Senior Adversary Operations Engineer

Relha LLC

New York (NY)

On-site

USD 83,000 - 222,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

CVS Health in New York seeks a Senior Adversary Operations Engineer to lead advanced penetration testing and adversary emulation across enterprise and cloud environments. You will design attack paths, deliver actionable findings, and drive remediation with business impact in mind.

Collaborate with blue teams, SOC, and incident response to improve detection, telemetry, and response workflows. Strong automation via Python/PowerShell and security tooling is expected to accelerate testing and threat

Qualifications

  • 5+ years of hands-on experience in penetration testing, red teaming, or offensive security.
  • 3+ years of experience in Kali Linux, Metasploit, Nmap, Burp Suite, and/or other related tools.
  • 3+ years of experience in scripting languages (Python, PowerShell, Bash,etc).
  • 3+ years of experience with cloud security (AWS, Azure, GCP) and container security.

Responsibilities

  • Penetration Testing & Adversary Emulation
  • Conduct internal and external penetration tests to identify and exploit vulnerabilities.
  • Develop and execute adversary emulation scenarios to assess the effectiveness of the organization’s detection and response capabilities.
  • Utilize and maintain a comprehensive suite of penetration testing tools, including Kali Linux, Metasploit, Nmap, and custom scripts.
  • Create detailed reports with findings and actionable recommendations for remediation.
  • Work closely with blue teams to design and execute purple team exercises that bridge offensive and defensive security efforts.
  • Provide actionable insights to improve security monitoring, alerting, and incident response based on penetration testing results.
  • Facilitate knowledge-sharing sessions to upskill internal teams on adversary tactics, techniques, and procedures (TTPs).
  • Security Strategy & Risk Management
  • Contribute to the development of a comprehensive adversary operations strategy aligned with organizational risk management goals.
  • Provide executive leadership with detailed reports on security gaps, risks, and the effectiveness of security controls.
  • Prioritize remediation efforts based on risk impact and operational feasibility.
  • Tool Development & Automation
  • Automate common penetration testing tasks using Python, PowerShell, or Bash scripting to increase efficiency.
  • Contribute to the development of custom tools for red teaming and penetration testing.
  • Assist the incident response team by providing adversary tactics insights during active investigations.
  • Collaborate on developing threat-hunting use cases and refining detection capabilities based on attack simulations.

Skills

Penetration testing
Red teaming
Offensive security
Cloud security
Container security

Education

Bachelor’s degree or equivalent experience

Tools

Kali Linux
Metasploit
Nmap
Burp Suite
Python
PowerShell
Bash
AWS
Azure
GCP

Job description

We’re building a world of health around every individual — shaping a more connected, convenient and compassionate health experience. At CVS Health®, you’ll be surrounded by passionate colleagues who care deeply, innovate with purpose, hold ourselves accountable and prioritize safety and quality in everything we do. Join us and be part of something bigger – helping to simplify health care one person, one family and one community at a time.

Position Summary

The Senior Adversary Operations Engineer plays a critical role in strengthening the organization’s security posture by executing advanced penetration testing and adversary simulation activities that uncover high‑risk vulnerabilities across enterprise, cloud, identity, API, and application environments. This role operates with a high degree of autonomy, leading engagements end‑to‑end from scoping through execution, reporting, and remediation guidance while maintaining a strong focus on real‑world exploitability and business impact. By developing and chaining sophisticated attack paths, the engineer delivers clear, actionable insights that enable leadership to make informed, risk‑based decisions and prioritize remediation aligned to business objectives.

Beyond identifying weaknesses, this role directly improves the organization’s detection and response capabilities. Through close collaboration with detection engineering, SOC, and incident response teams, the Senior Adversary Operations Engineer translates offensive findings into measurable defensive enhancements, including improved telemetry, alerting, and response workflows. Leveraging threat intelligence and continuously refining adversary tradecraft, the role ensures testing remains aligned with evolving attacker behavior while supporting incident investigations and post‑event analysis contributing to a more resilient, intelligence‑driven security program.

Role Responsibilities:
Penetration Testing & Adversary Emulation

Conduct internal and external penetration tests to identify and exploit vulnerabilities.

Develop and execute adversary emulation scenarios to assess the effectiveness of the organization’s detection and response capabilities.

Utilize and maintain a comprehensive suite of penetration testing tools, including Kali Linux, Metasploit, Nmap, and custom scripts.

Create detailed reports with findings and actionable recommendations

for remediation.

Work closely with blue teams to design and execute purple team exercises that bridge offensive and defensive security efforts.

Provide actionable insights to improve security monitoring, alerting, and incident response based on penetration testing results.

Facilitate knowledge-sharing sessions to upskill internal teams on adversary tactics, techniques, and procedures (TTPs).

