1

Adversarial Emulation Jobs in Florida (NOW HIRING)

Adversarial Emulation information

What are the key skills and qualifications needed to thrive as an adversarial emulation specialist, and why are they important?

To thrive as an Adversarial Emulation Specialist, you need deep knowledge of cybersecurity, penetration testing methodologies, and threat actor tactics, often supported by degrees in computer science or cybersecurity and certifications like OSCP or CISSP. Expertise with technical tools such as Cobalt Strike, Metasploit, and various red teaming frameworks is commonly required. Strong analytical thinking, problem-solving, and clear communication skills help you effectively simulate threats and report findings to stakeholders. These skills are crucial for accurately assessing organizational vulnerabilities and enhancing overall security posture.

What are some common challenges faced by professionals in adversarial emulation, and how can they be addressed?

Professionals in Adversarial Emulation often encounter challenges such as staying current with rapidly evolving threat landscapes, accurately simulating sophisticated attacker behaviors, and maintaining clear communication with both technical and non-technical stakeholders. Addressing these requires continuous learning through threat intelligence updates, leveraging automation tools for realistic attack simulations, and collaborating closely with blue teams to ensure findings are actionable. Building strong documentation and reporting skills also helps bridge gaps between different teams and ensures that emulation exercises lead to meaningful improvements in organizational security.

What is the difference between Adversarial Emulation vs Penetration Tester?

AspectAdversarial EmulationPenetration Tester
CredentialsSecurity certifications, such as CISSP, CEHSecurity certifications, such as OSCP, CEH
Work EnvironmentSimulates real-world attack scenarios to test defensesConducts controlled security assessments to identify vulnerabilities
Industry UsageUsed in cybersecurity to evaluate security postureCommonly hired for security testing and vulnerability assessments

Adversarial Emulation and Penetration Testing both aim to identify security weaknesses. However, Adversarial Emulation focuses on mimicking sophisticated attacker behaviors to test defenses in a realistic manner, while Penetration Testing involves systematic vulnerability scans and exploits to find security flaws. Both roles require similar certifications and are integral to cybersecurity strategies, but their approaches and objectives differ slightly.

What is adversarial emulation?

Adversarial emulation is a cybersecurity practice in which security teams simulate real-world cyber attacks to test and improve an organization's defenses. By mimicking the tactics, techniques, and procedures (TTPs) of actual threat actors, these exercises help identify vulnerabilities and gaps in security controls. Adversarial emulation often involves using frameworks like MITRE ATT&CK to guide realistic scenarios, ensuring organizations are better prepared against genuine threats.
What job categories do people searching Adversarial Emulation jobs in Florida look for? The top searched job categories for Adversarial Emulation jobs in Florida are:
What cities in Florida are hiring for Adversarial Emulation jobs? Cities in Florida with the most Adversarial Emulation job openings:

