Principal Red Team Operator
Listed on 2026-07-19
-
IT/Tech
Cybersecurity
What you will be doing
The Verizon Cyber Security (VCS) organization enables the business by protecting assets and information across Verizon networks, infrastructure and applications. VCS integrates cybersecurity governance, policies, technologies and operations across Verizon, and works to incorporate security into the design of technology systems and services.
Verizon Cyber Security (VCS) is looking for a Red Team Operator for our Enterprise Red Team. In this role, you will lead the creation and execution of red team campaigns and penetration tests designed to evaluate and enhance our personnel, procedures, and technology. You will conduct objective-oriented campaigns across diverse Verizon targets, identifying vulnerabilities in systems, applications, and processes to build effective, real-world attack strategies.
The ideal candidate will have the ability to emulate adversarial thinking, and possess a deep understanding of operating system security, networking protocols, firewalls, databases and middleware applications, forensics, scripting and programming, and phishing techniques. Additionally, the candidate will have the ability to communicate highly technical information to internal customers to align with VCS and broader Verizon objectives.
Responsibilities include- Leading and executing end-to-end Red Team assessments, including adversary/threat simulation and emulation, social-engineering testing, and cybersecurity control bypass techniques.
- Developing adversary emulation plans that align with MITRE ATT&CK by incorporating cyber threat intelligence.
- Configuring and safely utilizing attacker tools, tactics, and procedures for Verizon environments.
- Developing presentations and reports that effectively communicate to both technical and executive audiences.
- Assisting offensive security assessment operations in support of Red, Blue, and Purple Teams.
- Planning and executing comprehensive penetration testing exercises, including vulnerability scanning, network reconnaissance, and exploitation of identified weaknesses.
- Continuously enhancing the organization’s security posture by sharing knowledge and expertise with other security team members.
- Effectively communicating findings and strategies to client stakeholders, including technical staff, executive leadership, and legal counsel.
- Providing risk‑appropriate and pragmatic recommendations to correct found vulnerabilities.
- Developing scripts, tools, or methodologies to enhance Verizon’s red teaming and penetration testing processes and tradecraft.
- Providing leadership and guidance to advance the offensive capabilities of the team and its subsequent ability to defend the Verizon Enterprise.
- Bachelor’s degree or four or more years of experience.
- Six or more years of relevant experience, demonstrated through a combination of job-related work experience, military experience, or specialized training or education (non‑collegiate).
- Six or more years of direct offensive security experience, specifically leading engagements in Adversary Emulation, Adversary Simulation, Threat Emulation or Threat Simulation.
- Proven ability to modify TTPs to evade modern EDR/NDR/XDR solutions and bypass security controls like AMSI and ETW.
- Deep knowledge of Operating System internals (Windows, Linux, macOS) including memory management, process injection, API hooking, and kernel‑level structures.
- Thorough understanding of network protocols, with the ability to design covert command-and-control channels that blend with legitimate traffic.
- Expertise in Active Directory and Azure AD attacks, including advanced techniques like Kerberoasting, DCSync, Golden Ticket, and identity federation exploits.
- Implementation‑level familiarity with modern exploitation, including buffer overflows, heap spraying, ROP chains, and logic flaws. Advanced proficiency in reading and modifying code in languages such as C#, C/C++, Go, or Java for the purpose of exploit development and custom tooling.
- Solid understanding of cloud‑native environments, specifically containerization platforms (Docker, Kubernetes) and major cloud…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).