T&T I Cyber-D&R I Consultant I Red Teaming Attack Surface Management | Mumbai
Deloitte
Deloitte
Join Deloitte's Cyber Threat Intelligence team as a Red Team Specialist. This role focuses on simulating sophisticated cyber-attacks to bolster client defense and response capabilities, particularly within the BFSI sector. You'll play a critical part in identifying and mitigating complex cyber threats.
Deloitte empowers organizations to proactively prevent cyberattacks and safeguard their critical assets. We champion a secure, vigilant, and resilient approach, integrating cyber risk management into strategic development. Explore our Cybersecurity offerings and learn how we help clients navigate the evolving threat landscape.
Plan and execute comprehensive Red Team engagements, replicating realistic threat actor scenarios across external, internal, and physical vectors. Conduct assumed breach assessments, initial access simulations, and critical exercises involving lateral movement and data exfiltration.
Utilize the MITRE ATT&CK framework to architect robust threat scenarios and meticulously map all findings. Exploit vulnerabilities and misconfigurations within Active Directory, cloud environments, and enterprise infrastructure. Integrate CART/BAS tools for automated security posture validation.
Collaborate with Blue Teams to assess detection, prevention, and response effectiveness post-engagement. Develop detailed reports offering actionable remediation recommendations. Conduct specialized threat emulation aligned with industry-specific APT groups, focusing on the BFSI sector's unique risks. Stay abreast of emerging threats, attack techniques, and countermeasures, while supporting security awareness initiatives and exercises.
We seek a Red Team Specialist with a minimum of 5 years of hands-on experience in offensive security and red teaming. Proficiency in Red Team TTPs, including phishing, C2 infrastructure, evasion, privilege escalation, and exfiltration, is essential.
Demonstrate in-depth knowledge of Windows internals and Active Directory attack vectors such as Kerberoasting, Pass-the-Hash/Ticket, ACL abuse, and DCShadow. Possess a solid grasp of network protocols, cloud platforms, and endpoint security bypass techniques.
Experience with attack simulation tools, custom scripting, and open-source frameworks like Cobalt Strike, Metasploit, Empire, and Covenant is required. Familiarity with physical security assessments, badge cloning, RFID/NFC exploitation, and social engineering is preferred. A strong understanding of MITRE ATT&CK, NIST, and equivalent frameworks is crucial.
Candidates should be adept at documenting findings, mapping them to risk frameworks, and presenting to diverse stakeholders. Offensive security certifications such as OSCP or CRTP are highly valued. Prior experience in BFSI sector engagements and an understanding of financial institution compliance (e.g., RBI, SEBI, ISO 27001) are significant advantages. Excellent analytical, problem-solving, and communication skills are necessary, along with the ability to thrive under pressure and collaborate with cross-functional teams.
Deloitte
Cybersecurity