Advanced Red Team Operator – TS/SCI Clearance| Norfolk, VA
Advanced Red Team Operator – TS/SCI Clearance | Norfolk, VA
Cambridge International Systems, Inc.
Join a dynamic global team united by shared values: commitment, integrity, and perseverance. At Cambridge, you’ll work alongside top talent worldwide, tackling some of today’s most complex and critical challenges in defense and security.
We are currently seeking an Advanced Red Team Operator to support operations in Norfolk, VA. This is a full-time position requiring an active DoD TS/SCI clearance.
This position is contingent upon contract award with an expected award date of November 2025.
What You’ll Do
Review and become proficient in the cyber T&E concept of operations, SOPs, policies and guidance.
Maintain and participate in the development of 01D SOPs and documentation for DCAT authorization established in DoDI 8585.01.
Research, review, prioritize, and submit operational requirements for acquisition of equipment or cyber capabilities, following the 01D tool approval process.
Support development and execution of TTPs for penetration testing or Red Teaming.
Research adversary cyber actors’ TTPs, organizational structures, capabilities, personas, and environments, and integrate findings into cyber survivability test planning and execution.
Participate in the Cyber Test planning:
Conduct open-source research and system under test documentation review to familiarize with the system’s mission, architecture and interfaces including critical components to identify its attack surface and threat vectors
Participate in check point meetings
Guide development of test plan objectives
Review test plans, ensuring that test plans objectives are feasible
Participate in test planning site visits
Participate in test preparation:
Participate in site pre-test coordination visits. Support in-brief to the test site.
Lead red team test plan review
Add relevant system technical information to test reference library
Organize and lead research presentations for advanced capability development in support of future tests
Prepare the test assets (Government Furnished)
Execute test events, including Cooperative Vulnerability Penetration Assessments, Adversarial assessments, and Cyber Tabletops, in support of Operational Testing, Developmental Testing, risk reduction events, or other events, as assigned.
Use provided and approved commercial and open-source network cyber assessment tools (e.g. Core Impact, Nmap, Burp, Metasploit, and Nessus).
Employee ethical hacking expertise to exploit discovered vulnerabilities and misconfigurations associated with but not limited to operating systems (Windows, Linux, etc.), protocols (HTTP, FTP, etc.), and network security services (PKI, HTTPS, etc.) to accomplish test objectives
Be able to accomplish testing independently and provide direction to basic and intermediate operators
Ensure tests are conducted safely, in accordance with the test plan, and the policies are adhered to.
Follow Joint Forces Headquarters (JFHQ)-DODIN deconfliction procedures
Verify collected data for accuracy and completeness.
Participate in the post-test iterative process, including generation of documents (e.g. deficiency/risk sheets)
Document lessons learned.
Participate in capture the flag events, cyber off sites, external engagements such as red team huddles and red team technical exchange meetings; develop required products and materials in support of these events.
Attend the required meetings in support of OT&E.
Generate and update documentation to maintain DCAT authorization compliance per DoDI 8585.0.
What You’ll Bring
Required Qualifications:
Education & Experience:
Minimum 6 years’ experience performing any combination of: penetration testing, red teaming, or exploitation development.
Minimum 6 years’ with proficiency in leading red team operators in penetration testing/red teaming to accomplish assigned test objectives.
Eligible to obtain and keep active, a DoD TS/SCI security clearance.
Proficient with modern IT tools and infrastructure technologies
Preferred (Nice to Have):
Bullet out or write in paragraph form
Travel & Passport
Some overnight stays possible.
Work Environment
Compliance with vaccination and medical requirements for TDY/OCONUS roles as per Vaccine Recommendations by AOR | Health.mil.
Office setting:
Primarily an office-based role in Norfolk, VA
Standard desk/computer work with flexibility for walking and movement on site
Must be able to work in an office environment, sitting at a desk, looking at a computer for most of the workday.
Work is physically comfortable; the employee has discretion about sitting, walking, standing, etc.
May be required to travel short distances to offices/conference rooms and buildings on site.
Background & Security
Employment is contingent upon successful background investigation
Drug screening may be required for federal contract compliance
Benefits & Perks
We believe in investing in our team—both professionally and personally:
Medical, dental, vision, life, accident, and critical illness insurance
401(k) immediate vesting and match
Paid time off and company holidays
Generous tuition & training support
Relocation assistance
Sign-on and performance-based bonuses
Employee referral program
Access to Tickets at Work, EAP, wellness initiatives, and more
Join Us
If you're driven by mission, technology, and teamwork—we want to hear from you. Cambridge is growing, and this position is just one of many opportunities on our global team. Know someone perfect for the role? Referrals are welcome—both employees and non-employees may qualify for a bonus.
Apply today and help shape the future of secure cloud computing for national security.
About Cambridge International Systems
At Cambridge, innovation grows through diversity. We are proud to be an equal opportunity employer, committed to creating an inclusive and supportive work environment for all. Learn more at www.cbridgeinc.com.