1

Adversarial Emulation Jobs in Georgia (NOW HIRING)

This role is responsible for conducting sophisticated threat emulation exercises, adversarial simulations, and offensive security assessments across enterprise systems, applications, cloud ...

Adversarial Emulation information

What are the key skills and qualifications needed to thrive as an adversarial emulation specialist, and why are they important?

To thrive as an Adversarial Emulation Specialist, you need deep knowledge of cybersecurity, penetration testing methodologies, and threat actor tactics, often supported by degrees in computer science or cybersecurity and certifications like OSCP or CISSP. Expertise with technical tools such as Cobalt Strike, Metasploit, and various red teaming frameworks is commonly required. Strong analytical thinking, problem-solving, and clear communication skills help you effectively simulate threats and report findings to stakeholders. These skills are crucial for accurately assessing organizational vulnerabilities and enhancing overall security posture.

What are some common challenges faced by professionals in adversarial emulation, and how can they be addressed?

Professionals in Adversarial Emulation often encounter challenges such as staying current with rapidly evolving threat landscapes, accurately simulating sophisticated attacker behaviors, and maintaining clear communication with both technical and non-technical stakeholders. Addressing these requires continuous learning through threat intelligence updates, leveraging automation tools for realistic attack simulations, and collaborating closely with blue teams to ensure findings are actionable. Building strong documentation and reporting skills also helps bridge gaps between different teams and ensures that emulation exercises lead to meaningful improvements in organizational security.

What is the difference between Adversarial Emulation vs Penetration Tester?

AspectAdversarial EmulationPenetration Tester
CredentialsSecurity certifications, such as CISSP, CEHSecurity certifications, such as OSCP, CEH
Work EnvironmentSimulates real-world attack scenarios to test defensesConducts controlled security assessments to identify vulnerabilities
Industry UsageUsed in cybersecurity to evaluate security postureCommonly hired for security testing and vulnerability assessments

Adversarial Emulation and Penetration Testing both aim to identify security weaknesses. However, Adversarial Emulation focuses on mimicking sophisticated attacker behaviors to test defenses in a realistic manner, while Penetration Testing involves systematic vulnerability scans and exploits to find security flaws. Both roles require similar certifications and are integral to cybersecurity strategies, but their approaches and objectives differ slightly.

What is adversarial emulation?

Adversarial emulation is a cybersecurity practice in which security teams simulate real-world cyber attacks to test and improve an organization's defenses. By mimicking the tactics, techniques, and procedures (TTPs) of actual threat actors, these exercises help identify vulnerabilities and gaps in security controls. Adversarial emulation often involves using frameworks like MITRE ATT&CK to guide realistic scenarios, ensuring organizations are better prepared against genuine threats.
What are popular job titles related to Adversarial Emulation jobs in Georgia? For Adversarial Emulation jobs in Georgia, the most frequently searched job titles are:
What job categories do people searching Adversarial Emulation jobs in Georgia look for? The top searched job categories for Adversarial Emulation jobs in Georgia are:

Cyber Protection Principal/Sr. Principal Engineer-AHT

Northrop Grumman Corporation

Warner Robins, GA • Hybrid

$122K - $193K/yr

Full-time

Medical, Life, PTO

Re-posted 16 days ago


Northrop Grumman rating

8.2

Company rating: 8.2 out of 10

Based on 360 frontline employees who took The Breakroom Quiz

87th of 536 rated manufacturers


Job description

RELOCATION ASSISTANCE: Relocation assistance may be availableCLEARANCE REQUIRED FOR START: YesCLEARANCE TYPE: Top SecretTRAVEL: Yes, 10% of the TimeDescriptionAt Northrop Grumman, our employees have incredible opportunities to work on revolutionary systems that impact people's lives around the world today, and for generations to come. Our pioneering and inventive spirit has enabled us to be at the forefront of many technological advancements in our nation's history - from the first flight across the Atlantic Ocean, to stealth bombers, to landing on the moon. We look for people who have bold new ideas, courage and a pioneering spirit to join forces to invent the future, and have fun along the way. Our culture thrives on intellectual curiosity, cognitive diversity and bringing your whole self to work - and we have an insatiable drive to do what others think is impossible. Our employees are not only part of history, they're making history.

Northrop Grumman Defense Systems (NGDS) is seeking a Cyber Protection Principal Engineer to maintain and enhance capabilities in support of DAF CLOUDworks at the Air Force Research Lab (AFRL) in Rome, NY, Warner Robins, GA, or Wright Patterson Air Force Base, OH. DAF CLOUDworks is a rapidly growing secure cloud program that encompasses 10+ teams. These teams span all different areas of

cloud engineering including information security, infrastructure development, and cloud migration. You will be an active part of one of these teams providing technical support of customers leveraging DAF CLOUDworks. Along with operations and sustainment, DAF CLOUDworks focuses on modifying and enhancing offerings to implement new requirements, enhance functionality, increase efficiency, or lower operating/deployment.

