Senior Red Team Engineer
Listed on 2025-11-28
-
IT/Tech
Cybersecurity, Systems Engineer
Overview
The Role: In this role, you will design, execute, and evolve advanced adversarial simulation campaigns to test Moderna’s cyber resilience across corporate, laboratory, and manufacturing environments. You will act as a hands-on operator and technical lead, building and running end-to-end offensive campaigns — from initial reconnaissance to network exploitation and post-exploitation within high-value segments like lab and OT systems. This role reports to the Senior Director of the Security Engineering & Response organization and works closely with Incident Response, Threat Intelligence, and Detection Engineering to convert findings into durable defenses.
Your mission: identify, emulate, and weaponize attacker tradecraft before real adversaries do.
- Plan, execute, and document full-spectrum red team operations targeting digital, physical, and hybrid environments.
- Develop and maintain offensive tool chains and infrastructure for covert operations (C2 frameworks, payload obfuscation, cloud-based staging, and beacon management).
- Conduct external-to-internal attack simulations.
- Collaborate with detection and incident response teams to measure time-to-detect, time-to-contain, and overall detection efficacy.
- Build and maintain custom scripts and exploits using Python, Power Shell, and other languages to simulate real adversary TTPs.
- Perform adversary emulation based on threat intel tied to biotech, pharma, and critical manufacturing sectors.
- Lead post-operation technical debriefs with IR and Threat Intel to derive new detection opportunities and security controls.
- Contribute to the development of internal red team maturity, progressing toward a continuous red team model.
- 8+ years in cybersecurity with deep experience in red teaming, offensive security, or adversary simulation.
- Proven ability to conduct end-to-end attack chains, including initial access, lateral movement, privilege escalation, and data exfiltration.
- Expertise in network penetration testing, Active Directory exploitation, cloud attacks (Azure, AWS, O365), and endpoint evasion.
- Experience targeting OT or lab-connected systems is a plus.
- Strong knowledge of MITRE ATT&CK, C2 frameworks, and offensive tooling.
- Familiarity with purple team methodologies and integrating offensive results into defensive playbooks and detections.
- OPSEC discipline and experience running stealth operations under blue team monitoring.
- Solid scripting and automation skills in at least one major language (Python, Power Shell, Bash, or Go).
- Preferred certifications: OSCP, OSEP, OSED, CRTO, or equivalent hands-on offensive credentials.
- Ability to communicate complex offensive findings clearly to both technical engineers and executive stakeholders.
At Moderna, we believe that when you feel your best, you can do your best work. That’s why our US benefits and global well-being resources are designed to support you—at work, at home, and everywhere in between.
- Best-in-class healthcare coverage, plus voluntary benefit programs to support your unique needs
- A holistic approach to well-being, with access to fitness, mindfulness, and mental health support
- Family planning benefits, including fertility, adoption, and surrogacy support
- Generous paid time off, including vacation, volunteer days, sabbatical, global recharge days, and a discretionary year-end shutdown
- Savings and investment opportunities to help you plan for the future
- Location-specific perks and extras
The salary range for this role is $ - $. This is the lowest to highest salary we in good faith believe we would pay for this role at the time of this posting. An individual’s position within the salary range will be based on several factors including, but not limited to, specific competencies, relevant education, qualifications, certifications, experience, skills, performance, and business or organizational needs.
The successful candidate may be eligible for an annual discretionary bonus, other incentive compensation, or equity award, subject to company plan eligibility criteria and individual performance.
About ModernaSince our founding in 2010, we have aspired to…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).