Vector Command Specialist
Listed on 2026-01-16
-
IT/Tech
Cybersecurity, Network Security
As a Vector Command Specialist, you will work with a team of offensive security consultants to help clients improve their security posture through your technical skills and knowledge of attack surface management strategies. You will serve as a technical analyst and customer liaison. You will also work with various Managed Services teams to help deliver monthly reports to customers, address customer needs, and assist with other security consultant deliverables.
Aboutthe Team
Vector Command is an always-on Red Team operation supporting multiple customers. As part of a specialized team, you will emulate real adversaries by performing large-scale reconnaissance, identifying exposed or high-value assets, and discovering weaknesses that can be leveraged for compromise. After gaining access, the team continues with post-compromise objectives to demonstrate real impact, evade detection, and assess the effectiveness of security controls.
This service evaluates far more than vulnerabilities—it tests the customer’s entire security posture and defense-in-depth strategy.
In addition to offensive operations, you will support customers through external attack surface analysis, exposure reconnaissance, integration of accounts and tools, preparation of monthly Red Team reports, and prioritization of customer requests. Daily collaboration with Vector Command operators is essential, as is maintaining awareness of new vulnerabilities, shifts in customer attack surfaces, and changes across customer environments.
About the RoleYour primary responsibility will be to support Vector Command customers by conducting external attack surface analysis, exposure reconnaissance, account and tool integrations, preparing monthly red team report deliverables, and prioritizing customer requests. You will work daily with Rapid7’s Vector Command Red Team operators, assisting with ongoing red team exercises and staying up to date on the latest vulnerabilities, customer attack surface changes, and exposures within customer environments.
Specifically, your focus will be to:
- Onboard customers to the Vector Command platform and technologies.
- Oversee and ensure the completeness of customer report deliverables.
- Serve as the primary point of contact for customer inquiries related to testing operations, alerts, or general Vector Command questions associated with Red Team activities.
- Coordinate and host monthly Vector Command Red Team update calls in conjunction with a Rapid7 Red Team lead.
- Translate technical concepts and communicate them effectively to non-security personnel.
- Coordinate communications between internal Rapid7 services on behalf of customers, including the Managed Detection and Response (MDR) and Managed Vulnerability Management (MVM) teams.
- Provide monthly written summaries of each customer’s attack surface and Vector Command Red Team operations.
- Analyze each customer’s exposures and attack surface within the Vector Command platform.
- Conduct manual network and service reconnaissance to identify new exposures.
- Perform Open‑Source Intelligence (OSINT) gathering on customers to identify attack surface elements that extend beyond traditional network services.
- Keep the Red Team informed of significant changes in customers’ attack surfaces.
- Coordinate customer requests and prioritizations with the Red Team operators.
- Develop scripts to query and analyze attack surface data from numerous sources and automated systems.
- Perform entry level penetration testing activities against external assets, as assigned by the Red Team lead.
- 3+ years in an active technical security role.
- Knowledge of modern penetration testing tools and methods.
- Knowledge of external attack surface reconnaissance techniques to identify customer’s internet facing exposures.
- Strong knowledge of network, web-based application, and IEEE 802.11 security concepts.
- Knowledge of Windows/Linux/UNIX internals and the Internet protocol suite.
- Experience using scripting languages such as Python and Power Shell.
- Experience with social engineering techniques and tactics related to reconnaissance and OSINT gathering.
- Certifications such as CREST,…
To Search, View & Apply for jobs on this site that accept applications from your location or country, tap here to make a Search: