Senior Consultant, Red Team Operator, Offensive Security
Canada · Remote OK
$110k–$135k/yr
Senior
In a world of disruption and increasingly complex business challenges, our professionals bring truth into focus with the Kroll Lens. Our sharp analytical skills, paired with the latest technology, allow us to give our cl…
Skills: Red teaming, Purple teaming, Adversary emulation, Active Directory exploitation, Penetration testing
We are looking for talented individuals with solid knowledge of Digital Forensics and Incident Response to join our Cyber & Data Resilience Practice as a Director! As a Director at Kroll, you will provide support and gui…
You will be the senior technical authority who sets the culture for the stand-up of technical operations centers. You will build, train, and lead a small team. We are hiring an engineer who leads from the floor: someone …
Skills: Leadership, Network engineering, Field engineering, Cisco routers, Cisco switches
In a world of disruption and increasingly complex business challenges, our professionals bring truth into focus with the Kroll Lens. Our sharp analytical skills, paired with the latest technology, allow us to give our cl…
In a world of disruption and increasingly complex business challenges, our professionals bring truth into focus with the Kroll Lens. Our sharp analytical skills, paired with the latest technology, allow us to give our cl…
Join Kroll's Global Mergers & Acquisitions Team and gain hands-on experience in the dynamic field of Mergers & Acquisitions. We are seeking motivated and detail-oriented individuals to contribute as new joiners in our Me…
Skills: Financial modeling, M&A, Due diligence, Financial analysis, Data room management
Our Economic Advisory team advises leading corporations, law firms, financial institutions and government bodies on high-profile domestic and international matters, including antitrust investigations, merger reviews, dam…
Skills: Economic analysis, Econometrics, Stata, Mathematica, Data analysis
We are looking for an Econometrician to join Kroll's Economic Advisory practice in Germany. Our Economic Advisory team advises leading corporations, law firms, financial institutions and government bodies on high-profile…
We are looking for an Analyst to join Kroll's Economic Advisory practice in Germany. In this role, you will help clients navigate complex competition, regulatory and commercial disputes by applying rigorous economic and …
Skills: Economic analysis, Econometric analysis, Statistical analysis, Stata, R
Kroll provides clients with Valuation Advisory Services, Corporate Finance, Governance Risk Investigations & Disputes and Cyber Risk operational support services to the firm’s subsidiaries across the globe. The Global Bu…
We currently have an outstanding career opportunity for a Specialist with a focus on the Firm’s independent contractor/contingent worker review process. This role will report to Compliance Manager I and will be primarily…
Description We are looking for an Analyst to be an essential part of the team assisting the Financial Services Compliance & Regulation - Compliance Consulting practice to manage and perform client electronic surveillance…
Project Manager II, Support Ops We are seeking a Project Manager to join our fast-paced, dynamic environment. In this role, you’ll be responsible for coordinating and managing projects that connect our Client Services te…
Skills: Project Management, Agile, Stakeholder Management, Risk Management, Process Improvement
Manager I, Client Service Operations The Client Service Operations team works with all internal Kroll business units to research, curate and collect financial & business data from various internal and external sources. T…
Intern, Investigations Diligence and Compliance - Specialist
São Paulo, São Paulo, Brazil · On-site
Entry level
Investigations Diligence & Compliance (Specialist) - Intern In a world of disruption and increasingly complex business challenges, our professionals bring truth into focus with the Kroll Lens. Our sharp analytical skills…
Skills: Analytical research, Critical thinking, Complex problem solving, Social media analysis, Report writing
The Reporting, Insights & Analytics team is on a mission to harness the power of data to guide strategic decisions and improve business operations. Reporting directly into our Chief Data Office, this team collaborates cl…
Skills: Power BI, Git, DevOps, Governance, Automation
This position will involve assisting in the delivery of the Firm’s Fund Solutions and Restructuring services based in Mumbai and/or Delhi. Typical assignments will include participating in fund and restructuring advisory…
The Global Business Solutions (GBS) - Valuations Advisory Services teams in India operates as an extension of our global offices and works very closely with their counterparts in the US and EMEA on diverse nature of valu…
Power Platform Developer (Modelling, Portfolio Valuations)
Mumbai City, Maharashtra, India · Hybrid
Mid level
We are seeking a technically strong, project-driven Automation & Solutions Engineer with a primary focus on Microsoft Power Platform and SharePoint-based solutions. This role is centered on designing, building, and suppo…
Skills: Microsoft Power Platform, SharePoint, Power Automate, Power Apps, SQL
Senior Consultant, Red Team Operator, Offensive Security
Sign up with Clera and we'll reach out the moment a role actually fits you — no more spraying applications into the void.
