Skip to main content

This job has expired

Manager, Penetration Testing & Red Team (Remote Southeast US)

Employer
Mandiant
Location
Washington, DC
Closing date
Oct 18, 2021
Company DescriptionSince 2004, Mandiant has been a trusted partner to security-conscious organizations. Effective security is based on the right combination of expertise, intelligence, and adaptive technology, and the Mandiant Advantage SaaS platform scales decades of frontline experience and industry-leading threat intelligence to deliver a range of dynamic cyber defense solutions. Mandiant's approach helps organizations develop more effective and efficient cyber security programs and instills confidence in their readiness to defend against and respond to cyber threats.Job DescriptionA successful Mandiant Red Team manager should possess a deep understanding of both information security and computer science and have experience leading a team of highly technical red teamers. They should understand advanced Red Team concepts such as performing covert operations against complex networks while remaining entirely undetected, advanced application manipulation, and basic programming concepts. Mandiant Red Team managers are expected to be as technical as the consultants they manage and will assist on the most difficult engagements. A typical engagement could be breaking into a segmented secure zone at a Fortune 500 bank, reverse engineering an application and encryption method in order to gain access to sensitive data, all without being detected. If you can operate at scale while remaining stealthy, identify and abuse misconfigurations in network infrastructure, and manage a team of highly skilled, technical individuals, then this is the job for you.Mandiant Red Team managers are the lead project managers for all offensive engagements. This includes scoping prospective engagements, managing team metrics, establishing quarterly goals team growth, conducting performance reviews and 1:1 meetings, scheduling resources for projects, managing multiple projects from kickoff to completion, and delivering executive out-briefs. Managers are vital to the project lifecycle and must be able to deliver successful projects with little to no oversight.At Mandiant, you'll be working and managing some of the best experts in the industry and faced with complex problem-solving opportunities daily. We help our clients protect their most sensitive and valuable data through comprehensive and real-world assessments. The objective doesn't end at gaining "domain admin" or "root"; this is expected and is only a means to an objective.You are expected to quickly assimilate new information as you will face new client environments on a weekly or monthly basis. You will be expected to understand all the threat vectors to each environment and properly assess them. You will get to work with and manage some of the best red teamers in the industry, causing you to develop new skills as you progress through your career. Are you up to the challenge?Responsibilities:Manage consulting engagements, with a focus on advanced Red Team operations and penetration tests. Provide both subject matter expertise and project management experience to serve as the "point person" for engagementsAssist with scoping prospective engagements, participating in engagements from kickoff through completion, and mentoring less experienced staffIdentify, market, and develop new and pull-through business opportunitiesArticulate Mandiant's combined capabilities in marketing discussions, proposal efforts, and capability briefingsSupervise staff, provide feedback and coaching, and grow their technical and consulting skillsImprove Mandiant's business processes and red team methodologies.QualificationsMinimum five (5) years of experience leading or managing technical teams5-8 years experience in at least three (3) of the following:Network penetration testing and manipulation of network infrastructureMobile and/or web application assessmentsEmail, phone, or physical social-engineering assessmentsShell scripting or automation of simple tasks using Perl, Python, or RubyDeveloping, extending, or modifying exploits, shellcode or exploit toolsDeveloping applications in C#, ASP, .NET, ObjectiveC, Go, or Java (J2EE)Reverse engineering malware, data obfuscators, or ciphersSource code review for control flow and security flawsStrong knowledge of tools used for wireless, web application, and network security testingThorough understanding of network protocols, data on the wire, and covert channelsMastery of Unix/Linux/Mac/Windows operating systems, including bash and PowershellPolished presentation skills, to include capabilities at technical, executive, and board levelsMust be eligible to work in the US without sponsorshipAdditional Qualifications:Ability to manage multiple projects and manage tight deadlinesPrior training and public speaking engagement experienceAbility to travel up to 20%Ability to successfully interface with clients (internal and external)Ability to prepare and review customized contracts for security consulting servicesAbility to document and explain technical details in a concise, understandable mannerAbility to manage and balance own time among multiple tasks, and lead junior staff when requiredAdditional InformationAt Mandiant we are committed to our #OneTeam approach combining diversity, collaboration, and excellence. All qualified applicants will receive consideration for employment without regard to race, sex, color, religion, sexual orientation, gender identity, national origin, protected veteran status, or on the basis of disability.This is a regionally-based role that must be located in Alabama, Florida, Georgia, Maryland, North Carolina, South Carolina, Tennessee, Virginia, Washington DC, or West Virginia

Get job alerts

Create a job alert and receive personalized job recommendations straight to your inbox.

Create alert