Opportunity brief
Responsibilities:
Conduct red team engagements to simulate advanced adversary tactics across network, application, and cloud environments.
- Design, deploy, and manage Command & Control (C2) infrastructure for covert operations
- Perform network penetration testing, including internal and external attack simulations
- Develop and use tunneling techniques (e.g., pivoting, SOCKS proxies) to bypass network restrictions
- Execute protocol-level security assessments for services such as Redis, MSSQL, PostgreSQL, MongoDB, etc.
- Identify misconfigurations, weak authentication mechanisms, and privilege escalation paths in database services
- Perform lateral movement and persistence techniques within compromised environments
- Assess and exploit weaknesses in CI/CD pipelines (e.g., GitHub, GitLab, Jenkins)
- Create detailed reports with attack paths, impact analysis, and remediation guidance