Build, and deploy technology-supported workflows to execute diverse intelligence use cases across SOC, IR, Insider Risk, Fraud, Red Team, Threat Hunt, and other stakeholder environments * Develop and ...
Build, and deploy technology-supported workflows to execute diverse intelligence use cases across SOC, IR, Insider Risk, Fraud, Red Team, Threat Hunt, and other stakeholder environments * Develop and ...
Security Operations Analyst- East Coast
Baltimore, MD · Remote
$100K - $125K/yr
Founded in 2015 by former NSA cyber operators, Huntress is a remote-first team working to make ... Red Team TTPs) * Demonstrated experience with static and dynamic malware analysis concepts
New
Quick apply
Security Operations Analyst- East Coast
Baltimore, MD · Remote
$100K - $125K/yr
Founded in 2015 by former NSA cyber operators, Huntress is a remote-first team working to make ... Red Team TTPs) * Demonstrated experience with static and dynamic malware analysis concepts
New
Communications Specialist
Washington, DC · On-site +1
$60K - $80K/yr
... Remote This position is contingent upon contract award. ABOUT THE ROLE Red Carrot is seeking a ... We partner with clients to advance their goals - powered by a team fueled by passion, backed by ...
Communications Specialist
Washington, DC · On-site +1
$60K - $80K/yr
... Remote This position is contingent upon contract award. ABOUT THE ROLE Red Carrot is seeking a ... We partner with clients to advance their goals - powered by a team fueled by passion, backed by ...
Communications Specialist
Washington, DC · Remote
$54K - $72K/yr
... Remote This position is contingent upon contract award. ABOUT THE ROLE Red Carrot is seeking a ... C., our team works with clients across the country. Distance doesn't dilute our service. We build ...
Quick apply
Communications Specialist
Washington, DC · Remote
$54K - $72K/yr
... Remote This position is contingent upon contract award. ABOUT THE ROLE Red Carrot is seeking a ... C., our team works with clients across the country. Distance doesn't dilute our service. We build ...
... a remote setting, you will be supporting teams of professionals working to evaluate and secure a ... Red Team member, SOC analyst). * Management Experience : 5 or more years of experience in a ...
... a remote setting, you will be supporting teams of professionals working to evaluate and secure a ... Red Team member, SOC analyst). * Management Experience : 5 or more years of experience in a ...
Director of Leasing & Revenue
Arlington, VA · On-site +1
Orlando, FL; or any major Gilbane Office Location, or REMOTE. Responsibilities Lease-Up Strategy ... Participate in development Red Team Reviews, providing perspective on market positioning ...
Director of Leasing & Revenue
Arlington, VA · On-site +1
Orlando, FL; or any major Gilbane Office Location, or REMOTE. Responsibilities Lease-Up Strategy ... Participate in development Red Team Reviews, providing perspective on market positioning ...
Writer I
Arlington, VA · On-site +1
Remote ⚠ This position is contingent upon contract award. ABOUT THE ROLE Red Carrot is seeking a ... We partner with clients to advance their goals - powered by a team fueled by passion, backed by ...
Writer I
Arlington, VA · On-site +1
Remote ⚠ This position is contingent upon contract award. ABOUT THE ROLE Red Carrot is seeking a ... We partner with clients to advance their goals - powered by a team fueled by passion, backed by ...
... a remote setting, you will be supporting teams of professionals working to evaluate and secure a ... Red Team member, SOC analyst). * Management Experience : 5 or more years of experience in a ...
... a remote setting, you will be supporting teams of professionals working to evaluate and secure a ... Red Team member, SOC analyst). * Management Experience : 5 or more years of experience in a ...
Social Media Specialist
Arlington, VA · Remote
Remote ⚠ This position is contingent upon contract award. ABOUT THE ROLE Red Carrot is seeking a ... We partner with clients to advance their goals -- powered by a team fueled by passion, backed by ...
Quick apply
Social Media Specialist
Arlington, VA · Remote
Remote ⚠ This position is contingent upon contract award. ABOUT THE ROLE Red Carrot is seeking a ... We partner with clients to advance their goals -- powered by a team fueled by passion, backed by ...
Graphic Designer
Arlington, VA · On-site +1
Remote This position is contingent upon contract award. ABOUT THE ROLE Red Carrot is seeking a ... We partner with clients to advance their goals - powered by a team fueled by passion, backed by ...
Graphic Designer
Arlington, VA · On-site +1
Remote This position is contingent upon contract award. ABOUT THE ROLE Red Carrot is seeking a ... We partner with clients to advance their goals - powered by a team fueled by passion, backed by ...
