Lead Cybersecurity – Red Team Attack and Simulation

IND:AP:Hyderabad / Atria Building, Plot 17 - Adm: Atria Building, Plot No 17, India

AT&T

Shop deals on new phones including iPhone 16, unlimited data plans, and home internet with AT&T Fiber. Get 24/7 support, pay your bills & manage your account online.

View all jobs at AT&T

Apply now Apply later

Job Description:

Experience Level: 12+ years.

Location: Hyderabad

Responsibilities Include:

  • Performing formal and informal targeted “Hunts” to identify vulnerabilities.
  • Actively building and participating in Red Team exercises.
  • Design and execute red team engagements, simulating advanced attack scenarios to identify vulnerabilities and assess the effectiveness of security measures. 
  • Conduct penetration tests on networks, applications, and physical security controls. 
  • Employing tactics to uncover security holes in user practices and procedures.
  • Develop and execute red team strategies and methodologies to uncover potential security gaps.  
  • Analyze and report on findings from red team exercises, including detailed recommendations for remediation. 
  • Providing feedback and verification as security issues are fixed.
  • Stay current with the latest security threats, attack techniques, and industry trends. 
  • Communicate complex security concepts to both technical and non-technical stakeholders. 
  • Collaborate with other security teams to improve overall security practices and incident response capabilities.
  • Be proactive and demonstrate the ability to analyze issues, generate ideas, and initiate action while achieving results.
  • Effectively manages multiple tasks / projects with close attention to detail and meets short turnarounds and deadlines.
  • Collaborate with leadership teams, provide subject matter expertise and insights.
  • Support and guide team members in providing high-quality and actionable intelligence products / deliverables.
  • Support, guide and mentor team members in technical and functional matters

The expert in this role will perform analysis of complex security issues and corresponding activities to help mitigate risk. Includes forward looking research, planning and strategy to strengthen our stance against future cyber security threats and attacks, and enhancing our mitigation techniques, processes, and technology solutions.

Required skills:

  • At least 12+ years of experience in penetration testing and red team operations.
  • Expert level understanding of Transmission Control Protocol / Internet Protocol (TCP/IP) protocols, devices, security mechanisms and how they operate.
  • Strong understanding of network security threats including APT, botnets, Distributed Denial of Service (DDoS) attacks, worms, and network exploits.
  • Expert knowledge of attack vectors, exploitation techniques, and vulnerability assessment methodologies. 
  • Experience with industry-standard penetration testing tools and frameworks.  
  • Experience with network probing/testing/analysis tools (Nessus, nmap, burp, wireshark, etc.)
  • Deep technical knowledge of Windows, UNIX and Linux operating systems as both an expert user and system administrator
  • Programming skills that will be used to construct, modify, and execute testing tools including shell (ksh, bash), [g]awk, Python, PERL, regex, .NET Programming, Java, C, C++, C#, PowerShell, curl, Web application development (PHP, ASP.NET, etc.)
  • Comprehensive knowledge of software security testing principles, practices, and tools, experience of vulnerability assessments in a complex environment.
  • Experience or familiarity with vulnerability analysis, computer forensics tools, cryptography principles
  • Excellent teamwork skills for collaboration on analysis techniques, implementation, and reporting.  Must be able to work both independently as well as effectively in teams of individuals with a variety of skills and backgrounds.
  • Excellent written and verbal communication skills and have demonstrated ability to present material to senior officials.
  • Highly self-motivated requiring little direction.
  • Demonstrates creative/out-of-the-box thinking and good problem-solving skills.
  • Demonstrates strong ethical behavior.
  • Sense of urgency and attention to detail
  • Flexible to provide coverage in US morning hours on a need-basis, and as required

Desirable skills:

  • Strong knowledge of an enterprise architecture
  • Ability to obtain a strong and ongoing understanding of the technical details involved in current APT threats and exploits involving various operating systems, applications and networking protocols.
  • Knowledge of tactics, techniques, and procedures associated with malicious insider activity, organized crime/fraud groups and both state and non-state sponsored threat actors.
  • Understanding of cloud-based architectures and highly distributed big data architectures
  • Experience with application security testing tools, such as the Metasploit framework and Burp Suite
  • One or more of these certifications
    • CEH: Certified Ethical Hacker
    • CPT: Certified Penetration Tester
    • CEPT: Certified Expert Penetration Tester
    • GPEN: GIAC Certified Penetration Tester
    • OSCP: Offensive Security Certified Professional
  • BS/MS degree in Computer Science, Cyber Security, Engineering, or related technical field
  •  Prior experience with Telecom sector.

Additional information (if any): Need to be flexible to provide coverage in US morning hours.

Weekly Hours:

40

Time Type:

Regular

Location:

IND:AP:Hyderabad / Atria Building, Plot 17 - Adm: Atria Building, Plot No 17

It is the policy of AT&T to provide equal employment opportunity (EEO) to all persons regardless of age, color, national origin, citizenship status, physical or mental disability, race, religion, creed, gender, sex, sexual orientation, gender identity and/or expression, genetic information, marital status, status with regard to public assistance, veteran status, or any other characteristic protected by federal, state or local law. In addition, AT&T will provide reasonable accommodations for qualified individuals with disabilities.

Apply now Apply later

* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰

Job stats:  1  0  0

Tags: Application security APT ASP.NET Bash Big Data Burp Suite C CEH Cloud Computer Science Cryptography DDoS Exploits Forensics GIAC GPEN Incident response Java Linux Metasploit Nessus Network security Nmap Offensive security OSCP Pentesting Perl PHP PowerShell Python Red team Strategy TCP/IP UNIX Vulnerabilities Windows

Perks/benefits: Flex hours Team events

Region: Asia/Pacific
Country: India

More jobs like this

Explore more career opportunities

Find even more open roles below ordered by popularity of job title or skills/products/technologies used.