Sr. Red Team Operator
Location: Maryland, US
Requisition Number: 78240
Position Title:
External Description:
Role Summary
As a member of our Red Team, you will be tasked with challenging assumptions and uncovering unknown vulnerabilities. Working closely with our Incident Response and Cyber Threat Intelligence teams, you will employ adversarial techniques to evaluate the resilience of our people, processes, and technologies against cyber threats. When gaps are identified, you'll collaborate with peers and leadership to communicate findings and guide effective remediation strategies. Your responsibilities will include conducting penetration tests, designing and participating in Red Team/Purple Team exercises, and strengthening our detection and response capabilities.
Responsibilities
- Conduct penetration testing across enterprise networks, systems, and technology stacks.
- Design and coordinate Red/Purple Team exercises.
- Contribute to ongoing attack simulation and validation programs.
- Identify, recommend, and implement controls and detection measures in response to emerging cyber threats, supporting Incident Response and Cyber Threat Intelligence teams.
- Drive improvements to cybersecurity best practices within your group.
- Collaborate with team members to enhance processes and standards.
- Business Knowledge
- Translate cybersecurity risks and vulnerabilities into actionable solutions for technology teams.
- Demonstrate a thorough understanding of cyber program objectives.
- Possess knowledge of prevalent threats and historical attacks targeting the Financial Services industry.
Qualifications
Required:
- Bachelor’s degree in IT, Cybersecurity, or a related technical discipline (or equivalent experience), plus 5+ years of experience supporting a 24x7 global enterprise.
- Familiarity with Windows domain concepts in hybrid cloud environments.
- Experience operating in cloud environments.
- Proven ability to identify vulnerabilities in networks, systems, and applications using established penetration testing frameworks, tools, and manual techniques.
- Strong understanding of web technologies (HTML, JavaScript, etc.) and related vulnerabilities (OWASP Top 10, XSS, SQL Injection, filter bypassing).
- Deep knowledge of Windows operating systems, with familiarity in Unix, Linux, and macOS.
- Ability to leverage the MITRE ATT&CK framework, Cyber Threat Intelligence, and Cybersecurity Awareness concepts.
- Understanding of security infrastructure such as firewalls, Intrusion Prevention Systems, Proxy Servers, Security Event Managers, and VPNs.
- Basic scripting/coding skills (Python or PowerShell preferred).
- Commitment to quality and meticulous attention to detail.
- Leadership in work reviews and constructive feedback.
- Subject matter expertise in one or more cybersecurity programs.
- Strong written and verbal communication abilities.
Preferred:
- Information security certifications such as Offensive Security (OSCP/OSCE), SANS GIAC (GPEN, GWAPT, GXPN), or similar.
- Experience with Active Directory concepts and vulnerabilities.
- Background in the Financial Services industry.
- System administration experience.
FINRA Requirements
FINRA licenses are not required and will not be supported for this role.
Work Flexibility
This role is eligible for hybrid work, with up to three days per week from home.
City:
State:
Community / Marketing Title: Sr. Red Team Operator
Company Profile:
Location_formattedLocationLong: Maryland, US
CountryEEOText_Description: Commitment to Diversity, Equity, and Inclusion: We strive for equity, equality, and opportunity for all associates. When we embrace the power of diversity and create an environment where people can bring their authentic and best selves to work, our firm is stronger, and we create greater value for our clients. Our commitment and inclusive programming aim to lift the experience for each associate and builds allies for our global associate community. We know that a sense of belonging is key not only to your success at the firm, but also to your ability to bring your best each day. Benefits: We invest in our people through a wide range of programs and benefits, including: • Competitive pay and bonuses as well as a generous retirement plan and employee stock purchase plan with matching contributions • Flexible and remote work opportunities • Health care benefits (medical, dental, vision) • Tuition assistance • Wellness programs (fitness reimbursement, Employee Assistance Program) Our policies may change as our working lives evolve. Yet, our commitment to supporting our associates’ well-being and addressing the needs of our clients, business, and communities is unwavering. T. Rowe Price is an equal opportunity employer and values diversity of thought, gender, and race. We believe our continued success depends upon the equal treatment of all associates and applicants for employment without discrimination on the basis of race, religion, creed, color, national origin, sex, gender, age, mental or physical disability, marital status, sexual orientation, gender identity or expression, citizenship status, military or veteran status, pregnancy, or any other classification protected by country, federal, state, or local law.