Application Deadline:
Address:
VIRTUAL13 - HomeRes - ILJob Family Group:
TechnologyThe Senior Red Team operator reports to the Sr. Manager of Red Team and provides execution and collaboration to a team of highly skilled offensive security engineers and is a subject matter expert to BMO businesses and functions on threat actor simulation exercises. This role will be responsible for the planning and execution of ethical hacking and adversary emulation campaigns to identify weaknesses in security controls, platforms and infrastructure hardening, application logic and physical security. The Senior Red Team Operator executes on strategic offensive security direction that is aligned with corporate business objectives, regulatory requirements and relevant attack scenarios.
KEY Functions :
Adversarial Operations Technical Execution – Plans, implements, and leads technical execution of Red Team operation phases. Leads planned Red Team activities with a high degree of trust and integrity, adhering strongly to rules of engagement and internal standard operating procedures. Familiar with modern adversarial tradecraft supported by threat intelligence and able to advise during the planning and execution of Red Team operations of tactics, techniques and procedures utilized by modern adversaries.
Team Leadership – Leads the execution of activities by specialized staff in Red Team campaigns aimed at identifying opportunities to enhance BMO security controls including malicious event detection, protection and response. Works with management and peers to foster the development of less experienced Red Team members
Subject Matter Expertise - Provides technical leadership as a Red and Purple Team subject matter expert to business areas, project teams and information security practitioners to apply and execute appropriate use of technology solutions. Leads efforts on the execution of Red Team operations to include pre-engagement, engagement and post-engagement activities. Advises on the efficacy of current processes for Red Team activities and challenges with regard to security standards and the impact of the technology.
Secure Testing - Performs adversarial and TTP simulation testing according to a structured process, to include but not limited to; writing test plans, test cases and test reports. This may include oversight and/or execution of the configuration and deployment of security testing software and application of results to security analysis.
Information Security Risk Management – Works with leadership to mature red team, reporting and remediation guidance in alignment with local and global regulatory requirements and internal governing enterprise risk management policies. Identifies security gaps and deficiencies by conducting risk assessments; able to recommend corrective action of identified vulnerabilities and weaknesses. Executes the planning, testing, tracking, and advisory of necessary risk acceptance for identified security risks.
KEY Skill Requirements:
5+ years Offensive Security experience working in a technical role (penetration testing, manual application/web assessments, threat hunting, etc.)
3+ years Red Team (threat actor simulation) experience working in a technical role
Strong written and verbal skills with the ability to present complex technical observations to a non-technical audience.
Demonstrates familiarity with adversarial tradecraft, threat intelligence ingestion and difference in value of penetration testing and red team assessments.
Demonstrates leadership competency working with geographically separated teams of specialized cyber security professionals.
Preferred Qualifications:
Zero Point Security Certified Red Team Operator (CRTO 2025 Edition)
Offensive Security Experienced Penetration Tester (OSEP)
Technical Knowledge
Strong working knowledge of:
Windows and Linux based platforms, applications and TCP/IP network security technologies
Strong technical knowledge of multifaceted exploits and chained attacks.
Demonstrated ability to execute attack emulations without detection.
Information security concepts, principles and components of a comprehensive information security program
Strong, demonstrable aptitude for and interest in offensive and application security.
Strong understanding of vulnerability exploitation and an aptitude for identifying weaknesses in controls and infrastructure.
Advanced knowledge and/or demonstrated experience in application penetration testing
Strong knowledge of customer payload development
Work Environment Characteristics
Self-motivated and results-oriented, including ability to prioritize conflicting demands.
Exceptional organizational skills to balance work and lead the execution of multiple projects.
Strong initiative, consensus-building and ability to collaborate directly and build strong relationships with a variety of internal and external stakeholders (business, development, compliance,
Provides information security consulting services for BMO overall and businesses/groups. Liaises with stakeholders to understand problems and opportunities and enables BMO to meet its goals by understanding business vision, objectives and KPIs. Leads the development of information security strategy by understanding business processes, policies, information and information systems. Builds exceptional relationships with internal and external stakeholders. Ensures that requirements and solutions align to a real business need, are approved by all relevant stakeholders, and meets essential information security standards. Provides thought leadership, promotes new processes and methodologies and emerging technologies, with the flexibility to align to the unique requirements of the business/group and deliverables.
Qualifications:
Salary:
$122,400.00 - $228,000.00Pay Type:
SalariedThe above represents BMO Financial Group’s pay range and type.
Salaries will vary based on factors such as location, skills, experience, education, and qualifications for the role, and may include a commission structure. Salaries for part-time roles will be pro-rated based on number of hours regularly worked. For commission roles, the salary listed above represents BMO Financial Group’s expected target for the first year in this position.
BMO Financial Group’s total compensation package will vary based on the pay type of the position and may include performance-based incentives, discretionary bonuses, as well as other perks and rewards. BMO also offers health insurance, tuition reimbursement, accident and life insurance, and retirement savings plans. To view more details of our benefits, please visit: https://jobs.bmo.com/global/en/Total-Rewards
About Us
At BMO we are driven by a shared Purpose: Boldly Grow the Good in business and life. It calls on us to create lasting, positive change for our customers, our communities and our people. By working together, innovating and pushing boundaries, we transform lives and businesses, and power economic growth around the world.
As a member of the BMO team you are valued, respected and heard, and you have more ways to grow and make an impact. We strive to help you make an impact from day one – for yourself and our customers. We’ll support you with the tools and resources you need to reach new milestones, as you help our customers reach theirs. From in-depth training and coaching, to manager support and network-building opportunities, we’ll help you gain valuable experience, and broaden your skillset.
To find out more visit us at http://jobs.bmo.com/us/en
BMO is proud to be an equal employment opportunity employer. We evaluate applicants without regard to race, religion, color, national origin, sex (including pregnancy, childbirth, or related medical conditions), sexual orientation, gender identity, gender expression, transgender status, sexual stereotypes, age, status as a protected veteran, status as an individual with a disability, or any other legally protected characteristics. We also consider applicants with criminal histories, consistent with applicable federal, state and local law.
BMO is committed to working with and providing reasonable accommodations to individuals with disabilities. If you need a reasonable accommodation because of a disability for any part of the employment process, please send an e-mail to BMOCareers.Support@bmo.com and let us know the nature of your request and your contact information.
Note to Recruiters: BMO does not accept unsolicited resumes from any source other than directly from a candidate. Any unsolicited resumes sent to BMO, directly or indirectly, will be considered BMO property. BMO will not pay a fee for any placement resulting from the receipt of an unsolicited resume. A recruiting agency must first have a valid, written and fully executed agency agreement contract for service to submit resumes.
Nationwide
Raytheon
PwC South East Asia Consulting
Mallinckrodt Pharmaceuticals
Alpha FMC