Senior Cyber Security Engineer / CSET

Scientific Research Corporation

Orlando, FL • On-site

Full-time

Re-posted 26 days ago


Job description

Job Summary:
Scientific Research Corporation is an advanced information technology and engineering company that provides innovative products and services to government and private industry. They are seeking a Senior Cyber Security Engineer to support offensive security and red team engagements, develop security testing strategies, and enhance the security team's capabilities while collaborating with multiple stakeholders.
Responsibilities:
• Supporting offensive security/red team/adversarial emulation testing
• Executing Red Team engagements in a variety of networks using real-world adversarial Tactics, Techniques, and Procedures (TTPs) from conception to report delivery
• Developing comprehensive security testing strategies and programs across NCRC-U to provide assurance that security controls are designed and operating effectively
• Developing innovative accelerators, tools, mechanisms, and processes to enhance the security team's velocity and scale to customer needs
• Facilitating multiple stakeholders to agree on appropriate solutions and verifying that risks are mitigated appropriately
• Demonstrating creativity, insight, intellectual flexibility, and sound business judgment throughout the process
• Working independently but collaborate with cross-functional to provide security engineering consulting and control design recommendations to reduce risk
• Conducting open-source intelligence gathering, network vulnerability scanning, exploitation of vulnerable services, lateral movement, install persistence in a target network(s), and manage C2 infrastructure
• Systematically analyzing each component of an application with the intent of locating programming flaws that could be leveraged to compromise the software through source code review or reverse engineering
• Developing payloads, scripts and tools that weaponize new proof-of-concepts for exploitation, evasion, and lateral movement
• Safely utilize attacker tools, tactics, and procedures when in sensitive environments/devices
• Evading EDR devices such as Windows Defender and Carbon Black to avoid detection by Defenders/behavioral based alerting in order to further the engagement objectives
• Demonstrating expertise in one of the following: Active Directory, Software Development, Incident Response, or Cloud Infrastructure
• Carefully document and log all exploitation activities
• Continually exercise situational awareness in order quickly identify any instances of cohabitation
• Documenting identified vulnerabilities and researching corrective/remediation actions in order to recommend a risk mitigation technique(s)
• Demonstrating new vulnerabilities and assist Network Defenders (Blue Team) with the refinement of detection capabilities
• Maintaining knowledge of applicable Red Team policies, Standing Ground Rules, regulations, and compliance documents
• Communicating effectively with team members and during an engagement
• Ability to think unconventionally in order to develop adversarial TTPs
• Keeping current with TTPs and the latest offensive security techniques
Qualifications:
Required:
• Bachelor’s degree with a focus in computer science, computer information systems, engineering, mathematics, management information systems, cybersecurity, cyber operations, or a related discipline with corresponding experience and demonstrated mastery of relevant computer science topics
• 5+ years of cyber adversarial emulation experience, to include penetration testing of modern Windows and Linux operating systems, IP-based networks and protocols, 802.11 networks, and/or web applications, hardware hacking, software defined networks/RF
• 10+ years of experience in leading complex and technically diverse teams of cyber professionals (software developers, system administrators, penetration testers, incident responders, etc.)
• Intermediate knowledge of known Advanced Persistent Threat (APT) actor Techniques, Tactics, and Procedures (TTPs), to include familiarity with terminology from Mitre ATT&CK® used to describe TTPs used in cyber attacks
• Intermediate knowledge of techniques and tools used for exploit development of common operating systems, software debugging, and application fuzzing
• Intermediate knowledge of tools and techniques used for incident response, reverse engineering, and digital forensics
• Superior oral communication skills, including the ability to project confidence and enthusiasm, in the following core areas: formal presentations; soliciting goals and requirements from range users; explaining adversarial emulation in the context of testing and training events; effectively communicating event and environment requirements to CSET members; explaining cost estimates based on estimated levels of CSET effort; managing expectations as relevant to CSET TTPs; and explaining technical nuances and significant attributes of advanced cyber attacks to non-cyber-savvy audiences
• Superior technical writing skills, including the ability to author, review, and provide input and feedback to documents drafted by CSET personnel, as well as the ability to create persuasive and impactful technical briefing materials as relevant to range training and test events
• Ability to work independently and to collaborate with range and event leadership, CSET team members, users, and other event stakeholders
• Required/Maintain IAT Level III or IAM Level III 8570 certifications include one or more of the following: CASP+ CE, CCNP Security, CISA, GIAC® Incident Handler (GCIH), GIAC® Certified Enterprise Defender (GCED), CISM, GSLC, CCISO, Certified Information Systems Security Professional (CISSP)
• In addition to meeting the applicable cyber security workforce (CSWF) requirements for Computer Network Defenders (CND) Auditors (DoD 8570) or Vulnerability Assessment Analysts (SECNAV 5239.2), CSET members must obtain one or more of the following vendor certifications within 6 months of being hired: Offensive Security Certified Engineer (OSCE), Offensive Security Certified Professional (OSCP), GIAC Certified Exploit Researcher and Advanced Penetration Testers (GXPN), Offensive Security Certified Engineer (OSCE3)
Preferred:
• Master’s degree with a focus in computer science or cybersecurity
• 10+ years of experience supporting the execution of Department of Defense (DoD) offensive cyber operations (OCO) or defensive cyber operations (DCO) as a civilian, contractor, or uniformed personnel
• Experience with operational training programs and qualification standards
• Red Team, Computer Operator or Exploitation Analyst experience with Threat Systems Management Office (TSMO), US Air Force, US Navy or National Security Agency (NSA) / Cyber Mission Force teams
• Experience with OT, IoT, XIoT is a plus
Company:
Scientific Research Corporation provides innovative solutions to the U.S. government, private industry, and international markets. Founded in 1988, the company is headquartered in Atlanta, USA, with a team of 1001-5000 employees. The company is currently Late Stage.