Global Cybersecurity Associate - Security Operations RT Operator

Boston Consulting Group (BCG)

Gurgaon

On-site

INR 900,000 - 1,300,000

Full time

6 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Boston Consulting Group is seeking a Red Team Operator within the Global Information Security group to perform adversary emulation and security assessments, advancing BCG's security posture.

You will work with senior practitioners on end-to-end engagements, build offense tooling, and contribute to purple team exercises across cloud, network, and application environments. Ideal candidates have 0-2 years in offensive security and a passion for learning.

Qualifications

  • 0-2 years of experience in offensive security or related cybersecurity discipline.
  • Foundational knowledge of enterprise attack techniques across AD, endpoints, networks, and web apps.
  • Exposure to Metasploit, BloodHound, Burp Suite, or equivalent.
  • Basic scripting in Python, PowerShell, or Bash for automation.
  • Understanding of networking fundamentals and OS internals.
  • Familiarity with MITRE ATT&CK framework and adversary TTPs.
  • Strong analytical and problem-solving skills; able to document findings clearly.
  • Eagerness to learn and grow within an offensive security program.
  • Cloud familiarity (Azure, AWS, GCP) is advantageous.
  • CTF/bounty experience is valued.
  • Basic reverse engineering or malware analysis is a bonus.

Responsibilities

  • Support planning and execution of red team engagements, including recon, initial access, post-exploitation, and lateral movement.
  • Conduct phishing simulations and social engineering campaigns under senior guidance.
  • Assist in developing and maintaining offensive tooling, attack infrastructure, and automation scripts.
  • Perform vulnerability assessments and penetration testing across network, endpoint, web, and cloud environments.
  • Document attack paths, findings, and evidence to support reports.
  • Collaborate with purple team to validate and improve security controls.
  • Research emerging attack techniques, threat intel, and AI-led tooling.
  • Participate in post-engagement reviews and knowledge-sharing sessions.
  • Maintain and operate command-and-control infrastructure and platforms.
  • Develop internal training materials and playbooks for Offensive Security.

Skills

Offensive security
Penetration testing
Python scripting
PowerShell
Bash
MITRE ATT&CK
Cloud environments
CTF participation
Reverse engineering
Documentation skills

Tools

Metasploit
BloodHound
Burp Suite
Attack tooling

Job description

Job Description:

Who We Are

Boston Consulting Group partners with leaders in business and society to tackle their most important challenges and capture their greatest opportunities. BCG was the pioneer in business strategy when it was founded in 1963. Today, we help clients with total transformation-inspiring complex change, enabling organizations to grow, building competitive advantage, and driving bottom-line impact. To succeed, organizations must blend digital and human capabilities. Our diverse, global teams bring deep industry and functional expertise and a range of perspectives to spark change. BCG delivers solutions through leading-edge management consulting along with technology and design, corporate and digital ventures—and business purpose. We work in a uniquely collaborative model across the firm and throughout all levels of the client organization, generating results that allow our clients to thrive.

What You'll Do

As a Red Team Operator within the Offensive Security team, you will participate in adversary emulation exercises and security assessments that test the resilience of BCG’s people, processes, and technology. You will develop your offensive security skills in a structured environment, gaining hands‑on experience across a broad range of attack techniques and defensive technologies. You will work alongside senior red team practitioners on end‑to‑end engagements, contributing to technical execution while building your understanding of adversary tradecraft, threat intelligence, and enterprise security architectures. This is an excellent opportunity for a security professional looking to grow within a world‑class offensive security program.

