×
Register Here to Apply for Jobs or Post Jobs. X

Lead Associate Principal, Adversarial Red Team

Job in Chicago, Cook County, Illinois, 60290, USA
Listing for: The Options Clearing Corporation
Full Time position
Listed on 2026-07-30
Job specializations:
  • IT/Tech
    Cybersecurity, Information Security & Data Protection
Salary/Wage Range or Industry Benchmark: 120000 - 160000 USD Yearly USD 120000.00 160000.00 YEAR
Job Description & How to Apply Below

Adversarial Red Team Lead Associate Principal

Primary Duties and Responsibilities
  • Execute comprehensive Red Team simulations including network/application penetration testing, cloud security, social engineering, physical security, mobile testing, and OSINT within defined rules of engagement.
  • Develop and deploy Command and Control (C2) infrastructure using evasion and obfuscation techniques to test and enhance Cyber Defense detection capabilities.
  • Leverage AI/LLM tooling to accelerate offensive research, exploit development, and overall Red Team effectiveness.
  • Conduct ad-hoc white-box testing on pre-production and in-development infrastructure, validate remediated findings with IT owners.
  • Perform threat modeling, security risk assessments, and independent reviews of OCC’s security, network, and applications.
  • Develop clear evidence-based reports with actionable remediation recommendations and debrief stakeholders on findings.
  • Ensure security controls and testing activities align with applicable regulations, industry best practices, and OCC policies and procedures.
  • Cross-train Red Team members and other Security/IT teams on adversarial threats, attack vectors, and remediation strategies.
  • Stay current on emerging threats, threat intelligence, and attack techniques, advising IT leadership on mitigation approaches.
  • Support audits, contribute to security roadmap development, and review or guide the work of more junior Red Team professionals.
  • Perform other duties as assigned.
Qualifications
  • 7+ years of deep expertise in OSINT, penetration testing, C2 infrastructure development, evasion techniques, and custom scripting.
  • Strong communication skills and a commitment to staying ahead of emerging threats.
  • Broad expertise across Network/Application, Web Application, Mobile Application penetration testing, C2 infrastructure development, Cyber Defense evasion techniques, Social Engineering, OSINT, Basic Emissions Testing, and Physical Security Testing.
  • Strong working knowledge of AI/LLMs and agentic systems (autonomous agents, orchestration frameworks, MCP) and how they can accelerate offensive security tradecraft.
  • Proven due diligence and research ability via open-source avenues and technology.
  • Strong familiarity with enterprise technologies; experience testing in commercial cloud environments (AWS, Azure, IaaS, PaaS, SaaS).
  • Good knowledge of policy and procedure development, systems analysis, IA policy, vulnerability and risk management, and regulatory standards (CSF, NIST, PCI, FIPS 199, COBIT
    5).
  • Strong knowledge of cryptography (symmetric, asymmetric, hashing), common enterprise infrastructure technology stacks, and network configurations.
  • Ability to understand and probe/exploit a diverse range of Network and Internet Protocols, and to modify code across multiple programming languages and frameworks, with practical experience in at least one high-level language.
  • Ability to facilitate meetings and conversations, and to work with business users to translate their needs into final project deliverables.
  • Nice to have: experience working on critical infrastructure in a regulated environment.
Technical Skills
  • Strong proficiency in Network, Web Application, Cloud, and Mobile Device security testing.
  • Demonstrated exploit, payload, and attack framework development experience.
  • Strong knowledge of EDR detection capabilities such as Crowdstrike/Cobalt Black and associated defense evasion techniques.
  • Strong proficiency in social engineering and intelligence gathering.
  • Strong experience with custom scripting (Python, Power Shell, Bash, etc.) and process automation.
  • Strong experience with database security testing (MSSQL, DB2, MySQL, etc.).
  • Proficiency with common penetration testing tools (Kali, Armitage, Metasploit, Cobalt Strike, Nighthawk, Nmap, Qualys, Nessus, Burp Suite, Wireshark, Recon NG, Ettercap/Bettercap, Hashcat, Bloodhound, Ida Pro, Ghidra, Sublist3r, Rubeus, Mimikatz, Crack Map Exec , Exploitdb, Yersinia, Impacket, etc.).
  • Track record of vulnerability research and CVE assignments.
  • Knowledge of Windows APIs and Living off the Land (LOL) Binaries.
  • Experience with Mainframes, Windows, Unix, MacOS, Cisco platforms and controls.
  • Proficient…
Position Requirements
10+ Years work experience
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)
0
200
Filters
Education Level
Experience Level (years)
Posted in last:
Salary