Senior Security Engineer & Workday
Job Description
Join a mission driven security team safeguarding critical infrastructure. This onsite Senior Security Engineer role in Harrisburg, PA centers on red team offensive security, leading red and purple team exercises, building attack infrastructure, and delivering risk based findings across hybrid environments. You will guide offensive engagements, help improve detection with intelligence driven purple team testing, and collaborate with cyber defense, technology, and business stakeholders to elevate resilience.
In this position you will become a key member of a team of highly skilled cybersecurity professionals responsible for protecting national critical infrastructure. You will contribute to Red and Purple Team activities, participate in internal presentations and conferences, and share knowledge to strengthen remediation across the organization.
Responsibilities
- Execute red team cyber exercises across internal and internet facing systems to uncover misconfigurations and vulnerabilities adversaries could exploit to gain access to data and systems.
- Participate in purple team activities to help blue teams enhance their detections and response capabilities.
- Lead red team operations against hybrid environments using threat intelligence and the MITRE ATT&CK framework.
- Engage in intelligence driven purple team tests to validate detections and tooling.
- Build and maintain red and purple team infrastructure, pursuing automation where possible.
- Continuously research offensive security tactics and share findings with the team to elevate collective skills.
- Conduct ad hoc offensive security testing using industry standard tools or internally developed tools.
- Lead the creation of reports featuring compromise narratives, detailed technical findings, risk severity ratings, and practical remediation recommendations, including peer review of deliverables.
- Assist cyber defense teams during incident investigations with attacker tradecraft and mindset expertise.
- Collaborate with information security, technology, and business stakeholders to raise security awareness and drive remediation efforts.
- Actively contribute to Red and Purple Team activities for internal presentations and conferences.
Requirements
- Experience with industry standard Red Team tools (Cobalt Strike, Mythic C2, Rubeus, Bloodhound, Covenant, etc.) or demonstrated equivalent knowledge.
- Expert understanding of how an advanced persistent threat could compromise a financial institution without phishing.
- Extensive knowledge of Red Team concepts, tools, and automation strategies.
- Strong grasp of the MITRE ATT&CK framework tactics, techniques, and procedures.
- Expert ability to measure and rate vulnerabilities based on core characteristics.
- Deep understanding of Windows and Linux system hardening concepts and techniques.
- Proficiency in modifying payloads to bypass detections like EDR.
- Expert knowledge of compromising environments without using phishing.
- Strong scripting capabilities in at least one language (Python, Ruby, PowerShell, Bash, etc.).
- Experience with at least one cloud environment (AWS, GCP, Azure).
- Proven track record of attacking cloud, on premise, and/or hybrid environments from initial access through objective completion.
- Experience delivering Red Team projects including creation and execution of statements of work, risk mitigation strategies, and remediation with stakeholders.
- Experience using multi operating system command and control tools.
- Experience developing custom attack tradecraft or modifying existing tools.
- Experience using automated configuration management such as Chef.
- Experience discovering and exploiting vulnerabilities in AI systems.
- Experience conducting Offensive Security or Red Team exercises against macOS, iOS, or ChromeOS.
- Recognized industry certifications such as GPEN, GXPN, GREM, eCPTX, eCPPT, OSCP, OSWE, CISSP, CPSA, CRT, etc.
- Knowledge of industry security standards such as TIBER EU, CBEST, NIST Cyber Security Framework, ISO 27002, etc.
- Knowledge of Agile project management.
Technologies
- Cobalt Strike
- Mythic C2
- Rubeus
- Bloodhound
- Covenant
- MITRE ATT&CK
- Windows
- Linux
- Python
- Ruby
- PowerShell
- Bash
- AWS
- GCP
- Azure
- Chef
- macOS
- iOS
- ChromeOS