$110k–$135k/yr
Full-time
professional certificate
Posted 2d ago
~40 hrs/week
Remote in Canada
Responsibilities
You will deliver complex red team, purple team, and adversary emulation engagements while executing hands-on offensive security activities across various enterprise and cloud environments. Additionally, you will provide clear, evidence-based reporting and actionable recommendations to help clients improve their cyber resilience and security posture.
Requirements
The role requires at least 5 years of experience in offensive cybersecurity, with strong proficiency in Windows enterprise environments and Active Directory exploitation. Candidates must also possess excellent communication skills and experience with offensive security tooling, scripting, and evasion techniques.
Full job description
In a world of disruption and increasingly complex business challenges, our professionals bring truth into focus with the Kroll Lens. Our sharp analytical skills, paired with the latest technology, allow us to give our clients clarity—not just answers—in all areas of business. We embrace diverse backgrounds and global perspectives, and we cultivate diversity by respecting, including, and valuing one another. As part of One team, One Kroll, you’ll contribute to a supportive and collaborative work environment that empowers you to excel.
Our Offensive Security professionals are on a mission to make the world a safer place, one company at a time. We help our clients discover, understand, and remediate security risks across their networks, systems, applications, cloud environments, and identity platforms. Our clients trust us to use advanced offensive security tools, creativity, imagination, and expert knowledge to identify realistic attack paths and improve cyber resilience.
We are looking to grow our Red Team capability with a Senior Consultant / L3 Red Team Operator. Our expertise in red team operations, purple team engagements, assumed-breach testing, adversary emulation, and threat intelligence-led penetration testing is in high demand. Our collaborative ties to our forensic and incident response team, detection engineering team, threat intelligence team, and wider Cyber Risk practice enable us to deliver high-impact offensive security engagements for clients across a range of sectors.
Apply now to join One team, One Kroll.
What you’ll do
As a Senior Consultant, Red Team Operator, you will support the delivery of complex red team, purple team, assumed-breach, and adversary emulation engagements. You will work with clients to understand their environments, help define realistic attack objectives, develop attack paths, and execute authorised offensive security activity within agreed rules of engagement.
You will be expected to operate across a range of attack surfaces, including enterprise networks, Active Directory, Microsoft Entra ID, Microsoft 365, cloud platforms, endpoints, externally exposed services, and, where authorised, social engineering scenarios. You will also help clients understand the business impact of identified attack paths and provide clear, actionable recommendations to improve prevention, detection, and response.
In summary, you will:
Deliver red team, purple team, assumed-breach, and adversary emulation engagements for clients across multiple sectors
Support engagement planning, including threat-informed scenarios, attack objectives, rules of engagement, operational security considerations, and success criteria
Execute hands-on offensive activity across enterprise environments, including Active Directory exploitation, credential access, privilege escalation, lateral movement, and objective-based testing
Assess and exploit attack paths across Microsoft Entra ID, Microsoft 365, hybrid identity environments, AWS, Azure, GCP, and other cloud platforms, where in scope
Build, adapt, and operate red team infrastructure, command-and-control tooling, payloads, and scripts during authorised client engagements
Apply detection-aware tradecraft and understand how EDR, SIEM, identity protection, conditional access, email security, and network monitoring can affect red team operations
Support purple team engagements by executing agreed TTPs, working with client security teams, validating detection logic, and helping clients improve response capability
Conduct authorised social engineering activity, including reconnaissance, phishing, vishing, pretext development, and controlled initial access scenarios
Conduct research and development to improve Kroll’s red team tooling, tradecraft, methodology, and reporting
Produce clear, evidence-based reporting that explains attack paths, business impact, detection and response observations, and prioritised remediation actions
Present technical findings to security teams and communicate business risk to senior stakeholders
Mentor junior consultants, support technical delivery, and contribute to peer review and quality assurance
Work collaboratively with Kroll’s wider Cyber Risk teams, including incident response, threat intelligence, cloud security, and detection engineering
