UltraViolet Cyber

UltraViolet Cyber is a cybersecurity company focused on unified offensive and defensive security operations. It describes itself as a practitioner-led MSSP delivering managed detection and response, SOC-as-a-Service, red teaming, penetration testing, application security testing, continuous threat exposure management, and dedicated defense, with its UV Lens Security-as-Code platform at the core of its integrated security operations approach.

Computer and Network Security
501-1000

Description

  • Lead full-lifecycle red team engagements, including scoping, planning, execution, and reporting.
  • Simulate advanced persistent threat (APT) tactics against enterprise network and cloud environments.
  • Execute multi-stage attack chains involving network compromise, Active Directory abuse, cloud access, and data exfiltration.
  • Design and run social engineering campaigns such as phishing, vishing, and smishing.
  • Conduct adversary simulation across hybrid and cloud-native environments, including AWS, Azure, and GCP.
  • Develop custom tooling, payloads, and tradecraft to evade defensive controls such as EDR, SIEM, and CASB.
  • Produce clear, actionable reports for both technical and executive stakeholders.
  • Collaborate with blue team and MDR teams to deliver purple team assessments.
  • Mentor junior consultants and help build internal offensive security capabilities.
  • Stay current on emerging threat actor tactics, techniques, procedures, tooling, and research.

Requirements

  • US citizenship is required.
  • 4+ years of experience in offensive security, penetration testing, or red team roles.
  • Proven experience leading or independently executing full red team engagements, not just component pentests.
  • Strong command of red teaming methodologies and attack patterns.
  • Proficiency with Cobalt Strike, Metasploit, Sliver, Havoc, or equivalent C2 frameworks.
  • Ability to develop and modify offensive tooling in Python, PowerShell, C/C#, or Go.
  • Deep knowledge of Active Directory attack paths, including Kerberoasting, AS-REP roasting, ACL abuse, DCSync, and delegation attacks.
  • Hands-on experience attacking cloud infrastructure in at least one major provider such as AWS, Azure, or GCP.
  • Experience designing and executing phishing simulation campaigns, including credential harvesting and malware delivery.
  • Ability to present findings clearly to C-suite and board-level stakeholders.
  • Willingness to travel for on-site engagements as needed, up to approximately 25%.
  • Preferred certifications include OSCP, CRTO, CRTE, PNPT, CRTL, or equivalent.
  • Cloud security certifications such as AWS Security Specialty or AZ-900+ are a plus.
  • Prior consulting or professional services experience in a client-facing capacity is preferred.
  • Experience with TIBER-EU, CBEST, or other regulated red team frameworks is preferred.
  • Published research, CVEs, or conference presentations such as DEF CON or Black Hat are preferred.
  • Familiarity with threat intelligence and threat actor emulation planning is preferred.

Benefits

  • $165,000 to $195,000 annual salary.
  • 401(k) with employer match of 100% of the first 3% contributed and 50% of the next 2% contributed.
  • Medical, dental, and vision insurance available on the first day of the month following your start date.
  • Group term life, short-term disability, and long-term disability coverage.
  • Voluntary life, hospital indemnity, accident, and critical illness insurance options.
  • Participation in the Discretionary Time Off (DTO) program.
  • 11 paid holidays annually.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

Cybersecurity Executive

PartnerOne 51-250 Media

Partner One is seeking a cybersecurity executive to lead a global business serving enterprise, government, defense, and critical infrastructure customers, with responsibility for growth, operational performance, product direction, and long-term value creation.

Cybersecurity
1 day, 11 hours ago

Cybersecurity Director

Business Wire 251-1K Media

Business Wire is seeking a Cybersecurity Director to lead its information security, governance, risk, and compliance efforts across existing and new client solutions in data center and cloud environments.

AWS Azure Cybersecurity Penetration Testing
2 days, 11 hours ago

IAM/IGA Consultant, Professional Services

Saviynt 251-1K Internet Software & Services

Saviynt is seeking a Remote IAM/IGA Consultant in Professional Services to design, deploy, and support its identity governance platform for enterprise customers.

2 days, 11 hours ago

Senior Penetration Tester

Accenture 100K+ Professional Services

Accenture Federal Services is hiring a Penetration Tester to perform security testing and vulnerability assessments across federal applications, networks, and systems in support of mission-critical government operations.

Cybersecurity Network Security Penetration Testing
3 days, 10 hours ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers