1

Cyber Security Purple Team Jobs (NOW HIRING)

Senior Cybersecurity Analyst

Washington, DC · Hybrid

$113K - $146K/yr

... purple team activities. ONSITE 3 Days / Remote 2 days - Washington DC Key Responsibilities: * Monitor, analyze, investigate, and respond to cybersecurity alerts and incidents using SIEM, endpoint ...

New

Cybersecurity Defense Analyst - Senior

Columbus, IN · On-site

$93K - $120K/yr

... purple team, and security validation activities across enterprise environments. Operate and ... Cybersecurity Risk Management - Identifies and assesses the potential impact of Cybersecurity risks ...

Cybersecurity Defense Analyst - Senior

Columbus, IN · On-site

$93K - $120K/yr

... purple team, and security validation activities across enterprise environments. Operate and ... Cybersecurity Risk Management - Identifies and assesses the potential impact of Cybersecurity risks ...

Cybersecurity Defense Analyst - Senior

Columbus, IN · On-site

$93K - $120K/yr

... purple team, and security validation activities across enterprise environments. Operate and ... Cybersecurity Risk Management - Identifies and assesses the potential impact of Cybersecurity risks ...

Cybersecurity Defense Analyst - Senior

Columbus, IN · On-site

$93K - $120K/yr

... purple team, and security validation activities across enterprise environments. Operate and ... Cybersecurity Risk Management - Identifies and assesses the potential impact of Cybersecurity risks ...

... purple team, and security validation activities across enterprise environments. Operate and ... Cybersecurity Risk Management - Identifies and assesses the potential impact of Cybersecurity risks ...

Cybersecurity Defense Analyst - Senior

Columbus, IN · On-site

$93K - $120K/yr

... purple team, and security validation activities across enterprise environments. Operate and ... Cybersecurity Risk Management - Identifies and assesses the potential impact of Cybersecurity risks ...

Cybersecurity Defense Analyst - Senior

Columbus, IN · On-site

$93K - $120K/yr

... purple team, and security validation activities across enterprise environments. Operate and ... Cybersecurity Risk Management - Identifies and assesses the potential impact of Cybersecurity risks ...

Cybersecurity Defense Analyst - Senior

Columbus, IN · On-site

$93K - $120K/yr

... purple team, and security validation activities across enterprise environments. Operate and ... Cybersecurity Risk Management - Identifies and assesses the potential impact of Cybersecurity risks ...

Cybersecurity Defense Analyst - Senior

Columbus, IN · On-site

$93K - $120K/yr

... purple team, and security validation activities across enterprise environments. • Operate and ... cybersecurity operations, cloud security, security engineering, offensive security, or related ...

Showing results 41-60

Cyber Security Purple Team information

See salary details

$57K

$133K

$186K

How much do cyber security purple team jobs pay per year?

As of Sep 4, 2026, the average yearly pay for cyber security purple team in the United States is $132,962.00, according to ZipRecruiter salary data. Most workers in this role earn between $111,000.00 and $150,000.00 per year, depending on experience, location, and employer.

What are the typical day-to-day responsibilities of a Cyber Security Purple Team member?

Cyber Security Purple Team members spend their days designing, executing, and analyzing simulated cyberattacks while working closely with both offensive (red team) and defensive (blue team) units. They review security controls, conduct vulnerability assessments, and help coordinate exercises that test an organization’s detection and response capabilities. Collaboration is key, as Purple Teamers facilitate knowledge transfer between teams and create actionable recommendations for improving security posture. This varied, hands-on role offers both technical challenge and the opportunity to contribute directly to organizational security improvements.

What are the key skills and qualifications needed to thrive in the Cyber Security Purple Team position, and why are they important?

A Cyber Security Purple Team job involves combining offensive (Red Team) and defensive (Blue Team) security strategies to enhance an organization's overall cybersecurity posture. Purple Team professionals work to simulate real-world attacks, identify vulnerabilities, and collaborate with defenders to improve detection and response capabilities. They continuously assess and refine security controls, ensuring the organization is resilient against evolving cyber threats. This role requires expertise in penetration testing, threat detection, incident response, and security engineering.

What cities are hiring for Cyber Security Purple Team jobs?

Cities with the most Cyber Security Purple Team job openings:

What are the most commonly searched types of Cyber Security Purple Team jobs?

The most popular types of Cyber Security Purple Team jobs are:

What states have the most Cyber Security Purple Team jobs?

States with the most job openings for Cyber Security Purple Team jobs include:

What job categories do people searching Cyber Security Purple Team jobs look for?

The top searched job categories for Cyber Security Purple Team jobs are:

Infographic showing various Cyber Security Purple Team job openings in the United States as of August 2026, with employment types broken down into 1% As Needed, 76% Full Time, 20% Part Time, and 3% Contract. Highlights an 91% Physical, 2% Hybrid, and 7% Remote job distribution, with an average salary of $132,962 per year, or $63.9 per hour.

Senior Cybersecurity Analyst

SAIC

Washington, DC • Hybrid

$113K - $146K/yr

Full-time

Posted yesterday

New


SAIC rating

7.8

Company rating: 7.8 out of 10

Based on 80 frontline employees who took The Breakroom Quiz

88th of 226 rated it services


Job description

Job ID: 2616506

Location: Washington, DC, US

Date Posted: 2026-09-03

Category: Cyber

Subcategory: Cyber Engineer

Schedule: Full-Time

Shift: Day Job

Travel: No

Minimum Clearance Required: None

Clearance Level Must Be Able to Obtain: Public Trust

Potential for Remote Work: ORA_HYBRID


Description

SAIC is looking for a Senior Cybersecurity Analyst supports Security Operations functions while helping establish and mature the organization's offensive security capability in support of a critical U.S. Government agency.

