Adaptive Security - Red Team Technical Lead, Vice President
Watermark - 410 North Scottsdale Road, United States
Full Time Senior-level / Expert USD 124K - 171K
Do you want your voice heard and your actions to count?
Discover your opportunity with Mitsubishi UFJ Financial Group (MUFG), one of the world’s leading financial groups. Across the globe, we’re 120,000 colleagues, striving to make a difference for every client, organization, and community we serve. We stand for our values, building long-term relationships, serving society, and fostering shared and sustainable growth for a better world.
With a vision to be the world’s most trusted financial group, it’s part of our culture to put people first, listen to new and diverse ideas and collaborate toward greater innovation, speed and agility. This means investing in talent, technologies, and tools that empower you to own your career.
Join MUFG, where being inspired is expected and making a meaningful impact is rewarded.
The selected colleague will work at an MUFG office or client sites four days per week and work remotely one day. A member of our recruitment team will provide more details.Job Summary
Being part of the adaptive security team provides you with the opportunity to work on the cutting edge of cybersecurity and help drive the improvement of detection capabilities as well as strengthening of defenses to improve our overall security posture. The role also offers you the opportunity to function as a technical lead with some responsibilities to mentor junior team members and provide guidance on complex projects.
Major Responsibilities
With your impressive expertise as well as analytical thinking and iterative problem-solving skills, you have what it takes to contribute to complex analyses, programs, and issue resolution in consultation with your manager. Whether balancing the needs of multiple stakeholders or supporting more senior colleagues on strategic projects, you will advance your reputation as a trusted advisor, using data and analysis and applying experience, sound judgment, and a risk mindset across your responsibilities. In the process, you will have exciting opportunities to develop your skills, expand your network, and build your career.
High Level Responsibilities:
Developing guidelines for the usage, control, maintenance and audit-readiness of information and computer resources that are used in the distributed processing environment.
Analyzing and addressing customer security requirements for all business applications existing on a distributed platform.
Assisting in the evaluation, selection, and installation of security software products for distributed platforms.
Identifying distributed systems security issues as they arise and coordinating with the security architect to ensure that issues are addressed and resolved in a timely basis.
Qualifications
- Bachelor's Degree in Computer Science or related fields; applicable specialized training; or equivalent work experience - equally preferable
- Must have combined 10+ years of experience with information technology and recent experience in information security with an offensive security discipline.
- Must have experience and be very proficient with the common tools associated with red teaming (Mythic, Havoc, Cobalt Strike and Sliver etc.)
- Must have experience in developing implants and proficient in defense evasion of common security tools.
- Must have a solid understanding of voice and data networks, major operating systems, active directory, and their associated peripherals, along with MITRE ATT&CK TTPs.
- Must demonstrate knowledge of tactics, techniques, and procedures associated with malicious insider activity, organized crime/fraud groups and both state and non-state sponsored threat actors.
- Must be able to critically examine an organization and system through the perspective of a threat actor and articulate risk in clear, precise terms.
- Must be able to both work independently as well as effectively work in teams with individuals with a variety of skills and backgrounds
- Must have a strong background using low-level languages (C/C++).
- Must have experience with PE file format and low-level Windows internals.
- Must have experience with reverse engineering and Windows debugging (IDA, Ghidra and WinDBG).
- Previous experience working in the financial industry a plus.
- Previous contributions to the community through open-source, conference presentations or public disclosures a plus
- Proficient in utilizing red teaming tools such as Mythic, Havoc, Cobalt Strike, and Sliver.
- Skilled in developing implants and proficient in defense evasion of common security tools.
- Strong comprehension of voice and data networks, major operating systems, active directory, coupled with expertise in MITRE ATT&CK TTPs and NIST-CSF.
- Demonstrated knowledge of tactics related to malicious insider activity, organized crime/fraud groups, and threat actors, both state and non-state sponsored.
- Ability to assess organizations and systems from a threat actor's perspective, articulating risks clearly and precisely.
- Capable of working independently and collaboratively in diverse teams with varied skills and backgrounds.
- Solid background in low-level languages, particularly C/C++.
- Expertise in PE file format, low-level Windows internals, reverse engineering, and Windows debugging using tools like IDA, Ghidra, and WinDBG.
- Previous experience in the financial industry is a plus.
- Additional contributions to the community through open-source projects, conference presentations, or public disclosures are a plus.
The typical base pay range for this role is between $124K - $171K depending on job-related knowledge, skills, experience and location. This role may also be eligible for certain discretionary performance-based bonus and/or incentive compensation. Additionally, our Total Rewards program provides colleagues with a competitive benefits package (in accordance with the eligibility requirements and respective terms of each) that includes comprehensive health and wellness benefits, retirement plans, educational assistance and training programs, income replacement for qualified employees with disabilities, paid maternity and parental bonding leave, and paid vacation, sick days, and holidays. For more information on our Total Rewards package, please click the link below.
We will consider for employment all qualified applicants, including those with criminal histories, in a manner consistent with the requirements of applicable state and local laws (including (i) the San Francisco Fair Chance Ordinance, (ii) the City of Los Angeles’ Fair Chance Initiative for Hiring Ordinance, (iii) the Los Angeles County Fair Chance Ordinance, and (iv) the California Fair Chance Act) to the extent that (a) an applicant is not subject to a statutory disqualification pursuant to Section 3(a)(39) of the Securities and Exchange Act of 1934 or Section 8a(2) or 8a(3) of the Commodity Exchange Act, and (b) they do not conflict with the background screening requirements of the Financial Industry Regulatory Authority (FINRA) and the National Futures Association (NFA). The major responsibilities listed above are the material job duties of this role for which the Company reasonably believes that criminal history may have a direct, adverse and negative relationship potentially resulting in the withdrawal of conditional offer of employment, if any.The above statements are intended to describe the general nature and level of work being performed. They are not intended to be construed as an exhaustive list of all responsibilities duties and skills required of personnel so classified.We are proud to be an Equal Opportunity Employer and committed to leveraging the diverse backgrounds, perspectives and experience of our workforce to create opportunities for our colleagues and our business. We do not discriminate on the basis of race, color, national origin, religion, gender expression, gender identity, sex, age, ancestry, marital status, protected veteran and military status, disability, medical condition, sexual orientation, genetic information, or any other status of an individual or that individual’s associates or relatives that is protected under applicable federal, state, or local law.
Tags: Active Directory C Cobalt Strike Computer Science Ghidra MITRE ATT&CK NIST Offensive security Red team Reverse engineering TTPs WinDbg Windows
Perks/benefits: Competitive pay Health care Medical leave Parental leave Salary bonus Startup environment Wellness
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.