Staff Penetration Tester AI Red Team-R1012613
Posted:
28 May 2026 (30+ days ago)
Application Deadline:
25 August 2026
Vacancies:
1 Vacancy
Job Summary
| Minimum Qualifications Bachelors Degree in Information Technology or Information Security or related field of study At Least one (1) of the following: GPEN GCPN GWAPT ECSA OSCP LPT Master GRTP or CRTE 8 years of experience in Information Security in reconnaissance data exploitation Web Application Testing (WAT) Active Directory (AD) scripting automation report writing and red teaming Preferred Qualifications Masters degree in information security or related field of study or equivalent relevant work experience 8 years of hands on Red Team or advanced penetration testing experience including adversary simulation attack path discovery and validation of defensive controls across enterprise environments. Demonstrated experience designing and executing red team engagements that simulate real world threat actors including initial access persistence lateral movement privilege escalation and data exfiltration. Experience performing offensive security assessments against cloud native platforms APIs automation workflows and identity centric architectures commonly used in modern enterprises. Strong understanding of AI platform architectures and AI enabled use cases including RAG based systems API driven AI services and automation pipelines from an attackers perspective. Experience identifying and exploiting AI specific attack vectors such as prompt injection insecure agent actions data leakage through AI workflows model misuse and excessive permissions in AI driven systems. Ability to apply MITRE ATT&CK aligned TTPs (including emerging AI related techniques) to emulate realistic adversary behavior and expose detection and response gaps. Experience conducting red team operations in hybrid environments combining on prem infrastructure cloud workloads identity systems and application layers into end to end attack scenarios. Strong capability to translate red team findings into actionable improvements for blue teams detection engineering cloud security IAM and AI platform teams. Experience testing automation heavy environments including CI/CD pipelines infrastructure as code service accounts and non human identities leveraged by cloud and AI platforms. Proven ability to collaborate with AI platform engineers cloud security teams and SOC teams to improve adversary detection response maturity and overall organizational resilience. Skills Reconnaissance Data Exploitation Web Application Testing Active Directory (AD) Scripting Automation Report Writing Advanced Red Team Tradecraft & Adversary Simulation AI Platform & LLM Attack Surface Security This hybrid role leads complex penetration testing and offensive security operations across enterprise infrastructure applications and cloud platforms. Reporting to the Manager or Sr. Manager of Information Security the Penetration Tester applies advanced threat modeling exploitation techniques and tool expertise to uncover systemic weaknesses and evaluate organizational resilience. The role provides strategic guidance to technical and business stakeholders drives remediation effectiveness and contributes to red team simulations that test detection and response maturity. Success requires deep technical expertise independent decision-making and the ability to communicate complex attack paths and risks clearly across teams to strengthen Bread Financials security posture. |