Red team operator multiple Job at Mission Multiplier, Huntsville, AL

Ti9POGRseGVIN3c1TGR3MFo0OGZjdlpQ
  • Mission Multiplier
  • Huntsville, AL

Job Description

Job Description

Job Description

Job Summary:

Mission Multiplier is looking for multiple interested Red Team Operators in advance of increasing scope of work for various possible engagements.

Job Responsibilities:

  • Assess the logical, social, and physical security of systems under test (SUT) using both emulated adversarial and traditional penetration testing tools, techniques, practices, and tradecraft.
    • Advanced persistent threat modeling and live emulation throughout the MITRE Adversarial Tools, Tradecraft, & Common Knowledge (ATT&CK) framework.
    • Static and dynamic application security testing (SAST/DAST) via automated and manual testing.
    • Thorough understanding and embracing of principles and practices of Ethical Hacking.
  • Coordinate with client and contract leadership to develop mission Rules of Engagement (RoE).
  • Conduct Cyber Threat Intelligence collection and analysis on the SUT using Open-Source Intelligence (OSINT) techniques.
  • Develop understanding of most likely and dangerous threats SUT faces.
  • Collaboratively develop threat-based test plans with Blue operators (defined as cyber defenders, project engineers, and product developers).
  • Collaboratively develop and agree upon test success criteria with Blue operators, client, and leadership.
  • Plan Red Team adversarial infrastructure, targeting, and weaponearing required to execute test plans successfully.
  • Oversee implementation and refinement of attack infrastructure.
  • Oversee and assist to develop, test, and refine tools such as code, scripts, tradecraft, or artifacts required to achieve success on test plans.
  • Execute test plans per plan, reviewing outcomes with Blue operators iteratively and instructively with the intent to better tune Blue sensors and improve defensive policies, processes, and practices.
  • Assess overall security of system from adversarial perspective pre- and post-engagement.
  • Identify and assist Blue operators to mitigate technical and policy vulnerabilities as they are discovered.
  • Assess and report risk to overall system imposed by each vulnerability found.
  • Review and re-test previously found vulnerabilities upon mitigation to validate fix; update reporting.
  • Prepare and deliver detailed mission reports for both technical and executive audiences in both document and presentation formats.
  • Conduct technical exchanges with Blue operators.
  • Conduct technical exchanges with other Federal Red and Purple teams.
  • Assess client knowledge, skills, and abilities (KSA) gaps within their Blue teams relative to defending their specific configurations against anticipated and general (best-practice) cyber threats.
  • Develop and deliver customized cyber defense training tailored to client's specific configurations, threats, and tooling to overcome identified KSA gaps.
  • Prepare training competency or mission readiness reporting on Blue operator KSA levels.
  • Develop presentations on threat intelligence.
  • Identify new threat tactics, techniques, or procedures (TTPs) used by cyber threat actors.
  • Identify security system weaknesses, using penetration tests.
  • Research and implement the latest penetration testing tools and methods.
  • Maintain up-to-date knowledge of hacking trends.

Qualifications:

  • Must be a U.S. citizen
  • Minimum of 8+ years of related experience with red team activities, primarily focused on government systems.
  • Ability to obtain a High Public Trust Clearance required.
  • Possesses ethical hacking and/or tradecraft training certification, such as the CEH, Pen+, or OSCP/E.
  • Possesses cybersecurity certification, such as the Sec+ or CISSP.
  • Committed to continuous professional development in cybersecurity by possessing or willing to obtain certifications within the cybersecurity industry.
  • Knowledge of principles and practices of ethical hacking.
  • Knowledge of cybersecurity principles and practices.
  • Knowledge of NIST SP 800 series.
  • Knowledge of Agile software development lifecycle (SDLC).
  • Ability to collaborate and work well with various stakeholders (team members, customers, corporate staff, etc.).
  • Ability to develop and deliver on-the-job training.
  • OSINT collection and exploitation.
  • Demonstrated proficiency in cyber targeting and weaponearing.
  • Demonstrated proficiency in cyber mission planning.
  • Demonstrated proficiency in adversarial emulation of tools and tradecraft throughout MITRE ATT&CK.
  • Demonstrated ability to perform penetration testing - SAST, DAST, and OSCA (automated and manual).
  • Demonstrated ability of basic coding (C, Python, Java).
  • Demonstrated ability to perform advanced scripting (PowerShell and (b)ash).
  • Demonstrated ability to perform cloud infrastructure development and deployment (AWS, Azure, or Google).

Additional Details:

  • None

ABOUT MISSION MULTIPLIER

Mission Multiplier is a HUBZone certified small business headquartered in Huntsville, Alabama. We multiply the impact that clients can make against their mission objectives by providing cybersecurity subject matter expertise and thought leadership. Our goal is to multiply the successes that our clients achieve against their respective missions, while simultaneously enabling the missions of our employees - with the end result of securing and enriching the communities we serve - through the delivery of innovative cybersecurity solutions.

EEO STATEMENT

Mission Multiplier is community-focused first and commits to being an EEO employer. Because of this we don't discriminate on the basis of race, color, religion, sex (including pregnancy), sexual orientation, gender identity, national origin, age (40 or older), disability, genetic information, or any other protected class characteristic protected by federal, state, or local law. If you require an accommodation, please email our Human Resources department at hr@missionmultiplier.com.

BENEFITS

Mission Multiplier offers a wide range of benefits, including:

  • Group Life Insurance
  • Voluntary Life/AD&D Insurance
  • Medical Insurance
  • Secondary/GAP Insurance
  • Dental Coverage
  • Vision Coverage
  • Short-Term Disability Insurance
  • Long-Term Disability Insurance
  • Accident Insurance
  • Critical Illness Insurance
  • 401k (w/ employer match) after six (6) months of continuous service

JOB DISCLAIMER

This posting does not contain an exhaustive list of job responsibilities. Job responsibilities can and may change between postings or during the course of the job.


Mission Multiplier is committed to doing our due diligence in the job application process. Job applicants should be aware that background checks might be performed in order to receive subsequent employment with the company.

Job Posted by ApplicantPro

Employers have access to artificial intelligence language tools (“AI”) that help generate and enhance job descriptions and AI may have been used to create this description. The position description has been reviewed for accuracy and Dice believes it to correctly reflect the job opportunity.

Report this job
  • Dice Id: zipfeed2
  • Position Id: 4a61d63f

Job Tags

Contract work, Temporary work, Local area,

Similar Jobs