Job Description
Job Title: Senior Engineer -Engineer
Company: Happiest Minds
Years of Experience: 3-5 years
Location: Bengaluru
Role Type: Full-Time Role
Salary: Competitive
Eligibility: Bachelor’s degree in Computer Science, Information Security, or equivalent professional experience in offensive security.
Role Overview:
We are seeking a highly skilled and experienced Senior Red Teaming/Offensive Security Consultant to plan, lead, and execute offensive security engagements. The role involves simulating real-world cyberattacks, identifying vulnerabilities, and collaborating with defensive (Blue) teams to strengthen organizational security posture across on-premise and cloud environments.
Key Responsibilities:
- Lead and execute end-to-end Red Team operations and adversary simulations.
- Conduct penetration tests across network, web, mobile, and cloud environments.
- Develop custom tools, scripts, and techniques to enhance internal testing capabilities.
- Assess and exploit vulnerabilities in corporate networks, Active Directory, and cloud infrastructures (AWS, Azure, O365).
- Collaborate with Blue Teams to improve detection, response, and overall resilience.
- Prepare detailed reports outlining findings, risks, and remediation recommendations.
- Mentor junior consultants and contribute to internal capability building.
- Research and innovate new offensive security techniques and methodologies.
Skills and Qualifications:
- 6+ years of hands-on experience in Red Teaming, penetration testing, or adversary emulation.
- Strong programming/scripting skills (Python, PowerShell, Go, or Ruby).
- In-depth understanding of Windows/Linux internals, network protocols, and cloud security.
- Proficiency with offensive tools like Cobalt Strike, Metasploit, Burp Suite, Empire, and various C2 frameworks.
- Working knowledge of security frameworks (MITRE ATT&CK, OWASP Top 10, NIST).
- Excellent communication and reporting skills for both technical and non-technical audiences.
- Preferred certifications: OSCP, CRTO, CREST, GXPN, GPEN, or equivalent cloud security certifications.