Cyber Security Engineer

2 months ago


Philadelphia, United States LevelUP HCS Full time

The Cyber Red Team Operator will be responsible for the execution of Red Team assessments to improve the security posture of Level UP HCS. The Red Team Operator plans and executes Red/Purple Teaming events, Penetration Tests, Vulnerability Assessments, and Control Validations. This position will be required to effectively operate under Red Team procedures/controls to identify vulnerabilities across the environment.


PRINCIPAL RESPONSIBILITIES


Red Team Activities

  • Execute Red Team activities to include scope development, planning, execution, data collection, reporting, and remediation support
  • Conduct risk assessments of vulnerabilities identified and write reports to facilitate the mitigations and remediations needed to improve security posture
  • Understand and implement BBH Red Team Operating Standard and conditional Rules of Engagement in accordance with regulatory guidelines and best practices
  • Lead collaboration and brief results with security architecture, development, network, server, and web teams to mitigate or remediate security weaknesses as well as provide prevention and detection recommendations for cyber threats. Monitor the resolution of vulnerabilities with application and system owners and escalate identified security vulnerabilities when required
  • Participate in Cyber Tabletop Exercises as a subject matter expert for adversary behavior, intent, and TTPs


Technical Management

  • Maintain an understanding of adversary Tactics, Techniques, and Procedures (TTPs) and how to best emulate adversary behavior for Red Team Activities.
  • Recommend and manage configurations of Red Team tools and Attack Simulation Tools.
  • Assist with the execution of Consultant Penetration Testing of the firm’s cyber security posture.


KNOWLEDGE, SKILLS AND ABILITIES

4+ years of relevant experience in four or more of the following areas:

  • Red Team Operations and Penetration Testing
  • Network security assessments
  • Web application vulnerability identification
  • Designing and Implementing Red Team security controls
  • Offensive Security
  • Malware analysis and remediation
  • Security Incident Response


Knowledge & technical skills:

  • Expertise with security assessment methodology, vulnerability management, OWASP model, CVE ratings
  • Experience with Red Team tools and attack simulation tools
  • Ability to read web and application server logs to identify vulnerabilities
  • Scripting/coding experience to prepare attack code
  • Knowledge/ability to classify the severity of vulnerabilities
  • Experience preparing Red Team reports
  • Familiarity in cyber security forensics is a plus

Other requirements (licenses, certifications, specialized training, physical or mental abilities required)

  • Offensive Security Certified Professional (OSCP)
  • Certified Information Systems Security Professional (CISSP) a plus
  • Network+ certification a plus

After hours & Weekend work required



  • Philadelphia, United States LevelUP HCS Full time

    The Cyber Red Team Operator will be responsible for the execution of Red Team assessments to improve the security posture of Level UP HCS. The Red Team Operator plans and executes Red/Purple Teaming events, Penetration Tests, Vulnerability Assessments, and Control Validations. This position will be required to effectively operate under Red Team...


  • Philadelphia, United States Deloitte Full time

    Position Summary Are you passionate about technology and interested in joining a community of collaborative colleagues who respectfully and courageously seek to challenge the status quo? If so, read on to learn more about an exciting opportunity with Deloitte Technology US (DT - US). We are curious and life-long learners focused on technology and...

  • Security Engineer

    3 weeks ago


    Philadelphia, United States Insight Global Full time

    Insight Global Health is searching for a Cyber Security Engineer here in Philadelphia! This role is hybrid on site and candidates must be local to the Philadelphia area. Must-haves- 3+ years working as a level 2 Security Engineer - Well-rounded cybersecurity experience in any of the following areas: IR, IDS, IPS, threat hunting, vulnerability assessments,...

  • Security Engineer

    4 weeks ago


    Philadelphia, United States Apex Systems Full time

    Apex Systems has an exciting Principle Security Engineer opportunity with our client, a major Philadelphia-based academic health system! Ideal candidates will have an architect background, healthcare or government/military experience, and be CISSP or GSE certified. If you or someone you know is interested in hearing more, please send all resumes to...

  • Security Engineer

    3 weeks ago


    Philadelphia, United States Apex Systems Full time

    Apex Systems has an exciting Principle Security Engineer opportunity with our client, a major Philadelphia-based academic health system! Ideal candidates will have an architect background, healthcare or government/military experience, and be CISSP or GSE certified. If you or someone you know is interested in hearing more, please send all resumes to...


  • Philadelphia, United States Data Intelligence, LLC Full time

    Data Intelligence, LLC (DI) is searching for a full time Cyber Security Analyst III in Philadelphia, PA. This is an on-site position at NSWC Philadelphia with the potential of a remote option.Job ResponsibilitiesPerform analysis of logs and events, and of various data collection toolsAutomate processes through scripting, and assessing impacts from observed...


  • Philadelphia, United States Data Intelligence, LLC Full time

    Data Intelligence, LLC (DI) is searching for a full time Cyber Security Analyst III in Philadelphia, PA. This is an on-site position at NSWC Philadelphia with the potential of a remote option.Job ResponsibilitiesPerform analysis of logs and events, and of various data collection toolsAutomate processes through scripting, and assessing impacts from observed...


