Red Team Engineer (M/F)
Full-time
Rabat or Paris (hybrid model possible)
Who are we?
Nucleon Security is a next-generation cybersecurity solutions provider.
Our mission: to protect organizations against advanced threats through a sovereign, innovative approach, driven by artificial intelligence applied to cybersecurity.
We specialize in EDR, behavioral detection, automated remediation, and threat intelligence.
Driven by a passionate and committed team of experts, Nucleon Security is experiencing strong growth in both Europe and Africa.
Joining us means being part of a high-impact adventure in a stimulating, people-focused, and demanding environment.
Why this role?
In a constantly evolving threat landscape, we are strengthening our offensive capabilities to:
- Simulate the behavior of sophisticated threat actors (APT)
- Test the resilience of our clients' systems
- Fuel the continuous improvement of our defensive products and services
Your Main Responsibilities
As a Red Team Engineer , you will play a key role in the Offensive Security team. You will be responsible for designing, executing, and documenting realistic attack simulations to help improve the security posture of audited organizations.
Key Responsibilities
- Setting up a lab environment (AD / Windows / Linux) for simulation tests
- Designing realistic and contextualized attack scenarios (APT-like)
- Executing Red Team / Purple Team campaigns and TIBER-style exercises
- Writing clear, educational, and remediation-focused reports
- Monitoring threat actors and publishing offensive intelligence updates
- Contributing to the development of our tactical and technical knowledge base
- Malware analysis, reverse engineering, and exploration of advanced payloads
- Close collaboration with the Product, Detection Engineering, and SOC teams
Expected Outcomes (6-12 Months)
By the end of month 3
- A modular and ready-to-use offensive infrastructure is up and running and validated
By month 6
- Several offensive campaigns (at least 3) have been successfully executed and documented
For each campaign
- High-quality deliverables are produced, including concrete remediation recommendations
By end of the probation period (12 months)
- You are recognised internally as a reference on adversarial tactics
Throughout the first 12 months
- Your expertise contributes to the evolution of our cybersecurity products
Skills & Profile
Hard Skills
- Strong expertise in Windows, Active Directory, and Linux environments
- Solid knowledge of offensive techniques: exploitation, lateral movement, exfiltration
- Hands-on experience with tools such as Metasploit, Cobalt Strike, Covenant, Empire, etc.
- Familiarity with frameworks like MITRE ATT&CK, Atomic Red Team, Caldera, etc.
- Proficiency in detection tools (EDR, SIEM, NDR) and evasion techniques
- Ability to analyse malicious binaries (reverse engineering, debugging, obfuscation)
Soft Skills
- Inquisitive mindset, strong attention to detail and documentation skills
- Ability to simplify and explain complex technical concepts
- Autonomy, team spirit, and a proactive attitude
- Fluency in French and English, both written and spoken
What We Offer
- A technically challenging environment with real offensive security missions
- A company culture based on transparency, trust, and impact
- Continuous learning opportunities (certifications, conferences, R&D)
- Opportunities to contribute to cutting-edge R&D projects
- A supportive and passionate team that values knowledge-sharing and collective growth
- A flexible, hybrid work setup