Security Strategy & Risk Management

Contribute to the development of a comprehensive adversary operations strategy aligned with organizational risk management goals.

Provide executive leadership with detailed reports on security gaps, risks, and the effectiveness of security controls.

Prioritize remediation efforts based on risk impact and operational feasibility.

Tool Development & Automation

Automate common penetration testing tasks using Python, PowerShell, or Bash scripting to increase efficiency.

Contribute to the development of custom tools for red teaming and penetration testing.

Assist the incident response team by providing adversary tactics insights during active investigations.

Collaborate on developing threat-hunting use cases and refining detection capabilities based on attack simulations.

Required Qualifications

5+ years of hands-on experience in penetration testing, red teaming, or offensive security.

3+ years of experience in Kali Linux, Metasploit, Nmap, Burp Suite, and/or other related tools.

3+ years of experience in scripting languages (Python, PowerShell, Bash,etc).

3+ years of experience with cloud security (AWS, Azure, GCP) and container security.

Preferred Qualifications

Relevant certifications such as OSCP, OSCE, CISSP, CEH, or GPEN.

Experience in managing or participating in purple team exercises.

Familiarity with compliance standards like PCI-DSS, HIPAA, or ISO 27001.

Strong understanding of security frameworks such as MITRE ATT&CK, NIST, and CIS.

Strong communication skills with the ability to translate complex security issues to non-technical stakeholders.

Education

Bachelor’s degree or equivalent experience (High School Diploma and 4 years relevant experience)

Anticipated Weekly Hours
40
Pay Range
The typical pay range for this role is:
$83,430.00 - $222,480.00

This pay range represents the base hourly rate or base annual full-time salary for all positions in the job grade within which this position falls. The actual base salary offer will depend on a variety of factors including experience, education, geography and other relevant factors. This position is eligible for a CVS Health bonus, commission or short-term incentive program in addition to the base pay range listed above.

Our people fuel our future. Our teams reflect the customers, patients, members and communities we serve and we are committed to fostering a workplace where every colleague feels valued and that they belong.

Great benefits for great people

We take pride in offering a comprehensive and competitive mix of pay and benefits that reflects our commitment to our colleagues and their families.

This full‑time position is eligible for a comprehensive benefits package designed to support the physical, emotional, and financial well‑being of colleagues and their families. The benefits for this position include medical, dental, and vision coverage, paid time off, retirement savings options, wellness programs, and other resources, based on eligibility.

Additional details about available benefits are provided during the application process and on Benefits Moments.

We anticipate the application window for this opening will close on: 08/17/2026

Qualified applicants with arrest or conviction records will be considered for employment in accordance with all federal, state and local laws.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Principal Application Security Engineer - Threat Research
Principal Application Security Engineer - Threat Research

Relha LLC • New York (NY), Northern (KY)

Hybrid
USD 144,000 - 288,000
Medical insurance
Dental coverage
Vision coverage
+3
Staff Application Security Engineer - Threat Research
Staff Application Security Engineer - Threat Research

CVS Health • Little Rock (AR)

On-site
USD 107,000 - 284,000
Staff Application Security Engineer - Threat Research
Staff Application Security Engineer - Threat Research

Koitecc Solutions • Jefferson City (MO)

On-site
USD 107,000 - 284,000
Medical, dental, and vision coverage
Retirement savings options
Paid time off
+2
Staff Application Security Engineer - Threat Research
Staff Application Security Engineer - Threat Research

Hispanic Alliance for Career Enhancement • Honolulu (HI)

On-site
USD 166,000 - 225,000
Staff Application Security Engineer - Threat Research
Staff Application Security Engineer - Threat Research

Hispanic Alliance for Career Enhancement • Salt Lake City (UT)

On-site
USD 107,000 - 284,000
Comprehensive benefits
Great benefits for employees
Staff Application Security Engineer - Threat Research
Staff Application Security Engineer - Threat Research

CVS Health • Springfield (IL)

On-site
USD 107,000 - 284,000
Health benefits
Bonus program
Equity awards
Principal Engineer - Offensive Operations
Principal Engineer - Offensive Operations

CVS Health • Nashville (TN)

On-site
USD 144,000 - 288,000
AVP, Application Security
AVP, Application Security

Relha LLC • Rhode Island

On-site
USD 185,000 - 376,000
Staff Application Security Engineer - Threat Research
Staff Application Security Engineer - Threat Research

CVS Health • New York (NY)

On-site
USD 107,000 - 284,000
Staff Application Security Engineer - Threat Research
Staff Application Security Engineer - Threat Research

Stryker Corporation • Cheyenne (WY)

Hybrid
Confidential
Medical coverage
Dental coverage
Vision coverage
+2