Bank of America Logo

Bank of America

Red Team Operator

Posted 7 Days Ago
Be an Early Applicant
In-Office
7 Locations
125K-145K Annually
Mid level
In-Office
7 Locations
125K-145K Annually
Mid level
The Red Team Operator analyzes and improves security controls, conducts threat simulations, and collaborates with teams to enhance cybersecurity posture.
The summary above was generated by AI

Job Description:

At Bank of America, we are guided by a common purpose to help make financial lives better through the power of every connection. We do this by driving Responsible Growth and delivering for our clients, teammates, communities and shareholders every day.

Being a Great Place to Work is core to how we drive Responsible Growth. This includes our commitment to being an inclusive workplace, attracting and developing exceptional talent, supporting our teammates’ physical, emotional, and financial wellness, recognizing and rewarding performance, and how we make an impact in the communities we serve.

Bank of America is committed to an in-office culture with specific requirements for office-based attendance and which allows for an appropriate level of flexibility for our teammates and businesses based on role-specific considerations.

At Bank of America, you can build a successful career with opportunities to learn, grow, and make an impact. Join us!

Job Description:

Red Team Operator will analyze, improve, and execute against security controls proactively to prevent external threat actors from exploiting company information, systems, or critical resources. Required to research threat actor’s capabilities, motives, and then develop similar capabilities to perform threat simulation campaigns against current security posture.

Job Description:

The Cyber Security Defense (CSD) function within Global Information Security is responsible for all aspects of threat intelligence, monitoring, application, network, and insider threat security programs. Within CSD, our Emerging Threat Defense team works to continuously strengthen the bank’s cyber security posture through research, threat simulations, threat hunting, and offensive security engagements. This team works with partners throughout the bank to both discover and develop mitigations from threats to help secure a critical infrastructure around the world that interacts with millions of customers.

Role Responsibilities:

The Adaptive Threat Simulation (ATS) - Red Team Operator position is responsible for performing global threat simulations for Bank of America. This role will require thorough knowledge of Red Team Infrastructure, networking concepts, infrastructure automation, and network troubleshooting. Additionally, the Red Team Operator will understand analysis and development of threat actor’s capabilities, motives, and other related offensive security research. Through conducting these threat simulations, security controls will be evaluated and improved to proactively prevent real threat actors from leveraging researched TTPs. A Red Team Operator will also be tasked with collaborating with key stakeholders, cyber threat intelligence teams, and other cyber defense control teams to identify opportunities to mature controls against emerging threats. 

Required Qualifications

  • Must have 3-5 years of relevant experience as a Red Teamer.
  • Must have knowledge of the common tools associated with red teaming (Cobalt Strike, Empire, Mythic, Sliver, etc.).
  • Must have knowledge of Red Team Infrastructure and its Operational Security Implications.
  • Must have deep understanding of networking concepts
  • Must demonstrate knowledge of tactics, techniques, and procedures associated with malicious insider activity, organized crime/fraud groups and both state and non-state sponsored threat actors.
  • Must be willing to learn how examine an organization and system through the perspective of a threat actor and articulate risk in clear, precise terms.
  • Must have general understanding of networks, major operating systems, active directory, and their associated peripherals, along with MITRE ATT&CK TTPs.
  • Must be able to both work independently as well as effectively work in teams with individuals with a variety of skills and backgrounds.
  • Must be a team-oriented individual with excellent communication skills at explaining the so what? of a vulnerability issue to a non-technical audience.
  • Ability to work with scripting language (Python, PowerShell, etc.). 

Desired Qualifications

  • Red team or Malware oriented certifications.
  • Previous experience working in the financial industry a plus

Skills:

  • Advisory
  • Innovative Thinking
  • Technical Documentation
  • Technology System Assessment
  • Threat Analysis

This job will be open and accepting applications for a minimum of seven days from the date it was posted.

Shift:

1st shift (United States of America)

Hours Per Week: 

40

Pay Transparency details

US - CO - Denver - 1144 15th St - Denver Gis (CO9926), US - DC - Washington - 1800 K St NW - 1800 K Street NW (DC1842), US - IL - Chicago - 540 W Madison St - Bank Of America Plaza (IL4540), US - NJ - Jersey City - 101 Hudson St - 101 Hudson (NJ2101)

Pay and benefits information

Pay range$125,000.00 - $145,000.00 annualized salary, offers to be determined based on experience, education and skill set.

Discretionary incentive eligible

This role is eligible to participate in the annual discretionary plan. Employees are eligible for an annual discretionary award based on their overall individual performance results and behaviors, the performance and contributions of their line of business and/or group; and the overall success of the Company.

Benefits

This role is currently benefits eligible. We provide industry-leading benefits, access to paid time off, resources and support to our employees so they can make a genuine impact and contribute to the sustainable growth of our business and the communities we serve.

Top Skills

Cobalt Strike
Empire
Mitre Att&Ck
Mythic
Powershell
Python
Sliver
HQ

Bank of America Charlotte, North Carolina, USA Office

100 North Tryon Street, Charlotte, NC, United States, 28202

Similar Jobs

3 Hours Ago
Hybrid
4 Locations
166K-250K Annually
Senior level
166K-250K Annually
Senior level
Aerospace • Artificial Intelligence • Cloud • Machine Learning • Software • Cybersecurity • Defense
Lead teams in addressing complex space-related problems, providing mentorship, and engaging with diverse stakeholders in modeling and simulation tasks.
Top Skills: CC++FortranJavaMatlabPython
Yesterday
Hybrid
Colorado Springs, CO, USA
160K-185K Annually
Senior level
160K-185K Annually
Senior level
Aerospace • Information Technology • Other • Software • Consulting • Defense
The Senior DevOps Engineer will develop and operate automated build and deployment infrastructure, maintain cloud infrastructure, and support software engineering teams for US Government satellites.
Top Skills: AnsibleAtlantisAWSAzureCloud InfrastructureGCPGitlab Ci/CdHelm ChartsKubernetesTerraform
Yesterday
Denver, CO, USA
120K-160K
Senior level
120K-160K
Senior level
Aerospace • Artificial Intelligence • Hardware • Machine Learning • Software • Defense
As a CPSO at True Anomaly, you will ensure compliance with federal security regulations, manage SCIF operations, oversee personnel security clearance processes, investigate security incidents, and collaborate with government security representatives to safeguard classified information critical to national defense.

What you need to know about the Charlotte Tech Scene

Ranked among the hottest tech cities in 2024 by CompTIA, Charlotte is quickly cementing its place as a major U.S. tech hub. Home to more than 90,000 tech workers, the city’s ecosystem is primed for continued growth, fueled by billions in annual funding from heavyweights like Microsoft and RevTech Labs, which has created thousands of fintech jobs and made the city a go-to for tech pros looking for their next big opportunity.

Key Facts About Charlotte Tech

  • Number of Tech Workers: 90,859; 6.5% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Lowe’s, Bank of America, TIAA, Microsoft, Honeywell
  • Key Industries: Fintech, artificial intelligence, cybersecurity, cloud computing, e-commerce
  • Funding Landscape: $3.1 billion in venture capital funding in 2024 (CED)
  • Notable Investors: Microsoft, Google, Falfurrias Management Partners, RevTech Labs Foundation
  • Research Centers and Universities: University of North Carolina at Charlotte, Northeastern University, North Carolina Research Campus

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account