Information Security Consultant

3 weeks ago


SPRINGFIELD, United States MassMutual Full time

The Opportunity
Within our Enterprise Cybersecurity organization, you will work closely with the Security Intelligence team and be responsible for leverage real world adversarial techniques to perform pen tests and simulate attacks on existing and upcoming services spanning across applications, servers, and end-user assets. 

The Team
Within the Security Operations Center, partner with Incident Response Teams for Red/Purple Team assessments and work with Security Intelligence to identify and test real world adversarial tactics, techniques, and procedures.

The Impact 

Utilize both manual and automated methods to conduct penetration tests and to determine a risk score and recommend mitigations that can be used to reduce risk to the firm.

Key Responsibilities:

  • Provide technical guidance and hands-on leadership in security operations, with a focus on threat detection, adversary simulation, and countermeasure development.
  • Lead threat research, detection, and response efforts, including the development and maintenance of advanced detection content and threat hunting missions.
  • Analyze and synthesize intelligence from various sources to identify risks and provide actionable insights.
  • Oversee and execute adversary simulation exercises (red/purple team) to evaluate and enhance security controls and incident response effectiveness.
  • Research and develop offensive security techniques, tools, and automation frameworks to improve simulation and testing capabilities.
  • Advise on threat mitigation strategies for emerging threats and vulnerabilities.
  • Lead and support incident response engagements and provide expert advisory on scoping, containment, and eradication strategies.

The Minimum Qualifications

  • Bachelors degree
  • 8+ years of experience in information security, focusing on threat detection, incident response, adversary simulation (red and purple teaming) and/or relative experience

The Ideal Qualifications:

  • Degree in Cyber Security, Computer Science, or Criminal Justice with a focus in Cyber Security
  • 10+ years of experience in information security, focusing on threat detection, incident response, and adversary simulation (red and purple teaming).
  • Proven ability to lead and develop threat hunting, detection engineering, and offensive security programs.
  • Expertise in developing advanced threat detection rules, both signature-based and behavior-based analytics.
  • Hands-on experience with offensive security tools such as CobaltStrike, Mythic, Evilginx, Outflank C2, and OST.
  • Proficient in multiple programming languages including Python, C#, C/C++ and GoLang and familiarity with Windows/MacOS internals.
  • Proficient in infrastructure automation using Terraform, Ansible, and CloudFormation.
  • Proficient with SIEM and EDR platforms, including but not limited to Splunk, SumoLogic, and CrowdStrike Falcon EDR/LogScale.
  • Strong understanding of identity management platforms like Okta, Microsoft EntraID, and Active Directory, including identity-based attacks.
  • Security automation expertise using Python scripting, Palo Alto Cortex XSOAR, and GitOps practices.

Preferred Certifications:

  • Offensive Security Certified Professional (OSCP)
  • Certified Red Team Operator (CRTO)
  • GIAC Certified Cloud Forensics Responder (GCFR)
  • GIAC Certified Forensics Analyst (GCFA)
  • Certified Red Team Leader (CRTL) 

#LI-RK1

MassMutual is an Equal Employment Opportunity employer Minority/Female/Sexual Orientation/Gender Identity/Individual with Disability/Protected Veteran. We welcome all persons to apply. Note: Veterans are welcome to apply, regardless of their discharge status.

If you need an accommodation to complete the application process, please contact us and share the specifics of the assistance you need.

  • Springfield, United States General Dynamics Information Technology Full time

    Type of Requisition:RegularClearance Level Must Currently Possess:Top Secret/SCIClearance Level Must Be Able to Obtain:Top Secret SCI + PolygraphPublic Trust/Other Required:NoneJob Family:Cyber EngineeringJob Qualifications:Skills:Cybersecurity, Information Assurance, Information SecurityCertifications:NoneExperience:8 + years of related experienceUS...


  • Springfield, United States INflow Federal Full time

    At INflow Federal, we're not just navigating the frontier of digital transformation; we're reshaping it. Our dedication to merging the prowess of humans and machines to solve complex problems has set us apart in designing and engineering solutions for the Department of Defense (DoD) networks. Here, every challenge is an opportunity to advance, and every...


  • Springfield, United States Transportation Security Administration Full time

    Summary Securing Travel, Protecting People - At the Transportation Security Administration, you will serve in a high-stakes environment to safeguard the American way of life. In cities across the country, you would secure airports, seaports, railroads, highways, and/or public transit systems, thus protecting America's transportation infrastructure and...


  • Springfield, United States MassMutual Full time

    The Opportunity Within our Enterprise Cybersecurity organization, you will work closely with the Security Intelligence team and be responsible for leverage real world adversarial techniques to perform pen tests and simulate attacks on existing and upcoming services spanning across applications, servers, and end-user assets.  The Team Within the Security...


  • Springfield, United States Strategic Alliance Consulting Inc Full time

    Strategic ACI is seeking an Information Systems Security Engineer (ISSE)who will be responsible for management of the certification and accreditation of computer networks and standalone information systems using government standards. This individual will maintain responsibility for media control, virus scanning, hardware and software control, and computer...


  • Springfield, United States Strategic Alliance Consulting Inc Full time

    Strategic ACI is seeking an Information Systems Security Engineer (ISSE)who will be responsible for management of the certification and accreditation of computer networks and standalone information systems using government standards. This individual will maintain responsibility for media control, virus scanning, hardware and software control, and computer...


