Target is a retail giant dedicated to helping families discover joy in everyday life. They are seeking a Lead Engineer for their Red Team to conduct and lead operations, influence team direction, and mentor junior operators in cybersecurity efforts. The role involves adversary emulation and collaboration with various teams to improve organizational security.
Responsibilities:
- Consult on, design, and execute adversary emulation operations
- Conduct research into real-world threat actor tactics, techniques, and procedures to develop proof-of-concept tools and playbooks
- Bypass preventative and detective security controls to accomplish operational goals
- Partner with the Cyber Security Incident Response Team and other stakeholders in the organization to identify improvement opportunities
- Collaborate with Cyber Threat Intelligence, Detection, and Threat Hunting engineers and analysts on research
- Work with non-security engineering teams to educate, and collaborate on operational objectives
- Develop strategic adversary emulation objectives and operational plans
- Execute adversary emulation operations to surface risk in the organization
- Work with partner teams to plan cooperative engagements
- Lead and train operators
- Communicate effectively with and directly support defenders
- Present findings and operational work to groups in a clear and professional manner
- Study the techniques of Threat Actors, and apply that lens to operational work
- Partner with other Team Members to improve tools and procedures
- Manage work effectively in the team’s project management tools (Github/JIRA)
- Respond to the quick-changing needs and priorities of the team
- Read and write code to accomplish red team goals
- Deeply understand red team infrastructure
Requirements:
- Four years minimum experience in offensive security and/or defensive security
- Demonstrates strong offensive security knowledge
- Demonstrates strong understanding of the impact of Red Team work on an organization and its customers
- Prioritizes process improvement
- Seeks out cross-functional collaboration opportunities
- Clearly and respectfully communicates technical issues in a training or mentorship setting
- Resolves complex technical issues with minimal assistance
- Builds strong commitment within a team to support the appropriate priorities
- Stays current on relevant technologies with self-directed learning
- Deep Red Team adversary emulation experience
- Experience working on or with Blue Teams, including Incident Response, or Detection
- Experience working in large, complex organizations
- Python, C#, Rust, Go, or C skills
- Solving difficult problems, and creatively subverting systems
- Ability to replicate the tools and techniques of in-the-wild threat actors
- Follows Threat Actor trends impacting organizational security