Network Security

Posted 4 Days Ago
Be an Early Applicant
Bangalore, Bengaluru Urban, Karnataka, IND
In-Office
Expert/Leader
Edtech • Cybersecurity
The Role
Lead red team and adversary emulation engagements across networks, cloud, Active Directory, endpoints, identity, and email. Execute attack scenarios, phishing simulations, C2 operations, exploit development, privilege escalation, lateral movement, and evasion testing. Assess AWS, Azure, and GCP environments, support purple team detection validation using MITRE ATT&CK, produce technical reports, present findings, mentor junior staff, and develop red team methodologies and tooling.
Summary Generated by Built In
Experience: 7–10 years
Location: Bangalore
Employment Type: Full-time

Role Summary
We are looking for a senior offensive security professional with strong expertise in red team operations, adversary emulation, black-box network penetration testing, cloud penetration testing, phishing simulations, C2 operations, and custom exploit development.
The role requires hands-on capability to simulate real-world attacker behavior, develop attack paths, bypass security controls in authorized environments, and deliver high-quality technical findings with practical remediation guidance.

Key Responsibilities
  • Lead red team, adversary emulation, black-box network, cloud, and infrastructure penetration testing engagements.
  • Plan and execute attack scenarios covering reconnaissance, initial access, exploitation, privilege escalation, lateral movement, persistence, and objective-based actions.
  • Use adversary emulation platforms and C2 frameworks such as Cobalt Strike, Sliver, Mythic, Havoc, Metasploit, and similar tools in authorized assessments.
  • Design and execute phishing simulation campaigns, payload delivery scenarios, and initial access simulations.
  • Perform custom exploit development, exploit modification, payload customization, and proof-of-concept development for identified vulnerabilities.
  • Conduct Active Directory and hybrid identity attack simulations, including credential attacks, lateral movement, privilege escalation, and domain compromise scenarios.
  • Perform cloud penetration testing across AWS, Azure, and GCP, focusing on IAM abuse, exposed assets, storage misconfigurations, insecure networking, excessive permissions, and privilege escalation paths.
  • Assess endpoint, network, identity, cloud, and email security controls from an attacker’s perspective.
  • Support purple team and detection validation exercises by mapping techniques to MITRE ATT&CK.
  • Prepare detailed reports covering attack chains, exploited weaknesses, business impact, evidence, and remediation recommendations.
  • Present findings and attack narratives to technical teams, leadership, and client stakeholders.
  • Mentor junior team members and contribute to red team playbooks, tooling, labs, and methodologies.

Required Skills
  • Strong hands-on expertise in red teaming, adversary emulation, black-box testing, network penetration testing, and cloud pentesting.
  • Practical experience with C2 and adversary emulation platforms such as Cobalt Strike, Sliver, Mythic, Havoc, Metasploit, Covenant, or similar frameworks.
  • Experience in phishing simulations, payload delivery, social engineering assessments, and initial access simulation.
  • Ability to perform custom exploit development, exploit chaining, payload customization, and proof-of-concept creation.
  • Strong knowledge of Active Directory attack techniques, including Kerberoasting, AS-REP roasting, NTLM relay, pass-the-hash, pass-the-ticket, delegation abuse, ACL abuse, and domain escalation paths.
  • Good understanding of cloud attack techniques across AWS, Azure, and GCP, including IAM abuse, storage exposure, metadata service abuse, key leakage, role assumption, and privilege escalation.
  • Experience with tools such as BloodHound, Mimikatz, Impacket, NetExec/CrackMapExec, Responder, Evilginx, GoPhish, Nmap, Masscan, Nessus, Burp Suite, Wireshark, Hashcat, Hydra, Pacu, Prowler, ScoutSuite, AzureHound,  ROADtools etc
  • Scripting and automation skills in Python, PowerShell, Bash, Go, or C/C++.
  • Good understanding of OPSEC, payload handling, evasion concepts, attack path mapping, and detection-aware testing.
  • Strong reporting, stakeholder communication, and client-facing skills.