What you’ll need to succeed
5+ years in offensive cybersecurity, including experience delivering red team, purple team, adversary emulation, or assumed-breach engagements
Strong experience with Windows enterprise environments, Active Directory exploitation, privilege escalation, and lateral movement
Experienced and comfortable with performing social engineering techniques in support of red team operations, including email and voice phishing
Experience operating command-and-control frameworks such as, Mythic, Cobalt Strike, or similar tooling in authorised client engagements
Experience developing, modifying, or extending offensive security tooling, scripts, or payloads
Working knowledge of at least one of C, C#, Python, PowerShell, and/or JavaScript, to support offensive security objectives
Practical understanding of evasion techniques, endpoint security controls, operational security, and detection-aware tradecraft
Strong understanding of networking and web protocols, including TCP/IP, DNS, HTTP, HTTPS, and authentication flows
Experience conducting reconnaissance, attack path development, and objective-based testing
Excellent written and verbal communication skills, with the ability to explain complex technical issues clearly to technical and non-technical audiences
The ability to manage risk during live client engagements and operate within agreed rules of engagement
Nice to have
OSEP, OSCE3, CRTO, CRTL, GPEN, GXPN, or equivalent experience
Experience delivering threat intelligence driven red team engagements
Strong working knowledge of Microsoft Entra ID, Microsoft 365, and hybrid identity attack paths
Working knowledge of cloud platforms such as AWS, Azure, or GCP, including identity, privilege escalation, misconfiguration abuse, and cloud-native attack paths
Experience with exploit development, reverse engineering, malware analysis, or assembly-level debugging
Experience with macOS or Linux endpoint tradecraft
Experience with Kubernetes, Docker, CI/CD platforms, DevOps environments, or containerised workloads
Experience with physical security
Experience with employing modern AI tooling to support offensive engagements
Threat intelligence, detection engineering, or incident response experience
Experience writing blogs, presenting at industry events, publishing research, or contributing to offensive security tooling
Experience leading small teams or technical workstreams during complex offensive security engagements
About Kroll
Join the global leader in risk and financial advisory solutions—Kroll. With a nearly century-long legacy, we blend trusted expertise with cutting-edge technology to navigate and redefine industry complexities. As a part of One Team, One Kroll, you'll contribute to a collaborative and empowering environment, propelling your career to new heights. Ready to build, protect, restore and maximize our clients’ value? Your journey begins with Kroll.
In order to be considered for a position, you must formally apply via careers.kroll.com.
As the leading independent provider of risk and financial advisory solutions, Kroll leverages our unique insights, data and technology to help clients stay ahead of complex demands. Kroll's team of more than 6,500 professionals worldwide continues the firm’s nearly 100-year history of trusted expertise spanning risk, governance, transactions and valuation. Our advanced solutions and intelligence provide clients the foresight they need to create an enduring competitive advantage. At Kroll, our values define who we are and how we partner with clients and communities. Learn more at Kroll.com.
Offices: One World Trade Center 285 Fulton Street, 31 Fl, New York, NY 10007, US · 167 N Green St, 12 Fl, Chicago, Illinois 60607, US · 3 London Bridge Street, Level 6, South Bank, England SE1 9SG, GB · Three Pacific Place, 1 Queen's Rd E, Level 3, Hong Kong, CN · 125 High St, 30 Fl, Boston, Massachusetts 02110, US
ValuationComplianceRegulationCorporate FinanceRestructuringCyber RiskESGInvestigationsDisputesand Business Services
As the leading independent provider of risk and financial advisory solutions, Kroll leverages our unique insights, data and technology to help clients stay ahead of complex demands. Kroll's team of more than 6,500 professionals worldwide continues the firm’s nearly 100-year history of trusted expertise spanning risk, governance, transactions and valuation. Our advanced solutions and intelligence provide clients the foresight they need to create an enduring competitive advantage. At Kroll, our values define who we are and how we partner with clients and communities. Learn more at Kroll.com.
Offices: One World Trade Center 285 Fulton Street, 31 Fl, New York, NY 10007, US · 167 N Green St, 12 Fl, Chicago, Illinois 60607, US · 3 London Bridge Street, Level 6, South Bank, England SE1 9SG, GB · Three Pacific Place, 1 Queen's Rd E, Level 3, Hong Kong, CN · 125 High St, 30 Fl, Boston, Massachusetts 02110, US
ValuationComplianceRegulationCorporate FinanceRestructuringCyber RiskESGInvestigationsDisputesand Business Services