Red Team Operator/Consultant

Remote • Posted 3 days ago • Updated 2 days ago
Contract Independent
3 Weeks
No Travel Required
Remote
Depends on Experience
Company Branding Image
Fitment

Dice Job Match Score™

🔢 Crunching numbers...

Job Details

Skills

  • Red Teaming
  • OSINT
  • MITRE ATT&CK
  • OSCP
  • GPEN
  • CRTO
  • PNPT

Summary

Red Team / Social Engineering Operator (Freelance, Remote)

Client: InterSec, Inc., subcontract support for a government cybersecurity assessment program

Engagement type: Project based freelance, 1099 or corp to corp

Location: Fully remote, U.S. based required

Assignments: Two Atlanta jurisdiction engagements (Jurisdiction A and Jurisdiction B), additional assignments possible

 

The Work

InterSec holds a multi jurisdictional penetration testing contract with a regional government authority in the Atlanta, Georgia area. We need an experienced social engineering operator to execute authorized Red Team engagements against two jurisdictions under signed Rules of Engagement.

This is adversarial emulation of real attacker tradecraft, specifically the help desk account takeover pattern used by threat actors like Scattered Spider, the group behind the MGM Resorts and Caesars Entertainment intrusions. It targets a government workforce's identity verification and account recovery controls. All work stops at proof of compromise. No credential obtained is ever used, and no account or system is accessed once control is demonstrated.

 

Scope of Work

•   OSINT reconnaissance. Build target profiles for named employees and departments from public sources, without privileged access.

•   Phishing and spear phishing (email). Credential harvesting campaigns against named roles, using benign landing pages that log outcomes only. No live malware.

•   Vishing (voice). Pretext calls against IT help desk functions to test password reset, MFA enrollment, and account recovery verification. Primary technique across both assignments.

•   Whaling and spear phishing against executive leadership, tuned from OSINT, where authorized.

•   Smishing (SMS), where authorized, to test MFA fatigue and reset flow susceptibility.

•   Map every technique to its MITRE ATT&CK identifier (for example T1566, T1598, T1621, T1556, T1078) for the final report.

•   Operate under a named client control group for continuous deconfliction. Pause immediately on request.

•   Document findings with severity, evidence, and remediation guidance in a report for technical and executive audiences.

Note: the two assignments differ. Jurisdiction A is vishing only. Jurisdiction B covers phishing and vishing, with spear phishing, whaling, and smishing authorized under contract but not currently active. Comfort working within a tightly bounded, written scope is essential.

 

Required Qualifications

•   5+ years of hands on red team, social engineering, or offensive security experience. A strong documented portfolio, CTF results, published case studies, lab work, will be considered in place of formal years.

•   Demonstrated experience planning and executing vishing campaigns against a corporate or institutional target, specifically help desk pretexting.

•   Working knowledge of MITRE ATT&CK and the ability to map executed techniques accurately.

•   Strong written English. Deliverables are formal reports read by government client leadership.

•   Comfortable working to a signed, bounded Rules of Engagement with hard constraints (approved hours, prohibited pretexts, named exclusions) and immediate stand down authority.

•   Legally authorized to work in the U.S. and able to pass a basic background check.

 

Certifications

Minimum one required, or clearly equivalent demonstrated skill:

•   OSCP (Offensive Security Certified Professional)

•   GPEN (GIAC Penetration Tester)

•   CRTO (Certified Red Team Operator, Zero Point Security)

•   PNPT (Practical Network Penetration Tester, TCM Security)

A named certification matters less than a track record of real vishing and pretexting work.

 

Logistics

•   Remote, U.S. hours, Eastern Time preferred. Engagement dates set per assignment; Jurisdiction A runs weekdays, business hours only.

•   Paid per engagement, rate discussed based on scope and experience. All work performed under InterSec's signed Rules of Engagement, no activity outside the authorized scope, target list, or window, under any circumstance.

Employers have access to artificial intelligence language tools (“AI”) that help generate and enhance job descriptions and AI may have been used to create this description. The position description has been reviewed for accuracy and Dice believes it to correctly reflect the job opportunity.
  • Dice Id: 91120868
  • Position Id: 9092492
  • Posted 3 days ago

Company Info

About InterSec Inc.

Founded in 2013, as one of the boutique cybersecurity providers, InterSec, Inc. employs continuous cyber innovation, sophisticated tradecraft, and top talent to deliver results. Our diverse clients span Commercial, State, and Federal agencies. Our deep cyber and industry expertise is earned through hands-on experience, from Cybersecurity Program setup to Operational Security. In a time where the profound impact of information technology is almost impossible to comprehend, we are cognizant of ever-increasing cybersecurity risks of the connected world and is equipped with the required expertise to provide a full range of cybersecurity services including program management, governance, cybersecurity, and risk management to its Federal, State, and Commercial customers. Our cyber security services meet mission critical objectives in a secure and compliant manner.

About_Company_One
Contact the job poster
NJ

Nicayla Javer

Recruiter @ InterSec Inc.
Create job alert
Set job alertNever miss an opportunity! Create an alert based on the job you applied for.

Similar Jobs

It looks like there aren't any Similar Jobs for this job yet.

Search all similar jobs