  • Philadelphia, United States Watershed Security Full time $100,000 - $119,000

    Job DescriptionJob DescriptionCOMPANY OVERVIEWWatershed Security is a Veteran Owned Small Business and a leader in providing quality Cyber Security Services to the Federal Government. Watershed is a great place to work, offering a challenging and respectful work environment. We are growing fast and strive to deliver our vision every day: “To inspire trust...


  • Philadelphia, United States Watershed Security Full time $110,000 - $124,000

    Job DescriptionJob DescriptionCOMPANY OVERVIEWWatershed Security is a Veteran Owned Small Business and a leader in providing quality Cyber Security Services to the Federal Government. Watershed is a great place to work, offering a challenging and respectful work environment. We are growing fast and strive to deliver our vision every day: “To inspire trust...


  • Philadelphia, United States Watershed Security Full time $110,000 - $124,000

    Job DescriptionJob DescriptionCOMPANY OVERVIEWWatershed Security is a Veteran Owned Small Business and a leader in providing quality Cyber Security Services to the Federal Government. Watershed is a great place to work, offering a challenging and respectful work environment. We are growing fast and strive to deliver our vision every day: “To inspire trust...


  • Philadelphia, United States Watershed Security Full time

    Job DescriptionJob DescriptionCOMPANY OVERVIEWWatershed Security is a Veteran Owned Small Business and a leader in providing quality Cyber Security Services to the Federal Government. Watershed is a great place to work, offering a challenging and respectful work environment. We are growing fast and strive to deliver our vision every day: “To inspire trust...


  • Philadelphia, United States Watershed Security Full time

    Job DescriptionJob DescriptionCOMPANY OVERVIEWWatershed Security is a Veteran Owned Small Business and a leader in providing quality Cyber Security Services to the Federal Government. Watershed is a great place to work, offering a challenging and respectful work environment. We are growing fast and strive to deliver our vision every day: “To inspire trust...


  • Philadelphia, United States EHS Technologies Full time

    EHS Technologies is a cutting-edge IT, Cyber Security and Engineering Firm dedicated to solving the Department of Defense’s most challenging problems.As a team member of EHS Technologies, you’ll have available benefits including Bonus Eligibility, No Cost Full Coverage Health Insurance, available Pet Insurance, industry high 401k matching among many...


  • Philadelphia, Pennsylvania, United States EHS Technologies Full time

    EHS Technologies is a cutting-edge IT, Cyber Security and Engineering Firm dedicated to solving the Department of Defense's most challenging problems.As a team member of EHS Technologies, you'll have available benefits including Bonus Eligibility, No Cost Full Coverage Health Insurance, available Pet Insurance, industry high 401k matching among many other...


  • Philadelphia, United States Watershed Security Full time

    COMPANY OVERVIEW Watershed Security is a Veteran Owned Small Business and a leader in providing quality Cyber Security Services to the Federal Government. Watershed is a great place to work, offering a challenging and respectful work environment. We are growing fast and strive to deliver our vision every day: “To inspire trust and respect with our...


  • Philadelphia, United States Precision Technologies Full time

    Job Title: Security EngineerLocation: Philadelphia, PAExp:9+years experience Job Description: Responsible for all aspects of software security in the RDK stack.Skill sets: Security, embedded software development, Open Source management.Requires e strong embedded Linux development skills and experience of cyber security issues. Good communication skills are...


  • Philadelphia, United States EHS TECHNOLOGIES CORPORATION Full time

    Job DescriptionJob DescriptionDescription:EXPERIENCE for Senior Security Network Engineer position:Eight (8) years’ experience in network security, demonstrating strong experience with Cisco Prime Infrastructure, understanding of IEEE 802.11 protocols, familiarity with TCP/IP (specifically Layers 3/4), and switching and routing protocols (internet...


  • Philadelphia, United States Capital One Full time

    Center 3 (19075), United States of America, McLean, VirginiaSr. Cyber Product OwnerCapital One is seeking a product owner to help deliver game-changing cybersecurity solutions based on threat, data, and design thinking. At Capital One, we believe in the values of Excellence and Doing the Right Thing. We are a technology-oriented company delivering financial...


  • Philadelphia, United States Capital One Full time

    Center 3 (19075), United States of America, McLean, VirginiaPrincipal Associate, Cyber Security Operations Center (CSOC) - (Fusion) AnalystThe Cyber Security Operation Center Fusion team synthesizes multi-source security alerting, intrusion investigations, cyber intelligence, and business information into actionable analysis. The Fusion team provides this...


  • Philadelphia, Pennsylvania, United States Chubb Full time

    About the RoleChubb is seeking a highly skilled Cyber Risk Underwriter to join our team. As a Cyber Risk Underwriter, you will be responsible for underwriting cyber new business opportunities for commercial clients with less than $100m of revenues.Key ResponsibilitiesAssess and Underwrite Cyber Submissions: Analyze applications, supporting documents, and...