Cyber Defense Operational Security Testing Lead bei UBS Group AG
UBS Group AG · Raleigh, Vereinigte Staaten Von Amerika · Onsite
- Senior
- Optionales Büro in Raleigh
Your role
UBS is looking for a Cyber Defense Operational Security Testing Security Testing Lead to:
• join a growing in-house red teaming and offensive security capability and play a key role in helping to shape and lead our team
• manage all phases of offensive security operations with a focus on purple and red team testing
• effectively translate and communicate security testing strategy and findings , including technical staff, executive leadership, legal counsel, and audit/regulatory bodies
• provide risk appropriate and pragmatic recommendations to correct identified findings, vulnerabilities, and misconfigurations
• design, build, and execute security testing processes/strategies to support and evaluate the organization’s security posture
• coach, mentor, manage, and advocate for career development of security testing operators and understand and adhere to regulatory, compliance, and legal requirements that impact business operations
City
Job Type
Country / State
Function Category
Join us
We’re committed to disability inclusion and if you need reasonable accommodation/adjustments throughout our recruitment process, you can always contact us.
Contact Details
UBS Recruiting
Disclaimer / Policy statements
Your team
Operational Security Testing is a global team with a presence in Switzerland, Poland, and the USA. Our team works across TS TISO and other security control areas to conduct red teaming, purple teaming and other forms of offensive security testing to identify and help remediate gaps across all aspects of the Cyber Security protect, detect and response capabilities of our Firm. Your role will be in our Raleigh, NC. Office.
Your expertise
• demonstrated leadership and people management skills in a corporate or equivalent complex Cyber Security organization
• experience and proficiency in the day-to-day operations of a Red or Purple Team with knowledge of offensive security tools and frameworks
• experience in setting up infrastructure for Red Teaming operations and techniques utilized in reconnaissance, exploitation, persistence, lateral movement, command & control, etc.
• detailed knowledge and understanding of MITRE ATT&CK framework and how to simulate TTPs of cyber attackers
• experience with cloud technologies (such as Azure or AWS), scripting languages (such as bash, PowerShell or Python) and programming in C, C++, C#, Rust, Nim or in Assembly are pluses
• Offensive Security certifications (such as OSCP or OSEP), SANS certifications (such as GXPN, GPEN, GWAPT, GREM), or other training in red teaming operations are a plus
• experience in a blue team role investigating cyber security incidents in a modern enterprise security environment (including SIEM, EDR, etc) or experience in system administration or engineering experience with Linux and Windows operating systems are pluses
*LI-UBS
*UBS-MOGUL
About us
We have a presence in all major financial centers in more than 50 countries.