Senior Red Team Operator

ING

Amsterdam

Hybrid

EUR 90,000 - 150,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Vacation days
Pension scheme
13th month
Holiday pay 8%
Hybrid working
Personal growth
Innovative colleagues

Job summary

ING in Amsterdam seeks a Senior Red Team Operator to lead advanced engagements, emulating attacker TTPs to test and strengthen our global security posture. You will design long-term, intelligence-led campaigns across on-prem, cloud and hybrid environments, with emphasis on operational security and stealth.

The role requires developing bespoke tooling and coordinating with SOC and defense teams, delivering clear executive insights and actionable recommendations.

Qualifications

  • 5+ years in a dedicated red team role.
  • Proficiency in at least one low-level language (C++, C#, Go, Rust) and scripting (Python, PowerShell).
  • Deep experience attacking complex enterprise environments (AD, major clouds).
  • Strong OPSEC mindset with covert, objective-driven operations.
  • Advanced offensive security certifications are a plus but hands-on experience matters most.
  • Fluency in English (written and spoken).

Responsibilities

  • Lead advanced red team engagements and campaigns.
  • Test global enterprise across on-prem, cloud (Azure, AWS, GCP) and hybrid environments.
  • Execute full attack lifecycle from initial access to data exfiltration.
  • Develop and maintain red team infrastructure and bespoke tools.
  • Collaborate with SOC and defensive teams in purple team exercises.
  • Deliver actionable insights and executive-ready reports.

Skills

Low-level programming
Scripting
Cloud platforms
OPSEC mindset
English fluency
Team mentorship

Education

5+ years red team

Tools

Cobalt Strike
Sliver
Custom tooling

Job description

Job Profile Summary Identifies, evaluates and reports on vulnerabilities in networks, systems and software to protect the organization and its information. Continuously scans, performs tests and simulates attacks in order to anticipate and discover potential weaknesses. Amsterdam, Full-time (36-40 hours per week)

Senior Red Team Operator

A role in Global CISO that’s as much about breaking things as it is about building resilience.

Are you passionate about cybersecurity and driven by an adversarial mindset? Do you want to test a global financial institution against sophisticated, real-world threats?

As a Senior Red Team Operator at ING, you will be part of a hands-on team focused on strengthening the bank’s security posture. We emulate the mindset of an attacker to test our people, processes, and technology on a global scale. Your mission will be to simulate the tactics, techniques, and procedures (TTPs) of advanced threat actors, providing critical assurance to the business and its leadership.

This is not a standard penetration testing role. We are looking for a specialist in red teaming who can plan and execute long-term, intelligence-led campaigns while maintaining exceptional operational security (OPSEC).

The team

You will join the Amsterdam-based red team, a highly specialized, multicultural group of experts with a proven track record in cybersecurity. As part of the Tribe Cyber Threat Management (CTM), we have a hands-on approach and focus on the constant evolution of our skills through research.

and on-the-job experience. We are a crucial part of the Global CISO organisation, and our work directly influences ING’s global security strategy. We help each other to be successful and live by the Orange Behaviours.

Roles and responsibilities

You play a key role in protecting ING through:

  • Leading advanced red team engagements.
  • Design and conduct complex, long-run red team campaigns that mirror the sophistication of top-tier, intelligence-led exercises. You will test our global enterprise, including on-premises, cloud (Azure, Google Cloud), and hybrid environments.
  • Executing the full attack lifecycle.
  • Run objective-driven, end-to-end red team campaigns, from initial access to data exfiltration, while employing stealth to evade our Blue Team.
  • Developing and maintaining red team infrastructure.
Job Description
  • Build, operate, and customize the team’s command-and-control (C2) infrastructure. You will be expected to go beyond using standard tools like Cobalt Strike or Sliver, developing bespoke capabilities to ensure operational success.
  • Driving defensive improvements through purple teaming.
  • Partner directly with our SOC and defensive teams in collaborative purple team exercises to tune detection rules, improve playbooks, and enhance ING’s defensive capabilities.
  • Developing custom tooling to bypass advanced defences.
  • Research emerging TTPs and create your own tools, implants, and loaders in languages like C++, C#, or Go to bypass modern security controls like EDR and application allow-listing.
  • Delivering actionable insights to the business.
  • Author comprehensive, narrative-style reports that translate complex technical findings into clear, actionable recommendations for executive stakeholders.
How to succeed

We hire smart people like you for your potential. Our biggest expectation is that you’ll stay curious. Keep learning. Take on responsibility. In return, we’ll back you to develop into an even more awesome version of yourself.

