Chicago, Illinois
9 days ago
Red Team Operator

Job Description:

At Bank of America, we are guided by a common purpose to help make financial lives better through the power of every connection. We do this by driving Responsible Growth and delivering for our clients, teammates, communities and shareholders every day.

Being a Great Place to Work is core to how we drive Responsible Growth. This includes our commitment to being an inclusive workplace, attracting and developing exceptional talent, supporting our teammates’ physical, emotional, and financial wellness, recognizing and rewarding performance, and how we make an impact in the communities we serve.

Bank of America is committed to an in-office culture with specific requirements for office-based attendance and which allows for an appropriate level of flexibility for our teammates and businesses based on role-specific considerations.

At Bank of America, you can build a successful career with opportunities to learn, grow, and make an impact. Join us!
 

Job Description:
 

Our Emerging Threat Defense team works to continuously strengthen the bank’s cyber security posture through research, threat simulations, threat hunting, and offensive security engagements. This team works with partners throughout the bank to both discover and develop mitigations from threats to help secure a critical infrastructure around the world that interacts with millions of customers.

Role Responsibilities:

The Adaptive Threat Simulation (ATS) - Red Team Operator position is responsible for performing global threat simulations for Bank of America. This role will require thorough analysis and development of threat actor’s capabilities, motives, and other related offensive security research. Through conducting these threat simulations, security controls will be evaluated and improved to proactively prevent real threat actors from leveraging researched TTPs. A Red Team Operator will also be tasked with collaborating with key stakeholders, cyber threat intelligence teams, and other cyber defense control teams to identify opportunities to mature controls against emerging threats. 

Required Qualifications

At least 2 years of Red Team Operator experience in a large enterprise environmentMust have knowledge of the common tools associated with red teaming (Cobalt Strike, Empire, Mythic, Sliver, etc.).Must demonstrate knowledge of tactics, techniques, and procedures associated with malicious insider activity, organized crime/fraud groups and both state and non-state sponsored threat actors.Must be willing to learn how examine an organization and system through the perspective of a threat actor and articulate risk in clear, precise terms.Must have general understanding of networks, major operating systems, active directory, and their associated peripherals, along with MITRE ATT&CK TTPs.Must be able to both work independently as well as effectively work in teams with individuals with a variety of skills and backgrounds.Must be a team-oriented individual with excellent communication skills at explaining the so what? of a vulnerability issue to a non-technical audience.Ability to work with scripting language (Python, PowerShell, etc.). 

Desired Qualifications

Red team or Malware oriented certifications.Previous experience working in the financial industry a plus.

Skills:

AdvisoryInnovative ThinkingTechnical DocumentationTechnology System AssessmentThreat Analysis

This job will be open and accepting applications for a minimum of seven days from the date it was posted.

Shift:

1st shift (United States of America)

Hours Per Week: 

40

Confirmar seu email: Enviar Email