This position is responsible for advanced incident detection, investigation, response, threat analysis, and security monitoring across on-premises and cloud environments. In addition to traditional SOC responsibilities, the analyst performs authorized offensive security activities, including manual vulnerability validation, reproduction of penetration test findings, remediation verification, and security control validation to identify and validate security weaknesses requiring manual analysis beyond automated vulnerability scanning.

The position supports the development of repeatable security validation processes and the agency's evolving offensive security capability, which may expand over time to include application security assessments, adversary emulation, and purple team activities.

ONSITE 3 Days / Remote 2 days – Washington DC

Key Responsibilities:

  • Monitor, analyze, investigate, and respond to cybersecurity alerts and incidents using SIEM, endpoint detection and response (EDR), network monitoring, email security, identity security, and other enterprise security technologies.
  • Perform advanced incident triage to determine scope, impact, attack vectors, and recommend appropriate containment, eradication, recovery, and mitigation activities.
  • Analyze network traffic, endpoint telemetry, authentication events, application logs, system logs, and threat intelligence to identify malicious activity and indicators of compromise.
  • Lead or support investigations involving phishing, malware, unauthorized access, insider threats, data exposure, and other cybersecurity events.
  • Develop, maintain, and improve incident response procedures, investigative workflows, technical documentation, and response playbooks.
  • Review, assign, document, and track cybersecurity incidents and operational activities using approved ticketing and documentation systems.
  • Support investigations involving DHS, CISA, US-CERT, vendor advisories, and other cybersecurity notifications affecting agency systems.
  • Provide technical leadership, mentorship, and knowledge sharing to junior cybersecurity analysts.
  • Conduct authorized offensive security activities, including manual vulnerability validation, reproduction of penetration test findings, remediation verification, and security control validation.
  • Perform recurring validation testing of known vulnerabilities and security deficiencies to verify exploitability, assess technical impact, and confirm remediation effectiveness.
  • Perform manual testing of applications, APIs, identity services, wireless technologies, and other designated systems using approved security assessment tools and methodologies.
  • Distinguish confirmed vulnerabilities from false positives, configuration issues, environmental conditions, and non-exploitable findings, and document technical evidence, remediation recommendations, and validation results.
  • Develop repeatable testing procedures, validation methodologies, assessment documentation, and technical guidance to support recurring security validation activities.
  • Collaborate with Security Operations, Patch and Vulnerability Management, application teams, infrastructure teams, system owners, and external assessors to improve the agency's overall security posture.
  • Identify opportunities to improve security monitoring, detection logic, logging, defensive controls, and incident response based on manual security assessment results.
  • Research emerging threats, vulnerabilities, and offensive security techniques to support continuous improvement of organizational cybersecurity capabilities.
  • Support the continued development of internal offensive security, application security, adversary emulation, and purple team capabilities while performing all activities within approved authorization, scope, rules of engagement, and operational safeguards.

Qualifications

Qualifications & Experience:

  • Bachelor's degree in Cybersecurity, Information Technology, Computer Science, or a related field. Additional relevant experience may be substituted in lieu of a degree.
  • Five or more years of experience in cybersecurity operations, Security Operations Center (SOC) activities, incident response, vulnerability management, security engineering, or related cybersecurity disciplines.
  • Ability to obtain and maintain a public trust requiring U.S. Citizenship or Green Card. 
  • Demonstrated experience investigating, analyzing, and responding to cybersecurity incidents.
  • Strong understanding of cybersecurity principles, attack methodologies, common threat vectors, and NIST incident response guidance.
  • Experience analyzing network traffic, endpoint telemetry, authentication activity, application logs, system logs, and threat indicators.
  • Experience with enterprise cybersecurity technologies, including SIEM, EDR, email security, identity security, privileged access management, and threat intelligence platforms.
  • Working knowledge of TCP/IP, DNS, HTTP/HTTPS, authentication protocols, Windows, Linux, cloud environments, enterprise networking, and common application architectures.
  • Understanding of web applications, APIs, authentication, authorization, session management, and common application security vulnerabilities.
  • Ability to learn, adapt to, and effectively utilize agency-approved offensive security methodologies, manual security assessment techniques, and supporting technologies.
  • Ability to reproduce technical findings, validate vulnerabilities, document repeatable testing procedures, and communicate technical results.
  • Strong analytical, troubleshooting, organizational, technical writing, and communication skills.
  • Ability to work independently while collaborating effectively across technical teams, application owners, and government stakeholders.

Preferred Qualifications:

  • Experience conducting manual vulnerability validation, application security testing, remediation verification, or penetration testing activities.
  • Experience reproducing and validating findings identified through penetration testing, vulnerability assessments, or independent security assessments.
  • Familiarity with OWASP Top 10, OWASP API Security Top 10, MITRE ATT&CK, and common offensive security methodologies.
  • Experience evaluating authentication, authorization, business logic, API security, identity security, wireless security, or other application security controls.
  • Experience supporting federal cybersecurity operations, FISMA compliance, or DHS/CISA cybersecurity activities.
  • Experience developing scripts or automating security tasks using Python, PowerShell, SQL, or similar technologies.
  • Relevant cybersecurity certifications such as CISSP, Security+, CySA+, PenTest+, GPEN, GWAPT, GWEB, PNPT, OSCP, or equivalent.

Target salary range: $80,001 - $120,000. The estimate displayed represents the typical salary range for this position based on experience and other factors.

What SAIC employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom