Associate Principal Red Team Consultant

Posted 2 Days Ago
Be an Early Applicant
Hiring Remotely in USA
Remote
165K-195K Annually
Mid level
Security • Cybersecurity
The Role
Lead and execute end-to-end red team engagements: simulate APT-style attacks across network and cloud, run social engineering campaigns, develop custom offensive tooling, produce technical and executive reports, mentor junior staff, and collaborate with blue/MDR teams for purple-team assessments.
Summary Generated by Built In
Make a difference here.

UltraViolet Cyber is a leading platform-enabled unified security operations company providing a comprehensive suite of security operations solutions. Founded and operated by security practitioners with decades of experience, the UltraViolet Cyber security-as-code platform combines technology innovation and human expertise to make advanced real-time cybersecurity accessible for all organizations by eliminating risks of separate red and blue teams.

By creating continuously optimized identification, detection, and resilience from today’s dynamic threat landscape, UltraViolet Cyber provides both managed and custom-tailored unified security operations solutions to the Fortune 500, Federal Government, and Commercial clients. UltraViolet Cyber is headquartered in McLean, Virginia, with global offices across the U.S. and in India. 

UltraViolet Cyber is seeking a mid-to-senior Red Team Associate Principal Consultant to join our offensive security practice. You will plan and execute sophisticated, scenario-based adversary simulations for enterprise clients across multiple sectors. This is a client-facing role requiring both deep technical execution capability and the ability to communicate risk clearly to technical and executive stakeholders.

What You'll Do:

    - Lead and participate in full-lifecycle red team engagements: scoping, planning, execution, and reporting
    - Simulate advanced persistent threat (APT) tactics against enterprise network and cloud environments
    - Execute multi-stage attack chains spanning network compromise, Active Directory abuse, cloud environments, and data exfiltration
    - Design and conduct social engineering campaigns including phishing, vishing, and smishing operations
    - Conduct adversary simulation against hybrid and cloud-native environments (AWS, Azure, GCP)
    - Develop custom tooling, payloads, and tradecraft to evade modern defensive controls (EDR, SIEM, CASB)
    - Produce high-quality, actionable reports tailored to both technical and executive audiences
    - Collaborate with blue team and MDR teams to deliver purple team assessments
    - Mentor junior consultants and contribute to internal capability development
    - Stay current with emerging threat actor TTPs, tooling, and industry research

What You Have:

    US Citizenship is Required

    Core Offensive Security
    - 4+ years in offensive security, penetration testing, or red team roles
    - Proven experience leading or independently executing full red team engagements (not just component pentests)
    - Strong command of red teaming methodologies and attack patterns
    - Proficiency with common red team toolkits: Cobalt Strike, Metasploit, Sliver, Havoc, or equivalent C2 frameworks
    - Ability to develop and modify offensive tooling (Python, PowerShell, C/C#, or Go)

    Network & Infrastructure
    - Deep knowledge of Active Directory attack paths: Kerberoasting, AS-REP roasting, ACL abuse, DCSync, delegation attacks
    - Experience with internal network lateral movement, credential access, and persistence mechanisms
    - Familiarity with common enterprise security controls and bypass techniques (AV/EDR evasion, AMSI bypass, LOLBins)
    - Understanding of network protocols: SMB, LDAP, Kerberos, DNS, RDP, WinRM

    Cloud Environments
    - Hands-on experience attacking cloud infrastructure in at least one major provider (AWS, Azure, or GCP)
    - Familiarity with cloud-specific attack paths
    - Experience with cloud red team tooling

    Social Engineering
    - Experience designing and executing phishing simulation campaigns (credential harvesting, malware delivery)
    - Familiarity with pretexting, vishing, and physical access scenarios
    - Understanding of awareness evasion techniques (email gateway bypass, domain aging, spoofing controls)

    Preferred Qualifications

    - Relevant certifications: OSCP, CRTO, CRTE, PNPT, CRTL, or equivalent
    - Cloud security certifications (AWS Security Specialty, AZ-900+, or similar) a plus
    - Prior consulting or professional services experience in a client-facing capacity
    - Experience with TIBER-EU, CBEST, or other regulated red team frameworks
    - Published research, CVEs, or conference presentations (DEF CON, Black Hat, etc.)
    - Familiarity with threat intelligence and threat actor emulation planning

    Soft Skills & Professional Requirements

    - Strong written and verbal communication — ability to write clear, concise, and technically accurate reports
    - Comfortable presenting findings to C-suite and board-level stakeholders
    - Self-directed; able to manage engagement workload with minimal supervision
    - Collaborative team player with a mentorship mindset
    - Ability to work within legal and ethical boundaries and maintain client confidentiality at all times
    - Willingness to travel for on-site engagements as needed (up to ~25%)

  • 401(k), including an employer match of 100% of the first 3% contributed and 50% of the next 2% contributed  
  • Medical, Dental, and Vision Insurance (available on the 1st day of the month following your first day of employment)  
  • Group Term Life, Short-Term Disability, Long-Term Disability  
  • Voluntary Life, Hospital Indemnity, Accident, and/or Critical Illness  
  • Participation in the Discretionary Time Off (DTO) Program  
  • 11 Paid Holidays Annually 

We sincerely thank all applicants in advance for submitting their interest in this position. We know your time is valuable.

UltraViolet Cyber welcomes and encourages diversity in the workplace regardless of race, gender, religion, age, sexual orientation, gender identity, disability, or veteran status. 

If you want to make an impact, UltraViolet Cyber is the place for you! 

Skills Required

  • US Citizenship is required
  • 4+ years in offensive security, penetration testing, or red team roles
  • Proven experience leading or independently executing full red team engagements
  • Strong command of red teaming methodologies and attack patterns
  • Proficiency with red team toolkits (Cobalt Strike, Metasploit, Sliver, Havoc, or equivalent C2 frameworks)
  • Ability to develop and modify offensive tooling (Python, PowerShell, C/C#, or Go)
  • Deep knowledge of Active Directory attack paths (Kerberoasting, AS-REP roasting, ACL abuse, DCSync, delegation attacks)
  • Experience with internal network lateral movement, credential access, and persistence mechanisms
  • Familiarity with enterprise security controls and bypass techniques (AV/EDR evasion, AMSI bypass, LOLBins)
  • Understanding of network protocols (SMB, LDAP, Kerberos, DNS, RDP, WinRM)
  • Hands-on experience attacking cloud infrastructure in at least one major provider (AWS, Azure, or GCP)
  • Familiarity with cloud-specific attack paths and cloud red team tooling
  • Experience designing and executing phishing simulation campaigns and social engineering (phishing, vishing, smishing)
  • Strong written and verbal communication; ability to produce clear technical and executive reports
  • Comfortable presenting findings to C-suite and board-level stakeholders
  • Willingness to travel for on-site engagements as needed (up to ~25%)
  • Relevant certifications (OSCP, CRTO, CRTE, PNPT, CRTL, or equivalent)
  • Cloud security certifications (AWS Security Specialty, AZ-900+, or similar)
  • Prior consulting or professional services experience in a client-facing capacity
  • Experience with regulated red team frameworks (TIBER-EU, CBEST)
  • Published research, CVEs, or conference presentations (DEF CON, Black Hat, etc.)
  • Familiarity with threat intelligence and threat actor emulation planning
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: McLean, Virginia
205 Employees

What We Do

Unified Security Operations, Delivered. We tear down the walls between red and blue teams & address risk exposure when it’s discovered—not weeks later. UltraViolet Cyber is a leading platform-enabled unified security operations company providing a comprehensive suite of security operations solutions. Founded and operated by security practitioners with decades of experience, the UltraViolet Cyber security-as- code platform combines technology innovation and human expertise to make advanced real time cybersecurity accessible for all organizations by eliminating risks of separate red and blue teams. By creating continuously optimized identification, detection and resilience from today’s dynamic threat landscape, UltraViolet Cyber provides both managed and custom-tailored unified security operations solutions to the Fortune 500, Federal Government, and Commercial clients. UltraViolet Cyber is headquartered in McLean, Virginia with global offices across the U.S. and in India.

Similar Jobs

IDeaS Logo IDeaS

Product Specialist

Software • Analytics • Hospitality
Remote or Hybrid
MN, USA
702 Employees

Enverus Logo Enverus

Owner Relations Agent - 26237

Big Data • Information Technology • Software • Analytics • Energy
In-Office or Remote
3 Locations
1800 Employees

MetLife Logo MetLife

Consultant

Fintech • Information Technology • Insurance • Financial Services • Big Data Analytics
Remote or Hybrid
United States
43000 Employees
90K-105K Annually

MetLife Logo MetLife

Business Analyst

Fintech • Information Technology • Insurance • Financial Services • Big Data Analytics
Remote or Hybrid
United States
43000 Employees
55K-55K Annually

Similar Companies Hiring

Oso Thumbnail
Software • Security • Infrastructure as a Service (IaaS)
New York, New York
36 Employees
Credal.ai Thumbnail
Software • Security • Productivity • Machine Learning • Artificial Intelligence
Brooklyn, NY
Milestone Systems Thumbnail
Artificial Intelligence • Security • Software • Analytics • Big Data Analytics
Lake Oswego, OR
1500 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account