This role is focused on cloud penetration testing, adversarial emulation, red team operations, and container security assessments within a cleared DoD environment. The ideal candidate has a strong offensive security background and deep expertise in AWS and Azure environments.

This position is contingent on customer funding and approval and may be filled at a level 3 or level 4.

**this position is contingent upon funding/award

Basic Qualifications:

  • Level 3:Bachelor's degree in Science with 5+ years of software development experience; Master's with 3+ years of relative experience; or an additional 4 years of experience may be considered in lieu of degree.
  • Level 4:Bachelor's degree in Science with 8+ years of software development experience; Master's with 6+ years of relative experience; or an additional 4 years of experience may be considered in lieu of degree.
  • This position requires an active Top Secret/SCI clearance and the ability to obtain an IAT Level II or III certification (Security+, Pentest+, SecurityX,) within 60 days of start.
  • Deep knowledge of cloud attack paths - IAM privilege escalation, metadata service abuse, misconfigured storage, cross-account trust exploitation, and OAuth/token abuse - is required.
  • Proficiency with cloud-native offensive tooling including Pacu (AWS exploitation framework) and AADInternals (Azure/M365 offensive toolkit), alongside enumeration platforms such as ScoutSuite, CloudFox, Prowler, and ROADtools.

Preferred Qualifications:

  • Prior DoD or IC classified environment experience and familiarity with adversary simulation platforms such as Cobalt Strike, Sliver, or Havoc are a strong plus.
  • Hands-on practitioner who has operated tools at depth across real engagements, documented findings under active assessment constraints, and can communicate risk clearly to both technical teams and senior leadership.
  • Experience developing and executing cyber tabletop exercises including threat scenario design, threat actor emulation planning, and after-action reporting is highly valued.
  • Hands-on experience with Docker and Kubernetes security assessments, including container escape techniques, privileged container abuse, K8s RBAC misconfigurations, service account taken abuse, and CI/CD pipeline security across GitLab, GitHub Actions, and Jenkins environments.
  • Strong scripting skills in Bash, Python, and PowerShell are expected, and a working knowledge of MITRE ATT&CK as applied to cloud and hybrid environments
  • Preferred certifications include OSCP, CPTS, PNPT, GPEN, GXPN, GCPN, AWS Security Specialty, or AZ-500.
  • Day-to-day work Jira and Confluence for sprint and documentation workflows, and GitHub for version controlled tooling and collaborative code review.
Primary Level Salary Range: $98,400.00 - $155,400.00Secondary Level Salary Range: $122,800.00 - $193,900.00The above salary range represents a general guideline; however, Northrop Grumman considers a number of factors when determining base salary offers such as the scope and responsibilities of the position and the candidate's experience, education, skills and current market conditions.Depending on the position, employees may be eligible for overtime, shift differential, and a discretionary bonus in addition to base pay. Annual bonuses are designed to reward individual contributions as well as allow employees to share in company results. Employees in Vice President or Director positions may be eligible for Long Term Incentives. In addition, Northrop Grumman provides a variety of benefits including health insurance coverage, life and disability insurance, savings plan, Company paid holidays and paid time off (PTO) for vacation and/or personal business.The application period for the job is estimated to be 20 days from the job posting date. However, this timeline may be shortened or extended depending on business needs and the availability of qualified candidates.Northrop Grumman is an Equal Opportunity Employer, making decisions without regard to race, color, religion, creed, sex, sexual orientation, gender identity, marital status, national origin, age, veteran status, disability, or any other protected class. For our complete EEO and pay transparency statement, please visit http://www.northropgrumman.com/EEO. U.S. Citizenship is required for all positions with a government clearance and certain other restricted positions.

What Northrop Grumman employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom


Northrop Grumman logo

About Northrop Grumman

Sourced by ZipRecruiter

At Northrop Grumman, our employees have incredible opportunities to work on revolutionary systems that impact people's lives around the world today, and for generations to come. Our pioneering and inventive spirit has enabled us to be at the forefront of many technological advancements in our nation's history - from the first flight across the Atlantic Ocean, to stealth bombers, to landing on the moon. We look for people who have bold new ideas, courage and a pioneering spirit to join forces to invent the future, and have fun along the way. Our culture thrives on intellectual curiosity, cognitive diversity and bringing your whole self to work - and we have an insatiable drive to do what others think is impossible.

Industry

Space research administration

Company size

10,000+ Employees

Headquarters location

Falls Church, VA, US

Year founded

1939