Senior Red Team & Offensive Security Consultant
- EY
- Tel Aviv, Israel
- ILS 600,000 – ILS 850,000
Senior hands-on offensive security professional responsible for delivering complex, objective-driven Red Team and Adversary Simulation engagements for local and global clients.
The role combines deep technical execution with the ability to independently take ownership of Red Team projects, including threat-informed adversary emulation, covert Red Team operations, Purple Team exercises, attack path analysis, and advanced penetration testing across enterprise, cloud, application, identity, and hybrid environments.
The position requires strong offensive tradecraft, sound technical judgment, and the ability to manage assigned engagements from planning through delivery, while contributing to reusable tooling, knowledge sharing, technical quality, and client advisory. It requires the ability to translate realistic attack scenarios into clear insights that improve clients’ prevention, detection, response, and overall cyber resilience.
Responsibilities:
- Take ownership of assigned Red Team, adversary emulation, Purple Team, and threat-led offensive security engagements, from planning and rules of engagement through execution, reporting, and client debrief.
- Emulate realistic threat actors and execute multi-stage attack chains, including reconnaissance, initial access, persistence, privilege escalation, credential access, lateral movement, command and control, defense evasion, and achievement of agreed business objectives.
- Design threat-informed scenarios and map adversary tactics, techniques, and procedures to MITRE ATT&CK and other relevant threat-led testing frameworks.
- Assess enterprise environments across Active Directory, Microsoft Entra ID, endpoints, networks, applications, cloud platforms, identity systems, and hybrid infrastructure, chaining weaknesses into realistic attack paths and business impact.
- Develop, customize, and maintain offensive tooling, scripts, payloads, command-and-control infrastructure, and operational tradecraft while applying appropriate safety and operational-security controls.
- Work closely with SOC, detection engineering, incident response, and security architecture teams to validate detection and response capabilities and translate observed gaps into actionable improvements.
- Communicate directly with clients, present technical and executive results, and provide risk-based recommendations aligned with the client’s threat landscape and business priorities.
- Contribute to technical quality reviews, knowledge sharing, research initiatives, reusable methodologies, and the continued development of the team’s Red Team capabilities.
Requirements:
- 7+ years in offensive security or related technical fields, including 4+ years in Red Team, adversary simulation, or advanced infrastructure penetration testing – Must.
- Proven ownership of complex Red Team engagements from planning through delivery – Must.
- Hands-on experience executing multi-stage attack chains in complex enterprise environments – Must.
- Strong knowledge of Active Directory, Windows, authentication, identity attack paths, networks, endpoints, and defensive controls – Must.
- Hands-on experience with offensive tooling, command-and-control frameworks, scripting, and tool customization – Must.
- Practical understanding of adversary TTPs and MITRE ATT&CK – Must.
- Strong independent working, client communication, and English reporting skills – Must.
- Experience with cloud or hybrid environments, Purple Team exercises, detection validation, or EDR/XDR evasion – Significant Advantage.
- Advanced certifications, threat-led testing, security research, or custom tool development – Advantage.
Skills
- Red Teaming
- Adversary Emulation
- Penetration Testing
- Cloud Security
- Identity and Access Management
- MITRE ATT&CK
- Purple Teaming








