Padmi
UltraViolet Cyber logo
UltraViolet Cyber

application penetration testing · red team engagements

Associate Principal Red Team Consultant

Remote · United States$165k–$195k/yrPosted 1 month ago
SecurityStaff+
Apply at UltraViolet Cyber

Opens the source posting on jobs.lever.co

Source description

About the role

View original

US Citizenship is Required

Core Offensive Security

  • 4+ years in offensive security, penetration testing, or red team roles
  • Proven experience leading or independently executing full red team engagements (not just component pentests)
  • Strong command of red teaming methodologies and attack patterns
  • Proficiency with common red team toolkits: Cobalt Strike, Metasploit, Sliver, Havoc, or equivalent C2 frameworks
  • Ability to develop and modify offensive tooling (Python, PowerShell, C/C#, or Go)

Network & Infrastructure

  • Deep knowledge of Active Directory attack paths: Kerberoasting, AS-REP roasting, ACL abuse, DCSync, delegation attacks
  • Experience with internal network lateral movement, credential access, and persistence mechanisms
  • Familiarity with common enterprise security controls and bypass techniques (AV/EDR evasion, AMSI bypass, LOLBins)
  • Understanding of network protocols: SMB, LDAP, Kerberos, DNS, RDP, WinRM

Cloud Environments

  • Hands-on experience attacking cloud infrastructure in at least one major provider (AWS, Azure, or GCP)
  • Familiarity with cloud-specific attack paths
  • Experience with cloud red team tooling

Social Engineering

  • Experience designing and executing phishing simulation campaigns (credential harvesting, malware delivery)
  • Familiarity with pretexting, vishing, and physical access scenarios
  • Understanding of awareness evasion techniques (email gateway bypass, domain aging, spoofing controls)

Preferred Qualifications

  • Relevant certifications: OSCP, CRTO, CRTE, PNPT, CRTL, or equivalent

  • Cloud security certifications (AWS Security Specialty, AZ-900+, or similar) a plus

  • Prior consulting or professional services experience in a client-facing capacity

  • Experience with TIBER-EU, CBEST, or other regulated red team frameworks

  • Published research, CVEs, or conference presentations (DEF CON, Black Hat, etc.)

  • Familiarity with threat intelligence and threat actor emulation planning

  • Soft Skills & Professional Requirements

  • Strong written and verbal communication — ability to write clear, concise, and technically accurate reports

  • Comfortable presenting findings to C-suite and board-level stakeholders

  • Self-directed; able to manage engagement workload with minimal supervision

  • Collaborative team player with a mentorship mindset

  • Ability to work within legal and ethical boundaries and maintain client confidentiality at all times

  • Willingness to travel for on-site engagements as needed (up to ~25%)

More at UltraViolet Cyber

Related open roles

View all roles