Security Operations Specialist

Posted Yesterday
Be an Early Applicant
2 Locations
In-Office or Remote
Expert/Leader
Software
The Role
Lead offensive security activities including vulnerability management, deep-dive penetration testing (infrastructure, web, mobile), red teaming/assume-breach simulations, telecom-targeted attacks, APT simulation using MITRE ATT&CK, attack surface and dark-web monitoring, and producing PoCs and remediation roadmaps while mentoring Blue Team members.
Summary Generated by Built In

As a Security Operations Specialist, you will monitor and maintain security operations, ensuring alignment with regulatory requirements and business policies. You will actively contribute to improving the organizational security posture and support continuous compliance efforts. This role involves implementing robust security controls to safeguard systems and data. Furthermore, you will be responsible for responding effectively to security incidents within established frameworks.

Responsibilities
  • Vulnerability Management: Conduct continuous asset discovery, automated vulnerability scanning, false positive analysis, and manage the closure and re-testing of identified vulnerabilities.
  • Penetration Testing: Perform deep-dive infrastructure, web, mobile application (DAST/manual, OWASP Top 10, OMTG), and segmentation penetration testing.
  • Red Teaming & Adversary Simulation: Lead "Assume Breach" simulations, execute complex attack chains (lateral movement, privilege escalation), and develop evasion techniques against security controls.
  • Telecom Core Targeting: Conduct specialized attacks against critical telecom systems (OSS/BSS, HLR, VLR, MSC) to identify risks to subscriber data and call routing.
  • APT Simulation: Replicate real-world adversary Tactics, Techniques, and Procedures (TTPs) using the MITRE ATT&CK framework.
  • Attack Surface Management (ASM): Monitor for "Shadow IT" and exposed digital assets through automated black-box reconnaissance and risk prioritization.
  • Dark Web Monitoring: Proactively monitor dark web forums, paste-sites, and messaging channels for leaked telecom-specific data and credentials.
  • Reporting & Mentorship: Evaluate Blue Team performance during exercises, and produce high-quality Proof-of-Concepts (PoCs) and remediation roadmaps for technical and executive stakeholders.
Qualifications

Must-Have:

  • A minimum of 9+ years in Offensive Security/Red Teaming, specifically within a Telecommunications or ISP environment.
  • This is explicitly stated as a minimum required certification is OSCP Certification.
  • Expert MITRE ATT&CK Framework understanding and applying adversary tactics, techniques, and procedures.
  • Advanced Exploitation Techniques proficiency in methods such as Kerberoasting, Pass-the-Hash, Golden Ticket, PowerShell/Bash scripting, and EDR bypass.
  • Foundational Telecom Protocol understanding of SS7, GTP, and Diameter, which is critical for the specified environment.

Nice-To-Have:

  • Advanced Certifications (OSEP, OSWE, or CRTP): While OSCP is a minimum, possessing one of these advanced certifications demonstrates a higher level of specialized expertise.
  • NIST Security Standards Knowledge: Beyond the expert knowledge of MITRE ATT&CK, familiarity with NIST security standards would be a valuable complementary skill.
  • Deep Understanding of NOC/SOC Workflows: While a deep understanding of Network Segmentation and Active Directory is listed, specific insight into NOC/SOC workflows would be beneficial for red teamers to understand blue team operations and evasion techniques.
About Us
Advancing connectivity to secure a brighter world.

Nokia is a global leader in connectivity for the AI era. With expertise across fixed, mobile and transport networks, powered by the innovation of Nokia Bell Labs, we’re advancing connectivity to secure a brighter world. 

Learn more about life at Nokia.


Our recruitment process

We act inclusively and respect the uniqueness of people. Our employment decisions are made regardless of race, color, national or ethnic origin, religion, gender, sexual orientation, gender identity or expression, age, marital status, disability, protected veteran status or other characteristics protected by law. We are committed to a culture of inclusion built upon our core value of respect.

If you’re interested in this role but don’t meet every listed requirement, we still encourage you to apply. Unique backgrounds, perspectives, and experiences enrich our teams, and you may be just the right candidate for this or another opportunity.

The length of the recruitment process may vary depending on the specific role's requirements. We strive to ensure a smooth and inclusive experience for all candidates. Discover more about the recruitment process at Nokia. 

About the Team
Some of our benefits:
  • Flexible and hybrid working schemes
  • A minimum of 90 days of Maternity and Paternity Leave, with the option to return to work within a year following the birth or adoption of a child (based on eligibility)
  • Life insurance to all employees to provide peace of mind and financial security
  • Well-being programs to support your mental and physical health
  • Opportunities to join and receive support from Nokia Employee Resource Groups (NERGs)
  • Employee Growth Solutions to support your personalized career & skills development
  • Diverse pool of Coaches & Mentors to whom you have easy access
  • A learning environment which promotes personal growth and professional development - for your role and beyond

Learn about additional benefits in specific countries.

Skills Required

  • 9+ years in Offensive Security/Red Teaming within a Telecommunications or ISP environment
  • OSCP certification (minimum required)
  • Expert understanding and application of the MITRE ATT&CK framework
  • Proficiency with advanced exploitation techniques (Kerberoasting, Pass-the-Hash, Golden Ticket) and EDR bypass
  • PowerShell and Bash scripting skills
  • Foundational telecom protocol knowledge (SS7, GTP, Diameter)
  • Penetration testing experience across infrastructure, web, and mobile (DAST/manual, OWASP Top 10, OMTG)
  • Experience with Attack Surface Management and Dark Web monitoring for exposed assets and leaked credentials
  • Advanced certifications (OSEP, OSWE, or CRTP)
  • Familiarity with NIST security standards
  • Understanding of NOC/SOC workflows and network segmentation/Active Directory for red team operations

Nokia Compensation & Benefits Highlights

The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about Nokia and has not been reviewed or approved by Nokia.

  • Equity Value & Accessibility Equity programs include a global employee share purchase plan with company matching and multi‑year share awards. These mechanisms broaden participation and tie rewards to long‑term outcomes.
  • Healthcare Strength Health coverage includes major medical plans with supplementary options such as vision, legal services, and care navigation. The range of offerings indicates comprehensive support for medical needs.
  • Parental & Family Support A global policy grants paid leave for new parents regardless of gender and provides structured return‑to‑work support. Company‑paid life insurance further strengthens family protection across regions.

Nokia Insights

Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Espoo
132,624 Employees

What We Do

At Nokia, we create technology that helps the world act together. As a trusted partner for critical networks, we are committed to innovation and technology leadership across mobile, fixed and cloud networks. We create value with intellectual property and long-term research, led by the award-winning Nokia Bell Labs. Adhering to the highest standards of integrity and security, we help build the capabilities needed for a more productive, sustainable and inclusive world.

Similar Jobs

Binance Logo Binance

Operations Specialist

Blockchain • Fintech • Software • Cryptocurrency • Metaverse
In-Office or Remote
19 Locations
7696 Employees
In-Office or Remote
2 Locations
132624 Employees

LogicMonitor Logo LogicMonitor

Senior Sales Engineer

Artificial Intelligence • Cloud • Information Technology • Machine Learning • Software
Easy Apply
Remote or Hybrid
India
1100 Employees

Deepgram Logo Deepgram

Solutions Engineer

Artificial Intelligence • Machine Learning • Natural Language Processing • Software • Conversational AI
Remote
India
150 Employees

Similar Companies Hiring

Hanover Park Thumbnail
Artificial Intelligence • Fintech • Software • Financial Services
New York, New York
42 Employees
Kepler  Thumbnail
Fintech • Software
New York, New York
6 Employees
Onshore Thumbnail
Artificial Intelligence • Fintech • Software • Financial Services
New York, New York
60 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account