Jobs and Careers
AT

Lead Cybersecurity - Red Team Operator

AT&T
United Statesfull_timeVerifiedPosted 11 Mar 2025
💰 $215,800/yr($128,400/yr$215,800/yr)

About the role

Job Description:

This position requires office presence of a minimum of 5 days per week and is only located in the location(s) posted. No relocation is offered.

Join our dynamic Cyber Operations Red Team as a Lead Red Team Operator. In this role, you will participate in sophisticated Red Team exercises aimed at uncovering vulnerabilities across our networks, systems, applications, and processes. As an innovative thinker, you will go beyond standard vulnerability assessments, developing and utilizing unique tools and techniques to identify and exploit security gaps.

Your primary responsibilities will involve conducting comprehensive Red Team exercises to identify vulnerabilities in diverse environments such as cloud-hosted and web-based applications, API interfaces, databases, big data environments, networks, computer systems, mobile applications, Software Defined Networks, and IoT devices and systems. You will design and develop custom tools and methodologies to enhance our security testing capabilities and employ creative tactics to uncover weaknesses, including poor user practices and weak security methods. Working collaboratively with other Red Team members and Security Analysts, you will identify and exploit security issues, characterize cyber-attack vectors, and discover related vulnerabilities, providing actionable recommendations for remediation.

In addition, you will be required to stay abreast of the latest vulnerabilities and exploit techniques, continuously adapting your tools and methodologies to address emerging threats and evolving security landscapes. Your role will also involve documenting and communicating security findings in both written and verbal formats, using your insights to inform management, drive security strategies, notify affected customers, and advise network operations and other business units on security issues and recommended solutions.

Responsibilities Include:

  • Performing formal and informal targeted “Hunts” to identify vulnerabilities.
  • Actively building and participating in Red Team exercises.
  • Designing and creating new/custom Red Team tools and tests.
  • Employing tactics to uncover security holes in user practices and procedures.
  • Researching, documenting, and discussing security findings with relevant stakeholders.
  • Providing feedback and verification as security issues are fixed.

Required Skills & Experience:

  • 4+ years of experience in penetration testing and red team operations
  • Deep understanding of Transmission Control Protocol / Internet Protocol (TCP/IP) protocols, devices, security mechanisms and how they operate.
  • Strong understanding of network security threats including APT, botnets, Distributed Denial of Service (DDoS) attacks, worms, and network exploits.
  • Experience with network probing/testing/analysis tools (Nessus, nmap, burp, wireshark, etc.)
  • Deep technical knowledge of Windows, UNIX and Linux operating systems as both an expert user and system administrator
  • Programming skills that will be used to construct, modify, and execute testing tools including shell (ksh, bash), [g]awk, Python, PERL, regex, .NET Programming, Java, C, C++, C#, PowerShell, curl, Web application development (PHP, ASP.NET, etc.)
  • Comprehensive knowledge of software security testing principles, practices, and tools, experience of vulnerability assessments in a complex environment.
  • Experience or familiarity with vulnerability analysis, computer forensics tools, cryptography principles
  • Excellent teamwork skills for collaboration on analysis techniques, implementation, and reporting.  Must be able to work both independently as well as effectively in teams of individuals with a variety of skills and backgrounds.
  • Excellent written and verbal communication skills and have demonstrated ability to present material to senior officials.
  • Highly self-motivated requiring little direction.
  • Demonstrates creative/out-of-the-box thinking and good problem-solving skills.
  • Demonstrates strong ethical behavior.

Desired Skills & Experience:

  • Strong knowledge of an enterprise architecture
  • Ability to obtain a strong and ongoing understanding of the technical details involved in current APT threats and exploits involving various operating systems, applications and networking protocols.
  • Knowledge of tactics, techniques, and procedures associated with malicious insider activity, organized crime/fraud groups and both state and non-state sponsored threat actors.
  • Understanding of cloud-based architectures and highly distributed big data architectures
  • Experience with application security testing tools, such as the Metasploit framework and Burp Suite

Apply for this role

Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.

Apply Now →Generate Application Kit

Free account required — sign up in 30s

Company

AT&T

View company profile →