We’re looking for someone who not only has the technical skills but also embodies the Orange Behaviours
  • You take it on and make it happen.
  • You have a proactive, hands-on mentality and take ownership of complex campaigns from planning to execution. You are curious and driven to find new ways to challenge our defences.
  • You help others to be successful.
  • You are a natural collaborator, eager to share your expertise in purple team exercises and mentor junior operators. You thrive in a team environment where knowledge sharing is key to everyone’s growth.
  • You are always a step ahead.
  • You have a forward-thinking mindset, constantly researching emerging threats and developing novel tools to stay ahead of the curve. You don’t wait for instructions; you anticipate future challenges and build the solutions for them.

In addition, the following technical skills will help you to be successful in this role:

  • 5+ years of hands-on experience in a dedicated red team role.
  • You bring strong development skills in at least one low-level language (e.g., C++, C#, Go, Rust) for custom tool development, and proficiency in a scripting language (e.g., Python, PowerShell).
  • Deep experience attacking complex enterprise environments, including Active Directory and major cloud providers (Azure, AWS, GCP).
  • A strong Operational Security (OPSEC) mindset with a proven ability to conduct covert, objective-driven operations.
  • Advanced offensive security certifications (e.g. OSEP, OSCE, GXPN, CRTO) are a plus, but your hands-on experience is what matters most.
  • You are fluent in English, both verbally and in writing.

This position is an Integrity Sensitive Position. Enhanced Reliability Screening is a part of the application process.

Rewards and benefits

We want to make sure that it’s possible for you to strike the right balance between your career and your private life. Find out more about our employment conditions.

  • 25-28 vacation days depending on contract
  • Pension scheme
  • 13th month salary
  • 8% Holiday payment
  • Hybrid working
  • Personal growth and challenging work with endless possibilities
  • An informal working environment with innovative colleagues
About us

Curious about how ING empowers people and businesses to move forward?

Discover what we do and what we can offer you

Questions?

Please visit our Frequently Asked Questions section to find some answers on questions you might have.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Incident Responder - CSIRT
Senior Incident Responder - CSIRT

ING Nederland • Amsterdam

Hybrid
EUR 110,000 - 150,000
Hybrid working
Pension scheme
13th month salary
+3
IT Risk Specialist
IT Risk Specialist

ING • Amsterdam

Hybrid
EUR 90,000 - 120,000
Vacation days 25-28
Pension
13th month
+4
Linux Administrator
Linux Administrator

ING • Amsterdam

Hybrid
EUR 85,000 - 110,000
Hybrid working
Pension scheme
13th month salary
+2
Expert PPSS Intelligence Strategical / Tactical
Expert PPSS Intelligence Strategical / Tactical

ING • Amsterdam

On-site
EUR 90,000 - 140,000
12-month contract
36 or 40 hour workweek
Hybrid working
+7
Pentester - Red Teamer
Pentester - Red Teamer

ABN AMRO Bank N.V. • Amstelveen

On-site
EUR 60,000 - 80,000
Experienced Red Team Operator
Experienced Red Team Operator

Northwave Cyber Security • Utrecht

Hybrid
EUR 80,000 - 110,000
Hybrid working and international reloc
Training budget and certifications
Professional equipment provided
+1
Senior Expert Engineer
Senior Expert Engineer

ING Nederland • Amsterdam

Hybrid
EUR 120,000 - 180,000
Vacation days
Pension scheme
13th month salary
+4
ESG Business Analyst
ESG Business Analyst

ING • Amsterdam

Hybrid
EUR 70,000 - 95,000
Hybrid working
Pension scheme
13th month salary
+2
Senior SRE Engineer
Senior SRE Engineer

ING • Amsterdam

Hybrid
EUR 90,000 - 120,000
Vacation days 25-28
Pension scheme
13th month salary
+3
Senior Data Scientist
Senior Data Scientist

ING Hubs Romania • Amsterdam

Hybrid
EUR 90,000 - 130,000
25-28 vacation days
Pension scheme
13th month salary
+4