Good to Have
  • Experience with EDR/AV evasion testing in authorized environments.
  • Experience with malware analysis, reverse engineering, or implant customization.
  • Exposure to Kubernetes, Docker, and container security assessments.
  • Experience conducting purple team exercises and detection engineering support.
  • Certifications such as OSCP, OSEP, GPEN, GXPN, PNPT, eCPPT or CEH.

Skills Required

  • 7-10 years of experience in offensive security, red teaming, adversary emulation, penetration testing, or related work.
  • Hands-on experience with red teaming, black-box testing, network penetration testing, and cloud penetration testing.
  • Practical experience with C2 and adversary emulation frameworks such as Cobalt Strike, Sliver, Mythic, Havoc, Metasploit, or similar.
  • Experience conducting phishing simulations, payload delivery, social engineering assessments, and initial access simulations.
  • Ability to perform custom exploit development, exploit chaining, payload customization, and proof-of-concept creation.
  • Strong knowledge of Active Directory attack techniques, including Kerberoasting, AS-REP roasting, NTLM relay, pass-the-hash, pass-the-ticket, delegation abuse, ACL abuse, and domain escalation.
  • Understanding of cloud attack techniques across AWS, Azure, and GCP, including IAM abuse, storage exposure, metadata service abuse, key leakage, role assumption, and privilege escalation.
  • Experience with offensive security tools including BloodHound, Mimikatz, Impacket, NetExec, Responder, Evilginx, GoPhish, Nmap, Nessus, Burp Suite, Wireshark, Hashcat, Hydra, Pacu, Prowler, ScoutSuite, AzureHound, and ROADtools.
  • Scripting and automation skills in Python, PowerShell, Bash, Go, or C/C++.
  • Understanding of OPSEC, payload handling, evasion concepts, attack path mapping, and detection-aware testing.
  • Strong reporting, stakeholder communication, and client-facing skills.
  • Experience with EDR/AV evasion testing in authorized environments.
  • Experience with malware analysis, reverse engineering, or implant customization.
  • Exposure to Kubernetes, Docker, and container security assessments.
  • Experience conducting purple team exercises and supporting detection engineering.
  • Certifications such as OSCP, OSEP, GPEN, GXPN, PNPT, eCPPT, or CEH.
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
982 Employees
Year Founded: 2004

What We Do

Infosec is a cybersecurity education company that helps IT and security professionals advance their careers and helps employees become safer online at work and home. Its offerings include Infosec Skills, with more than 1,400 hands-on cybersecurity courses and instructor-led certification boot camps, and Infosec IQ, which provides security-awareness training. Its mission is to equip individuals and organizations to outsmart cybercrime.

Similar Jobs

Ericsson Logo Ericsson

Senior TME - Private 5G

Cloud • Information Technology • Internet of Things • Machine Learning • Software • Cybersecurity • Infrastructure as a Service (IaaS)
In-Office
Bangalore, Bengaluru Urban, Karnataka, IND
88000 Employees

Hewlett Packard Enterprise Logo Hewlett Packard Enterprise

Architect

Artificial Intelligence • Cloud • Information Technology • Consulting
Hybrid
Bengaluru, Bengaluru Urban, Karnataka, IND
85422 Employees

Hewlett Packard Enterprise Logo Hewlett Packard Enterprise

L&D Delivery Specialist

Artificial Intelligence • Cloud • Information Technology • Consulting
In-Office
Bengaluru, Bengaluru Urban, Karnataka, IND
85422 Employees

Hewlett Packard Enterprise Logo Hewlett Packard Enterprise

L&D Delivery Specialist

Artificial Intelligence • Cloud • Information Technology • Consulting
In-Office
Bengaluru, Bengaluru Urban, Karnataka, IND
85422 Employees

Similar Companies Hiring

Learneo Thumbnail
Software • Machine Learning • Edtech • Artificial Intelligence
NL
397 Employees
CodePath.org Thumbnail
Edtech • Social Impact
San Francisco, CA
55 Employees
NODA AI Thumbnail
Artificial Intelligence • Information Technology • Software • Cybersecurity
Sydney, AU
54 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account