Engineer III, Red Team

AmerisourceBergen Services Corporation

Carrollton (TX)

On-site

USD 140,000 - 190,000

Full time

5 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Cencora is seeking an Engineer III, Red Team, to lead realistic cyber attack simulations and test defenses across the organization. You will emulate adversary TTPs, plan complex operations, and drive actionable improvements in detection, response, and prevention capabilities.

The role requires deep hands-on offensive security expertise, strong reporting skills, and the ability to translate findings into strategic defenses for critical assets.

Qualifications

  • Bachelor’s degree in Cybersecurity, Computer Science, Information Systems, or equivalent work experience.
  • 6+ years of cybersecurity experience; at least 4 years in Red Team/offensive security.
  • Strong knowledge of Red Team lifecycle and advanced penetration testing methodologies.
  • Familiarity with MITRE ATT&CK, cloud security, and network protocol internals.

Responsibilities

  • Plan and execute covert Red Team operations from initial access to high‑value objectives.
  • Develop and deploy offensive tooling and implants to bypass defenses and maintain persistence.
  • Conduct vulnerability research, security assessments, and social engineering campaigns.
  • Collaborate with Cyber Threat Intelligence to map adversary TTPs to scenarios.
  • Produce executive‑level reports with remediation recommendations.
  • Enable Purple Team exercises with Incident Response to validate detection.
  • Present findings to technical and executive stakeholders.
  • Stay current with emerging offensive technologies and attacker techniques.

Skills

Offensive security
Red Team operations
Advanced penetration testing
Scripting & automation

Education

Bachelor’s degree in Cybersecurity/CS/IS

Tools

Cobalt Strike
Metasploit
Nighthawk C2
Evilginx

Job description

Our team members are at the heart of everything we do. At Cencora, we are united in our responsibility to create healthier futures, and every person here is essential to us being able to deliver on that purpose. If you want to make a difference at the center of health, come join our innovative company and help us improve the lives of people and animals everywhere.

Job Summary

The Engineer III, Red Team, will serve as a senior red team operator within the global Cyber Defense organization. This role is responsible for planning, executing, and reporting realistic cyber attack simulations against the organization’s critical assets and security controls. The Engineer III will emulate the tactics, techniques, and procedures of advanced threat actors to rigorously test the effectiveness of detection, prevention, and response capabilities. This position requires deep, hands‑on expertise in offensive security, covert operations, and the ability to translate technical findings into actionable defensive improvements.

Responsibilities
  • Plan and execute complex covert Red Team operations from initial compromise to achieving defined high‑value objectives, maintaining operational security throughout.
  • Develop, customize, and deploy advanced offensive tooling, exploits, and implants to bypass security controls and maintain persistence within target environments.
  • Conduct vulnerability research, cyber security assessments, and social engineering campaigns as part of Red Team engagement.
  • Collaborate closely with Cyber Threat Intelligence to incorporate real‑world adversary TTPs and create intelligence‑driven attack scenarios.
  • Produce high‑quality, executive‑level reports detailing simulation findings, observed defensive gaps, and prioritized, actionable remediation recommendations.
  • Facilitate detailed Purple Team exercises by working directly with Incident Response analysts to share offensive techniques and validate detection and response capabilities in real‑time.
  • Present findings and strategic recommendations to technical and executive stakeholders.
  • Stay current with emerging offensive technologies, adversary TTPs, and defensive countermeasures.
Education & Qualifications

Bachelor’s degree in Cybersecurity, Computer Science, Information Systems, or equivalent work experience 6+ years of progressive experience in cybersecurity, with at least 4 years dedicated to Red Team operations, advanced penetration testing, or offensive security research. Advanced knowledge and hands‑on experience in full lifecycle of Red Team engagement and advanced penetration testing methodologies. Expertise with common red team toolsets (e.g., Cobalt Strike, Nighthawk C2, Metasploit, Evilginx) and custom implant scripting and development. Strong understanding of network protocols, operating system internals (Windows, Linux, MacOS), cloud security, and defensive security technologies. Familiarity with intelligence frameworks such as MITRE ATT&CK for mapping and emulating adversary behavior. Proven ability to bypass advanced security defenses and demonstrate impact on critical business assets. Hands‑on experience with at least one scripting or programming language for tooling and automation (e.g., Python, Go, Powershell). Demonstrated success in executing large‑scale, enterprise‑level Red Team simulations. Strong written and verbal communication skills, with the ability to articulate complex technical vulnerabilities and operational findings to a non‑technical audience.

