Senior Red Team Engineer

Box · Remote

Company

Box

Location

Remote

Type

Full Time

Job Description

WHAT IS BOX? 
 
Box is the market leader for Cloud Content Management. Our mission is to power how the world works together. Box is partnering with enterprise organizations to accelerate their digital transformation by creating a single platform for secure content management, collaboration and workflow. We have an amazing opportunity to further establish ourselves as leaders in the space, and we need strong advocates to help us achieve that goal. 
By joining Box, you will have the unique opportunity to help capture a majority of this developing market and define what content management looks like for the digital enterprise. Today, Box powers over 97,000 businesses, including 70% of the Fortune 500 who trust Box to manage their content in the cloud. 
WHY BOX NEEDS YOU 

The Red Team Engineer will provide adversarial services to include engaging in various operations of different complexity and length to test security architecture, security tools, configurations and SIRT response to incidents. The Red Team Engineer will also partners with Blue Team members to Purple Team test security tools and detections. This role will have the opportunity to collaborate across Box as a whole, providing expertise and real world adversarial group experience to product, architecture and operational teams at Box.

WHAT YOU'LL DO 

Responsibilities: 

  • Consult on, design, and execute adversary emulation operations

  • Conduct research into real-world threat actor tactics, techniques, and procedures to develop proof-of-concept tools and playbooks

  • Partner with the SIRT and other stakeholders in the organization to identify security posture improvement opportunities

  • Collaborate with the Threat Operations Team (Threat Intelligence, Detection, and Threat Hunting) on threat analysis and research

  • Present findings and operational work to groups in a clear and professional manner

  • Study the techniques of Threat Actors, and apply that lens to operational work

WHO YOU ARE 

Experience: 

  • Minimum five (5) years of experience of operating in a technical red team or pen tester capacity

  • Bachelor's degree in Information Technology, related discipline or relevant work experience 

  • Relevant Technical Security Certifications (GIAC, EC-Council, Offensive Security, etc) 

  • Familiarity with MITRE ATT&CK and how it’s applied by both Red and Blue Teams

  • Project management, cross-team coordination and driving organizational change

  • 3+ years experience in the following areas:

    • Network penetration testing and manipulation of network infrastructure

    • Mobile and/or web application assessments

    • Email, phone, or physical social-engineering assessments

    • Shell scripting or automation of simple tasks using Perl, Python, or Ruby

    • Developing, extending, or modifying exploits, shellcode or exploit tools

    • Source code review for control flow and security flaws

    • Bypassing preventative and detective security controls to accomplish operational goals

  • Strong knowledge of tools used for wireless, web application, and network security testing


Skills:

  • Nominal understanding of regular expression and proficient in programming (.NET, C/C++) and scripting languages (e.g. Perl, Java, or Python) 

  • Familiarity with common C2 frameworks such as Cobalt Strike, Mythic, and Metasploit

  • High level of proficiency of Linux/Mac/Windows operating systems, including bash and Powershell

  • Detailed understanding of the TCP/IP networking stack, network technologies and covert channels

  • Strong knowledge of full packet capture PCAP analysis and accompanying tools (Wireshark, etc.) 

  • Strong collaborative skills and proven ability to work in a diverse global team of security professionals 

  • Strong organizational skills and mentoring 

  • Comfortable with presenting to technical and executive level audiences

  • Strong verbal and written skills 

  • Excellent interpersonal skills 

BENEFITS
  • Visit this webpage to check out all of our exciting healthcare benefits: https://join.collectivehealth.com/box
  • For all other benefits, please check out: Box Benefits + Perks 
EQUAL OPPORTUNITY
We are an equal opportunity employer and value diversity at our company. We do not discriminate on the basis of race, religion, color, national origin, gender, sexual orientation, age, marital status, veteran status, disability, and any other protected ground of discrimination under applicable human rights legislation. Box strives to respect the dignity and ‎‎independence of people with disabilities and is committed to giving them the same ‎‎opportunity to succeed as all other employees. Accommodations are available ‎throughout ‎the application process and an employee’s employment at Box.
HEALTH AND SAFETY
To promote the health and safety of all Boxers and our communities, in order to "Go to Work" at Box in the U.S., you must be Fully Vaccinated or have an approved accommodation. "Go(ing) to Work" at Box is defined as visiting a Box office, facility, or co-working site, visiting or meeting in person with fellow Boxers, Box clients and/or customers, vendors, or partners, engaging in business travel, and or participating in any Box-sponsored and/or related activity where others are present.  If you are fully remote and do not "Go to Work,” the vaccination requirement is not applicable.  "Fully Vaccinated" means that an individual is at least two weeks past their final dose of an authorized COVID-19 vaccine regimen.  If you are unable to get a vaccine due to a medical condition, a sincerely-held religious belief or another legally recognized reason, Box will consider requests for an accommodation.
  
For details on how we protect your information when you apply, please see our Personnel Privacy Notice.
 
#LI-Remote #LI-MG2
Apply Now

Date Posted

09/20/2022

Views

6

Back to Job Listings Add To Job List Company Profile View Company Reviews
Positive
Subjectivity Score: 0.8

Similar Jobs

Senior Design Manager (Infrastructure) - Canonical

Views in the last 30 days - 0

Canonical a leading opensource provider seeks a Senior Design Manager to drive innovation in cloud and AI technologies The role offers remote work glo...

View Details

Senior Product Designer - Org & Security - Typeform

Views in the last 30 days - 0

This job description outlines a role in developing an intelligent contact management system with AI capabilities The position involves designing user ...

View Details

Senior Business Analyst - Xpansiv

Views in the last 30 days - 0

Xpansiv promotes its role as an energy market innovator with a global platform for environmental commodities The job posting seeks a Business Analyst ...

View Details

Senior Specialist Senior Accountant Shared Financial Services - Make-A-Wish America

Views in the last 30 days - 0

The text describes Make a Wish Foundations mission to grant childrens wishes and their community efforts It outlines job positions with remotehybrid o...

View Details

Software Engineer Networking Software and Services - xAI

Views in the last 30 days - 0

The text describes xAIs mission to develop AI systems for understanding the universe and advancing human knowledge It outlines a role involving networ...

View Details

Associate Technical Support Engineer - Recharge

Views in the last 30 days - 0

Recharge is a subscription platform for innovative brands offering customer retention solutions They seek Technical Support roles with 247 coverage em...

View Details