Brown Brothers Harriman

Cyber Red Team Operator

Brown Brothers Harriman$120K — $160K *
Information Technology
8 - 10 years of experience
Job Overview by Ladders

Qualifications

  • 8-10 years of experience in Information Security, focusing on offensive security and red team operations.
  • Proficiency in planning and executing enterprise-scale red team engagements and attack scenarios.
  • In-depth understanding of attacker methodologies and the MITRE ATT&CK framework.
  • Hands-on testing experience across various platforms including Windows, Linux, and cloud infrastructures.
  • Familiarity with scripting for automation in languages like Python and PowerShell.
  • Strong ability to document and report complex vulnerabilities identified during assessments.
  • Bachelor's degree in Computer Science, Cybersecurity, or a related field.

Responsibilities

  • Implement BBH Red Team Operating Standards and regulatory Rules of Engagement.
  • Conduct risk assessments and generate reports for security posture enhancement.
  • Lead and execute red team engagements, including adversary emulation and security assessments.
  • Simulate advanced threat actor TTPs for vulnerability validation.
  • Manage test engagements from planning through to reporting and validation.
  • Facilitate purple team exercises to bolster organizational security controls.
  • Research and identify emerging threats and offensive security techniques.

Benefits

  • Opportunities for impactful enterprise-scale red team operations.
  • Exposure to modern challenges in cloud, identity, application, and infrastructure security.
  • Mentorship opportunities and influence over BBH's offensive security program.
  • A competitive compensation package and comprehensive benefits.
  • A culture that promotes inclusion, collaboration, and long-term career growth.
Full Job Description
About the Role

At Brown Brothers Harriman, cybersecurity is a critical enabler of trust, resilience, and innovation. We are seeking a highly skilled Senior Cyber Red Team Operator to join our growing Red Team and help strengthen the firm's ability to detect, respond to, and withstand sophisticated cyber threats.

In this role, you will simulate real-world adversaries through advanced red team operations, adversarial emulation, penetration testing, and purple team exercises. You will work across enterprise infrastructure, cloud environments, applications, identity platforms, and emerging technologies to identify vulnerabilities, validate attack paths, and improve BBH's overall security posture.

As a senior member of the team, you will help shape offensive security strategy, mentor developing operators, and collaborate closely with security and technology stakeholders across the organization. This is an exceptional opportunity for an experienced offensive security professional who is passionate about staying ahead of evolving threats and driving measurable improvements in cyber resilience.

Key Responsibilities
  • Understand and implement BBH Red Team Operating Standard and conditional Rules of Engagement in accordance with regulatory guidelines and best practices
  • Conduct risk assessments of vulnerabilities identified and write reports to facilitate the mitigations and remediations needed to improve BBH security posture
  • Lead and execute red team engagements, adversary emulation exercises, and offensive security assessments including network, application, cloud, identity, endpoint, and infrastructure security testing
  • Simulate sophisticated threat actor tactics, techniques, and procedures (TTPs) to validate vulnerabilities through controlled exploitation and realistic attack scenarios.
  • Manage testing engagements from planning through final reporting and validation.
  • Lead purple team exercises to validate security controls, improve visibility into attacker activity, and strengthen organizational resilience.
  • Research emerging threats and evolving offensive security techniques.
  • Deliver technical reports and executive-level risk summaries.
  • Mentor team members and contribute to Red Team methodologies and best practices.
  • Collaborate with security and technology stakeholders to drive remediation and improve security effectiveness.
Required Qualifications
  • 8-10 years of experience in Information Security, with significant experience in offensive security, red team operations, adversary emulation, or penetration testing.
  • Demonstrated experience planning and executing enterprise-scale red team engagements and multi-stage attack scenarios.
  • Deep understanding of attacker methodologies, MITRE ATT&CK, privilege escalation, lateral movement, command and control, persistence mechanisms, and identity-based attacks.
  • Hands-on experience testing Windows, Linux, Active Directory, cloud platforms, network infrastructure, and enterprise applications.
  • Experience with scripting and automation using technologies such as Python, PowerShell, Bash, or similar languages.
  • Experience identifying, exploiting, and documenting complex vulnerabilities and attack paths.
  • Ability to communicate complex technical concepts clearly to technical and non-technical audiences.
  • Bachelor's degree in Computer Science, Cybersecurity, Information Technology, or equivalent practical experience.
  • Expertise with security assessment methodology, vulnerability management, OWASP model, CVE ratings
  • Participate in Cyber Tabletop Exercises as a subject matter expert for adversary behavior, intent, and TTPs
Nice-to-Haves
  • Financial services or other highly regulated industry experience.
  • Relevant offensive security certifications such as PNPT, OSCP, OSEP, OSWE, CRTO, CRTE, GRTP, or equivalent advanced offensive security credentials.
  • Experience with commercial offensive security and penetration testing management platforms, including Core Impact and AttackForge, preferred.
  • Experience conducting cloud security assessments in Microsoft Azure environments.
  • Experience participating in purple team exercises that validate security controls, test defensive coverage, improve organizational resilience, and facilitate collaboration between offensive and defensive security teams to strengthen overall security effectiveness.
  • Contributions to open-source security projects, public research, conference speaking, or community involvement.

What You'll Gain
  • Opportunities to conduct impactful, enterprise-scale red team operations.
  • Exposure to modern cloud, identity, application, and infrastructure security challenges.
  • Opportunities to mentor others and influence the future direction of BBH's offensive security program.
  • Competitive compensation and comprehensive benefits.
  • A culture that promotes inclusion, collaboration, and long-term career growth.


Don't meet every qualification listed above? We encourage you to apply. We recognize that talent comes from many backgrounds and experiences, and we are committed to building a diverse and inclusive team where everyone can thrive.

Salary Range

NJ: $120,000 - $160,000 base salary + annual target bonus

MA: $110,000 - $160,000 base salary + annual target bonus

BBH and its affiliates' compensation program includes base salary, discretionary bonuses, and profit-sharing. The anticipated base salary range(s) shown above are only for the indicated location(s) and may differ in other locations due to cost of living and labor considerations. Base salaries may vary based on factors such as skill, experience and qualification for the role. BBH's total rewards package recognizes your contributions with more than just a paycheck—providing you with benefits that enhance your experience at BBH from long-term savings, healthcare, and income protection to professional development opportunities and time off, our programs support your overall well-being. 


 

We value diverse experiences. We value diverse experiences and transferrable skillsets. If your career hasn’t followed a traditional path, includes alternative experiences, or doesn’t meet every qualification or skill listed in the job description, please do go ahead and apply.

About Brown Brothers Harriman

Brown Brothers Harriman & Co. (BBH) is the oldest and largest private bank in the United States. Founded in 1818, BBH has been a leader in the financial industry for over 200 years. The company provides a wide range of financial services to individuals, families, and institutions, including wealth management, investment management, and private banking. BBH has offices in the United States, Europe, and Asia, and manages over $1.6 trillion in assets.
Learn more about Brown Brothers Harriman
Size
7,000 employees
Industry

Similar Jobs

More Jobs at Brown Brothers Harriman

More Information Technology Jobs

Find similar Cyber Red Team Operator jobs: