FREE ACCESS
5,000–10,000 jobs/day
See all jobs on JobTailor
Search thousands of fresh jobs every day.
Discover
- Fresh listings
- Fast filters
- No subscription required
Create a free account and start exploring right away.

Associate Principal, Adversarial Red Team
OCCAdversarial Red Team Associate Principal securing OCC, the world’s largest equity derivatives clearing organization. Conducting penetration tests, developing C2 infrastructure, and improving cyber defense detection.
Core Competencies
Role fitCore Competencies
Use this summary to align your resume positioning with the role.
Demonstrates expertise in penetration testing, threat modeling, and security risk assessments, with a strong focus on developing and deploying Command and Control (C2) infrastructure. Proficient in leveraging AI tools for offensive research and ensuring compliance with industry regulations and best practices.
Highest-signal resume keywords
Penetration TestingCommand and Control (C2) InfrastructureAI Large Language Models (LLMs)Cloud Security (AWS, Azure)Security Certifications (OSCP, OSWE, OSCE)
ATS Keywords
Tailor your resumeApplicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard Skills
Network Penetration TestingApplication Penetration TestingMobile Penetration TestingSocial EngineeringOSINTThreat ModelingVulnerability ManagementCryptographyProgramming LanguagesSecurity Risk Assessments
Soft Skills
Analytical SkillsProblem-SolvingCommunication SkillsTactical PlanningCollaboration
Tools & Technologies
AI ToolingEvasion TechniquesObfuscation TechniquesEnterprise Security TechnologiesOrchestration Frameworks
Certifications & Qualifications
OSCPOSWEOSCEGPENGXPNGWAPT
Industry Keywords
Information AssuranceCybersecurityNISTPCIHIPAACOBIT 5Regulatory StandardsCloud EnvironmentsIT SecurityRisk Management
Tech Stack
Tools & technologiesAWSAzureCloudCyber Security
About the role
Key responsibilities & impact- Execute comprehensive Red Team simulations covering network/application penetration testing, cloud security, social engineering, physical security, mobile testing, and OSINT within defined rules of engagement
- Develop and deploy Command and Control (C2) infrastructure using evasion and obfuscation techniques
- Leverage AI/LLM tooling to accelerate offensive research, exploit development, and Red Team effectiveness
- Conduct ad-hoc white-box testing on pre-production and in-development infrastructure
- Validate remediated findings with IT owners
- Perform threat modeling, security risk assessments, and independent reviews of OCC security, network, and applications
- Develop evidence-based reports with actionable remediation recommendations and debrief stakeholders
- Ensure security controls and testing activities align with regulations, industry best practices, and OCC policies and procedures
- Cross-train Red Team and Security/IT teams on adversarial threats, attack vectors, and remediation strategies
- Monitor emerging threats, threat intelligence, and attack techniques and advise IT leadership on mitigation
- Support audits and contribute to security roadmap development
- Mentor team members and foster a collaborative team environment
- Perform other duties as assigned
Requirements
What you’ll need- High energy, results-driven, detail-oriented approach
- Strong enthusiasm for threat intelligence and learning new adversarial TTPs
- Exceptional analytical, problem-solving, troubleshooting, and judgment skills
- Exceptional tactical planning skills aligned with long-term strategic goals
- Exceptional verbal and written communication skills
- Expertise across network/application, web application, and mobile penetration testing; C2 infrastructure; defense evasion; social engineering; OSINT; emissions testing; and physical security testing
- Strong working knowledge of AI large language models (LLMs) and agentic AI systems, including orchestration frameworks and Model Context Protocol (MCP)
- Proven open-source due diligence and research ability
- Strong familiarity with enterprise technologies and security technologies
- Direct experience testing in commercial cloud environments, including AWS, Azure, IaaS, PaaS, and SaaS
- Knowledge of policy and procedure development, systems analysis, Information Assurance, vulnerability management, and risk management
- Understanding of CSF, NIST, PCI, SSAE 16, SAS 70, HIPPA, FIPS 199, COBIT 5, and other regulatory standards
- Strong knowledge of cryptography, enterprise infrastructure technology stacks, and network configurations
- Ability to understand and probe/exploit diverse network and Internet protocols
- Ability to understand and modify code in diverse programming languages and frameworks, with practical experience in at least one high-level programming language
- Ability to facilitate meetings and translate business needs into project deliverables
- 3+ years of penetration testing experience
- 5+ years of Information Assurance or Cybersecurity experience
- Security-related certifications such as OSCP, OSWE, OSCE, GPEN, GXPN, GWAPT, or ARTE highly desired
- BS in Computer Science, Information Management, Information Security, or comparable technical degree desired but not required
Benefits
Comp & perks- A highly collaborative and supportive environment developed to encourage work-life balance and employee wellness
- A hybrid work environment, up to 2 days per week of remote work
- Tuition Reimbursement to support your continued education
- Student Loan Repayment Assistance
- Technology Stipend allowing you to use the device of your choice to connect to our network while working remotely
- Generous PTO and Parental leave
- 401k Employer Match
- Competitive health benefits including medical, dental and vision
- Eligible for an annual discretionary incentive compensation award with a target range of 8% to 15%