You will be an integral part of our Offensive Security organization, directly contributing to improving CME Group’s security posture
Job Summary
You will be an integral part of our Offensive Security organization, directly contributing to improving CME Group’s security posture.
This high-impact role is a major contributor for the execution of Purple Team cyber exercises on internal and internet facing information systems and infrastructure.
You’ll play a significant role in the execution of Red Team adversary emulations against our complex hybrid environment, proactively testing and strengthening our internal and internet-facing systems.
Matching Summary
You will be an integral part of our Offensive Security organization, directly contributing to improving CME Group’s security posture.
Skills & Requirements
Must-have
Purple Team exercises design and execution
Red Team adversary emulation
MITRE ATT&CK framework expertise
Penetration testing tools proficiency
Cloud environment offensive security
Scripting language proficiency
Windows and Linux system hardening
Nice-to-have
Advanced Persistent Threat understanding
Purple Team project delivery experience
Malware payload modification skills
Bug bounty and CVE creation experience
Open source tooling publication
Infrastructure provisioning automation
Agile work environment experience
Enterprise security standards familiarity
Key Requirements
5+ years penetration testing experience
Experience with industry-standard adversary emulation tools
Proficiency in at least one scripting language
Experience with cloud environments (AWS, GCP, Azure)