Job Summary:
We are urgently seeking an experienced Red Team / Telecom Security Specialist to perform advanced penetration testing and security assessments of telecom networks. The ideal candidate will have hands-on expertise in telecom protocols and the ability to simulate real-world cyber threats to safeguard critical infrastructure.
Key Responsibilities:
- Perform specialized telecom penetration testing, including assessments of SS7, Diameter, GTP, and SIP protocols to identify signalling and interconnect vulnerabilities.
- Simulate telecom-specific adversarial scenarios such as location tracking, SMS interception, and fraud exploitation to evaluate core telecom infrastructure defenses.
- Collaborate with telecom operations and engineering teams to review configurations of HLR, MME, SGSN, and other network elements for security hardening opportunities.
- Integrate security tools and checks into CI/CD pipelines, including automated SAST, DAST, and container image scanning, to identify issues early in the software lifecycle.
- Conduct in-depth application security reviews and threat modeling to uncover design flaws and coding vulnerabilities before production deployment.
- Promote and enforce secure DevOps practices, including policies for secrets management, infrastructure-as-code security scanning, and continuous compliance monitoring.
- Perform continuous security assessments and penetration testing across IT and OT environments.
- Conduct advanced Red Team operations simulating real-world cyber threats.
- Develop attack simulation strategies to test the effectiveness of security controls.
- Identify, exploit, and document vulnerabilities in applications, networks, and systems.
- Assess and improve incident detection and response capabilities.
- Provide detailed reports on security gaps, attack vectors, and mitigation recommendations.
- Collaborate with Blue Teams to enhance defensive strategies.
Requirements:
- Proven experience in telecom penetration testing and red team operations.
- Deep knowledge of telecom protocols (SS7, Diameter, GTP, SIP).
- Strong understanding of core telecom network elements (HLR, MME, SGSN, etc.).
- Hands-on experience with security tools, CI/CD integration, and automated security testing.
- Strong analytical and problem-solving skills.
- Excellent communication and report-writing skills.
Preferred Qualifications:
- Certifications such as OSCP, CREST CRT, GPEN, or similar.
- Experience in DevSecOps and cloud security.
- Prior experience in fraud and threat simulation in telecom networks.
Job Type: Contract
Contract length: 12 months
Application Question(s):
- Have you worked with SS7, Diameter, GTP, or SIP protocols in a security testing context?
- Have you performed telecom-specific adversarial simulations like location tracking, SMS interception, or fraud exploitation?
- Have you reviewed configurations of HLR, MME, SGSN, or other telecom network elements for security hardening?
- Are you familiar with integrating security testing into CI/CD pipelines? Which tools have you used (SAST, DAST, container scanning, etc.)
- Are you proficient with Red Team tools, such as Metasploit, Cobalt Strike, Burp Suite, Wireshark, or custom scripts?
- Are you available to start immediately ?
- What is your expected salary ?
Education:
Experience:
- penetration testing or Red Team operations: 4 years (Preferred)
Language:
License/Certification:
- security certifications (OSCP, CREST CRT, GPEN, etc.) (Preferred)
Location: