IOActive

IOActive provides computer security services to Global 500 companies in a wide range of industries. IOActive specializes in computer security services that include application secu

Red Team Specialist

Location

Worldwide

Posted

1 day ago

Salary

$100K - $150K / year

Seniority

Senior

Job Description

Red Team Specialist

IOActive

Title: Red Team Specialist Location: United States Job Description: OUR MISSION UNITES US "Making the world a safer and more secure place." It's our mission, plain and simple. It drives everything we do - from research to client work to community involvement. And it unifies our global team into an elite force with integrity, fierce passion, and relentless creativity that doesn't just "push the envelope" or "think outside the box." We shred the envelope, crush the box, and we have fun doing it. We are always looking for people who share our mission to join us. About IOActive: IOActive, a trusted partner for Global 1000 enterprises, provides research-fueled security services across all industries. Our cutting-edge cybersecurity teams provide highly specialized technical and programmatic services including full-stack penetration testing, program efficacy assessments, and hardware hacking. IOActive brings a unique attacker's perspective to every engagement to maximize cybersecurity investments and improve the security posture and operational resiliency of our clients. Founded in 1998, IOActive is headquartered in Seattle with global operations, including state of the art hardware hacking labs in Seattle, WA, Madrid, Spain and Cheltenham, UK. IOActive Red Team Specialists perform multi-vector, chained attacks that include exploitation through physical, network, web, and social engineering methods with the goal of making our clients more secure and prepared to respond to real incidents. Activities involve planning and reconnaissance to identify critical assets and potential attack paths, exploitation of vulnerabilities resulting in infiltration of the environment, acting on the objectives of the campaign through post-exploitation, and documentation of actions and outcomes. What you'll do: - Work as part of a team performing Red and Purple Team Campaigns for IOActive clients, both remotely and on-site - Perform adversarial emulation, assumed breach scenarios, post-exploitation, social engineering, and physical security testing - Manage project tasks and deadlines on a multi-time-zone team - Develop unique tools to assist in project goals - Exploit vulnerabilities found in client's people, processes, and technology; then clearly communicate complex vulnerabilities to both technical and non-technical client staff - Create comprehensive technical reports explaining technical and business risk of the vulnerabilities found. This includes actionable recommendations/considerations for the client - Participate in project conference calls with clients and on business development calls in support of sales activities - Create and lead technical customer presentations - Provide technical leadership/mentorship to the consulting team and to our clients on security topics - Contribute to the security industry through presentations, whitepapers and/or research What you bring: - Experience performing and leading covert red team operations and activities, including performing adversarial emulation, assumed breach scenarios, post-exploitation, social engineering, and physical security testing - Penetration testing experience in Network, Web applications, Wireless networks, Physical security, and Social engineering - Experience with C2 and post-exploitation frameworks, including Cobalt Strike, Empire, Metasploit, Throwback, and similar tools - Understanding and proficiency with some of the following: Python, Ruby, PowerShell, Java, and Shell scripting - Knowledge and experience with enterprise network/system/application architecture and design including complex environments utilizing Microsoft Windows, Active Directory, and Linux - Deep understanding on Windows and Linux systems administration and post-exploitation activities on each platform - Ability to present complex material in a digestible, consumable manner to all levels of management - Highly experienced with OS, services, and application hardening - Strong ability to find vulnerabilities and develop proof of concepts - Ability and desire to travel at least 50% of the time - both nationally and globally What We Offer - A chance to work with an industry leader in cyber security - Access to world-class technical teams and research - A high-energy, collaborative team that values innovation - Flexibility-work remotely or from the office as needed - Opportunities for travel - Competitive compensation and performance-based incentives - Compensation Range: 100,000 to 150,00 USD, based on location and experience level. - If this sounds like your kind of challenge, we'd love to hear from you. Let's talk! Why IOActive: We have over 25 years of experience that's established and stable; yet high-growth with the energy, passion and dynamic work environment of a startup. We are renowned for our innovation and thought leadership within our high-profile, cutting edge space. We're one of "the good guys" doing crazy cool stuff to thwart bad guys in a critically important business, social and political arena. Our work is great fun with great importance. Above all else, we value our people and our customers. Relationships matter. IOActive is an equal opportunity employer that is committed to diversity and inclusion in the workplace. We prohibit discrimination and harassment of any kind based on race, color, sex, religion, sexual orientation, national origin, disability, genetic information, pregnancy, or any other protected characteristic as outlined by federal, state, or local laws. This policy applies to all employment practices within our organization, including hiring, recruiting, promotion, termination, layoff, recall, leave of absence, compensation, benefits, training, and apprenticeship. IOActive makes hiring decisions based solely on qualifications, merit, and business needs at the time.

