Posted almost 5 years ago
Red Team
This function carries out full-scope targeted penetration testing engagements and scenario-specific adversary simulations.
Role: Red Team Operator
Responsibilities
Perform full scope Adversarial Simulation/Red Team assessments of Salesforce and its acquisitions
Provide support in an ongoing assessment by writing tools/setting up infrastructure
Carefully document the different phases of the killchain for later root-cause analysis
Present findings to the various stakeholders (security staff, engineers, executive team)
Mentor other Offensive Security engineers on your tradecraft
Required Skills
Experience performing Red Team operations in enterprise environments
Building, deploying, and managing Red Team operational infrastructure
Knowledge of adversarial TTPs
Experience with compromise and lateral movement in Mac, Linux, and Windows environments
Open source intelligence gathering and social engineering
Web and mobile application assessments
Wireless and network assessments
Experience with custom payloads and exploit use in a production environment
Desired Skills and Credentials
CVE/Bug Bounty/Responsible disclosures
Scripting language proficiency (Perl, Python, Ruby, Bash, PowerShell)
Exploit development
Information security certifications: GPEN, OSCP, OSCE, OSWE
Ability to self-motivate when given strategic goals
*LI-Y
Posting StatementSalesforce.com and Salesforce.org are Equal Employment Opportunity and Affirmative Action Employers. Qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender perception or identity, national origin, age, marital status, protected veteran status, or disability status. Headhunters and recruitment agencies may not submit resumes/CVs through this Web site or directly to managers. Salesforce.com and Salesforce.org do not accept unsolicited headhunter and agency resumes. Salesforce.com and Salesforce.org will not pay fees to any third-party agency or company that does not have a signed agreement with Salesforce.com or Salesforce.org.