Internal Red Team Consultant
Internal Red Team Consultant

Internal Red Team Consultant

Full-Time 48000 - 84000 ÂŁ / year (est.) No home office possible
Ricoh Europe

At a Glance

  • Tasks: Lead high-fidelity adversary simulations and validate security measures across the organisation.
  • Company: Join Ricoh Europe, a leader in enterprise security innovation.
  • Benefits: Competitive salary, industry-leading benefits, and strong career development opportunities.
  • Why this job: Make a real impact on security by simulating advanced threats and improving resilience.
  • Qualifications: Experience in red team operations and strong technical skills in cybersecurity.
  • Other info: Dynamic work environment with opportunities for growth and mentorship.

The predicted salary is between 48000 - 84000 ÂŁ per year.

Ricoh Europe is strengthening its enterprise security posture and advancing an intelligence‑led security model across the organisation. We’re hiring an Internal Red Team Consultant in London to design and lead high‑fidelity adversary simulations, validate our detection and response maturity, and provide actionable insights that materially reduce risk. This role operates at the intersection of threat intelligence, offensive security, and enterprise risk, partnering closely with senior stakeholders across Europe and shaping how Ricoh anticipates, detects, and responds to advanced threats.

As the Internal Red Team Consultant, you will plan and execute realistic, risk‑aligned red team engagements across digital, physical, and social domains. You will emulate sophisticated threat actors, assess resilience across cloud and on‑prem environments, and translate technical findings into clear business risk and remediation priorities. You will provide virtual, cross‑functional leadership, coordination of internal and external operators, mentoring practitioners, and integrating outcomes with blue teams, SOC, and incident response. While the role is an individual contributor today, it is expected to evolve to include line management as the capability scales. Operating within legal, ethical, and ISO 27001‑governed parameters, you will deliver second‑line assurance that is rigorous, safe, and business‑relevant.

Responsibilities

  • Plan and lead red team campaigns that assess enterprise detection and response, aligned to current threat intelligence and business risk.
  • Develop and execute adversary playbooks mapped to frameworks such as MITRE ATT&CK, including digital, physical, and social engineering vectors.
  • Coordinate internal and external resources to run covert, goal‑oriented engagements across cloud, on‑prem, and hybrid environments.
  • Conduct controlled exploitation (web, infrastructure, identity, cloud) and demonstrate attack chains, lateral movement, persistence, and exfiltration.
  • Partner with blue teams and SOC on purple‑team exercises, tuning detections, improving SIEM/SOAR use cases, and reducing dwell time and MTTR.
  • Produce clear, actionable reporting for technical and executive audiences—prioritising business impact, risk, and pragmatic remediation.
  • Maintain strict OPSEC and governance, ensuring legal/ethical compliance, ROE adherence, data handling discipline, and auditability.
  • Evolve tools, techniques, and procedures (TTPs), maintain adversary emulation kits, and stay current with APT tradecraft and emerging threats.
  • Define KPIs and dashboards to track detection coverage, campaign outcomes, control efficacy, and remediation progress.
  • Act as subject matter expert in the CIRT, supporting incident readiness, simulations, and executive briefings.
  • Provide virtual leadership and mentorship, fostering a high‑performing, psychologically safe culture of continuous improvement.

What We Are Looking For

Technical expertise

  • Deep hands‑on experience in red team operations and adversary simulation across Windows, Linux, macOS, and cloud (AWS, Azure, GCP).
  • Proficiency with red team frameworks and C2 platforms (e.g., Cobalt Strike, Mythic, Sliver) and custom payload/tooling development.
  • Strong scripting skills (Python, PowerShell, Bash) and experience automating tradecraft and infrastructure.
  • Mastery of OPSEC, detection evasion, OSINT, network discovery, and physical/social engineering techniques.
  • Fluency with security testing frameworks and models (MITRE ATT&CK, NIST, Cyber Kill Chain) and mapping findings to detections and controls.

Business and regulatory acumen

  • Ability to translate technical attack paths into business risk, articulating financial, operational, and regulatory impact.
  • Familiarity with ISO 27001, NIST, GDPR and sector‑specific compliance (e.g., PCI DSS, HIPAA, NERC CIP).
  • Experience integrating outcomes with governance, audit, risk registers, and board‑level reporting.

Leadership And Interpersonal Skills

  • Proven experience leading virtual, cross‑functional teams and influencing without direct authority.
  • Clear, concise communicator—capable of executive‑level briefings and collaborative debriefs with technical teams.
  • High discretion, professionalism, and emotional intelligence when handling sensitive findings.
  • Calm under pressure, balanced judgement in live engagements, and a continuous‑improvement mindset.

Qualifications And Experience

  • Bachelor’s degree in Cyber Security, Computer Science, Information Security, Network Engineering, Digital Forensics, or related field.
  • Offensive security certifications—OSCP (minimum), plus one or more of: CRTO, CREST CRT/CCT, GIAC GPEN/GXPN/Red Team Professional; CEH optional.
  • Baseline or enhanced security clearance (vetting) will be required.
  • Proven career history in cyber security, including 3–5 years in offensive roles (red team, penetration testing, ethical hacking) and experience leading virtual teams or red team delivery in enterprise environments.
  • Experience collaborating with blue teams/SOCs and running purple‑team exercises; familiarity with SIEM, EDR, and SOAR.