Related Categories

Related Job Pages

More Security Engineer Jobs

Splunk Security Information and Event Management Engineer

Resource Management Concepts - RMC

Resource Management Concepts (RMC) is a professional services company that provides mission-critical support to federal and state agencies, including cybersecurity, environmental s

Splunk SIEM Engineer Location: Crane, Indiana, United States Hybrid Information Technology Full time Job Description: Position Overview Resource Management Concepts, Inc. (RMC) provides high-quality, professional services to government and commercial sectors. Our mission is to deliver exceptional management and technology solutions supporting the protection and preservation of the people and environment of the United States of America. We are seeking a skilled Splunk SIEM Engineer to lead the evolution of our Splunk environment into a fully operational, enterprise-grade Security Information and Event Management (SIEM) platform. This role will be responsible for both the build-out and ongoing operations of the platform, ensuring it delivers reliable, actionable security insights and supports evolving cybersecurity initiatives. This is a hybrid position that requires regular onsite presence in Crane, Indiana. Key Responsibilities - Lead the transformation of the Splunk environment into a fully functional SIEM platform - Manage and optimize the data ingestion pipeline: - Audit existing data sources for relevance and efficiency - Eliminate unnecessary data ingestion to control licensing costs - Onboard and integrate new data sources - Parse, normalize, and map ingested data to the Splunk Common Information Model (CIM) - Configure, maintain, and optimize Splunk Enterprise Security (ES) - Configure, maintain, and optimize Splunk security orchestration, automation, and response platform (SOAR) - Develop and maintain correlation searches, detections, and use cases - Create and tune alerts to improve fidelity and reduce false positives - Build dashboards and visualizations for operational awareness and trend analysis - Monitor overall platform health and performance - Perform system upgrades, patching, and capacity planning - Manage intra Splunk certificates - Manage the lifecycle of security content: - Continuously refine detections and correlation rules - Enhance visibility and detection coverage based on emerging threats - Ensure consistent SIEM operations regardless of hosting environment or infrastructure ownership - Support ongoing security operations and future cybersecurity initiatives Requirements Required Qualifications - A SecurityX, CASP, or equivalent DoD 8140 IAT-3 certification is required. - Security Clearance: An interim DoD Secret security clearance or higher is required to start. Applicant selected may be subject to a security investigation and must meet eligibility requirements for access to classified information. - Hands-on experience with Splunk Enterprise and Splunk Enterprise Security (ES) - Strong understanding of SIEM architecture, design, and operations - Experience with log ingestion, parsing, normalization, and CIM mapping - Proficiency in developing correlation searches, alerts, and dashboards - Experience tuning SIEM content to reduce false positives and improve detection accuracy - Familiarity with data onboarding strategies and license optimization - Knowledge of cybersecurity principles, threat detection, and incident response - Experience with system administration tasks including patching, upgrades, and performance monitoring Preferred Qualifications - Experience operating Splunk in distributed or multi-tenant environments - Knowledge of data pipelines and log forwarding technologies (e.g., syslog, APIs, forwarders) - Familiarity with frameworks such as MITRE ATT&CK - Experience supporting Zero Trust or advanced security architectures - Preferred certifications (e.g., Splunk Certified Admin, Splunk ES Certified, Security+) Benefits At RMC, we're committed to your career growth! RMC differentiates itself from other firms through its investment in our employees. We invest our resources to train, certify, educate, and build our employees. RMC can offer you a great place to work with a small company feel and give you the experience, tuition assistance, and certifications that will take your career to the next level. This also includes a competitive paid vacation package with 11 paid federal holidays. Additionally, we also offer high-quality, low-deductible healthcare plans, pet insurance, and a competitive 401K package. Salary at RMC is determined by various factors, including but not limited to location, a candidate's specific combination of education, knowledge, skills, competencies, and experience, as well as contract-specific requirements.