Social Media Specialist
Arlington, VA · On-site +1
Remote ⚠ This position is contingent upon contract award. ABOUT THE ROLE Red Carrot is seeking a ... We partner with clients to advance their goals - powered by a team fueled by passion, backed by ...
Social Media Specialist
Arlington, VA · On-site +1
Remote ⚠ This position is contingent upon contract award. ABOUT THE ROLE Red Carrot is seeking a ... We partner with clients to advance their goals - powered by a team fueled by passion, backed by ...
Graphic Designer
Arlington, VA · Remote
Remote This position is contingent upon contract award. ABOUT THE ROLE Red Carrot is seeking a ... We partner with clients to advance their goals -- powered by a team fueled by passion, backed by ...
Quick apply
Graphic Designer
Arlington, VA · Remote
Remote This position is contingent upon contract award. ABOUT THE ROLE Red Carrot is seeking a ... We partner with clients to advance their goals -- powered by a team fueled by passion, backed by ...
Writer I
Arlington, VA · Remote
Remote ⚠ This position is contingent upon contract award. ABOUT THE ROLE Red Carrot is seeking a ... We partner with clients to advance their goals -- powered by a team fueled by passion, backed by ...
Quick apply
Writer I
Arlington, VA · Remote
Remote ⚠ This position is contingent upon contract award. ABOUT THE ROLE Red Carrot is seeking a ... We partner with clients to advance their goals -- powered by a team fueled by passion, backed by ...
Proposal Specialist IV
Arlington, VA · On-site +1
This will be a hybrid position including a combination of both remote and in-office work schedules ... Facilitates color reviews (pink and red team) for assigned pursuits, and applies lessons learned to ...
Proposal Specialist IV
Arlington, VA · On-site +1
This will be a hybrid position including a combination of both remote and in-office work schedules ... Facilitates color reviews (pink and red team) for assigned pursuits, and applies lessons learned to ...
Experience with red team operations or offensive cyber capabilities development * Ability to ... Graduate of the Computer Network Operations Development Program (CNODP), Remote Interactive ...
Experience with red team operations or offensive cyber capabilities development * Ability to ... Graduate of the Computer Network Operations Development Program (CNODP), Remote Interactive ...
Application Security Engineer II
Washington, DC · Remote
$66.50 - $89/hr
Application Security Engineer II (Remote Candidates will be considered) Our Story and Our ... Support Red Team exercises and external penetration testing engagements * Assist in triaging and ...
Application Security Engineer II
Washington, DC · Remote
$66.50 - $89/hr
Application Security Engineer II (Remote Candidates will be considered) Our Story and Our ... Support Red Team exercises and external penetration testing engagements * Assist in triaging and ...
Design, build, and deploy technology-supported workflows to execute diverse intelligence use cases across SOC, IR, Insider Risk, Fraud, Red Team, Threat Hunt, and other stakeholder environments
Design, build, and deploy technology-supported workflows to execute diverse intelligence use cases across SOC, IR, Insider Risk, Fraud, Red Team, Threat Hunt, and other stakeholder environments
Design, build, and deploy technology-supported workflows to execute diverse intelligence use cases across SOC, IR, Insider Risk, Fraud, Red Team, Threat Hunt, and other stakeholder environments
Design, build, and deploy technology-supported workflows to execute diverse intelligence use cases across SOC, IR, Insider Risk, Fraud, Red Team, Threat Hunt, and other stakeholder environments
... services team. This is a fully remote position focused on conducting interview and feedback ... Start seeing patients quickly with minimal red tape * Professional Development: Opportunity for ...
Quick apply
... services team. This is a fully remote position focused on conducting interview and feedback ... Start seeing patients quickly with minimal red tape * Professional Development: Opportunity for ...
Junior Full stack Developer Red Cedar is seeking a high-performing Junior Full stack Developer to work within a fast-paced, remote Agile DevOps team contributing and collaborating within your scrum ...
Junior Full stack Developer Red Cedar is seeking a high-performing Junior Full stack Developer to work within a fast-paced, remote Agile DevOps team contributing and collaborating within your scrum ...
Remote Red Team information
See Silver Spring, MD salary details
$19.4K - $35.3K
14% of jobs
$49.5K is the 25th percentile. Wages below this are outliers.
$35.3K - $51.1K
13% of jobs
$51.1K - $67K
5% of jobs
$67K - $82.8K
4% of jobs
$82.8K - $98.7K
3% of jobs
$98.7K - $114.5K
5% of jobs
The median wage is $124.2K / yr.
$114.5K - $130.4K
9% of jobs
$130.4K - $146.2K
19% of jobs
$148.5K is the 75th percentile. Wages above this are outliers.
$146.2K - $162.1K
17% of jobs
$162.1K - $177.9K
7% of jobs
$177.9K - $193.8K
3% of jobs
$19.4K
$111.5K
$193.8K
How much do remote red team jobs pay per year?
