Positka
Website:
positka.com
Job details:
Senior Red Teaming Consultant
Background
PFSI Solutions Pvt Ltd (Positka) is a Singapore-based boutique consulting firm with blue-chip multinational clients. Positka provides results-focused, high-value support to clients in the functional areas of Cybersecurity, IT Consulting, Technology Delivery, Analytics, and Business Transformation services.
Positka is seeking an experienced Senior Red Teaming Consultant who can independently plan, lead, and execute end-to-end adversarial simulation engagements across enterprise environments. The role requires deep expertise in offensive security, penetration testing, attack path analysis, cloud security, and stakeholder engagement while supporting enterprise customers across diverse industries.
Positka is committed to investing in best-in-class training and certifications while offering opportunities to work on cutting-edge initiatives with leading global organizations.
Role Description
The Senior Red Teaming Consultant is responsible for leading end-to-end Red Team engagements, conducting advanced adversarial simulations, performing offensive security assessments, and delivering executive-level reports with actionable remediation recommendations.
This role requires strong expertise across network, cloud, web, Active Directory, and enterprise environments, along with the ability to communicate technical findings effectively to both technical and executive stakeholders. Based in Chennai, the role requires collaboration with internal security teams, customers, and leadership teams across geographies
As a Senior Red Teaming Expert, you will be responsible for:
Adversarial Simulation & Red Teaming:
• Lead full-scope Red Team engagements independently, including reconnaissance, initial access, persistence, privilege escalation, lateral movement, and objective achievement.
• Design and execute Threat Intelligence--led Red Team engagements aligned with frameworks such as TIBER EU, CBEST, and CREST.
• Simulate real-world Advanced Persistent Threat (APT) tactics, techniques, and procedures (TTPs) using the MITRE ATT&CK framework.
• Conduct cyber, physical, social engineering, and combined cyber-physical attack simulations based on customer requirements.
• Develop, operate, and maintain secure Command-and-Control (C2) infrastructure while maintaining operational security (OPSEC).
• Prepare comprehensive technical and executive-level Red Team reports, attack narratives, and remediation roadmaps. Penetration Testing & Offensive Security
• Conduct advanced internal and external network penetration testing engagements.
• Perform web application, API, mobile application, and cloud security assessments.
• Execute Active Directory and Microsoft Entra ID attack path assessments, including Kerberoasting, DCSync, Golden/Silver Ticket, Pass-the-Hash, and Pass-the-Ticket attacks.
• Assess AWS, Azure, and GCP environments for privilege escalation, lateral movement, metadata abuse, and cloud-native attack paths.
• Identify, validate, and responsibly disclose vulnerabilities while supporting secure remediation.
Collaboration & Leadership •
Present Red Team findings, attack paths, and business risks to senior stakeholders, executive leadership, and customer CXOs.
• Mentor and provide technical guidance to junior offensive security consultants.
• Contribute to the development and enhancement of Red Team methodologies, playbooks, tooling, and reporting standards.
• Participate in Purple Team exercises and collaborate with Threat Intelligence and Blue Team functions to improve detection capabilities.
• Support pre-sales activities, proposal development, customer workshops, and technical demonstrations.
• Contribute to recruitment, technical interviews, and capability development within the Offensive Security practice. Analytical/Decision Making Responsibilities:
• Analyze enterprise attack surfaces and identify realistic attack paths.
• Evaluate customer environments to determine business risks and exploitation opportunities.
• Select appropriate offensive methodologies, tooling, and engagement strategies based on customer objectives.
• Identify emerging threats, attack techniques, and opportunities to improve offensive security capabilities. • Provide strategic remediation recommendations to strengthen customer security posture.
• Maintain high standards of professionalism, operational security, confidentiality, and technical accuracy throughout engagements Tooling, Research & Innovation:
• Strong expertise in Red Teaming methodologies and offensive security frameworks.
• Hands-on experience with C2 frameworks such as Cobalt Strike, Havoc, Sliver, Brute Ratel, or equivalent platforms.
• Strong knowledge of Active Directory attack techniques, network pivoting, firewall bypass, and privilege escalation.
• Experience with web application, API, and cloud security testing across AWS, Azure, and GCP.
• Hands-on experience with Metasploit, BloodHound, SharpHound, Impacket, CrackMapExec, Mimikatz, Rubeus, PowerSploit, Burp Suite Pro, and Nuclei.
• Strong scripting and automation skills using Python, PowerShell, Bash, or Go.
• Strong understanding of MITRE ATT&CK, OWASP Top 10, OAuth/OIDC abuse, GraphQL attacks, and modern offensive security techniques.
• Experience developing custom payloads, exploits, evasion techniques, and offensive tooling.
Experience, skills, education:
• 7+ years of cybersecurity experience with at least 5 years in dedicated Red Team or Offensive Security roles.
• Bachelor’s degree in computer science, Information Security, Cybersecurity, or a related field is preferred, though not mandatory for candidates with strong hands-on experience.
• Experience working within MSSPs, consulting organizations, or enterprise security teams.
• Proven ability to independently lead complex, multi-phase Red Team engagements.
• Hands-on experience conducting adversarial simulations across enterprise, cloud, web, and Active Directory environments.
• Experience presenting offensive security findings and remediation recommendations to senior stakeholders and executive leadership.
Technical Skills
• Strong expertise in Red Teaming methodologies and offensive security frameworks.
• Hands-on experience with C2 frameworks such as Cobalt Strike, Havoc, Sliver, Brute Ratel, or equivalent platforms.
• Strong knowledge of Active Directory attack techniques, network pivoting, firewall bypass, and privilege escalation.
• Experience with web application, API, and cloud security testing across AWS, Azure, and GCP.
• Hands-on experience with Metasploit, BloodHound, SharpHound, Impacket, CrackMapExec, Mimikatz, Rubeus, Powers ploit, Burp Suite Pro, and Nuclei. s
• Strong scripting and automation skills using Python, PowerShell, Bash, or Go.
• Strong understanding of MITRE ATT&CK, OWASP Top 10, OAuth/OIDC abuse, GraphQL attacks, and modern offensive security techniques.
• Experience developing custom payloads, exploits, evasion techniques, and offensive tooling. Leadership & Communication
• Proven experience presenting Red Team findings and executive summaries to CXO stakeholders and board members.
• Demonstrated ability to mentor and develop Offensive Security professionals.
• Strong stakeholder management, analytical thinking, problem-solving, and communication skills. • Fluent in spoken and written English.
Qualifications & Certifications
The following certifications are preferred. Equivalent demonstrable experience will be considered.
• OSCP • OSED • OSMR • CRTO • CRTE • GXPN • GPEN • CREST CCT (INF) • PNPT • CARTP (Azure RT) • GCPN (GCP) • eCPTX v2 • BSCP (Burp) • HTB CPTS
Career Path:
This role offers a strong platform for progression into Offensive Security Leadership, Red Team Management, Offensive Security Consulting, and broader Cybersecurity Leadership roles within Positka. Successful candidates will work closely with enterprise customers, executive stakeholders, and cybersecurity leaders while delivering advanced adversarial simulation engagements and driving offensive security maturity.
Location
The role is based out of Chennai, Tamil Nadu.
Willingness to travel within and outside India is essential.
Contact: regina@positka.com
Click on Apply to know more.