In Return For Your Commitment, You Can Expect

  • A competitive salary package
  • Industry leading benefits
  • Ricoh is an exceptional place to work, with a strong emphasis on career development for the right individuals.
  • This is a role where you can excel within a fast-paced environment and succeed within a thriving organisation.
  • This is an excellent opportunity to join a global company where you can truly capitalise and build on your own experience.

We Are An Equal Opportunities Employer

At Ricoh, we embrace and respect the collective and unique talents, experience, and perspectives of all people. Together we inspire remarkable innovation. That’s how we live the Ricoh Way.

Ricoh have removed the disclosure of convictions box from their application process (ban the box) offering equal opportunities to all. For all roles, we will judge each individual on their skills and ability before taking into account their history. However, some roles are subject to sensitive and restrictive information and, if successful, you may be required to undertake pre-employment vetting checks which include but are not limited to residency check, credit reference check, financial sanctions check and a DBS Check.

Internal Red Team Consultant employer: Ricoh Europe

Ricoh Europe is an outstanding employer, offering a dynamic work environment in London where innovation and career development are at the forefront. As an Internal Red Team Consultant, you will thrive in a culture that values continuous improvement and collaboration, with access to industry-leading benefits and opportunities for professional growth within a global organisation. Join us to make a meaningful impact on enterprise security while being part of a diverse team that respects and embraces unique talents and perspectives.
Ricoh Europe

Contact Detail:

Ricoh Europe Recruiting Team

StudySmarter Expert Advice 🤫

We think this is how you could land Internal Red Team Consultant

✨Tip Number 1

Network like a pro! Reach out to folks in the industry, attend meetups, and connect with people on LinkedIn. You never know who might have the inside scoop on job openings or can put in a good word for you.

✨Tip Number 2

Prepare for interviews by practising common questions and scenarios related to red team operations. We recommend doing mock interviews with friends or using online platforms to get comfortable with your responses.

✨Tip Number 3

Showcase your skills! Create a portfolio of your past projects, simulations, or any relevant work. This will help you stand out and give potential employers a taste of what you can bring to the table.

✨Tip Number 4

Don’t forget to apply through our website! It’s the best way to ensure your application gets seen by the right people. Plus, it shows you’re genuinely interested in joining our team at Ricoh.

We think you need these skills to ace Internal Red Team Consultant

Red Team Operations
Adversary Simulation
Threat Intelligence
Cloud Security (AWS, Azure, GCP)
C2 Platforms (Cobalt Strike, Mythic, Sliver)
Scripting Skills (Python, PowerShell, Bash)
OSINT Techniques
MITRE ATT&CK Framework
NIST Compliance
ISO 27001
Incident Response
Cross-Functional Leadership
Executive Communication
Continuous Improvement Mindset
Emotional Intelligence

Some tips for your application 🫡

Tailor Your CV: Make sure your CV is tailored to the Internal Red Team Consultant role. Highlight your experience in red team operations and any relevant certifications. We want to see how your skills align with what we're looking for!

Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Use it to explain why you're passionate about this role and how your background makes you a perfect fit. We love seeing enthusiasm and a clear understanding of our needs.

Showcase Your Technical Skills: Don’t hold back on showcasing your technical expertise! Mention specific tools, frameworks, and languages you’re proficient in. We’re keen to see your hands-on experience and how you can contribute to our team.

Apply Through Our Website: We encourage you to apply through our website for a smoother application process. It helps us keep everything organised and ensures your application gets the attention it deserves. Let’s get started on this journey together!

How to prepare for a job interview at Ricoh Europe

✨Know Your Adversary Playbooks

Familiarise yourself with adversary playbooks, especially those mapped to frameworks like MITRE ATT&CK. Be ready to discuss how you would develop and execute these playbooks in real-world scenarios, showcasing your understanding of threat actors and their tactics.

✨Showcase Your Technical Skills

Prepare to demonstrate your hands-on experience with red team operations across various platforms. Bring examples of your scripting skills in Python, PowerShell, or Bash, and be ready to discuss how you've automated tradecraft in past roles.

✨Communicate Clearly and Concisely

Practice articulating complex technical findings in a way that resonates with both technical and executive audiences. Being able to translate technical jargon into business risk and remediation priorities is crucial for this role.

✨Emphasise Leadership and Collaboration

Highlight your experience leading virtual, cross-functional teams and your ability to influence without direct authority. Be prepared to share examples of how you've fostered a culture of continuous improvement and collaboration in previous roles.

Internal Red Team Consultant
Ricoh Europe

Land your dream job quicker with Premium

You’re marked as a top applicant with our partner companies
Individual CV and cover letter feedback including tailoring to specific job roles
Be among the first applications for new jobs with our AI application
1:1 support and career advice from our career coaches
Go Premium

Money-back if you don't land a job in 6-months

>