
We’re Hiring
Sr. Red Team Operator
Visual Connections, LLC seeking a Senior Red Team Operator. The Senior Red Team Operator will operate as part of our Red Team staff with the ability to lead small teams conducting advanced adversary emulation operations against real-world targets, in varying environments, and against active network defenders. The Senior Red Team Operator will lead the design, development, and execution of Red Team Operations. The Senior Red Team Operator will ensure all deliverables for the operation are completed within the required timeline. Additionally, the Senior Red Team Operators will provide support and mentorship to other Red Team Operators.
Duties
Lead a small team and provide expertise in the development and execution of Red Team Operations.
Requires expert technical knowledge and a subject matter expert in relation to adversarial threats and offensive TTP's.
Chain vulnerabilities together and move laterally through an environment without detection.
Ability to perform root cause analysis of vulnerabilities and effectively communicate findings to customers in both written and verbal formats.
Improve team trade-craft, techniques, tactics, procedures, infrastructure, and tooling.
Conduct independent vulnerability research to discover new vulnerabilities or TTP's.
Develop scenarios and artifacts that mimic real-world adversary groups for simulated testing.
Provide remediation recommendations based on discovered weaknesses and vulnerabilities.
Develop technical reports and work with customers to aid in remediation/validation of discovered findings.
Support the offensive capabilities team to enhance capabilities, innovate new capabilities, and/or develop training material.
Work in a collaborative environment with others.
Requirements
7+ years of Cyber Security experience.
5-7 years of offensive focused experience (Red Teaming, Purple Teaming, Penetration Testing, tool development, etc.).
Bachelor’s degree in computer science, engineering or other technical discipline.
Hands-on keyboard experience during multiple Red Team engagements.
Understand Red Teaming Methodology (Recon, Exploitation, Persistence, Lateral Movement, Post Exploitation, and Exfiltration).
Be able to explain the tools and techniques used during each phase of a red team operation, their purposes, and any OPSEC-related considerations.
Experience with common Penetration Testing and Red Team Tools such as Burp Suite, C2 Frameworks, Kali Linux, and Open-Source Hacking Tools.
Demonstrated ability to script effectively in both Linux and Windows environments, with development experience in a language of choice (e.g., Python, Rust, Go, .NET, etc.).
Experience with or an understanding of multiple of the concepts below:
Command and Control channel frameworks and Offensive infrastructure deployment.
Cloud Technologies (Azure, AWS, Heroku).
Reverse Engineering malware, data obfuscation, or encryption.
Web Application Technologies.
Social Engineering and related Psychology disciplines and experience.
Active Directory and authentication-type technologies (Okta, SAML, ADFS Federation, etc.).
OPSEC-focused Infrastructure Implementation (Docker, Redirectors, Mail Servers).
Exploit Development in Windows and Linux environments.
Rapid Development of offensive-focused tooling and trade-craft.
Wireless and Radio Frequency technologies (Bluetooth, 802.11, etc.).
Hold Offensive security related certifications.
Fulltime remote telework
Visual Connections, LLC offers a full benefits package including:
Full Medical, Dental, Prescription and Vision health care
11 Paid Holidays annually
Paid time off
Short Term, Long Term Disability and Life Insurance
Employee Assistance Program (EAP)
Training and Development opportunities including professional certification and educational reimbursement
Visual Connections, LLC provides employment opportunities for all employees and applicants in accordance with applicable federal, state and local laws. This policy applies to all terms and conditions of employment, including, but not limited to, hiring, placement, promotion, termination, layoff, recall, transfer, leaves of absence, compensation, and training.
We are a Service-Disabled, Veteran-Owned Small Business; and a Certified Maryland Business Enterprise. We were established in 2007 to provide public and private sector clients with robust web-based applications, Health IT and Portfolio and Program Management services. We have proven ourselves to be valuable partners who can deliver both qualitative and quantitative results to our clients. Our versatile, efficient and experienced team has a stellar record of past performance, working with the Department of Defense (DoD), Department of Health and Human Services (DHHS), Veterans Health Administration (VHA), Centers for Medicare and Medicaid Services (CMS),Centers for Disease Control and Prevention (CDC) and , Blue Cross Blue Shield (BCBS). With an employee base well versed in different disciplines, we are able to deliver high quality customizable solutions.