FREE ACCESS
5,000–10,000 jobs/day
See all jobs on JobTailor
Search thousands of fresh jobs every day.
Discover
- Fresh listings
- Fast filters
- No subscription required
Create a free account and start exploring right away.
ATS Keywords
Tailor your resumeApplicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard Skills
offensive securitypenetration testingcloud securitycontainer securityKubernetes securityweb application testingAPI testingattack simulationreport writingred team methodologies
Soft Skills
communicationmentoringindependent workorganizational skillspresentation skillscollaborationproblem-solvingtechnical risk explanationattention to detailadaptability
Tools & Technologies
AWSGCPAzureKubernetesCI/CD pipelinesActive DirectoryVPNsoffensive toolsC2 infrastructureMITRE ATT&CK
Industry Keywords
red teampurple teamcloud infrastructureattack chainsIAM rolesstorage misconfigurationsserverless functionsdetection coveragesecurity standardssecure design reviews
Tech Stack
Tools & technologiesAWSAzureCloudGoogle Cloud PlatformKubernetes
About the role
Key responsibilities & impact- Plan and execute red team engagements across our cloud infrastructure (AWS/GCP/Azure)
- Simulate realistic attack chains using current threat actor techniques
- Conduct assumed breach scenarios, purple team exercises, and objective-based engagements
- Assess cloud-specific attack surfaces: IAM roles, storage misconfigurations, serverless functions, container workloads, and CI/CD pipelines
- Test Active Directory and hybrid identity environments for attack paths
- Perform web and API application testing
- Build, customize, and maintain offensive tools, scripts, and C2 infrastructure
- Develop and manage red team infrastructure
- Create and maintain repeatable testing methodologies and internal playbooks
- Evaluate and improve detection coverage by working with our blue team
- Write detailed reports that document attack paths and remediation steps
- Present findings to both technical teams and non-technical stakeholders
- Track remediation progress and validate fixes
- Help define the scope, methodology, and maturity of our red team program
- Contribute to internal security standards and secure design reviews
- Mentor junior team members
Requirements
What you’ll need- 4+ years of hands-on experience in offensive security, penetration testing, or a red team role
- Demonstrated ability to attack and assess cloud environments — AWS, GCP, and Azure
- Hands-on experience with container and Kubernetes security (EKS, GKE, AKS)
- Experience testing hosted and on-prem infrastructure: servers, VPNs, Active Directory, and internal networks
- Working knowledge of web application attack techniques (OWASP Top 10 and beyond)
- Familiarity with MITRE ATT&CK
- Experience writing clear, well-organized findings reports for both technical and non-technical readers
- Ability to explain technical risk to people who are not security experts
- Comfort working independently and managing your own workload
Benefits
Comp & perks- Remote-first, distributed team culture
- Strong focus on asynchronous communication
- Commitment to building an inclusive workplace