What is a remote red team?
A Remote Red Team job involves simulating cyberattacks to test an organization's security defenses while working remotely. These professionals assess vulnerabilities, exploit weaknesses, and provide recommendations to improve security. They use ethical hacking techniques, penetration testing, and social engineering to mimic real-world threats. The goal is to help organizations strengthen their security posture by identifying and addressing risks before malicious hackers can exploit them.
What does a typical day look like for someone on a remote red team?
A typical day in a remote Red Team role involves planning and executing security assessments, crafting realistic attack scenarios, and documenting vulnerabilities discovered during penetration tests or simulated breaches. You’ll often work collaboratively with other Red Team members and interact with Blue Teams or IT staff to coordinate exercises and share findings. The workflow is usually a mix of independent tasks—such as research, reporting, and tool development—and regular virtual meetings to strategize or debrief. Flexibility, clear communication, and critical thinking are crucial as projects and threat simulations can vary frequently. This dynamic environment allows you to continuously develop your technical skills while contributing to the evolving security of diverse organizations.
What are the key skills and qualifications needed to thrive in the remote red team position, and why are they important?
To thrive as a Remote Red Team professional, you need a strong background in penetration testing, vulnerability assessment, network security, and a deep understanding of attacker tactics, techniques, and procedures (TTPs). Familiarity with common cybersecurity tools (e.g., Metasploit, Cobalt Strike, Nmap), scripting languages, and certifications like OSCP or CEH are highly valued. Exceptional problem-solving, written communication, and teamwork skills help in delivering comprehensive assessments and collaborating with clients or internal security teams. These competencies are essential for identifying security weaknesses, simulating real-world threats, and effectively improving an organization’s overall security posture.

Full-time
Retirement
Posted 4 days ago
UnitedHealth Group rating
7.6
Based on 146 frontline employees who took The Breakroom Quiz
186th of 887 rated healthcare providers
Job description
Explore opportunities with the Enterprise Information Security (EIS) team at UnitedHealth Group. Join one of the world's largest health care companies and become part of the first line of defense against security threats. We are focused on strengthening our cyber defenses, ransomware resiliency, vulnerability mitigation, and securing all aspects of our systems and data globally. We are passionate about protecting the sensitive data of our members and providers. We are committed to leveraging every tool, partnership and process needed to enhance our security posture. It is our duty to protect the information of those we serve whileCaring. Connecting. Growing together.
The Enterprise Information Security (EIS) teamis responsible forcybersecurity across our organization. We support our business and members by reducing risk, rapidly responding to threats, focusing on businessresiliencyand securing new acquisitions.
The Principal Threat Intelligence Engineer is responsible for deployment and integration of threat intelligence technical capabilities across United Health Group's security ecosystem. The role focuses on ingesting, normalizing, and enriching threat intelligence information, integrating Threat Intelligence Platforms (TIPs) and intelligence sources with security tooling (e.g., SIEM, SOAR, EDR), and deploying automated intelligence-enabled detection and response workflows. The ideal candidate combines solid software engineering skills with deep cybersecurity domain knowledge to transform raw threat data into actionable intelligence that enhances detection, response, and risk mitigation. This technical role focuses on building automation, data pipelines, and detection mechanisms to proactively defend infrastructure against threats of varying technical sophistication.
The Principal Threat Intelligence Engineer is expected to execute the delivery of technical intelligence solutions to CTI, SOC, Threat Detection, and Threat Hunting teams that accelerate the processing and dissemination of intelligence, increase speed of detection, and enable rapid response. The Principal Threat Intelligence Engineer will work closely with and in support of the Senior Principal Threat Intelligence Engineer and members of CTI and other security operations teams to execute a roadmap of technology improvements intended to optimize the efficiency and impact of CTI operations.
You'll enjoy the flexibility to work remotely * from anywhere within the U.S. as you take on some tough challenges. For all hires in the Minneapolis or Washington, D.C. area, you will be required to work in the office a minimum of four days per week.