Indiana

Facility Security Officer

Code Metal, Inc.

Code Metal, Inc., established in 2023 and based in Boston, Massachusetts, specializes in AI-driven development workflows tailored for edge computing. Leveraging expertise from MIT

Facility Security Officer (FSO) Location Remote Employment Type Full time Department Operations About Code Metal Code Metal is redefining code translation for mission-critical industries, helping defense partners move more quickly and reliably from algorithm to silicon. Our platform accelerates deployment of DSP, RF, communications, and embedded signal processing algorithms onto heterogeneous compute targets, including GPUs, FPGAs, ASICs, and edge SoCs. We also support automotive, aerospace, and semiconductor partners deploying complex algorithms onto constrained hardware with speed and rigor. Facility Security Officer (FSO) Remote (U.S.-Based) | Full-Time Code Metal is currently seeking an experienced leader to serve as our Facility Security Officer (FSO). The selected individual will lead and implement the DoD Industrial Security Program. The FSO will coordinate and monitor highly sensitive aspects of the DoD Industrial Security Program and security activities while ensuring compliance with Government and company security policies and procedures. The successful candidate will interface with Code Metal personnel to include program leadership and government personnel to ensure full compliance with National Industrial Security Operating Manual (NISPOM), Contract Security Classification Specifications (DD254), and applicable federal regulations, policies, and contractual security requirements. Primary Responsibilities: - Serve as the primary point of contact with the Defense Counterintelligence and Security Agency (DCSA) and other government security stakeholders for all matters related to the National Industrial Security Program (NISP). - Maintain the facility security clearance (FCL), including preparation and submission of required documentation. - Develop, implement, and oversee the facility’s security program, including written procedures, internal controls, and compliance initiatives. - Manage personnel security processes, including initiation, tracking, and maintenance of personnel security clearances (PCLs) and access authorizations. - Conduct security briefings, debriefings, and training for cleared employees, including compliance initial, annual refresher, and specialized security training requirements. - Safeguard classified information by implementing appropriate physical, technical, and administrative security controls in accordance with NISPOM and ICD requirements. - Oversee classified information management, including receipt, storage, reproduction, transmission, inventory, and destruction in accordance with NISPOM requirements. - Conduct self-inspections, internal audits, and vulnerability assessments to ensure program effectiveness and identify areas for improvement. - Prepare for and support government security reviews, inspections, and assessments, including corrective action planning and follow-up. - Manage and report security incidents, violations, and adverse information in accordance with regulatory requirements and company policy. - Oversee visitor control and classified visit authorization processes, including validation and documentation of access requirements. - Ensure proper implementation of information systems security measures for classified systems in coordination with IT and cybersecurity personnel, as applicable. - Advise senior leadership, program managers, and employees on security requirements, risks, and best practices. - Maintain accurate security records and documentation to support compliance and audit readiness. - Establish and promote a strong security culture through training, communication, and continuous improvement initiatives. - Stay current on changes to NISP regulations, government guidance, and emerging security threats, and adjust procedures accordingly. - Bring security risks to the attention of the senior management as identified. - Work as a team player, exhibit flexibility, and excellent organizational skills. - Analyze moderate problems and provide focused solutions with the ability to effectively communicate information to various audiences. - Must be available to promptly address and manage urgent notifications and facility-related incidents in accordance with established procedures. Basic Qualifications: - 8+ years of relevant experience. - Experience establishing DoD Industrial Security Program for small businesses. - Completed DCSA FSO Curriculum – with certificate of completion. - Strong working knowledge of 32 CFR Part 117 National Industrial Security Operating Manual (NISPOM). - Working knowledge of SF-86, SF-312, DD-254, 441, 441-1, SF-328, and other government required forms. - Must be a US citizen; must possess and be able to maintain a current DOD Top Secret clearance, with ability to obtain an SCI. - Thorough understanding of security databases such as DISS, SAM.gov, and NISS. - Experience with ICD 705 requirements. - Experience creating and conducting security briefings, debriefings, indoctrinations, pre/post foreign travel briefings and refresher briefings, as appropriate. - Strong communications skills, both oral and written. Preferred Qualifications: - COMSEC Certification. - OPSEC Level II Certification. - Working knowledge of Microsoft Software Suite (e.g., Word, Excel, PowerPoint, and Power Business Intelligence). - Working knowledge of the Google Software Suite (e.g. Docs, Sheets, Slides, Workspace) - Working knowledge of other relevant DoD security guidance, DoD Manual 5205.07, Intelligence Community Directive (ICD) standards. - Experience conducting security incident inquiries. - Industrial Security Professional (ISP) Certification. Benefits - Pay depends on experience, but we strive to be at the upper end of the salary range - Health care plan with 100% premium coverage, including medical, dental, and vision - 401k with 5% matching - Paid Time Off (uncapped vacation, plus sick and public holidays) - Flexible hybrid or remote work arrangement - Relocation assistance for qualifying employees We are an equal opportunity employer. US Citizenship may be required for certain project assignments involving security clearance. Pursuant to the San Francisco Fair Chance Ordinance, we will consider for employment qualified applicants with arrest and conviction records.

