Cybersecurity Engineer - Red Team Operation
Brak informacji o wynagrodzeniu
MidFull-time
#375112·Dodano wczoraj·0
Źródło: nofluffjobs.comTech Stack / Keywords
SecurityEDRCloudCommand & Control (C2)MITRE ATT&CK frameworkAI
Firma i stanowisko
Grupa Allegro Sp. z o. o. operates a large-scale, high-availability cloud and on-premises environment handling thousands of requests per minute. The team focuses on advanced security engineering, including offensive and defensive security tools, automated SAST/DAST pipelines, and pioneering security for production-used AI models. The Red Team Operations (RedSec) team specializes in realistic attack simulations and operates dedicated infrastructure aligned with the MITRE ATT&CK framework.
Wymagania
- Hands-on experience managing Red Team operational environments, including Command & Control (C2) frameworks and supporting infrastructure.
- Ability to develop custom payloads, loaders, and exploitation scripts bypassing modern EDR/XDR.
- Skilled in executing operations across the MITRE ATT&CK framework in cloud and on-premises environments.
- Deep expertise in manual network/web application exploitation and sociotechnical/phishing assessments.
- High independence and self-driven approach with full end-to-end ownership of offensive engagements.
- English language proficiency at least B2 level and Polish at C1 level.
- Openness to developing soft skills and embracing a growth mindset.
- Excitement about adopting and securing AI technologies and incorporating AI coding and security assistants.
- Ability to look for effective, business-enabling security solutions in a complex ecosystem.
- Willingness to constantly develop and update knowledge in a rapidly shifting threat landscape.
Obowiązki
- Take full ownership of offensive engagements from scoping, preparation, execution, to reporting and remediation guidance.
- Manage Red Team operational environments, including Command & Control (C2) frameworks, redirectors, and supporting infrastructure.
- Develop custom payloads, loaders, and exploitation scripts to bypass modern EDR/XDR with minimal reliance on public tools.
- Execute operations across the MITRE ATT&CK framework in cloud and on-premises environments, including lateral movement, persistence, and evasion.
- Conduct manual network and web application exploitation and perform end-to-end sociotechnical/phishing assessments.
- Incorporate AI-assisted techniques and automation to improve reconnaissance efficiency and innovate offensive tactics.
- Secure, test, and optimize high-availability, high-performance security systems handling thousands of requests per minute.
- Participate in threat modeling, attack simulation, and deployment of protective guardrails within an autonomous team.
Benefity
- Flexible working hours in a hybrid model (4 days office, 1 day remote) with start times between 7:00 a.m. and 9:00 a.m.
- 30 days of occasional remote work.
- Annual bonus based on individual performance and company results.
- Well-located offices with fully equipped kitchens, bicycle parking, terraces, ergonomic chairs, and interactive conference rooms.
- Choice of a 16" or 14" MacBook Pro or Dell with Windows and necessary accessories.
- Cafeteria plan with a wide selection of fringe benefits including medical, sports, lunch packages, insurance, and purchase vouchers.
- Employer-paid English classes related to the job.
- Training budget, inter-team tourism, hackathons, and access to an internal learning platform.
- An additional day off for volunteering.
- Social events such as Spin Kilometers, Family Day, Fat Thursday, Advent of Code, and others.
Elastyczne godziny
Karta sportowa
Opieka zdrowotna
Dofinansowanie szkoleń
Kursy językowe
Spotkania integracyjne
Parking dla rowerów
Prysznic
Napoje w biurze
Telefon
Parking dla aut
Firmowa stołówka
Darmowe przekąski
Grupa Allegro
3 aktywne oferty