Primary Responsibilities:
- Deploy, integrate, and maintain a threat intelligence platform that is integrated into United Health's security tooling ecosystem
- Integrate threat intelligence into SIEM platforms (e.g., Splunk) for detection use cases and alert enrichment
- Efficiently employ agentic AI, LLMs, and other associated capabilities to increase the availability and speed of delivery of contextualized threat intelligence to CTI, SOC, IR, and other SecOps members
- Build, and deploy technology-supported workflows to execute diverse intelligence use cases across SOC, IR, Insider Risk, Fraud, Red Team, Threat Hunt, and other stakeholder environments
- Develop and maintain SOAR playbooks for automated threat response and enrichment; utilize SOAR to optimize intelligence workflows
- Orchestrate workflows across security tools to reduce manual analysis and response time
- Build and maintain integrations between threat intelligence feeds (commercial, open-source, ISACs) and internal security platforms
- Integrate and operationalize Threat Intelligence Platforms (e.g., MISP, OpenCTI ThreatConnect, Anomali, ThreatQuotient) with enterprise security tools
- Develop pipelines to ingest, normalize, deduplicate, and enrich Indicators of Compromise (IOCs) and threat data
- Correlate intelligence with telemetry from SIEM, EDR, NDR, and cloud security tools to improve detection fidelity
- Enable automated enrichment of alerts using threat intelligence data within SIEM workflows
You'llbe rewarded and recognized for your performance in an environment that will challenge you and give you clear direction on what it takes to succeed in your role as well asprovidedevelopment for other roles you may be interested in.
Required Qualifications:
3 years of experience in a cyber threat intelligence, cyber security engineering, incident response or malware analysis role with heavy emphasis on tool and technology integration
Proficiency in one or more of:
Python (primary) for automation, API integrations, and data processing,
Java, JavaScript/Node.js, or Go for service development
- Experience with:
- REST APIs, JSON, STIX/TAXII protocols
- Data parsing, transformation, and pipeline development
- Scripting (Bash, PowerShell)
- Demonstrated familiarity with version control (Git) and CI/CD pipelines
- Demonstrated familiarity with a variety of OS's and platforms including Linux (Ubuntu, CentOS, RHEL, Kali), AWS, Docker, Windows Server (NT through 2012), Active Directory, Mac OS X
- Experiences with AI employment in a threat intelligence framework including LLM, MCP server configuration, RAG and associated processes
- Hands-on experience with TIPs such as: MISP, OpenCTI, ThreatConnect, Anomali
Experience integrating multiple intelligence feeds and formats
- Solid experience with SIEM platforms: Splunk, Microsoft Sentinel, IBM QRadar, Elastic
- Experience building detection rules, correlation searches, and dashboards
- Proven understanding of log ingestion, normalization, and enrichment pipelines
- Experience with SOAR platforms such as Cortex XSOAR, Splunk SOAR, Swimlane, Tines
- Development experience with playbooks/runbooks for automated response
- Proven knowledge of structured threat data formats (STIX, TAXII)
Preferred Qualifications:
- Relevant certifications (e.g., GCTI, GCIA, CISSP, Splunk certifications)
- Experience in large-scale security operations or SOC environments
- Familiarity with MITRE ATT&CK and other intelligence frameworks
- Familiarity with data engineering technologies (Kafka, Spark, Elasticsearch)
- Experience with cloud platforms (AWS, Azure, GCP) and security integrations
- Experience in threat hunting and detection engineering
*All employees working remotely will be required to adhere to UnitedHealth Group's Telecommuter Policy.
Pay is based on several factors including but not limited to local labor markets, education, work experience, certifications, etc. In addition to your salary, we offer benefits such as, a comprehensive benefits package, incentive and recognition programs, equity stock purchase and 401k contribution (all benefits are subject to eligibility requirements). No matter where or when you begin a career with us, you'll find a far-reaching choice of benefits and incentives. The salary for this role will range from $112,700 - $193,200 annually based on full-time employment. We comply with all minimum wage laws as applicable.
Application Deadline: This will be posted for a minimum of 2 business days or until a sufficient candidate pool has been collected. Job posting may come down early due to volume of applicants.
At UnitedHealth Group, our mission is to help people live healthier lives and make the health system work better for everyone. We believe everyone-of every race, gender, sexuality, age,locationand income-deserves the opportunity to live their healthiest life. Today, however, there are still far too many barriers to good health which are disproportionately experienced by people of color, historically marginalizedgroupsand those with lower incomes. We are committed to mitigating our impact on the environment and enabling and deliveringequitablecare that addresses health disparities and improves health outcomes - an enterprise priority reflected in our mission.
UnitedHealth Group is an Equal Employment Opportunity employer under applicable law and qualified applicants will receive consideration for employment without regard to race, national origin, religion, age, color, sex, sexual orientation, gender identity, disability, or protected veteran status, or any other characteristic protected by local, state, or federal laws, rules, or regulations.
UnitedHealth Group is adrug -free workplace. Candidatesare required topass a drug test before beginning employment.
What UnitedHealth Group employees say
Pay
Benefits
Hours and flexibility
Workplace
Get the full story on Breakroom
About UnitedHealth Group
Sourced by ZipRecruiter
Industry
Insurance services
Company size
10,000+ Employees
Headquarters location
Minnetonka, MN, US
Year founded
1977