We are looking for a motivated Senior Red Team Specialist who can strengthen our IT Security organisation with their offensive security expertise and passion for cyber security. Are you interested in working for an organisation that highly values and prioritises Cyber Security? Do you want to help simulate realistic attacks against a modern financial institution and directly contribute to improving its defensive capabilities? Then this might be the role for you.
You enjoy offensive security in the broadest sense and don’t want to spend your entire career performing the same type of assessment repeatedly. You thrive on variety: from deep-dive penetration tests and realistic Red Team operations to phishing campaigns, adversary emulation, custom tooling development and researching the latest offensive techniques and technologies.
Within our Red Team, no sprint is the same. Besides performing high-quality penetration tests, you will also contribute to advanced Red Team engagements, develop offensive tooling, simulate disruptive attack scenarios, research new attack techniques and continuously improve our tradecraft.
Your primary focus is offensive security testing across a broad range of engagements. You bring strong hands-on penetration testing experience and are eager to apply that expertise within mature Red Team operations and adversary emulation exercises.
Depending on the engagement, you may perform targeted penetration tests, execute phishing campaigns, emulate realistic threat actors, develop custom payloads or support larger Red Team operations across our enterprise environment. In addition, you will:
Perform advanced penetration tests across enterprise infrastructure, Azure Entra ID, Active Directory, cloud environments and modern enterprise technologies.
Design, coordinate and execute Red Team / adversary emulation exercises (e.g. TIBER-like engagements) aligned with realistic threat actor behaviour and MITRE ATT&CK.
Use the latest technologies, such as AI, to work §effective and efficient.
Execute phishing campaigns and social engineering scenarios, both as standalone security awareness exercises and as part of larger Red Team engagements.
Build, maintain and improve Red Team infrastructure and C2 environments (for example Outflank OST and Cobalt Strike).
Develop custom offensive tooling, payloads and automation to emulate advanced attacker tradecraft against modern security controls.
Research and experiment with the latest offensive techniques, tooling and AI-assisted tradecraft to continuously evolve team capabilities.
Simulate realistic large-scale adversary scenarios to validate organisational resilience and detection capabilities.
Collaborate closely with Blue and Purple Teams to validate detections, improve playbooks and strengthen defensive capabilities.
Translate technical findings into actionable recommendations through high-quality reporting and presentations.
Your talents
Curiosity, creativity and an adversarial mindset. That’s how we can best describe you as a Senior Red Team Specialist who embraces the assume-breach mindset. There are several skills that will help you thrive in our environment, where the most important mission is safeguarding the assets and information of our clients in a constantly evolving threat landscape. Those skills are:
5+ years of hands-on experience in offensive security, with strong penetration testing expertise across enterprise environments.
Experience participating in Red Team engagements, adversary emulation exercises or long-term offensive security operations.
Deep knowledge of enterprise environments such as Active Directory and Azure/Entra ID, including lateral movement, privilege escalation and post-exploitation techniques.
Experience developing or modifying offensive tooling and automation using languages such as Python, PowerShell, C#, Go or similar is a plus.
Experience with C2 frameworks and offensive tooling, as well as testing or evading modern detection & response solutions (e.g. Microsoft Defender, CrowdStrike, SentinelOne, Elastic or Trellix).
A strong Operational Security (OPSEC) mindset and the ability to operate within clearly defined rules of engagement.
Excellent communication skills in English (and preferably also at least B2+ in Dutch), including the ability to write clear reports and present findings to both technical and non-technical audiences.
A proactive and hands-on mentality: you take ownership, share knowledge with colleagues and enjoy mentoring less experienced team members.
Relevant certifications such as OSCP, OSEP, CRTO, CARTP, GXPN, CREST or similar are considered a strong plus.
Move ahead at Van Lanschot Kempen
Working with a variety of clients to make their investments more future-oriented, sustainable and data-driven. Both nationally and internationally. With over 300 years of experience, we make this ambition a reality at Van Lanschot Kempen. We do this together with approximately 2,300 colleagues spread across various areas of expertise.
You will become part of the Red Team, one of the core teams within IT Security. The Red Team consists of expert ethical hackers and penetration testers who simulate realistic attacks to identify vulnerabilities and validate our security controls.
What makes our Red Team unique is the variety in work. We combine traditional penetration testing with realistic Red Teaming, phishing campaigns, adversary emulation, disruptive attack simulations and offensive research & development. Team members are encouraged to experiment with new tooling and techniques, giving you the freedom to continuously sharpen and expand your offensive skillset.
As we are a relatively small and specialised team, you will have broad responsibilities from the start while being supported by experienced team members. You will quickly get to know Van Lanschot Kempen’s landscape, as your engagements may touch many different parts of the organisation.
Next to the Red Team, the Blue Team is responsible for the SOC and daily detection & response activities. We also work closely with Purple Team initiatives and other strategic security teams. Collaboration between these teams is strongly encouraged, allowing you to broaden your expertise across offensive, defensive and strategic security domains.
The extent of innovation and agility also depends on the diversity of its workforce. Our differences make us stronger together. We promote an inclusive work environment where all colleagues feel at home. At Van Lanschot Kempen you can be yourself. And we are proud of that.
Curious about the stories of colleagues and how they experience working at Van Lanschot Kempen? Go to Podcasts and find out more
Turning talent into value!
Because if you add value, you can expect the same from us. A healthy work-life balance with our hybrid way of working is a good example of that. In addition, as a Senior Red Team Specialist, you get:
A gross monthly salary between €5.000 and €7.000 in line with your knowledge and experience, and plenty of room for growth beyond this range within your specialty.
A flexible budget of 19.47% of your gross salary (including a 13th month, 8% holiday allowance and 7 extra leave days). You can use this budget for example for a bike, gym membership or additional leave, or choose to have it paid out.
Flexible working hours: you come to the office for team meetings or brainstorming sessions twice a week and work from home the other days.
Training opportunities and the possibility to attend conferences.
An excellent pension scheme.
The possibility to exchange national holidays for religious holidays.
Do you have any questions about the vacancy or the recruitment process? Please get in touch with Jessica Martins, recruiter, at j.martins@vanlanschotkempen.com
Submit your application. We aim to update you about your application status within one week. If you are applying for an internship, working student, or entry-level role, a game-based assessment is part of the process, and you will be invited to complete it after submitting your application. As part of the application process, you may also be contacted for a phone screening with the recruiter.
If we consider you a fit for the role, we will invite you for a first interview. Depending on the role you are applying for, this interview can be conducted online or in person. In this first interview, we would like to get to know you and your ambitions.
We will delve deeper into the skills needed for the role, the responsibilities of the position, and how the team operates. If applicable, an assignment or assessment might be included to test your knowledge and skills. Please note that a third interview is not always necessary, but the recruiter will share the details about the process during the first contact.
If we are both satisfied, you will receive an offer to join us. Do you have any questions or remarks? Please contact the recruiter.
If you would like to join us, please accept the offer shared with you and send us all the requested information so we can finalize your contract. Once your contract is signed, we look forward to welcoming you soon!