UnitedHealth Group
Principal Physical Red Team Analyst - Remote or Hybrid in MN Metro or DC - 23332
UnitedHealth Group, Eden Prairie, Minnesota, United States, 55344
Optum is a global organization that delivers care, aided by technology to help millions of people live healthier lives. The work you do with our team will directly improve health outcomes by connecting people with the care, pharmacy benefits, data and resources they need to feel their best. Here, you will find a culture guided by inclusion, talented peers, comprehensive benefits and career development opportunities. Come make an impact on the communities we serve as you help us advance health optimization on a global scale. Join us to start
Caring. Connecting. Growing together.
The Enterprise Information Security (EIS) team is responsible for cybersecurity across our organization. We support our business and members by reducing risk, rapidly responding to threats, focusing on business resiliency and securing new acquisitions.
We are seeking a highly skilled and resourceful offensive security assessment member to join our Physical Red Team. In this role, you will simulate real-world adversaries to evaluate and improve the physical security posture of our facilities, personnel, and processes. You will plan and execute covert operations—such as facility penetration, surveillance, and social engineering—and provide detailed reporting to help strengthen defenses against sophisticated threats.
You’ll enjoy the flexibility to work remotely * from anywhere within the U.S. as you take on some tough challenges. For all hires in the Minneapolis or Washington, D.C. area, you will be required to work in the office a minimum of four days per week.
Primary Responsibilities:
Conduct physical security assessments of facilities by attempting to bypass locks, alarms, access controls, and security personnel
Perform covert entry operations including reconnaissance, surveillance, and red team exercises
Test human‑factor vulnerabilities through social engineering, impersonation, or tailgating
Conduct intelligence (OSINT, HUMINT, SIGINT) collection on facilities, personnel, and businesses
Design, source, build, and deploy physical and technological offensive security tools
Create and communicate risk‑profiles for executive members
Document findings with accurate reporting, photography, and after‑action reviews, including remediation recommendations
Collaborate with cybersecurity, corporate security, and defensive security teams to ensure findings are integrated into broader risk management strategies
Maintain strict compliance with legal, ethical, and safety guidelines during all engagements
Stay current with emerging tools, techniques, and threat actor behaviors relevant to physical security testing
Effectively communicate successes and obstacles with fellow team members and team lead(s)
Create written reports, detailing assessment findings and recommendations
Interface with customer contact(s) and staff in a constructive and professional manner
Have subject matter expertise in advanced testing specialties: containerization, automation, wireless/IoT, exploit development, hardware and/or mainframe environments
Ethically operate with appreciable latitude in developing methodology and applying it in the field
Research and analyze adversary methodologies and develop testing models to mimic adversaries
Ability to communicate clearly and effectively through oral or written communication with all levels in the organization
Ability to initiate, design, execute, complete, and provide metrics on projects independently with minimal direction
Drive cross‑team efforts to address systemic risks across the business
Conduct business/risk portfolio research and test planning work that encompasses holistic testing efforts
Act as an overall SME and force multiplier for team through mentoring, education, training, etc.
You’ll be rewarded and recognized for your performance in an environment that will challenge you and give you clear direction on what it takes to succeed in your role as well as provide development for other roles you may be interested in.
Required Qualifications:
5+ years of in-depth experience in physical red team assessments
3+ years of demonstrated and practical experience with intelligence gathering and sorting (HUMINT, OSINT, SIGINT, etc.)
Demonstrable expertise with physical red team assessments and reporting
Hands‑on and demonstrated expertise with assessment and exploitation tools including:
Key Card Emulators
RFID Scanners
RaspberryPi
Physical and Technological Evasion Techniques
Software Defined Radios
Kali, Burp, and Metasploit
Demonstrated ability to design, source, build, and deploy various offensive security tools (wireless detection, SDR, drone, surveillance)
Ability to think critically and creatively to solve complex problems with limited to no guidance
Ability to travel up to 50% of the time; sometimes outside the United States
Ability to integrate with a team and support cross‑team functions
Preferred Qualifications:
FAA drone license
Ham radio license
Physical Red Team certification (CCRTS, PSP, CEE, etc.)
Offensive security certification (GPEN, OSCP, CRT)
Law enforcement, military, or private/government security previous employment
AI developer experience
Hands‑on demonstrated skills with:
Key Impression Kits
C2 Infrastructure
Lockpicks
Directional Antennas
Located in Minneapolis
*All employees working remotely will be required to adhere to UnitedHealth Group's Telecommuter Policy.
Pay is based on several factors including but not limited to local labor markets, education, work experience, certifications, etc. In addition to your salary, we offer benefits such as a comprehensive benefits package, incentive and recognition programs, equity stock purchase and 401k contribution (all benefits are subject to eligibility requirements). No matter where or when you begin a career with us, you'll find a far-reaching choice of benefits and incentives. The salary for this role will range from $112,700 to $193,200 annually based on full‑time employment. We comply with all minimum wage laws as applicable.
Application Deadline: This will be posted for a minimum of 2 business days or until a sufficient candidate pool has been collected. Job posting may come down early due to volume of applicants.
At UnitedHealth Group, our mission is to help people live healthier lives and make the health system work better for everyone. We believe everyone—of every race, gender, sexuality, age, location and income—deserves the opportunity to live their healthiest life. Today, however, there are still far too many barriers to good health which are disproportionately experienced by people of color, historically marginalized groups and those with lower incomes. We are committed to mitigating our impact on the environment and enabling and delivering equitable care that addresses health disparities and improves health outcomes—a enterprise priority reflected in our mission.
