP, OSWE, CRTO, CRTL, GPEN, GXPN, PNPT, CPTS, and CRTP/CRTE.
📌 Security Engineer (Colombia)
🏢 Lancesoft
📍 Colombia