
Red Team Manager, Deloitte Global Technology
- Toronto, ON
- 85.000-156.000 $ par an
- Permanent
- Temps-plein
Work Model: Remote
Reference code: 129504
Primary Location: Toronto, ON
All Available Locations: Toronto, ON; Burlington, ON; Calgary, AB; Edmonton, AB; Fredericton, NB; Halifax, NS; Kitchener, ON; Moncton, NB; Ottawa, ON; Regina, SK; Saint John, NB; Saskatoon, SK; St. John's, NL; Vancouver, BC; Victoria, BC; Winnipeg, MBOur PurposeAt Deloitte, our Purpose is to make an impact that matters. We exist to inspire and help our people, organizations, communities, and countries to thrive by building a better future. Our work underpins a prosperous society where people can find meaning and opportunity. It builds consumer and business confidence, empowers organizations to find imaginative ways of deploying capital, enables fair, trusted, and functioning social and economic institutions, and allows our friends, families, and communities to enjoy the quality of life that comes with a sustainable future. And as the largest 100% Canadian-owned and operated professional services firm in our country, we are proud to work alongside our clients to make a positive impact for all Canadians.By living our Purpose, we will make an impact that matters.
- Have many careers in one Firm.
- Enjoy flexible, proactive, and practical benefits that foster a culture of well-being and connectedness.
- Learn from deep subject matter experts through mentoring and on the job coaching
- Oversee the Red Team lifecycle including designing, planning, executing, and reporting on adversary simulation efforts across the global organization
- Lead a fully international, remote, team of talented Red Team Operators in the execution of Red Team Operations across the global enterprise
- Work closely with the Red Team service owner in the management and communication with a global team of stakeholders and information security leaders around the world
- Present complex Red Team engagement findings to large non-technical audiences with the purpose of communicating business impact of discovered risks, the recommend risk treatment, and deliver high-impact Red Team insights to all levels of information security leaders around the globe
- Work hand-in-hand with the Global Risk Remediation Team to help communicate and properly address risks discovered throughout the execution of Red Team engagements
- Work closely with the Global Breach and Attack Simulation program to help design, plan, and execute security controls testing, purple team engagements, and automated adversary simulation exercises
- Ensure, at all times, that the Global Red Team is adhering to all predefined rules of engagement and legalalities before, during, and after the execution of all Red Team efforts
- Drive continuous Red Team innovation and developments, constantly seeking to improve the Red Team service offering from both a technical perspective and strategic perspective
- Develop and maintain in-depth Red Team documentation surrounding both technical and non-technical service functions and tasks
- Approximately 5 years of experience in an offensive security role, with at least 3 years focused on leading and/or managing Red Team Operations.
- A deep technical understanding of Red Team tactics, techniques, and procedures (TTPs)
- A proven background of hands-on experience with industry leading Red Team tool offerings (Cobalt Strike, Nighthawk, OST, etc…)
- Knowledge of a wide array of technologies, including network security, endpoint protection, cloud security, and SIEM systems
- Strong English communication skills to document findings and collaborate across teams
- Ability to autonomously prioritize and successfully deliver across a portfolio of projects with little to no supervision
- Three or more years of Internal Red Team leadership experience
- Experience working with breach and attack simulation (BAS) solutions are a bonus
- Proficiency in scripting or programming languages (e.g., Python, PowerShell, or C) for automation, custom simulations, and reporting
- Relevant security certifications are a bonus (CISSP, CISM, OSCP, OSCE, OSEE, etc...)