
We’re Hiring
Mid Red Team Operator
Visual Connections, LLC seeking a The Red Team Operator will operate as part of our Red Team staff, a key contributor on our small teams conducting advanced adversary emulation operations against real-world targets, in varying environments, and against active network defenders. The Red Team Operator will participate in the design, development, and execution of Red Team Operations. The Red Team Operator will provide support to the Red Team Leads as required to ensure post operations technical reports and support activities are completed with the required timeline.
Duties
Key contributor to Red Team operations and provided expertise to aid in development and execution of Red Team Operations.
Requires broad technical knowledge and a subject matter expert in relation to adversarial threats and offensive TTP's.
Chain vulnerabilities together and move laterally through an environment without detection.
Ability to perform root cause analysis of vulnerabilities and effectively communicate findings to customers in both written and verbal formats.
Improve team trade-craft, techniques, tactics, procedures, infrastructure, and tooling.
Conduct independent vulnerability research to discover new vulnerabilities or TTP's.
Develop scenarios and artifacts that mimic real-world adversary groups for simulated testing.
Provide remediation recommendations based on discovered weaknesses and vulnerabilities.
Develop technical reports and work with customers to aid in remediation/validation of discovered findings.
Support the offensive capabilities team to enhance capabilities, innovate new capabilities, and/or develop training material.
Work in a collaborative environment with others.
Requirements
5+ years of Cyber Security experience.
3-5 years of offensive focused experience (Red Teaming, Purple Teaming, Penetration Testing, tool development, etc.).
Bachelor’s degree in computer science, engineering or other technical discipline.
Hands-on keyboard experience during multiple Red Team engagements.
Understand Red Teaming Methodology (Recon, Exploitation, Persistence, Lateral Movement, Post Exploitation, and Exfiltration).
Be able to explain the tools and techniques used during each phase of a red team operation, their purposes, and any OPSEC-related considerations.
Experience with common Penetration Testing and Red Team Tools such as Burp Suite, CobaltStrike (C2 Frameworks), Kali Linux, and Open Source Hacking Tools.
Demonstrated ability to script effectively in both Linux and Windows environments, with development experience in a language of choice (e.g., Python, Rust, Go, .NET, etc.).
Experience with or an understanding of multiple of the concepts below:
Command and Control channel frameworks and Offensive infrastructure deployment.
Cloud Technologies (Azure, AWS, Heroku).
Reverse Engineering malware, data obfuscation, or encryption.
Web Application Technologies.
Social Engineering and related Psychology disciplines and experience.
Active Directory and authentication-type technologies (Okta, SAML, ADFS Federation, etc.).
OPSEC-focused Infrastructure Implementation (Docker, Redirectors, Mail Servers).
Exploit Development in Windows and Linux environments.
Rapid Development of offensive-focused tooling and trade-craft.
Wireless and Radio Frequency technologies (Bluetooth, 802.11, etc.).
Hold Offensive security related certifications.
Fulltime remote telework
Visual Connections, LLC offers a full benefits package including:
Full Medical, Dental, Prescription and Vision health care
11 Paid Holidays annually
Paid time off
Short Term, Long Term Disability and Life Insurance
Employee Assistance Program (EAP)
Training and Development opportunities including professional certification and educational reimbursement
Visual Connections, LLC provides employment opportunities for all employees and applicants in accordance with applicable federal, state and local laws. This policy applies to all terms and conditions of employment, including, but not limited to, hiring, placement, promotion, termination, layoff, recall, transfer, leaves of absence, compensation, and training.
We are a Service-Disabled, Veteran-Owned Small Business; and a Certified Maryland Business Enterprise. We were established in 2007 to provide public and private sector clients with robust web-based applications, Health IT and Portfolio and Program Management services. We have proven ourselves to be valuable partners who can deliver both qualitative and quantitative results to our clients. Our versatile, efficient and experienced team has a stellar record of past performance, working with the Department of Defense (DoD), Department of Health and Human Services (DHHS), Veterans Health Administration (VHA), Centers for Medicare and Medicaid Services (CMS),Centers for Disease Control and Prevention (CDC) and , Blue Cross Blue Shield (BCBS). With an employee base well versed in different disciplines, we are able to deliver high quality customizable solutions.