
Automated Red Team Manager, Deloitte Global Technology
- Toronto, ON
- $85,000-156,000 per year
- Permanent
- Full-time
Work Model: Remote
Reference code: 129505
Primary Location: Toronto, ON
All Available Locations: Toronto, ONOur PurposeAt Deloitte, our Purpose is to make an impact that matters. We exist to inspire and help our people, organizations, communities, and countries to thrive by building a better future. Our work underpins a prosperous society where people can find meaning and opportunity. It builds consumer and business confidence, empowers organizations to find imaginative ways of deploying capital, enables fair, trusted, and functioning social and economic institutions, and allows our friends, families, and communities to enjoy the quality of life that comes with a sustainable future. And as the largest 100% Canadian-owned and operated professional services firm in our country, we are proud to work alongside our clients to make a positive impact for all Canadians.By living our Purpose, we will make an impact that matters.
- Have many careers in one Firm.
- Enjoy flexible, proactive, and practical benefits that foster a culture of well-being and connectedness.
- Learn from deep subject matter experts through mentoring and on the job coaching
- Oversee the Remediation lifecycle including identifying ownership, assessing risk, and prioritizing each risk to ensure effective mitigation strategies
- Develop, communicate, and monitor action plans for implementing new security controls or enhancing existing controls
- Collaborate with cross-functional teams to ensure timely execution and closure of remediation efforts
- Lead other complex risk mitigation practices for the organization
- Design, execute, and manage simulated cyber-attacks using BAS platforms to evaluate the effectiveness of security controls
- Overcome delivery challenges, including but not limited to; priority conflicts, business versus technology perspective, resource availability and engagement
- Review simulation results to pinpoint gaps in detection, prevention, and response capabilities, delivering actionable recommendations to enhance defenses
- Manage multiple concurrent projects, ensuring alignment with organizational security objectives
- Mentor and develop team members, fostering a culture of collaboration, innovation, and accountability
- Act as a liaison between technical teams and senior leadership, translating complex technical findings into actionable insights
- Drive continuous improvement in processes, tools, and methodologies across the Global Red Team
- Stay updated on emerging threats and tactics, techniques, and procedures (TTPs) to enhance simulation scenarios and risk mitigation
- Bachelor’s Degree preferably in an information technology-related field
- Approximately 5 years of experience in cybersecurity, with at least 1-2 years focused on breach and attack simulation and/or vulnerability management.
- Familiarity with MITRE ATT&CK and how it maps to real-world threats
- Knowledge of a wide array of technologies, including network security, endpoint protection, cloud security, and SIEM systems
- Strong communication skills to document findings and collaborate across teams
- General networking, host, and security based troubleshooting (firewalls, routing, NAT, etc.)
- Ability to autonomously prioritize and successfully deliver across a portfolio of projects
- Experience with red teaming, penetration testing, purple teaming, or vulnerability management
- Experience working with breach and attack simulation (BAS) solutions are a bonus
- Proficiency in scripting or programming languages (e.g., Python, PowerShell, or C) for automation, custom simulations, and reporting
- Security certifications are a bonus (CISSP, CISM, OSCP, Security +, etc.)
- GIAC certifications beneficial
- Familiarity with application, server, and network security