UnitedHealth Group is an Equal Employment Opportunity employer under applicable law and qualified applicants will receive consideration for employment without regard to race, national origin, religion, age, color, sex, sexual orientation, gender identity, disability, or protected veteran status, or any other characteristic protected by local, state, or federal laws, rules, or regulations.
UnitedHealth Group is a drug‑free workplace. Candidates are required to pass a drug test before beginning employment.
#J-18808-Ljbffr
Caring. Connecting. Growing together.
The Enterprise Information Security (EIS) team is responsible for cybersecurity across our organization. We support our business and members by reducing risk, rapidly responding to threats, focusing on business resiliency and securing new acquisitions.
We are seeking a highly skilled and resourceful offensive security assessment member to join our Physical Red Team. In this role, you will simulate real-world adversaries to evaluate and improve the physical security posture of our facilities, personnel, and processes. You will plan and execute covert operations—such as facility penetration, surveillance, and social engineering—and provide detailed reporting to help strengthen defenses against sophisticated threats.
You’ll enjoy the flexibility to work remotely * from anywhere within the U.S. as you take on some tough challenges. For all hires in the Minneapolis or Washington, D.C. area, you will be required to work in the office a minimum of four days per week.
Primary Responsibilities:
Conduct physical security assessments of facilities by attempting to bypass locks, alarms, access controls, and security personnel
Perform covert entry operations including reconnaissance, surveillance, and red team exercises
Test human‑factor vulnerabilities through social engineering, impersonation, or tailgating
Conduct intelligence (OSINT, HUMINT, SIGINT) collection on facilities, personnel, and businesses
Design, source, build, and deploy physical and technological offensive security tools
Create and communicate risk‑profiles for executive members
Document findings with accurate reporting, photography, and after‑action reviews, including remediation recommendations
Collaborate with cybersecurity, corporate security, and defensive security teams to ensure findings are integrated into broader risk management strategies
Maintain strict compliance with legal, ethical, and safety guidelines during all engagements
Stay current with emerging tools, techniques, and threat actor behaviors relevant to physical security testing
Effectively communicate successes and obstacles with fellow team members and team lead(s)
Create written reports, detailing assessment findings and recommendations
Interface with customer contact(s) and staff in a constructive and professional manner
Have subject matter expertise in advanced testing specialties: containerization, automation, wireless/IoT, exploit development, hardware and/or mainframe environments
Ethically operate with appreciable latitude in developing methodology and applying it in the field
Research and analyze adversary methodologies and develop testing models to mimic adversaries
Ability to communicate clearly and effectively through oral or written communication with all levels in the organization
Ability to initiate, design, execute, complete, and provide metrics on projects independently with minimal direction
Drive cross‑team efforts to address systemic risks across the business
Conduct business/risk portfolio research and test planning work that encompasses holistic testing efforts
Act as an overall SME and force multiplier for team through mentoring, education, training, etc.
You’ll be rewarded and recognized for your performance in an environment that will challenge you and give you clear direction on what it takes to succeed in your role as well as provide development for other roles you may be interested in.
Required Qualifications:
5+ years of in-depth experience in physical red team assessments
3+ years of demonstrated and practical experience with intelligence gathering and sorting (HUMINT, OSINT, SIGINT, etc.)
Demonstrable expertise with physical red team assessments and reporting
Hands‑on and demonstrated expertise with assessment and exploitation tools including:
Key Card Emulators
RFID Scanners
RaspberryPi
Physical and Technological Evasion Techniques
Software Defined Radios
Kali, Burp, and Metasploit
Demonstrated ability to design, source, build, and deploy various offensive security tools (wireless detection, SDR, drone, surveillance)
Ability to think critically and creatively to solve complex problems with limited to no guidance
Ability to travel up to 50% of the time; sometimes outside the United States
Ability to integrate with a team and support cross‑team functions
Preferred Qualifications:
FAA drone license
Ham radio license
Physical Red Team certification (CCRTS, PSP, CEE, etc.)
Offensive security certification (GPEN, OSCP, CRT)
Law enforcement, military, or private/government security previous employment
AI developer experience
Hands‑on demonstrated skills with:
Key Impression Kits
C2 Infrastructure
Lockpicks
Directional Antennas
Located in Minneapolis
*All employees working remotely will be required to adhere to UnitedHealth Group's Telecommuter Policy.
Pay is based on several factors including but not limited to local labor markets, education, work experience, certifications, etc. In addition to your salary, we offer benefits such as a comprehensive benefits package, incentive and recognition programs, equity stock purchase and 401k contribution (all benefits are subject to eligibility requirements). No matter where or when you begin a career with us, you'll find a far-reaching choice of benefits and incentives. The salary for this role will range from $112,700 to $193,200 annually based on full‑time employment. We comply with all minimum wage laws as applicable.
Application Deadline: This will be posted for a minimum of 2 business days or until a sufficient candidate pool has been collected. Job posting may come down early due to volume of applicants.
At UnitedHealth Group, our mission is to help people live healthier lives and make the health system work better for everyone. We believe everyone—of every race, gender, sexuality, age, location and income—deserves the opportunity to live their healthiest life. Today, however, there are still far too many barriers to good health which are disproportionately experienced by people of color, historically marginalized groups and those with lower incomes. We are committed to mitigating our impact on the environment and enabling and delivering equitable care that addresses health disparities and improves health outcomes—a enterprise priority reflected in our mission.
UnitedHealth Group is an Equal Employment Opportunity employer under applicable law and qualified applicants will receive consideration for employment without regard to race, national origin, religion, age, color, sex, sexual orientation, gender identity, disability, or protected veteran status, or any other characteristic protected by local, state, or federal laws, rules, or regulations.
UnitedHealth Group is a drug‑free workplace. Candidates are required to pass a drug test before beginning employment.
#J-18808-Ljbffr