Principal Red Team Engineer
MSDAbout the role
Job Description
The Principle Red Team Engineer is a key role within the cybersecurity division, responsible for leading advanced penetration testing and adversarial simulation to assess and enhance the security posture of the organization. This role necessitates a blend of deep technical expertise, strategic thinking, and leadership skills, ensuring that the organization stays ahead of potential cyber threats.
Key Responsibilities
Lead and execute complex red team engagements to simulate real-world cyber-attacks on the organization's infrastructure, applications, and data.
Develop and implement methodologies for comprehensive penetration testing, identifying vulnerabilities and weaknesses in security controls.
Collaborate with blue teams to validate the effectiveness of defensive measures and improve detection and response capabilities.
Lead purple team exercises to integrate red and blue team activities, enhancing overall security effectiveness.
Utilize threat intelligence to inform red team activities, ensuring simulations reflect current and emerging threat landscapes.
Lead attack path mapping for threat modeling to identify, assess, and prioritize potential cyber threats and vulnerabilities.
Produce detailed reports and presentations that articulate findings, vulnerabilities, and potential impacts to technical and non-technical stakeholders.
Recommend actionable remediation strategies to mitigate identified vulnerabilities and improve overall security posture.
Document red team methodologies, tools, and processes for knowledge sharing and continuous improvement.
Mentor and train junior red team members, fostering a culture of continuous learning and professional development.
Qualifications:
Required Education and Experience:
Bachelor's degree in Computer Science, Information Security, or a related field.
Minimum of 5 years of experience in cybersecurity and red team roles.
Proven track record of leading and executing complex red team engagements.
Individuals within a commutable distance (50 miles or less) to Rahway, NJ office location will be required to work hybrid schedule (3 days per week in office).
Technical Skills:
Deep understanding of network protocols, operating systems, and security architectures.
Proficiency in penetration testing tools and frameworks such as Metasploit, Burp Suite, and Cobalt Strike.
Experience with scripting and programming languages such as Python, PowerShell, and Bash.
Knowledge of threat modeling, vulnerability assessment, and risk management practices.
Certifications:
Relevant industry certifications such as OSCP, OSCE, OSEP, CISSP, or GPEN preferred.
Continuous professional development through participation in cybersecurity training and conferences.
Current Employees apply HERE
Current Contingent Workers apply HERE
US and Puerto Rico Residents Only:
Our company is committed to inclusion, ensuring that candidates can engage in a hiring process that exhibits their true capabilities. Please click here if you need an accommodation during the application or hiring process.
We are an Equal Opportunity Employer, committed to fostering an inclusive and diverse workplace. All qualified applicants will receive consideration for employment without regard to race, color, age, religion, sex, sexual orientation, gender identity, national origin, protected veteran status, or disability status, or other applicable legally protected characteristics. For more information about personal rights under the U.S. Equal Opportunity Employment laws, visit:
Pay Transparency Nondiscrimination
We are proud to be a company that embraces
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s