Security Engineer (Offensive) - Red Team Operational Vulnerability Assessor
Resource Management Concepts, Inc. · Quantico, Virginia, United States · On-site
Pay: USD 150,000 – 165,000 a year
Posted Sep 3, 2026
Sign up free: we match you to jobs like this, tailor your application and fill the form. 2 free applications every day.
Resource Management Concepts, Inc. (RMC) provides high-quality, professional services to government and commercial sectors. Our mission is to deliver exceptional management and technology solutions supporting the protection and preservation of the people and environment of the United States of America.
We are seeking a highly skilled Red Team Operational Vulnerability Assessor (OVA)/Operator to join one of only eleven Department of War (DoW) Red Teams certified by the National Security Agency (NSA) and accredited by United States Cyber Command (USCYBERCOM). This team is based out of Quantico, VA. This is a unique opportunity to work on advanced cyber operations, contributing directly to national security. You will be part of an elite team, leveraging state-of-the-art tools and methodologies to stay ahead of adversaries.
The Red Team conducts full-spectrum offensive operations to assess and improve the security posture of enterprise and mission-critical environments. This includes both no-notice adversarial assessments and cooperative exercises with blue teams and system owners. Team members emulate advanced threat actors, identify vulnerabilities, and help stakeholders strengthen detection and response capabilities.
Requirements
Responsibilities
● Primary role will be to plan and conduct Operational Vulnerability Assessments (OVA) of the security and defense of Operational Technology (OT) and Information Technology (IT) during discrete missions, often with additional objectives, including physical/wireless security, or specific vulnerabilities.
● For this specific position, we are seeking experience in Industrial Control Systems (ICS), Internet of Things (IoT), and Facility-Related Control System (FRCS) environments.
● This position may likely include supporting and conducting other roles within the Red Team, to include:
Both Operational Technology (OT) and Information Technology (IT) vulnerability assessments
Persistent Cyberspace Operations (PCO) adversary emulation
Acquisition Penetration Testing (APT) via Adversarial Assessments of DoW systems
Support exercise objectives and training goals as an Opposing Force Aggressor (OFA)
Assist in the instruction of the customer's Red Team Operations Course (RTOC)
● Plan and execute no-notice and cooperative Red Team operations across enterprise, application, and cloud environments.
● Identify and exploit network, host, and application-level vulnerabilities.
● Develop and refine proof-of-concept exploits and techniques to test defensive measures.
● Produce detailed technical findings and recommendations for remediation.
● Collaborate with defensive and engineering teams to improve detection and response.
● Continuously evolve team tactics, techniques, and procedures (TTPs), documentation, and training materials to reflect emerging adversary behaviors.
● Participate in after-action reviews and contribute to policy and playbook updates.
● Prepare, update, document, and…