T&T I Cyber-D&R I Senior Analyst I Red Teaming Attack Surface Management | Mumbai
Deloitte
Deloitte
Join Deloitte's cybersecurity team as a Senior Red Team Specialist in Mumbai. This role is crucial for enhancing our clients' defenses by simulating advanced cyber-attacks, particularly within the BFSI sector. You'll be instrumental in identifying vulnerabilities and strengthening security postures.
Deloitte empowers organizations to proactively prevent cyber threats and safeguard critical assets. Our approach emphasizes security, vigilance, and resilience, integrating cyber risk management from the outset of strategy development. Explore more about our Cybersecurity services.
Plan and execute sophisticated Red Team engagements, mirroring real-world threat actor tactics across external, internal, and physical vectors. Conduct assumed breach assessments, simulate initial access, and perform lateral movement and exfiltration exercises.
Leverage the MITRE ATT&CK framework to design comprehensive threat scenarios and meticulously map findings. Exploit misconfigurations and vulnerabilities within Active Directory, cloud environments, and enterprise infrastructure. Utilize and integrate CART/BAS tools like Cymulate and Pycus for automated security posture validation.
Collaborate with Blue Teams to rigorously measure detection, prevention, and response capabilities post-engagement. Develop detailed reports containing actionable remediation recommendations. Conduct threat emulation tailored to industry-specific APT groups relevant to the BFSI sector. Stay ahead of emerging threats, attack techniques, and countermeasures.
Support internal and client-facing initiatives, including security awareness training, purple teaming exercises, and tabletop simulations. Maintain up-to-date knowledge of the evolving threat landscape.
We are seeking a seasoned Red Team Specialist with at least one year of hands-on experience in offensive security or red teaming roles. A strong command of Red Team TTPs, including phishing, C2 infrastructure, evasion, privilege escalation, and data exfiltration is essential.
Candidates must possess an in-depth understanding of Windows internals and Active Directory attack vectors such as Kerberoasting, Pass-the-Hash/Ticket, ACL abuse, and DCShadow. A solid grasp of network protocols, cloud platforms, and endpoint security bypass techniques is also required.
Familiarity with attack simulation tools, custom scripting, and open-source frameworks like Cobalt Strike, Metasploit, Empire, and Covenant is expected. Experience in physical security assessments, badge cloning, RFID/NFC exploitation, and social engineering is highly desirable.
A strong foundation in MITRE ATT&CK and NIST frameworks is crucial, alongside the ability to document findings, align them with risk frameworks, and present effectively to diverse stakeholders. Possession of offensive security certifications like OSCP or CRTP is advantageous.
Prior experience in BFSI sector engagements and an understanding of financial institution compliance (e.g., RBI, SEBI, ISO 27001) are preferred. Excellent analytical, problem-solving, and communication skills are vital for stakeholder management and debriefs. The ability to perform under pressure and coordinate with cross-functional teams is key.
Educational qualifications include a B.Tech, BCA, B.E., or any equivalent degree.
Deloitte
Information Technology & Services