חברות הייטק בישראלEYSenior Red Team & Offensive Security Consultant

Senior Red Team & Offensive Security Consultant

EY logo
EY· Professional Services
Tel Aviv, IL, 6706703פורסמה החודש

כישורים מהמשרה

Red Team & adversary emulationOffensive security and multi-stage attack chainsMITRE ATT&CK mapping (TTPs)Active Directory & identity attacksWindows authentication and credential access techniquesPrivilege escalation, lateral movement, and C2 tradecraftCovert/adversary operations and defense evasionThreat-informed purple team exercisesOffensive tooling, scripting, and payload developmentClient-facing reporting and risk-based recommendations

תיאור המשרה

Senior hands-on offensive security professional responsible for delivering complex, objective-driven Red Team and Adversary Simulation engagements for local and global clients. The role combines deep technical execution with the ability to independently take ownership of Red Team projects, including threat-informed adversary emulation, covert Red Team operations, Purple Team exercises, attack path analysis, and advanced penetration testing across enterprise, cloud, application, identity, and hybrid environments. The position requires strong offensive tradecraft, sound technical judgment, and the ability to manage assigned engagements from planning through delivery, while contributing to reusable tooling, knowledge sharing, technical quality, and client advisory. It requires the ability to translate realistic attack scenarios into clear insights that improve clients’ prevention, detection, response, and overall cyber resilience. Responsibilities: Take ownership of assigned Red Team, adversary emulation, Purple Team, and threat-led offensive security engagements, from planning and rules of engagement through execution, reporting, and client debrief. Emulate realistic threat actors and execute multi-stage attack chains, including reconnaissance, initial access, persistence, privilege escalation, credential access, lateral movement, command and control, defense evasion, and achievement of agreed business objectives. Design threat-informed scenarios and map adversary tactics, techniques, and procedures to MITRE ATT&CK and other relevant threat-led testing frameworks. Assess enterprise environments across Active Directory, Microsoft Entra ID, endpoints, networks, applications, cloud platforms, identity systems, and hybrid infrastructure, chaining weaknesses into realistic attack paths and business impact. Develop, customize, and maintain offensive tooling, scripts, payloads, command-and-control infrastructure, and operational tradecraft while applying appropriate safety and operational-security controls. Work closely with SOC, detection engineering, incident response, and security architecture teams to validate detection and response capabilities and translate observed gaps into actionable improvements. Communicate directly with clients, present technical and executive results, and provide risk-based recommendations aligned with the client’s threat landscape and business priorities. Contribute to technical quality reviews, knowledge sharing, research initiatives, reusable methodologies, and the continued development of the team’s Red Team capabilities. Requirements: 7+ years in offensive security or related technical fields, including 4+ years in Red Team, adversary simulation, or advanced infrastructure penetration testing – Must. Proven ownership of complex Red Team engagements from planning through delivery – Must. Hands-on experience executing multi-stage attack chains in complex enterprise environments – Must. Strong knowledge of Active Directory, Windows, authentication, identity attack paths, networks, endpoints, and defensive controls – Must. Hands-on experience with offensive tooling, command-and-control frameworks, scripting, and tool customization – Must. Practical understanding of adversary TTPs and MITRE ATT&CK – Must. Strong independent working, client communication, and English reporting skills – Must. Experience with cloud or hybrid environments, Purple Team exercises, detection validation, or EDR/XDR evasion – Significant Advantage. Advanced certifications, threat-led testing, security research, or custom tool development – Advantage.
EY logo

על EY

EY is building a better working world by creating new value for clients, people, society, the planet, while building trust in the capital markets. Enabled by data, AI and advanced technology, EY teams help clients shape the future with confidence and develop answers for the most pressing issues of today and tomorrow. EY teams in more than 150 countries work across a full spectrum of services in assurance, consulting, tax, strategy and transactions, strengthened by sector experience and diverse ecosystem partners. Find out more about the EY global network: http://ey.com/en_gl/legal-statement

לעמוד החברה

מה זו משרה סודית?

רוב המשרות בישראל מתפרסמות באתרי הקריירה של החברות הרבה לפני שהן מגיעות ללינקדאין — ולפעמים לא מגיעות לשם בכלל. SecretJobs סורקת מדי יום את דפי הדרושים של יותר מ-5,000 חברות הייטק בישראל ומאתרת בדיוק את המשרות האלה.

עוד משרות ב-EY