Senior Consultant, Red Team, Google Cloud, Mandiant Consulting
Minimum qualifications:
- Bachelor's degree in Computer Science, Information Systems, Cybersecurity, a related technical field or equivalent practical experience.
- 5 years of experience in three or more of the following security areas: network, red team assessments, EDR evasion, cloud, social engineering, scripting, tool development.
- Experience with operating system security across Windows, Linux, or Mac.
Preferred qualifications:
- Certifications related to offensive security including OSCE, OSEP, OSEE, OSCP, CCSAS, CCT INF or relevant SANS courses.
- Experience in payload development, lateral movement, privilege escalation and EDR evasion.
- Experience in four or more of the following: network protocols, threat intelligence analysis, system and network administration, project management, developing applications, technical incident response processes, source code review, reverse engineering.
- Experience in architecting security tools using programming languages (e.g., Python, C#, C/C++, Rust, Nim or similar).
- Knowledge of operating system internals.
About the job
As a Consultant, you will be responsible for providing cybersecurity consulting services and support to our clients, including assessing and advising clients on both technical and process-based controls for all manner of environments. You will perform Red and Purple team assessments, including adversarial emulation of cyber attacks against customer organizations, and other technical cyber assessments including external engagement, web application, mobile and wireless security testing. You will expand the team’s capabilities through tool creation, research on offensive techniques, incorporation of threat actor intelligence, internal presentations and knowledge share.
In this role, you will develop comprehensive and accurate reports and presentations for both technical and executive audiences, and act as a trusted advisor to C-level, security leaders and other customer stakeholders. You will assist with scoping prospective engagements, leading teams for engagements from kickoff through remediation phase, as well as mentoring other staff.
Responsibilities
- Perform offensive technical cyber security engagements of a varied nature.
- Advise clients on security best practices for remediating discovered issues.
- Collaborate with internal teams to expand capabilities to deliver further value to clients.
- Interface with clients to address concerns, issues, or escalations, track and guide to closure any issues that impact the engagements and its value to clients.