654,521open jobs
38,054companies
91,731added this week
Browse all
Salary
$90k – $190k per year
Location
Remote (United States)
Seniority
Senior · 8+ years exp
Employment
Full-Time
Overview
Company
Impact
Profile match
Jobgether is a Belgian recruitment platform built entirely around remote and flexible work, aggregating openings from thousands of employers that allow work from outside an office. Its matching engine ranks roles against a candidate's skills, seniority and stated preferences on location and flexibility, rather than leaving people to filter a keyword search, and it verifies how genuinely remote each posting is. The company also runs an AI screening layer that shortlists applicants for employers, and publishes research and guidance on distributed work practices alongside the job marketplace itself.

This position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for a Senior Red Team Operator / SME based in the United States.

This senior cybersecurity role leads sophisticated adversary-emulation engagements designed to identify and address weaknesses across federal cyber environments.

You will own engagements from initial scenario design and rules of engagement through execution, evidence collection, reporting, and customer briefings.

The role combines advanced offensive security expertise with strong operational discipline, technical leadership, and defensive improvement objectives.

You will emulate modern threat actors across identity, endpoint, network, web, cloud, and infrastructure environments within strictly authorized scopes.

You will also mentor other operators, collaborate with detection and response teams, and translate findings into measurable security improvements.

The position supports continuous assessment of externally and internally visible federal assets as part of a mission focused on strengthening national cyber resilience.

This is an opportunity to operate at the forefront of offensive security while helping organizations build stronger defenses against evolving threats.

Accountabilities:

    • Lead assigned red-team engagements end to end, including scenario development, rules-of-engagement planning, infrastructure preparation, execution, deconfliction, reporting, and customer out-briefs.
    • Develop sophisticated, multi-vector adversary-emulation campaigns aligned with MITRE ATT&CK and contemporary advanced persistent threat profiles.
    • Design and oversee adversary infrastructure, redirectors, command-and-control channels, payload delivery mechanisms, operator access, logging, and secure teardown procedures.
    • Build secure cloud-based attack infrastructure and associated workflows that support authorized adversary-emulation activities.
    • Lead hands-on execution of advanced identity, endpoint, network, web, cloud, phishing, persistence, defense-evasion, and simulated exfiltration techniques within approved engagement boundaries.
    • Plan and execute campaigns covering reconnaissance, initial access, credential access, privilege escalation, lateral movement, persistence, command and control, defense evasion, and simulated exfiltration.
    • Review offensive tooling and payloads for authorized evasion capabilities, including endpoint detection and response considerations and living-off-the-land techniques.
    • Mentor junior red-team operators, review tradecraft and scripts, and enforce operational security, safety, evidence-handling, and deconfliction requirements.
    • Make real-time technical decisions during engagements while maintaining strict adherence to legal, ethical, operational, and customer-defined boundaries.
    • Coordinate with stakeholders to validate detection and response capabilities and develop targeted purple-team scenarios.
    • Translate technical observations into measurable defensive improvements and actionable remediation recommendations.
    • Maintain technical quality and integrity across operator logs, attack narratives, evidence, mitigation recommendations, assessment reports, and customer briefings.
    • Escalate material risks, scope changes, operational impacts, and cross-engagement concerns to technical leadership.
    • Support continuous technical assessments of federal internet-facing assets, including domains, subdomains, and externally visible systems.
    • Contribute to special projects and evolving offensive-security capabilities in support of broader cybersecurity objectives.
    • Requirements:

      • U.S. citizenship is required.
      • Ability to meet eligibility requirements for access to sensitive information and obtain a Public Trust fitness determination at the High Risk level.
      • Five or more years of hands-on experience in red teaming, defensive adversary emulation, or advanced penetration testing.
      • At least two years of experience leading defensive detection-engineering activities, security engagements, or small offensive-security teams.
      • Demonstrated experience planning and executing campaigns across the full attack lifecycle, including reconnaissance, initial access, credential access, privilege escalation, lateral movement, persistence, command and control, defense evasion, and simulated exfiltration.
      • Advanced experience with command-and-control frameworks, adversary infrastructure, Active Directory/Entra ID, Windows and Linux tradecraft, cloud attack paths, and security-focused scripting or tool development.
      • Strong understanding of operational security, engagement deconfliction, legal and ethical boundaries, evidence handling, data protection, and safe execution within production environments.
      • Advanced proficiency with offensive-security tooling such as Sliver, Mythic, and Havoc, as well as secure cloud-based attack architecture.
      • Ability to write, review, and communicate technically rigorous assessment reports and deliver clear findings to both technical and executive audiences.
      • One or more advanced hands-on certifications such as OSEP/OSCE, OSCP, GXPN, GPEN, CRTO/CRTL, CRTP, OSED, or an equivalent qualification.
      • Ability to work effectively within customer-provided remote environments and comply with approved tools, rules of engagement, data-handling requirements, evidence controls, deconfliction procedures, and stop-work criteria.
      • Strong technical leadership, communication, analytical thinking, and problem-solving skills.
      • Ability to remain disciplined and effective during complex, high-pressure security operations.
      • Preferred qualifications:

