Principal Cybersecurity - Red Team Operator
AT&TAbout the role
Job Description:
This position requires office presence of a minimum of 5 days per week and is only located in the location(s) posted. No relocation is offered.
Join AT&T and reimagine the communications and technologies that connect the world. Our Chief Security Office ensures that our assets are safeguarded through truthful transparency, enforce accountability and master cybersecurity to stay ahead of threats. Bring your bold ideas and fearless risk-taking to redefine connectivity and transform how the world shares stories and experiences that matter. When you step into a career with AT&T, you won’t just imagine the future-you’ll create it.
Join our dynamic Cyber Operations Red Team as a Principal Red Team operator. In this role, you will lead and participate in sophisticated Red Team exercises aimed at uncovering vulnerabilities across our networks, systems, applications, and processes. This Red Team operator position will require you to not only provide support on red team exercises but also take on significant portions of the work/project independently. Your role within the Cyber Operations Red Team will be focused on building, contributing to and improving a robust Red Teaming program. This will require you to collaborate with management to set strategic goals for yourself and the program. You will need to possess in-depth knowledge of security gaps and vulnerabilities and use this knowledge to align team goals with overall organizational goals to reduce our security exposure. Your testing will go beyond the vulnerabilities identified by standard tools; you are expected to be creative and innovative in your approach and in the development of new or modified tools and techniques. You will work collaboratively with other Red Team members and Security Analysts to identify security issues, characterize the cyber-attack vectors, discover any related vulnerabilities, and provide recommendations for remediation of those issues. You will continually learn of new vulnerabilities and exploit techniques and will evolve your tools and methodology to adapt to changing situations.
This position will also require you to continually advance your technical skills to keep yourself positioned as a subject matter expert in many areas of threat hunting and red teaming. This work will require deep level knowledge in the area of exploits and vulnerabilities, scripting, and a strong understanding of networking and network Protocols. You are expected to learn advanced pen testing techniques using “off the shelf” and custom created security tools. The candidate will propose algorithms that solve threat-based use cases defined by their threat hunting and red teaming. You will be responsible for reporting findings in written and verbal form and will be used to inform management, notify affected customers, advise network operations, and advise network engineering on security issues as well as recommended remediation and solutions.
The Red Team Operator will:
- Perform formal and informal targeted “Hunts” to identify vulnerabilities in cloud-hosted and web-based applications, API interfaces, databases, big data environments, networks, computer systems, mobile applications, Software Defined Networks and IoT (Internet of Things) devices and systems.
- Actively building, participating and leading Red Team exercises
- Design and create new/custom Red team tools and tests
- Employ tactics to uncover security holes (poor user security practices, weak methods and procedures, etc.)
- Determine methods that attackers could use to exploit weaknesses and logic flaws to mimic these techniques in targeted red team operations
- Research, document and discuss security findings with management, security teams and IT teams
- Provide feedback and verification as an organization fixes security issues
- Identify, review and recommend improvements for security services, system administration practices, and development/system integration methodology to improve the company’s cybersecurity posture
Qualifications
Required Skills & Experience:
- 7+ years of experience in penetration testing and red team operations
- Deep understanding of Transmission Control Protocol / Internet Protocol (TCP/IP) protocols, devices, security mechanisms and how they operate.
- Strong understanding of network security threats including APT, botnets, Distributed Denial of Service (DDoS) attacks, worms, and network exploits.
- Experience with network probing/testing/analysis tools (Nessus, nmap, burp, wireshark, etc.)
- Deep technical knowledge of Windows, UNIX and Linux operating systems as both an expert user and system administrator
- Programming skills that will be used to construct, modify, and execute testing tools including shell (k
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s