Red Team Manager
Listed on 2026-09-03
-
IT/Tech
Cybersecurity, Security Management & Operations, IT Consultant, IT Project Manager
Manager, Red Team
The Manager, Red Team leads the organization's red team capability, responsible for simulating real world cyber threats, including AI enabled attack scenarios, to strengthen detection, response, and overall cyber resilience. This role owns the strategy, execution, and continuous evolution of the Red Team program, ensuring adversary emulation and purple team engagements across traditional and AI augmented environments drive measurable improvements to the organization's security posture.
Reporting to Cyber Security leadership, this position leads a team of offensive security professionals and partners closely with Cybersecurity Operations, Detection Engineering, Threat Intelligence, Legal, Risk, Conduct, and Technology teams. The role requires deep offensive security expertise, strong leadership capabilities, risk management experience, and the ability to communicate effectively with technical and executive audiences.
This position is ideal for a leader who understands how artificial intelligence is reshaping the threat landscape and how to safely test AI systems alongside enterprise infrastructure, applications, and data environments.
Key responsibilities include owning and continuously evolving the enterprise Red Team program, leading, mentoring, and developing a team of Red Team professionals, designing and executing realistic Red Team and Purple Team engagements, assessing risks introduced by AI, automation, and data driven systems, ensuring all Red Team activities are conducted safely, ethically, and within defined operational guardrails, partnering with Cybersecurity Operations, Detection Engineering, Security Architecture, and Technology teams to strengthen detection capabilities, response procedures, and security controls, defining standards, tools, processes, and performance metrics for Red Team operations, translating findings into actionable risk mitigation recommendations and communicating results effectively to technical stakeholders and senior leadership, supporting audit, compliance, risk management, and regulatory activities through threat informed testing and control validation, and maintaining awareness of evolving threat actor tactics, techniques, and procedures, applying industry best practices to Red Team operations.
Required qualifications include a Bachelor's degree in Cybersecurity, Computer Science, Information Technology, Engineering, or a related field, or an equivalent combination of education and experience; 8+ years of progressive cybersecurity experience, including at least 5 years in offensive security, Red Team operations, adversary emulation, or penetration testing within a mid to large enterprise environment; 3+ years of people leadership experience managing senior security engineers, Red Team practitioners, or offensive security teams;
demonstrated experience leading complex Red Team and Purple Team engagements, including intelligence driven campaigns and assumed breach operations; strong understanding of attacker methodologies, enterprise attack paths, and modern offensive security frameworks; experience assessing AI security risks and conducting security testing of AI enabled products, services, applications, or workflows; proven success translating offensive security findings into measurable improvements in detection, response, and overall security posture;
experience operating within highly regulated or risk sensitive environments; and strong communication, presentation, and stakeholder management skills, including the ability to influence senior leaders and drive cross functional collaboration.
Preferred qualifications include experience developing custom offensive security tools, automation, or adversary simulation capabilities; familiarity with cloud security testing across AWS, Azure, and Google Cloud environments; experience testing identity platforms, enterprise SaaS applications, and modern application architectures; and knowledge of threat intelligence integration and threat informed defense methodologies.
Preferred certifications include OSCP, Offensive Security Certified Professional; OSCE, Offensive Security Certified Expert; OSEP, Offensive Security Experienced Penetration Tester; OSED, Offensive Security Exploit Developer; CRTO, Certified Red Team Operator; CRTP, Certified Red Team Professional; GXPN, GIAC Exploit Researcher and Advanced Penetration Tester; and AI security, AI red teaming, or equivalent emerging cybersecurity certifications.
Success measures include improved detection and response effectiveness resulting from Red Team and Purple Team engagements; demonstrated maturity and effectiveness of the enterprise Red Team program; strong partnership with cybersecurity, technology, and business stakeholders; and measurable reduction in critical security gaps through threat informed testing and validation efforts.
The salary range for this position is from $170,000 to $230,000 per year, plus an opportunity to earn an annual discretionary…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).