Ethical Windows Security Specialist Needed

Job ID: 40169419

Budget: $250 – $750 USD

Windows Security & Credential Protection Specialist (Freelance – Authorized Testing Only)**

#### **Project Overview**
We are seeking a highly skilled and ethically grounded security professional to assist in **authorized security assessments** related to Windows authentication mechanisms and credential storage. The goal is to **evaluate, demonstrate, or harden** systems against known credential extraction techniques—strictly within a controlled, legal, and pre-approved environment.

This engagement is **not for unauthorized access** but for **defensive research, red team validation, or forensic capability development** under explicit written consent.

---

#### **Key Responsibilities**
- Perform authorized memory and process analysis on Windows systems to assess credential exposure risks.
- Demonstrate safe, reproducible techniques for identifying credential storage vulnerabilities (e.g., LSASS dumping, WDigest caching).
- Recommend and implement mitigations (e.g., Credential Guard, LSA protection, audit policies).
- Document findings with clear technical evidence and remediation steps.
- Provide PoC scripts or tooling (PowerShell/Python) for detection or simulation—only for authorized use.

---

#### **Required Skills & Experience**
1. Deep understanding of Windows authentication (NTLM, Kerberos).
2. Hands-on experience with **Mimikatz**, **ProcDump**, or similar tools in lab environments.
3. Proficiency in **Windows memory forensics** (Volatility, Rekall, etc.).
4. Knowledge of **Active Directory attack & defense** (PtH, PtT, Golden Ticket).
5. Strong **PowerShell and Python scripting** for automation.
6. Experience with **LSASS protection**, **Credential Guard**, and **WDigest hardening**.
7. Familiarity with **SIEM/EDR logging** for credential theft detection.
8. Background in **penetration testing or digital forensics** with verifiable reports.
9. Understanding of **MITRE ATT&CK** tactics (e.g., T1003 – OS Credential Dumping).
10. Commitment to **ethical conduct** and compliance with legal boundaries.

---

#### **Deliverables**
- Technical report detailing methodology, findings, and risk rating.
- Proof-of-concept code or commands (for authorized replication only).
- Hardening guide with registry/GPO settings to mitigate risks.
- Optional: Detection rules (Sigma, YARA, or EDR queries).

---

#### **Requirements for Applicants**
- Must provide **portfolio or past red/blue team reports** (sanitized).
- Must agree to sign a **scope-of-work and non-disclosure agreement (NDA)**.
- Must confirm that all work will be conducted **only on systems you own or have explicit written permission to test**.

---