Senior Security Consultant, Red Team

Jobtailor

Seattle (WA)

Hybrid

USD 150,000 - 210,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

IOActive is seeking an experienced security consultant to join our red team efforts in Seattle. You will lead covert campaigns, perform adversarial emulation, and coordinate multi-time-zone projects with clients in mind.

The role requires deep knowledge of Windows/Linux, post-exploitation, and vulnerability analysis, with strong reporting and client-facing communication skills. A willingness to travel extensively is essential.

Qualifications

  • Experience leading covert red team operations across client environments.
  • Penetration testing across networks, web apps, wireless, physical security, and social engineering.
  • Familiarity with C2/post-exploitation frameworks and related tooling.
  • Proficient in scripting languages listed and able to automate tests.
  • Deep understanding of Windows and Linux architectures, AD, and security hardening.
  • Strong ability to present complex findings to management and non-technical staff.
  • Willingness to travel 50%+ nationwide and globally.

Responsibilities

  • Lead red team campaigns for IOActive clients, coordinating remote and on-site work.
  • Perform adversarial emulation, breach, post-exploitation, social engineering, and physical testing.
  • Manage project tasks and deadlines across multiple time zones.
  • Develop custom tools to meet project goals.
  • Exploit vulnerabilities and clearly communicate risk to clients.
  • Create comprehensive technical reports on vulnerabilities and business impact.
  • Participate in client calls and business development discussions.
  • Deliver technical customer presentations and provide mentorship to teams.
  • Contribute to industry through research, whitepapers, or presentations.

Skills

Red team operations
Penetration testing
C2 frameworks
Python
Ruby
PowerShell
Java
Shell scripting
Windows administration
Linux administration
Post-exploitation
Vulnerability assessment
Travel availability

Tools

Cobalt Strike
Empire
Metasploit
Throwback

Job description

Responsibilities
  • Work as part of a team performing Red and Purple Team Campaigns for IOActive clients, both remotely and on-site
  • Perform adversarial emulation, assumed breach scenarios, post-exploitation, social engineering, and physical security testing
  • Manage project tasks and deadlines on a multi-time-zone team
  • Develop unique tools to assist in project goals
  • Exploit vulnerabilities found in client’s people, processes, and technology; then clearly communicate complex vulnerabilities to both technical and non-technical client staff
  • Create comprehensive technical reports explaining technical and business risk of the vulnerabilities found
  • Participate in project conference calls with clients and on business development calls in support of sales activities
  • Create and lead technical customer presentations
  • Provide technical leadership/mentorship to the consulting team and to our clients on security topics
  • Contribute to the security industry through presentations, whitepapers and/or research
Requirements
  • Experience performing and leading covert red team operations
  • Penetration testing experience in Network, Web applications, Wireless networks, Physical security, and Social engineering
  • Experience with C2 and post-exploitation frameworks, including Cobalt Strike, Empire, Metasploit, Throwback, and similar tools
  • Understanding and proficiency with some of the following: Python, Ruby, PowerShell, Java, and Shell scripting
  • Knowledge and experience with enterprise network/system/application architecture and design including complex environments utilizing Microsoft Windows, Active Directory, and Linux
  • Deep understanding on Windows and Linux systems administration and post-exploitation activities on each platform
  • Ability to present complex material in a digestible, consumable manner to all levels of management
  • Highly experienced with OS, services, and application hardening
  • Strong ability to find vulnerabilities and develop proof of concepts
  • Ability and desire to travel at least 50% of the time – both nationally and globally
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Red Team Specialist
Senior Red Team Specialist

Allied OneSource • Chicago (IL)

On-site
USD 143,000 - 156,000
Red Team Engineer
Red Team Engineer

Jobtailor • Massachusetts

On-site
USD 120,000 - 180,000
Senior Security Engineer & Workday
Senior Security Engineer & Workday

hudsonmanpower • Harrisburg

On-site
USD 90,000 - 130,000
Senior Security Consultant, Red Team
Senior Security Consultant, Red Team

IOActive, Inc. • United States

Hybrid
USD 75,000 - 150,000
Competitive compensation
Access to world-class technical teams
Flexibility to work remotely or from the office
+1
Principal Security Consultant (Red Team Operator - US)
Principal Security Consultant (Red Team Operator - US)

NetSPI • Minneapolis (MN)

On-site
USD 100,000 - 130,000
Red Team Penetration Tester IV
Red Team Penetration Tester IV

Take2 Consulting, LLC • Virginia Beach (VA)

On-site
USD 170,000 - 190,000
Red Team Penetration Tester III
Red Team Penetration Tester III

Take2 Consulting, LLC • Virginia Beach (VA)

On-site
USD 150,000 - 175,000
Red Team Operator
Red Team Operator

SoTalent • United States

On-site
USD 100,000 - 130,000
Competitive compensation and performance incentives
Comprehensive health and wellness benefits
401(k) with employer match
+3
Senior Red Team Operator
Senior Red Team Operator

Jobtailor • Huntsville (AL)

On-site
USD 90,000 - 150,000
AI Red Team Engineer
AI Red Team Engineer

Confidential • San Francisco (CA)

On-site
USD 120,000 - 160,000