Senior Red Team Operator
Listed on 2026-07-15
-
IT/Tech
Cybersecurity, Information Security, Security Management & Operations
At U.S. Bank, we’re on a journey to do our best. Helping the customers and businesses we serve to make better and smarter financial decisions and enabling the communities we support to grow and succeed. We believe it takes all of us to bring our shared ambition to life, and each person is unique in their potential. A career with U.S. Bank gives you a wide, ever-growing range of opportunities to discover what makes you thrive at every stage of your career.
Try new things, learn new skills and discover what you excel at—all from Day One.
The Senior Red Team Operator leads advanced offensive security operations designed to assess and improve the organization's cyber resilience. This role is responsible for conducting sophisticated threat emulation exercises, adversarial simulations, and offensive security assessments across enterprise systems, applications, cloud environments, and physical security domains. The Senior Red Team Operator serves as a technical leader and subject matter expert, driving innovation in offensive security tradecraft, developing custom capabilities, mentoring team members, and partnering with security and business stakeholders to strengthen detection, response, and risk management capabilities.
Key Responsibilities- Lead and execute advanced threat emulation, Red Team, and adversarial simulation exercises that replicate sophisticated threat actors.
- Conduct offensive security assessments against enterprise networks, applications, cloud platforms, infrastructure, and physical security controls.
- Develop custom tools, payloads, exploits, and automation capabilities to support complex Red Team operations.
- Research emerging threats, attacker methodologies, and offensive security techniques to continuously enhance team capabilities.
- Design and execute multi‑stage attack scenarios that assess the effectiveness of security controls, monitoring capabilities, and incident response processes.
- Produce executive and technical reporting that clearly documents attack chains, business impact, risk severity, and remediation recommendations.
- Serve as a trusted advisor and subject matter expert to security operations, detection engineering, threat hunting, and technology teams.
- Lead purple team engagements to validate detection coverage and improve defensive capabilities.
- Mentor and develop junior Red Team operators while contributing to operational standards, methodologies, and best practices.
- Drive continuous improvement initiatives through automation, process optimization, and capability development.
- Bachelors degree or equivalent experience.
- 8+ years experience in information security.
- Seven or more years of experience in information security, including significant experience in offensive security, penetration testing, or Red Team operations.
- Demonstrated experience leading Red Team engagements, threat emulation exercises, and adversarial simulations within complex enterprise environments.
- Advanced expertise in exploit development, custom payload creation, offensive tooling development, and attack automation.
- Extensive experience with industry‑standard offensive security and command‑and‑control frameworks such as Cobalt Strike, Metasploit, Mythic, Sliver, and similar platforms.
- Proven ability to bypass, evaluate, and assess modern security technologies including EDR, XDR, endpoint protection, and network‑based controls.
- Strong proficiency in multiple programming and scripting languages including Python, Power Shell, C/C++, C#, Go, and Shell scripting.
- Deep understanding of enterprise architecture, cloud technologies, application security, network security, identity systems, and emerging cyber threats.
- Experience performing purple team activities and partnering with defensive teams to improve detection and response capabilities.
- Experience leveraging Infrastructure as Code, automation frameworks, and cloud‑native technologies.
- Proven ability to identify complex vulnerabilities, develop innovative attack paths, and create proof‑of‑concept exploits that demonstrate business risk.
- Excellent communication and presentation skills with the ability to…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).