Red Teamer

AUS Sydney Clarence Street

Apply now Apply later

Role: Red Team Consultant (Red Teamer)

Location: Sydney (Hybrid)

Thanks for checking out our job opening; we are excited that YOU are interested in learning more about NCC Group.

We are on a mission to make society a safer and more secure place. Our people are the ones who make that possible; a global community of talented individuals working together towards a safer future.

We aim to create an environment where everyone can reach their full potential. We work together, we are brilliantly creative, we embrace difference, and we want you to join in our mission, as a Senior Security Consultant.

Take a look at our website here to learn more about why we’re one of the leading global Cyber Security and Risk Mitigation business… https://www.nccgroup.com

The Opportunity

The successful candidate will be involved in each aspect of the attack chain from social engineering and initial access, evading best-in-class EDR products, through lateral movement and achieving objectives set by the client. Operational Security and safety of target environments is of paramount importance, the successful candidate will have extensive experience of managing operational risk and communicating with client stakeholders on the risks and mitigations for all Red Team activity. Additionally, the successful candidate will be well versed in capability development and the creation of tools to automate activity or exploit weaknesses identified in the environment.

Finally, the successful candidate will have a high-standard of written English for reports and presentations, as well as the ability to brief technical audiences on their activities and findings.

Responsibilities:

  • Simulate Adversarial Attacks: Design, plan, and execute realistic cyber-attack scenarios to identify vulnerabilities and weaknesses within our target organization's infrastructure, applications, and processes. We operate against high-maturity clients across a number of internationally recognised regulatory frameworks.
  • Report and Advise: Clearly convey findings, vulnerabilities, and potential risks to stakeholders, offering actionable technical recommendations, procedural and defensive improvements. The ability to write attack narratives to enable non-technical readers to understand the actions performed.
  • Engage and Collaborate: Ability to work as part of a team on large engagements and individually for smaller ones. Forging strong relationships with colleagues, client contacts and C-Level teams, security departments, and other stakeholders to drive maximum value.
  • Continuous Learning: Keep abreast of the latest adversarial techniques, tools, and trends in Red Teaming and more general global cybersecurity. Sharing knowledge from successful techniques as well as evaluating and introducing new methodologies where appropriate.
  • Mentoring and Training: Act as a resource for junior team members and other departments, imparting knowledge on current threat vectors and best practices for defence.

Essential Skills:

  • Demonstrable experience in advanced red teaming.
  • Demonstrable experience in regulatory schemes globally (CORIE/AASE/iCAST).
  • Comprehensive understanding the majority of the following domains: Cloud platforms and their security mechanisms, Microsoft Active Directory, Office 365 Security, EDR/EPP Bypasses, Email Gateways and Filters, Web Gateways and Proxies, MacOS Client Environments
  • Exceptional written and verbal communication skills, tailored to a diverse audience.
  • Proactive, team-oriented, and adept at problem-solving.
  • Familiarity with the UK's cybersecurity regulations, standards, and best practices.

Preferred Qualifications

  • CREST CCT-INF
  • CREST CCSAS or equivalent

Behaviours:

  • Client-Focused: Prioritises client needs and expectations, ensuring that all actions and decisions lead to client satisfaction and success.
  • Collaborates as ‘One NCC’: Works in unison with all departments and teams, fostering a united front and shared objectives across the entire organisation.
  • Adds Value: Goes beyond the minimum requirements to provide solutions and contributions that enhance the customer’s success and growth.
  • Enables and Empowers: Provides tools, resources, and support to team members, fostering an environment where they can thrive and excel.
  • Personal Responsibility: Takes ownership of actions, decisions, and outcomes, acknowledging successes as well as areas for improvement.
  • Communicates Openly and Respectfully: Shares information transparently while maintaining respect and consideration for all stakeholder       s.
  • Open Mindset: Embraces new ideas, diverse perspectives, and is willing to adapt in response to evolving situations or feedback.
  • Growth and Development: Actively seeks opportunities for personal and professional growth, championing learning and evolution for oneself and the organisation.
  • Analytical Thinking: Demonstrates a systematic approach to resolving issues and identifying improvements.

About NCC Group

The NCC Group family has over 2,000 members located all around the world, providing a trusted advisory service to 15,000 customers. Born in the UK, we have now have offices in North America, Canada, Europe, Asia- Pacific and United Arab Emirates.

We are passionate about helping our customers to protect their brand, value and reputation against the ever-evolving threat landscape. We fuel that passion with investment in our people and our business.

Our values and code of ethics are at the heart of how we operate – we work together, we are brilliantly creative, and we embrace difference. We treat everyone and everything with equal respect.

We want to create an environment where all colleagues feel psychologically, emotionally and physically safe to be authentic, sharing their personal experiences to represent the diversity of the world they live in, and have equal opportunity to achieve their best.

About your application

We review every application received and will get in touch if your skills and experience match what we’re looking for. If you don’t hear back from us within 10 days, please don’t be too disappointed – we may keep your CV on our database for any future vacancies and we would encourage you to keep an eye on our career opportunities as there may be other suitable roles.

If you do not want us to retain your details, please email global.ta@nccgroup.com. All personal data is held in accordance with the NCC Group Privacy Policy. We are committed to diversity and flexibility in the workplace. If you require any reasonable adjustments to support you during the application process, please tell us at any stage.

Please note that this role has background clearance as mandatory due to the nature of the work NCC Group does. To apply, you must be willing and able to undergo the vetting process.

Apply now Apply later
  • Share this job via
  • 𝕏
  • or

* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰

Job stats:  17  0  0
Category: PenTesting Jobs

Tags: Active Directory C Clearance Cloud CORIE CREST EDR Exploit MacOS Privacy Red team Vulnerabilities

Perks/benefits: Career development

Region: Asia/Pacific
Country: Australia

More jobs like this

Explore more career opportunities

Find even more open roles below ordered by popularity of job title or skills/products/technologies used.