Preferred Certifications
  • Offensive Security Certified Professional (OSCP) or Offensive Security Wireless Professional (OSWP)
  • GIAC Penetration Tester (GPEN), GIAC Web Application Penetration Tester (GWAPT), or GIAC Exploit Researcher and Advanced Penetration Tester (GXPN)
  • Bachelor's degree in cyber security, computer science, information technology, information systems, or a related field, or equivalent experience required.
  • 4+ years of experience in cyber security, cyber threat intelligence, security operations, incident response, threat analysis, or equivalent required.
  • Certified in Cybersecurity (CS) or equivalent certification preferred.
  • Certified in Cyber Threat Intelligence (CTI) or equivalent certification preferred.
  • Certified in Ethical Hacking (EH) or equivalent certification preferred.
What Cencora offers

We provide compensation, benefits, and resources that enable a highly inclusive culture and support our team members’ ability to live with purpose every day. In addition to traditional offerings like medical, dental, and vision care, we also provide a comprehensive suite of benefits that focus on the physical, emotional, financial, and social aspects of wellness. This encompasses support for working families, which may include backup dependent care, adoption assistance, infertility coverage, family building support, behavioral health solutions, paid parental leave, and paid caregiver leave. To encourage your personal growth, we also offer a variety of training programs, professional development resources, and opportunities to participate in mentorship programs, employee resource groups, volunteer activities, and much more.

Full time

Equal Employment Opportunity

Full time Equal Employment Opportunity Cencora is committed to providing equal employment opportunity without regard to race, color, religion, sex, sexual orientation, gender identity, genetic information, national origin, age, disability, veteran status or membership in any other class protected by federal, state or local law. The company’s continued success depends on the full and effective utilization of qualified individuals. Therefore, harassment is prohibited and all matters related to recruiting, training, compensation, benefits, promotions and transfers comply with equal opportunity principles and are non‑discriminatory. Cencora is committed to providing reasonable accommodations to individuals with disabilities during the employment process which are consistent with legal requirements. If you wish to request an accommodation while seeking employment, please call 888.692.2272 or email hrsc@cencora.com. We will make accommodation determinations on a request‑by‑request basis. Messages and emails regarding anything other than accommodations requests will not be returned.

Affiliated Companies

Affiliated Companies: AmerisourceBergen Services Corporation Cencora is a leading global pharmaceutical solutions company that is committed to improving the lives of people and animals everywhere. We connect manufacturers, providers, and patients to ensure that anyone can get the therapies they need, where and when they need them. We’re a purpose-driven organization, where all of our team members around the world are united in our responsibility to create healthier futures. We work together every day to help our partners bring their innovations to patients worldwide, creating unparalleled access and impact at the center of health.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Engineer III, Red Team
Engineer III, Red Team

American Health Packaging • Northern (KY)

Hybrid
USD 120,000 - 180,000
Medical coverage
Dental coverage
Vision coverage
+2
Engineer III, Red Team
Engineer III, Red Team

Cencora • Carrollton (TX)

On-site
USD 150,000 - 210,000
Threat Hunting Engineer Lead
Threat Hunting Engineer Lead

AmerisourceBergen Services Corporation • Carrollton (TX)

On-site
USD 130,000 - 175,000
Medical, dental, vision benefits
Training and professional development
Mentorship and career growth
Threat Hunting Engineer Lead
Threat Hunting Engineer Lead

World Courier • Carrollton (TX)

On-site
USD 140,000 - 190,000
Engineer III, Vulnerability Management
Engineer III, Vulnerability Management

AmerisourceBergen Services Corporation • Pennsylvania

Hybrid
USD 120,000 - 160,000
Engineer III, Vulnerability Management
Engineer III, Vulnerability Management

American Health Packaging • Philadelphia

Hybrid
USD 120,000 - 180,000
Engineer III, Vulnerability Management
Engineer III, Vulnerability Management

Micro Technologies • Philadelphia

On-site
USD 120,000 - 160,000
Principal Architect, Security Architecture
Principal Architect, Security Architecture

World Courier • Conshohocken, Northern (KY)

Hybrid
USD 150,000 - 230,000
Information Security Intern
Information Security Intern

Micro Technologies • Northern (KY)

Hybrid
USD 25,000 - 36,000
Medical
Dental
Vision care
+2
Information Security Intern
Information Security Intern

AmerisourceBergen Services Corporation • Conshohocken

On-site
USD 25,000 - 39,000
Medical
Dental
Vision
+7