  • Springfield, United States Strategic Alliance Consulting Inc Full time

    Strategic ACI is seeking an Information Systems Security Engineer (ISSE)who will be responsible for management of the certification and accreditation of computer networks and standalone information systems using government standards. This individual will maintain responsibility for media control, virus scanning, hardware and software control, and computer...


  • Springfield, Virginia, United States Top Secret Clearance Jobs Full time

    About the Job: Chief Information Security OfficerOverview: Top Secret Clearance Jobs is a premier platform dedicated to connecting top talent with exclusive security clearance opportunities. Our mission is to provide innovative solutions that enhance national security and support the growth of our clients.About the Role:The Chief Information Security Officer...


  • springfield, United States Parsons Corporation Full time

    What Required Skills You'll Bring:Active TS/SCI.Ability to obtain and maintain a CI POLY.Bachelor's degree or equivalent experience in a related field.7 - 10 years of relevant work experience.What You'll Be Doing:Prepare security documentation for seven systems to include test plan, security plans, hardware list, software list data flow diagrams, standard...


  • springfield, United States Parsons Corporation Full time

    What Required Skills You'll Bring:Active TS/SCI.Ability to obtain and maintain a CI POLY.Bachelor's degree or equivalent experience in a related field.7 - 10 years of relevant work experience.What You'll Be Doing:Prepare security documentation for seven systems to include test plan, security plans, hardware list, software list data flow diagrams, standard...


  • Springfield, United States Parsons Corporation Full time

    What Required Skills You'll Bring:Active TS/SCI.Ability to obtain and maintain a CI POLY.Bachelor's degree or equivalent experience in a related field.7 - 10 years of relevant work experience.What You'll Be Doing:Prepare security documentation for seven systems to include test plan, security plans, hardware list, software list data flow diagrams, standard...


  • Springfield, United States Transportation Security Administration Full time

    Summary Securing Travel, Protecting People - At the Transportation Security Administration, you will serve in a high-stakes environment to safeguard the American way of life. In cities across the country, you would secure airports, seaports, railroads, highways, and/or public transit systems, thus protecting America's transportation infrastructure and...


  • Springfield, United States Rividium Inc Full time

    Full-Time/Part-Time Part-Time Description RiVidium Inc, (dba TripleCyber), is seeking an individual to be responsible for the cybersecurity of a program, organization, system, or enclave. Responsibilites and abilities for this position shall include, but not limited to: Acquire and manage the necessary resources, including leadership support, financial...


  • Springfield, United States Transportation Security Administration Full time

    Summary Securing Travel, Protecting People - At the Transportation Security Administration, you will serve in a high-stakes environment to safeguard the American way of life. In cities across the country, you would secure airports, seaports, railroads, highways, and/or public transit systems, thus protecting America's transportation infrastructure and...


  • Springfield, United States General Dynamics Information Technology Full time

    Type of Requisition:RegularClearance Level Must Currently Possess:Top Secret/SCIClearance Level Must Be Able to Obtain:Top Secret SCI + PolygraphSuitability:Public Trust/Other Required:NoneJob Family:Cyber SecurityJob Qualifications:Skills:Cyber Defense, Cyber Operations, LeadershipCertifications:Experience:4 + years of related experienceUS Citizenship...


  • Springfield, United States General Dynamics Information Technology Full time

    Type of Requisition:RegularClearance Level Must Currently Possess:Top Secret/SCIClearance Level Must Be Able to Obtain:Top Secret SCI + PolygraphPublic Trust/Other Required:NoneJob Family:Cyber SecurityJob Qualifications:Skills:Cyber Defense, Cyber Operations, LeadershipCertifications:NoneExperience:4 + years of related experienceUS Citizenship...


  • Springfield, United States GuidePoint Security Full time

    GuidePoint Security provides trusted cybersecurity expertise, solutions and services that help organizations make better decisions and minimize risk. By taking a three-tiered, holistic approach for evaluating security posture and ecosystems, GuidePoint enables some of the nation's top organizations, such as Fortune 500 companies and U.S. government agencies,...


  • Springfield, United States Softek International Full time

    Softek International Inc. Softek. As a SBA Certified 8A Woman Owned Small Business (WOSB) with 36 years of expertise, we are not just a company; we are your partner in pushing the limits of what is possible. Our mission is simple yet powerful: we aim to astonish, not just satisfy. At Softek International Inc, we are dedicated to delivering solutions that...


  • springfield, United States Softek International Full time

    Softek International Inc. Softek. As a SBA Certified 8A Woman Owned Small Business (WOSB) with 36 years of expertise, we are not just a company; we are your partner in pushing the limits of what is possible. Our mission is simple yet powerful: we aim to astonish, not just satisfy. At Softek International Inc, we are dedicated to delivering solutions that...


  • springfield, United States Softek International Full time

    Softek International Inc. Softek. As a SBA Certified 8A Woman Owned Small Business (WOSB) with 36 years of expertise, we are not just a company; we are your partner in pushing the limits of what is possible. Our mission is simple yet powerful: we aim to astonish, not just satisfy. At Softek International Inc, we are dedicated to delivering solutions that...