Job Description
Description:
About Confidential:
Position Description:
As a Red Team Lead, you’ll be Zen’s driving force in orchestrating comprehensive penetration tests across
various systems within our federal client’s enterprise, focusing on high-value assets. You will lead the
execution of Red Team exercises, starting from the initial data collection phase to the exploitation and
persistence stages, all while ensuring compliance with DHS standards. Your responsibilities will include
developing, updating, and maintaining all Red Team plans and procedures, as well as coordinating with
stakeholders throughout the penetration testing lifecycle. You will be responsible for delivering detailed
reports on findings, providing actionable recommendations to mitigate identified risks, and briefing senior
leadership on the outcomes of these exercises. Additionally, you will be tasked with continuously optimizing
program documentation and ensuring that all activities are tracked and documented according to industry
best practices and contributing to the overall resilience of Zen's cybersecurity operations.Requirements:
Responsibilities:
Essential
Advanced demonstratable knowledge of penetration testing methodologies and Red Team operations.
Experience in managing and leading a team of cybersecurity professionals.
Experience with operational toolsets that include but not limited to; Azure Security Center, ForeScout, Microsoft Defender Products, Microsoft Sentinel, RSA Archer, Forcepoint, Gigamon, Splunk, Tenable Nessus, Palo Alto, Azure Active Directory, Cisco routers and switches, Cisco ASA and NGFW platforms, Cisco ISE, Akamai, and F5.
Understanding of Enterprise Network Architectures to include routing/switching, common protocols (DHCP, DNS, HTTP), and devices (Firewalls, Proxies, Load Balancers, VPN).
Strong understanding of DHS standards and compliance requirements.
Proficiency in developing and maintaining Red Team plans, procedures, and documentation.
Excellent communication skills, particularly in reporting findings and briefing stakeholders.
Ability to work collaboratively with various teams and manage multiple projects simultaneously.
Expertise in analyzing and interpreting vulnerabilities to provide actionable insights.
Knowledge of security tools and technologies used in penetration testing and threat modeling.
Strong problem-solving abilities with an analytic and qualitative eye for reasoning.
Exceptional verbal and written communication skills.
Ability to communicate with all levels of audiences (subordinates, peers & leadership).
Required Education
Education: Bachelor of Science in Information Technology or Cybersecurity field preferred.
Qualifications:
Experience: Experience: 5+ years of experience as a Red Team analyst on a variety of technologies (e.g., databases, networks, storage, servers, directories, etc.).
At least two (2) years of experience as a Red Team Lead or similar work roles.
Certifications Required:
CSSP Analyst or IAT Level II is highly recommended.
Also helpful:
Red Team Apprentice Course
Certified Red Team Operator
GIAC Penetration Tester (GPEN) GIAC Web Application Penetration Tester (GWAP)
OTHER DUTIES
Please note this job description is not designed to cover or contain a comprehensive listing of activities, duties
or responsibilities that are required of the employee for this job. Duties, responsibilities, and activities may
change at any time to meet the needs of the business.
US Citizenship Required.
Full-time