Red Team Senior Manager
Unidos, PHILIPPINES
Job description
Nombre del sítio: Home Worker - USA
Fecha de publicación: Feb 28 2024
As a Red Team Operator - you will have a deep understanding of computer science and information security. You understand advanced concepts like exploit development and stealthy operations. This role will have access to a very diverse network at a company dedicated to providing care to patients across the globe.
Key Responsibilities:
·
Leverage real attacker emulation to simulate security incidents, observe response across monitoring and incidents, and identify enhancement opportunities
·
Develop after action reports to help justify this investment and use the results to hone the security posture for the overall organization
·
Execute Red Team engagements in a variety of networks using real-world adversarial Tactics, Techniques, and Procedures (TTPs) from conception to report delivery
·
Conduct open-source intelligence gathering, network vulnerability scanning, exploitation of vulnerable services, lateral movement, install persistence in a target network(s), and manage C2 infrastructure
·
Develop payloads, scripts, and tools that weaponize new proof-of-concepts for exploitation, evasion, and lateral movement
·
Document identified vulnerabilities and research corrective/remediation actions to recommend a risk mitigation technique(s)
·
Maintain knowledge of applicable Red Team policies, Standing Ground Rules, regulations, and compliance documents
·
Communicate effectively with team members and during an engagement
·
Keep current with TTPs and the latest offensive security techniques
Why You?
Basic Qualifications:
·
3+ years of experience as a red team operator
·
Experience with offensive tools and platforms such as Kali Linux, Cobalt Strike, Metasploit, Covenant, Sliver, Bloodhound, Ghostpack, Nmap, Nessus, Zmap, Massscan, EyeWitness, Burp Suite
·
Experience with writing high-quality assessment reports and communicating results to clients, teammates, and senior leadership
·
Knowledge of functionality and capabilities of network defense technologies, including firewalls, IDS and IPS, antivirus, and web content filtering
·
Experience building red team infrastructure and new approaches to testing a variety of environments
·
Ability to operate and lead organized security testing engagements without assistance
·
Market relevant certifications such as CREST/OSCP/OSCE/OSWP
Preferred Qualifications:
·
4+ years’ experience focused on Red Team operations
·
Familiarity with various programming languages such as Python and Ruby on Rails are a plus
·
Experience in web programming (Java, ASP, ASP.NET, HTML, JavaScript)
·
Experience with cloud-based environments (GCP, Azure, AWS, etc.)
·
Demonstrated rapid tool development & automation experience
·
Regular Expressions (RegEx)
·
Knowledge of SQL Server, SQL Client Tools, and T-SQL Stored Procedures
·
Understanding of Web Application Firewalls
·
Reverse engineering
The annual base salary for new hires in this position ranges from $0 to $0 , taking into account a number of factors including work location, the candidate’s skills, experience, education level and the market rate for the role. In addition, this position offers an annual bonus and eligibility to participate in our share based long term incentive program which is dependent on the level of the role. Available benefits include health care and other insurance benefits (for employee and family), retirement benefits, paid holidays, vacation, and paid caregiver/parental and medical leave.
Please visit GSK US Benefits Summary to learn more about the comprehensive benefits program GSK offers US employees.
Why Us?
GSK is a global biopharma company with a special purpose – to unite science, technology and talent to get ahead of disease together – so we can positively impact the health of billions of people and deliver stronger, more sustainable shareholder returns – as an organization where people can thrive. Getting ahead means preventing disease as well as treating it, and we aim to positively impact the health of 2.5 billion people by the end of 2030.
Our success absolutely depends on our people. While getting ahead of disease together is about our ambition for patients and shareholders, it’s also about making GSK a place where people can thrive. We want GSK to be a workplace where everyone can feel a sense of belonging and thrive as set out in our Equal and Inclusive Treatment of Employees policy. We’re committed to being more proactive at all levels so that our workforce reflects the communities we work and hire in, and our GSK leadership reflects our GSK workforce.
If you require an accommodation or other assistance to apply for a job at GSK, please contact the GSK Service Centre at 1-877-694-7547 (US Toll Free) or +1 801 567 5155 (outside US).
GSK is an Equal Opportunity Employer and, in the US, we adhere to Affirmative Action principles. This ensures that all qualified applicants will receive equal consideration for employment without regard to race, color, national origin, religion, sex, pregnancy, marital status, sexual orientation, gender identity/expression, age, disability, genetic information, military service, covered/protected veteran status or any other federal, state or local protected class.
Important notice to Employment businesses/ Agencies
GSK does not accept referrals from employment businesses and/or employment agencies in respect of the vacancies posted on this site. All employment businesses/agencies are required to contact GSK's commercial and general procurement/human resources department to obtain prior written authorization before referring any candidates to GSK. The obtaining of prior written authorization is a condition precedent to any agreement (verbal or written) between the employment business/ agency and GSK. In the absence of such written authorization being obtained any actions undertaken by the employment business/agency shall be deemed to have been performed without the consent or contractual agreement of GSK. GSK shall therefore not be liable for any fees arising from such actions or any fees arising from any referrals by employment businesses/agencies in respect of the vacancies posted on this site.
Please note that if you are a US Licensed Healthcare Professional or Healthcare Professional as defined by the laws of the state issuing your license, GSK may be required to capture and report expenses GSK incurs, on your behalf, in the event you are afforded an interview for employment. This capture of applicable transfers of value is necessary to ensure GSK’s compliance to all federal and state US Transparency requirements. For more information, please visit GSK’s Transparency Reporting For the Record site.