Red Team

3 days ago


Singapore Citi Full time

**The Role**:
**Responsibilities**
- Support Citi’s Red, Blue, and Purple Teams during the execution of offensive security assessment operations
- Develop and implement Red Team automation tools utilizing various programming languages
- Collect, analyze, monitor, and interpret data related to the firm’s security posture
- Assist in developing and maintaining technical documentation
- Establish meaningful partnerships with relevant stakeholders across the enterprise is a key function of this role to build and maintain a comprehensive model of applicable, feasible threats, and risks to the business
- Participate in advanced exploitation operations against a large global enterprise, including Red and Purple Team operations
- Identify opportunities to automate and standardize information security controls and for the supported groups
- Analyze source code to mitigate identified weaknesses and vulnerabilities within the system
- Review and validate automated testing results and prioritize actions that resolve issues based on overall risk
- Reduce risk by analyzing the root cause of issues, their impact, and required corrective actions
- Direct the development and delivery of secure solutions by coordinating with business and technical contacts

**Qualifications**

4+ years’ experience or equivalent knowledge and exposure are required with most of the following:

- Deep understanding of programming concepts and experience developing offensive tooling
- Strong programming background with Python
- Experience with utilizing Breach Attack Simulation tools and developing custom code to enhance tooling
- Leveraging the MITRE ATT&CK Framework
- Knowledge of tools and processes used to expose known and undocumented vulnerabilities in various different systems
- Leading or conducting Purple Team Testing
- Strong communication and interpersonal skills, including experience with technical and non-technical teams
- Excellent analytical and problem-solving skills, with the ability to analyze complex data sets, and provide recommendations for mitigating risk
- Identifying, researching, validating, and exploiting various different, known, and unknown security vulnerabilities on the server and client side
- Red Team testing tools: Cobalt Strike, Red Team Toolkit, etc.
- Vulnerability Assessment tools: Nessus, Qualys, etc.
- Exploitation frameworks: Metasploit, CANVAS, Core Impact
- Deep understanding of OSI model
- OS Security: Unix/Linux, Windows, OSX
- Understanding of common protocols: HTTP, LDAP, SMTP, DNS
- Web development and programming languages: Python, Perl, Ruby, Java,.Net
- Reporting information security vulnerabilities to the business

**Education**:

- Bachelor’s degree/University degree or equivalent experience
- Master’s degree preferred
- Industry-accredited security certifications highly preferred but not required (e.g. PNPT, OSCP, OSCE, GXPN, GPEN, GCIH, GWAPT, GCFA, or CISSP)

This job description provides a high-level review of the types of work performed. Other job-related duties may be assigned as required.
- **Job Family Group**:
Technology
- **Job Family**:
Information Security
- **Time Type**:
Full time
- Citi is an equal opportunity and affirmative action employer.

Qualified applicants will receive consideration without regard to their race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran.

View the "**EEO is the Law**" poster. View the **EEO is the Law Supplement**.

View the **EEO Policy Statement**.

View the **Pay Transparency Posting


  • Red Team Analyst

    4 weeks ago


    Singapore Citigroup Inc. Full time

    Vulnerability Assessments Analyst - Red Team, AVP (C12) The Role: The Vulnerability Assessments Analyst - Red Team, AVP will participate in the Adversary Emulation program by emulating cyber and criminal threat actors targeting Citi. The candidate will conduct Intelligence-led Red Team Testing and Penetration Testing targeting people, process, and...

  • Red Team Engineer

    2 weeks ago


    Singapore Tech Rise People Full time

    Our client is a cyber security startup based in Singapore, experienced in simulating cyber attacks against huge global organisations. Their mission is to help these organisations with cutting-edge technology to understand, assess, and assure their cyber attack surface. The team consists of young, high-energy and high-performing members, who are devoted to...

  • Red Team Specialist

    1 week ago


    Singapore Datasearch Consulting Full time

    **Red Team Specialist** **Singapore** **Competitive Salary + Bonus** **Responsibilities**: - Engage in hacking activities to discover innovative, high-impact vulnerabilities across diverse organisations without any limitations. - Prioritise the identification of vulnerabilities that significantly affect our clients, giving preference to Remote Code...


  • Singapore ByteDance Full time

    About ByteDance Founded in 2012, ByteDance's mission is to inspire creativity and enrich life. With a suite of more than a dozen products, including TikTok, Helo, and Resso, as well as platforms specific to the China market, including Toutiao, Douyin, and Xigua, ByteDance has made it easier and more fun for people to connect with, consume, and create...

  • AI Red Teaming

    2 weeks ago


    Singapore Innodata Inc. Full time

    Overview Innodata Inc. : AI Red Teaming & LLM Quality Assurance Specialist Language Requirement: Chinese speakers only Type: Freelance | Remote About the role: We are seeking highly skilled and culturally aware Red Teaming / Prompt Writers to join our AI Safety and Evaluation program. In this role, you will design, test, and refine prompts that challenge AI...


  • Singapore MUFG Full time

    As a Global Red Team Operator at the AVP level, you will play a key role in executing advanced adversary simulation exercises that test and improve MUFG's global security posture. This role is ideal for professionals with a strong foundation in offensive security and a demonstrated ability to plan and execute Red Team operations. You will collaborate with...


  • Singapore MUFG Full time

    As a Global Red Team Operator at the AVP level, you will play a key role in executing advanced adversary simulation exercises that test and improve MUFG’s global security posture. This role is ideal for professionals with a strong foundation in offensive security and a demonstrated ability to plan and execute Red Team operations. You will collaborate with...


  • Singapore ARYAN SOLUTIONS PTE. LTD. Singapore Full time

    **Director Red Teaming Consulting / Pen Testing**: **Location: Singapore** **Certification: OSCP or OSWE or Crest Certifications **with **Red Teaming** and **Consulting**. - Provide leadership and guidance to a globally diverse team of Red Team Analysts - Flexible and available approach to meet the needs of team and peers across time zones - Collaborate...


  • Singapore ByteDance Full time

    About ByteDance Founded in 2012, ByteDance's mission is to inspire creativity and enrich life. With a suite of more than a dozen products, including TikTok, Helo, and Resso, as well as platforms specific to the China market, including Toutiao, Douyin, and Xigua, ByteDance has made it easier and more fun for people to connect with, consume, and create...

  • Red Team Analyst

    2 weeks ago


    Singapore Citi Full time

    **Vulnerability Assessments Analyst - Red Team,**A**VP (C1**2**)** **The Role**: **Responsibilities** - Support Citi’s Red, Blue, and Purple Teams during the execution of offensive security assessment operations - Participate in advanced exploitation operations against a large global enterprise, including Red and Purple Team operations - Identify...