Red Team Operator

Equifax, Inc.

Alpharetta (GA)

Hybrid

USD 95,000 - 140,000

Full time

3 days ago
Be an early applicant
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Job summary

Equifax, Inc. in Alpharetta, GA is seeking a Red Team Operator to emulate real-world threats and train defenders by using TTPs across engagements. You will join a Global Security team and work with Cyber Operations to strengthen defenses.

You will execute multi-engagement campaigns, build secure C2 infrastructure, and develop detections with purple teams. The role emphasizes tool development, EDR evasion, cloud attack paths, and AI-assisted testing.

Qualifications

  • 2+ years of cybersecurity experience with hands-on offensive work (pentesting, red teaming, offensive research).
  • 1+ years of coding in at least one language (C, C#, Go, Python, or PowerShell).
  • Working knowledge of Windows and Linux internals, AD, and networking fundamentals.
  • Working knowledge of MITRE ATT&CK framework.
  • Experience using AI/LLM tools in security workflows.

Responsibilities

  • Execute threat actor emulation engagements using real-world TTPs and assist in engagement planning.
  • Support multiple concurrent engagements while following rules of engagement and OPSEC standards.
  • Collaborate on building and maintaining secure Red Team C2 infrastructure.
  • Document findings in clear technical reports and coordinate with purple team detections.
  • Contribute to tool development, including C2 extensions and evasive techniques.
  • Apply AI tools to speed up threat emulation, CVE analysis, and malware analysis.
  • Handle sensitive data and systems responsibly in a global financial data company.

Skills

Offensive security
Python
PowerShell
Threat emulation
Windows & Linux internals
MITRE ATT&CK
AI tools usage

Tools

Cobalt Strike
Sliver
Mythic
GCP
AWS

Job description

As a Red Team Operator, you will join a team that emulates real-world threats using threat actor tactics, techniques, and procedures (TTPs). Your primary goal will be to train defenders and measure how well our people, processes, and technology protect our environment. You will execute engagements alongside senior operators, support multiple engagements at once, and grow your tradecraft in areas such as tool development, EDR evasion, and cloud attack paths.

As part of the Global Security organization within Cyber Operations, you will build strong partnerships across Global Security and Technology teams to successfully execute the Red Team mission.

  • This position is based out of our Alpharetta, Georgia office.
  • We believe great things happen when teams connect. Our schedule is built around 4 days of high-impact, in-office collaboration (Monday-Thursday), paired with Friday Flexibility to wrap up your week remotely.
  • This position does not offer immigration sponsorship (current or future) including F-1 STEM OPT extension support.
  • This position is not open to third-party vendors or C2C.
  • In person interviews are required.
What you will do
  • Execute threat actor emulation engagements using real-world TTPs, and contribute to engagement planning alongside senior operators.
  • Support multiple concurrent engagements while following rules of engagement, OPSEC standards, and deconfliction processes.
  • Collaborate on building and maintaining secure Red Team command and control (C2) infrastructure.
  • Document and communicate findings in clear technical reports, and partner with Cyber Detection and Response teams in purple team exercises to develop and validate new detections.
  • Contribute to tool development, including beacon object files (BOFs), C2 extensions, EDR evasion techniques, and stealthy C2 channels, under the guidance of senior team members.
  • Apply AI tools to speed up threat emulation, CVE analysis, and malware analysis, and to support AI-augmented testing.
  • Handle sensitive data and systems responsibly, in line with the legal and regulatory requirements of a global financial data company.
What experience you need
  • 2+ years of experience in cybersecurity, including hands-on offensive work (penetration testing, red teaming, offensive security research, or CTFs and lab projects).
  • 1+ years of experience writing code in at least one language such as C, C#, Go, Python, or PowerShell.
  • Working knowledge of Windows and Linux operating system internals, Active Directory, and networking fundamentals (e.g., IP, TCP, UDP, DNS, HTTP/S).
  • Working knowledge of the MITRE ATT&CK framework.
  • Experience using AI/LLM tools in technical or security workflows.
What could set you apart
  • Industry certifications such as OSCP, OSEP, CRTO, CRTP, or similar.
  • Hands-on experience deploying and using C2 frameworks such as Cobalt Strike, Sliver, or Mythic, including building customizations or extensions.
  • Experience with Google Cloud Platform (GCP) or Amazon Web Services (AWS), including IAM, service accounts, and automating via API calls.
  • Experience building MCP integrations or AI agents.
  • A public portfolio such as GitHub projects, blog posts, CVEs, or write-ups on complex security lab environments.
  • Experience in financial services or another regulated industry.

#LI-Hybrid

#LI-KD1

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Red Team Operator
Red Team Operator

Dark Wolf • Colorado Springs (CO)

Hybrid
USD 155,000 - 180,000
Red Team Operator
Red Team Operator

SoTalent • United States

On-site
USD 100,000 - 130,000
Competitive compensation and performance incentives
Comprehensive health and wellness benefits
401(k) with employer match
+3
Red Team Operator
Red Team Operator

TransUnion LLC • Wisconsin

On-site
USD 112,500 - 187,500
Medical, dental, and vision coverage
401(k) with employer match
Tuition reimbursement
+2
Red Team Operator
Red Team Operator

TransUnion LLC • California (MO)

On-site
USD 112,500 - 187,500
Medical, dental, and vision coverage
401(k) with employer match
Tuition reimbursement
+2
Red Team Operator (Senior)
Red Team Operator (Senior)

Cyber Defense Technologies • Chantilly (VA)

On-site
USD 160,000 - 210,000
Health insurance
Dental coverage
Vision coverage
+1
AI Red Team Engineer
AI Red Team Engineer

ByLabs • Seattle (WA)

On-site
USD 140,000 - 190,000
AI Red Team Engineer
AI Red Team Engineer

ByLabs • San Francisco (CA)

On-site
USD 150,000 - 190,000
Red Team Digital Network Exploitation Analyst (Operational Technology)
Red Team Digital Network Exploitation Analyst (Operational Technology)

Beyond SOF • Fort Belvoir (VA)

On-site
USD 180,000 - 260,000
Best-in-class benefits
Sr. Red Team Operator
Sr. Red Team Operator

Visual Connections, LLC • Maryland

On-site
USD 120,000 - 150,000
Full Medical, Dental, Prescription and Vision health care
11 Paid Holidays annually
Paid time off
+3
Security Validation Engineer (Red Team)
Security Validation Engineer (Red Team)

Athena • Palo Alto (CA)

On-site
USD 140,000 - 190,000