Red Team Lead

North Atlantic Treaty Organization

Location:
Mons, Belgium
Grade:
NATO Grade G20
Category:
Professional Staff
Posted Aug 6, 2026Apply by Aug 30, 2026 (7d left)
See your match score & apply

The Red Team Lead will coordinate and lead red team operations simulating adversarial tactics against NATO enterprise systems. The role involves managing engagement scope, operational security, and translating technical findings into actionable recommendations for leadership within the NATO Cyber Security Centre.

Responsibilities

  • Lead and coordinate the Red Team operations with strategic oversight.
  • Coordinate the planning, design, and execution of red team operations that simulate adversarial tactics, techniques and procedures against enterprise systems, covering network, applications and cloud domains.
  • Ensure operational security.
  • Manage engagement scope and rules of engagements.
  • Translate technical findings into clear, actionable recommendations for leadership.
  • Serve as the primary liaison between the Red Team and strategic stakeholders.
  • In collaboration with the Red Team Technical Lead, manage Red Team research and development activities with the goal of developing and utilizing custom tools, scripts, and malware to replicate sophisticated cyber threats and evade detection mechanisms.

Requirements

  • A Master’s degree at a nationally recognised/certified University in a related discipline and 5 years post-related experience. Or a Bachelor’s degree with 8 years post related experience.
  • Cybersecurity oriented certification such as CRTP, GPEN, GWAPT, OSCP, OSCE, OSEE, GXPN, Red team operator related certification, GREM.
  • At least 5 years practical experience working in offensive cybersecurity field (vulnerability researcher, penetration testing, red teaming).
  • Extensive knowledge and experience (at least 5 years) in conducting or leading Red Team engagements.
  • Extensive knowledge and experience (at least 5 years) in web application penetration testing.
  • Extensive knowledge and experience (at least 5 years) in IT infrastructure penetration testing.
  • Extensive knowledge and experience (at least 5 years) in network security architecture design.
  • Extensive knowledge and experience (at least 5 years) in assessing security vulnerabilities within OS, software, protocols & networks.
  • Extensive knowledge and experience (at least 5 years) in researching and evaluating security products & technologies.
  • Knowledge in system and network administration of UNIX and Windows systems.
  • Use of penetration testing tools, techniques, and recognized testing methodologies.
  • Scripting skills in at least one of the following: Perl, Python, Ruby, shell (bash, sh).
  • Practical experience in leading Red Team engagements.
  • Strong ability and desire to stay up to date with the latest security technologies and trends.
  • Very good communication and analytical skills.
  • Extensive experience leading interdisciplinary teams, preferably in international environment.
  • Practical experience identifying vulnerabilities and discovering 0days.
  • Understanding of the principles of adversary emulation.
  • Understanding of tactics, techniques and procedures of threat actors based on MITRE ATT&CK Framework.
  • Ability to create and execute custom scripts to simulate attack activities.
  • Understanding of the various types of detections available (defence in depth) and how to bypass them.
  • Ability to create and use custom tools to automate and optimize red team engagements.
  • Experience with security testing tools and methodologies, such as fuzzing, static and dynamic application security testing, and penetration testing.
  • Use of red teaming tools, techniques, and recognized testing methodologies.
  • Technical knowledge in system and network security, authentication and security protocols, cryptography and application security.
  • Proven ability to write clear and structured technical reports including executive summary, technical findings and remediation plan for several different audiences.
  • Fluency in English, both written and spoken.

Skills

  • Offensive Cybersecurity
  • Red Team Engagements
  • Web Application Penetration Testing
  • IT Infrastructure Penetration Testing
  • IT Network Security Architecture
  • Security Vulnerability Assessment
  • Security Product Evaluation
  • UNIX system administration
  • Windows System Administration
  • Penetration Testing Tools
  • Perl Scripting
  • Python Scripting
  • Ruby Scripting
  • Shell Scripting
  • Adversary Emulation
  • MITRE ATT&CK Framework
  • Custom Script Development
  • Detection Evasion Techniques
  • Red Team Automation
  • Fuzzing
  • Static Application Security Testing
  • Dynamic Application Security Testing
  • Technical Report Preparation

Languages

English