Senior Red Team Operator

G-ResearchLondon, EnglandOn-siteFull-timeSenior, 5–8 yearsListed 2 months ago

Apply now

About this role

The Adversary Emulation (AE) team is G-Research’s internal Red Team and a core part of the wider Security Assurance function. The team provides the Board and Executive Management Team with independent insight into the security of our most important information, helping to inform security decisions at the highest levels of the business. AE operations range from a few weeks to more than a year. Each engagement emulates different internal and external threat actors, testing a broad range of systems, processes and assumptions. The variety and complexity of this work creates continuous opportunities to tackle challenging problems, develop technical expertise and work as part of a highly collaborative team. Key responsibilities of the role include: Researching threat actors, target environments and defensive controls to design realistic attack paths and operation-specific kill chains Developing custom tooling, tradecraft and tactics, techniques and procedures (TTPs) to support offensive operations Executing adversary emulation operations, contributing to operational decision-making and adapting approaches as new information emerges Documenting and sharing technical knowledge, operational experience, OPSEC techniques and ways of working Providing subject matter expertise on emerging cyber threats and offensive security techniques Contributing to the continuous improvement of team tooling, processes and operational capabilities

Requirements

The ideal candidate will have the following skills and experience: Several years’ experience conducting offensive security operations, such as red teaming or computer network operations, ideally within technology or financial services Strong communication, organisational and analytical skills, with excellent attention to detail Ability to identify novel attack paths and achieve operational objectives while maintaining realistic threat actor emulation Ability to make sound decisions and deliver results in ambiguous, fast-changing environments Administrator-level experience in Windows 11 and Linux systems Strong scripting skills in Powershell, Python or similar, and programming experience in languages such as C/C++, Go or C# Advanced understanding of operational security, offensive techniques and defensive technologies, including how security controls can be bypassed or mitigated