        • Eight or more years of offensive-security experience, particularly across multi-tenant enterprise or federal environments.
        • Experience developing payloads or security tools using C#, C/C++, Go, Rust, Python, or PowerShell.
        • Familiarity with modern endpoint detection and response bypass concepts and living-off-the-land techniques within authorized security testing.
        • Advanced AWS or Azure identity and cloud-security experience.
        • Experience with container and Kubernetes security or hybrid enterprise environments.
        • Experience facilitating purple-team exercises, detection engineering, or SOC and incident-response validation.
        • Experience working with critical infrastructure, ICS/OT environments, federal high-value assets, or restricted and air-gapped environments.
        • Benefits:

          • Base salary range of $90,300-$189,600 USD per year, with final compensation influenced by geographic location, contract requirements, relevant experience, education, certifications, skills, and competencies.
          • Fully remote position available across U.S. states.
          • Full-time employment with up to 25% travel, primarily within the continental United States.
          • Flexible time-off benefits designed to support work-life balance.
          • Comprehensive healthcare and wellness benefits.
          • Financial and retirement benefits.
          • Family support programs and related resources.
          • Continuing education and professional learning opportunities.
          • Career development opportunities within a high-performing cybersecurity environment.
          • Opportunity to work on nationally significant cybersecurity missions and advanced federal cyber defense initiatives.
          • Collaborative environment emphasizing integrity, innovation, trust, continuous growth, and technical excellence.
          • Opportunity to work alongside experienced offensive-security professionals and contribute to evolving adversary-emulation capabilities.
Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
654,521 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account Continue with Google
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Similar stack
Same company
In your city
$100k – $125k per year • Equity • Remote • Full-Time • 2+ years exp
Python
JavaScript
PHP
Ruby
PowerShell
Bash
DevOps
GCP
Azure
AWS
Cybersecurity
MITRE ATT&CK
OWASP Top 10
Apply
$56k – $138k per year (Estimated) • Remote • Full-Time • 5+ years exp • Sweden
Python
Go
PowerShell
DevOps
Terraform
Helm
Azure DevOps
GitHub Actions
Datadog
Dynatrace
Azure
CI/CD
Kubernetes
Service Mesh
Bicep
Azure AKS
FinOps
GitHub
IAM
Cybersecurity
Zero Trust
Microsoft Defender for Cloud
Microsoft Entra ID
Apply
$14k – $20k per year (gross) • In office • Full-Time • 3+ years exp • Bachelor's Degree • Saint Petersburg
Python
PowerShell
Bash
Cybersecurity
Metasploit
Nmap
BloodHound
MITRE ATT&CK
CVSS
Apply
$9.9k – $16k per year (gross) • In office • Full-Time • 3+ years exp • Bachelor's Degree • Saint Petersburg
Python
PowerShell
Bash
Cybersecurity
Metasploit
Nmap
BloodHound
MITRE ATT&CK
CVSS
Apply
$31k – $70k per year (Estimated) • In office • Full-Time • 7+ years exp
Python
JavaScript
AI/ML
AI Agents
LLM
Human-in-the-Loop
LLM Guardrails
DevOps
Splunk
Cybersecurity
Crowdstrike
Microsoft Sentinel
SentinelOne
MITRE ATT&CK
Cortex XSOAR
Tines
Management
Agile
Apply
$100k – $125k per year • Equity • Remote • Full-Time • 2+ years exp
Python
JavaScript
PHP
Ruby
PowerShell
Bash
DevOps
GCP
Azure
AWS
Cybersecurity
MITRE ATT&CK
OWASP Top 10
Apply
$121k – $221k per year (Estimated) • Equity • In office • Full-Time • 7+ years exp
Design
Figma
ProtoPie
Framer
Apply
$106k – $133k per year • Remote • Full-Time • 10+ years exp • Bachelor's Degree
Apply
$117k – $219k per year • Remote • Full-Time • 5+ years exp
JavaScript
TypeScript
SQL
Ruby
C#
Ruby
Ruby on Rails
C#
.NET
Databases
PostgreSQL
Frontend
GraphQL
RxJS
Angular
NgRx
DevOps
CI/CD
Git
AWS
Docker
Kubernetes
AWS Lambda
Amazon EC2
Amazon S3
Amazon ECS
Analytics
Power BI
ETL/ELT
SSIS
AWS Glue
Management
Jira
Agile
Scrum
Apply
Senior Data Engineer 7 hours ago
$87k – $212k per year (Estimated) • Remote • Full-Time • 5+ years exp
Python
SQL
Databases
MySQL
PostgreSQL
AI/ML
LLM
Anomaly Detection
Recommender Systems
DevOps
CI/CD
AWS
Docker
Kubernetes
Cybersecurity
GDPR
Analytics
ETL/ELT
Apply
See all jobs
This is one of many
654,521 more open roles from verified company boards, updated every day.