Security Engineer – Red Team; AI
Bethesda, Montgomery County, Maryland, 20811, USA
Listed on 2026-06-26
-
Security
Cybersecurity
We are seeking a hands‑on Staff Security Engineer for our Red Team with deep technical expertise in running AI‑driven adversary operations that measurably improve detection and response processes.
Responsibilities- Participate in AI‑focused adversary operations: plan, execute and deliver Red Team, Purple Team and other Adversary Emulation operations.
- Scope and design operations: define objectives, target scope, success criteria, and safety controls.
- Develop and run emulations: build, customize, and execute emulation plans using platforms such as MITRE Caldera or similar products.
- Execute advanced AI‑leveraged tradecraft across enterprise environments (identity, endpoints, networks, cloud, SaaS) in a controlled, measurable way.
- Partner with defenders: work directly with Detection Engineering, Threat Intelligence, and Risk Management to validate telemetry coverage, tune detections, improve response playbooks, and close visibility gaps.
- Champion continuous improvement and innovation in adversary operations techniques, tools, and methodologies.
- 8+ years of experience in Offensive Security operations.
- 5+ years of hands‑on experience running Red Team, Purple Team, and other Adversary operations in enterprise environments.
- Deep understanding of LLM architecture and familiarity with how models process input, manage context, and generate output.
- Experience with AI frameworks and tools such as PyTorch, Tensor Flow, Hugging Face, and Lang Chain.
- Experience with Azure, AWS, GCP or other cloud providers.
- Strong working knowledge of MITRE ATLAS and ATT&CK, and the ability to translate TTPs into repeatable emulations and measurable detection outcomes.
- Hands‑on experience with adversary emulation platforms, including building/maintaining emulations and running operations.
- Demonstrated capability with core operator tradecraft (C2, payload delivery, privilege escalation, lateral movement, persistence, and operational security) appropriate to authorized testing.
- Extensive use of red team frameworks:
Cobalt Strike, Sliver, Metasploit, Empire, Blood Hound.
- OSCP, OSCE, CRTO, CISSP, or other relevant Red Team/offensive security certifications.
- GIAC Penetration Testing, Red Team certifications (GCTI, GPEN, GXPN) a plus.
- Breadth and depth of knowledge in security of operating systems, networking and protocols, firewalls, databases and middleware applications, forensics, scripting and programming.
- Advanced level knowledge of Linux, Mac, and Windows operating systems, AWS/Azure cloud environments and cloud‑native resources (e.g., containers, Kubernetes, microservices, serverless functions).
- Experience with conducting reverse engineering on mobile applications, including applications with anti‑emulator and obfuscation protections.
- Bachelor’s degree in Cybersecurity, Computer Science or a related field.
$ - $
The above annual salary range is a general guideline. Multiple factors are taken into consideration to arrive at the final hourly rate/annual salary to be offered to the selected candidate. Factors include, but are not limited to, the scope and responsibilities of the role, the selected candidate’s work experience, education and training, the work location as well as market and business considerations.
SponsorshipGEICO will consider sponsoring a new qualified applicant for employment authorization for this position.
Benefits- Comprehensive Total Rewards program that offers personalized coverage tailored to you and your family’s overall well‑being.
- Financial benefits including market‑competitive compensation; a 401(k) savings plan vested from day one that offers a 6% match; performance and recognition‑based incentives; and tuition assistance.
- Access to additional benefits such as mental healthcare as well as fertility and adoption assistance.
- Supports flexibility – we provide workplace flexibility as well as our GEICO Flex program, which offers the ability to work from anywhere in the US for up to four weeks per year.
The equal employment opportunity policy of the GEICO Companies provides for a fair and equal employment opportunity for all…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).