Responsibilities Include
  • Support the planning and execution of red team engagements, including reconnaissance, initial access, post-exploitation, and lateral movement phases.
  • Conduct phishing simulations, social engineering campaigns, and assume‑breach exercises under the direction of senior team members.
  • Assist in the development and maintenance of offensive tooling, attack infrastructure, and automation scripts to support engagement operations.
  • Perform vulnerability assessments and penetration testing across network, endpoint, web application, and cloud environments.
  • Document attack paths, findings, and technical evidence to support high‑quality engagement reports.
  • Contribute to purple team exercises by collaborating with detection and response teams to validate and improve security controls.
  • Research emerging attack techniques, threat actor TTPs, and AI led offensive security tooling to enhance team capabilities.
  • Participate in post‑engagement reviews and knowledge‑sharing sessions to support continuous improvement of Red Team methodologies.
  • Assist in maintaining and operating command‑and‑control infrastructure and offensive security platforms.
  • Support the development of internal training materials, playbooks, and documentation for the Offensive Security team.
What You'll Bring
  • 0-2 years of experience in offensive security, penetration testing, or a related cybersecurity discipline.
  • Foundational knowledge of enterprise attack techniques across Active Directory, endpoints, networks, and web applications.
  • Exposure to common offensive security tools and frameworks such as Metasploit, BloodHound, Burp Suite, or equivalent.
  • Basic scripting or programming skills in Python, PowerShell, or Bash for task automation and tooling support.
  • Understanding of networking fundamentals, operating system internals, and common security protocols.
  • Familiarity with the MITRE ATT&CK framework and common adversary tactics, techniques, and procedures.
  • Strong analytical and problem‑solving skills with a keen interest in understanding how attackers think and operate.
  • Ability to document technical findings clearly and communicate results to peers and team leads.
  • Eagerness to learn, take direction from senior practitioners, and grow within a structured offensive security program.
  • Exposure to cloud environments (Azure, AWS, or Google Cloud) is advantageous.
  • Participation in CTF competitions, bug bounty programs, or personal security research projects is valued.
  • Familiarity with basic reverse engineering, malware analysis, or exploit research is a bonus.
  • Understanding of defensive security concepts and technologies such as SIEM, EDR, and network monitoring is beneficial.
Who You'll Work With

You will be part of the Global Information Security organization, embedded within the Offensive Security team. You will work alongside senior red team practitioners, gaining exposure to a wide range of adversary emulation techniques and security assessment methodologies. You will also interact with Incident Response teams, Security Operations, Information Technology, and Infrastructure colleagues as part of collaborative purple team exercises and cross‑functional security improvement initiatives.

Additional info

This is an internal corporate security role supporting BCG’s global cybersecurity program.

Boston Consulting Group is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, age, religion, sex, sexual orientation, gender identity / expression, national origin, disability, protected veteran status, or any other characteristic protected under national, provincial, or local law, where applicable, and those with criminal histories will be considered in a manner consistent with applicable state and local laws.

BCG is an E - Verify Employer. Click here for more information on E-Verify.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Global Cybersecurity Associate - Security Operations RT Operator
Global Cybersecurity Associate - Security Operations RT Operator

Boston Consulting Group (BCG) • Gurugram District

On-site
INR 900,000 - 1,500,000
Cyber Defence Senior Director
Cyber Defence Senior Director

Boston Consulting Group (BCG) • Gurugram District

On-site
INR 6,000,000 - 9,000,000
Red Team Specialist
Red Team Specialist

ESP Engineered • Mumbai

On-site
INR 1,200,000 - 2,000,000
Cutting-edge Red Team engagements
Collaborative environment
Continuous learning opportunities
Sr. Security Consultant
Sr. Security Consultant

Eventussecurity • Mumbai

On-site
INR 1,200,000 - 2,000,000
Senior Manager - Information Security And Governance
Senior Manager - Information Security And Governance

HDB Financial Services Ltd. • Mumbai

On-site
INR 800,000 - 1,400,000
239939-Manager
239939-Manager

EXL • Gurugram District

On-site
INR 1,200,000 - 2,000,000
Cyber Security Engineer
Cyber Security Engineer

Evoke HR • Mumbai

On-site
INR 1,500,000 - 2,700,000
Senior [Red Team] Security Consultant
Senior [Red Team] Security Consultant

ILLUME Intelligence India Pvt. Ltd. • Karnataka

On-site
INR 1,800,000 - 3,000,000
Global Cybersecurity Senior Manager
Global Cybersecurity Senior Manager

The Boston Consulting Group GmbH • Gurugram District

On-site
INR 3,500,000 - 6,000,000
Associate Cybersecurity Consultant
Associate Cybersecurity Consultant

Security Brigade • Mumbai

Hybrid
INR 800,000 - 1,200,000
Competitive salary aligned to experience
Hybrid + remote-friendly
Sponsorship for offensive security certifications
+2