Worldwide
Cisco logo

Senior Splunk Technical Account Manager – Cybersecurity

Cisco

We securely connect everything to make anything possible.

Full TimeRemoteTeam 10,001+Since 1984H1B Sponsor

• Drive adoption and optimization of Splunk platform • Provide strategic technical guidance • Resolve complex customer challenges • Collaborate with cross-functional teams

United Kingdom

Role Description This opportunity as a Traveling Electronic Security Systems Technician is perfect for an experienced low-voltage technician who enjoys traveling! - Installs, repairs, tests, and maintains security projects - Serves as the face of Evergreen to our customers onsite by providing top-notch service and product training - Ensures safety through compliance with relevant State and Federal regulations - Handles service orders and project administration - Performs follow-up to ensure the client is ready for inspection Qualifications - Ability to travel extensively - Valid CPR/First Aid card - Valid electrician certificate or trainee card - High school diploma or equivalent - Electrical wiring experience - Basic computer skills (Microsoft Office) - Good communication skills to interface with customers - Ability to call and schedule appointments, follow instructions, and understand code requirements - Attention to detail - Ability to work autonomously - Ability to work well with others and come to work with a positive attitude - Valid driver’s license and proof of minimum liability insurance - Ability to pass pre-employment and continuing random background, drug, and MVR screenings Requirements - Relevant factory certifications and knowledge are always a plus. Great examples include: - Lenel - DAQ Access Control/IDS - Milestone CCTV - Pelco CCTV - Monitor Dynamics Access Control/IDS - AMAG - Various DDC and Building Utility Control Systems - Prior experience working on government contracts or military bases - Ability to obtain a U.S. government clearance Benefits - Awesome Travel Perks! - Additional weeks of paid leave for extended travel—up to 320 additional hours of time off! - Paid flights for weekends at home for regional travel - Weekly per diem for meals, incidentals, and lodging paid to you - Paid TSA Pre-Check - Work-related travel miles and hotel points are yours to keep - Employee Benefits - Competitive pay - Paid Time Off (PTO) - Paid holidays - Medical, dental, and vision insurance plans - 401(k) plan - Up to 4% match available - 100% vested from day one - Healthcare flexible spending accounts - Dependent care flexible spending accounts - Employee Assistance Program (EAP) - Company-sponsored group term life insurance - Corporate perks program - Opportunities to participate in voluntary benefits such as pet insurance, voluntary life insurance, disability insurance, long-term care, hospital indemnity insurance, critical illness insurance, legal services, identity theft protection, and accident insurance - Pay range is $30 - $45 per hour for well-qualified candidates. - Opportunities for training and advancement in a fast-paced, inclusive, and rewarding working environment.

United States
$30 - $45 / hour