2

Full Time Cyber Security Purple Team Jobs (NOW HIRING)

Purple Team & Detection Expertise: 10+ years of experience in cybersecurity with significant experience in Purple Teaming, Detection Engineering, Threat Hunting, Incident Response, Red Teaming, or ...

New

Purple Team & Detection Expertise: 10+ years of experience in cybersecurity with significant experience in Purple Teaming, Detection Engineering, Threat Hunting, Incident Response, Red Teaming, or ...

Purple Team & Detection Expertise: 10+ years of experience in cybersecurity with significant experience in Purple Teaming, Detection Engineering, Threat Hunting, Incident Response, Red Teaming, or ...

New

Cybersecurity Lead The Cybersecurity Lead serves as a hands-on technical leader responsible for ... Proven ability to lead incident response and purple team exercises from start to finish

Cybersecurity Lead The Cybersecurity Lead serves as a hands-on technical leader responsible for ... Proven ability to lead incident response and purple team exercises from start to finish

... purple team, and security validation activities across enterprise environments. Operate and ... Cybersecurity Risk Management - Identifies and assesses the potential impact of Cybersecurity risks ...

Support red team and purple team exercises and threat modeling activities * Assist with security ... cybersecurity with a strong focus on penetration testing and vulnerability management * Hands-on ...

Cybersecurity Defense Analyst - Senior

Columbus, IN · On-site

$93K - $120K/yr

... purple team, and security validation activities across enterprise environments. Operate and ... Cybersecurity Risk Management - Identifies and assesses the potential impact of Cybersecurity risks ...

next page

Showing results 1-20

Full Time Cyber Security Purple Team information

See salary details

$57K

$133K

$186K

How much do full time cyber security purple team jobs pay per year?

As of Aug 9, 2026, the average yearly pay for full time cyber security purple team in the United States is $132,962.00, according to ZipRecruiter salary data. Most workers in this role earn between $111,000.00 and $150,000.00 per year, depending on experience, location, and employer.

What does a full time cyber security purple team member do?

As a member of a Cyber Security Purple Team, you'll act as a bridge between the offensive (Red) and defensive (Blue) teams. This involves facilitating knowledge sharing, coordinating joint exercises, and analyzing results to improve detection and response capabilities. You'll often work on designing simulated attacks and helping the Blue Team to close security gaps identified during these exercises. The collaborative nature of the role enables you to gain a comprehensive view of both adversarial tactics and defense strategies, making it an excellent position for career growth in cyber security.

What skills and qualifications are needed to thrive as a full time cyber security purple team member?

To thrive as a Full Time Cyber Security Purple Team member, you need a deep understanding of both offensive (red team) and defensive (blue team) security concepts, typically supported by a degree in cybersecurity or related fields and relevant certifications like OSCP or CISSP. Proficiency with tools such as SIEM platforms, penetration testing suites (like Metasploit), and endpoint detection response systems is crucial. Outstanding analytical thinking, collaboration, and communication skills help bridge the gap between attack and defense teams. These skills ensure organizations can proactively identify vulnerabilities and strengthen their security posture through integrated, real-world threat simulations.

What is the difference between Full Time Cyber Security Purple Team vs Penetration Tester?

AspectFull Time Cyber Security Purple TeamPenetration Tester
CertificationsCEH, OSCP, CISSP, GIACCEH, OSCP, GPEN
Work EnvironmentCollaborative, ongoing security improvementProject-based, testing specific systems
Employer & Industry UsageOrganizations with active security teamsConsulting firms, security vendors

Full Time Cyber Security Purple Teams work within organizations to continuously improve security by combining offensive and defensive skills, collaborating across teams. Penetration Testers focus on simulating attacks to identify vulnerabilities in specific systems. While both roles require similar certifications, Purple Teams engage in ongoing security enhancement, whereas Penetration Testers perform discrete assessments.

What is a full time cyber security purple team member?

Full Time Cyber Security Purple Team roles involve working as part of a team that combines both offensive (red team) and defensive (blue team) cybersecurity skills to test and improve an organization's security posture. Purple Team members collaborate to simulate cyber attacks, identify vulnerabilities, and develop effective defense strategies. Their goal is to bridge the gap between attack and defense, ensuring that security measures are not only effective but also continually improved based on real-world threats.
More about Full Time Cyber Security Purple Team jobs
What cities are hiring for Full Time Cyber Security Purple Team jobs? Cities with the most Full Time Cyber Security Purple Team job openings:
What are the most commonly searched types of Cyber Security Purple Team jobs? The most popular types of Cyber Security Purple Team jobs are:
What states have the most Full Time Cyber Security Purple Team jobs? States with the most job openings for Full Time Cyber Security Purple Team jobs include:
What job categories do people searching Full Time Cyber Security Purple Team jobs look for? The top searched job categories for Full Time Cyber Security Purple Team jobs are:
Infographic showing various Full Time Cyber Security Purple Team job openings in the United States as of August 2026, with employment types broken down into 1% As Needed, 76% Full Time, 19% Part Time, and 4% Contract. Highlights an 92% Physical, 1% Hybrid, and 7% Remote job distribution, with an average salary of $132,962 per year, or $63.9 per hour.

Senior Manager Purple Team

Vangard, Inc.

Charlotte, NC

Full-time

Posted 3 days ago

New


Job description

The Senior Manager, Purple Team Operationsleads Vanguard's Purple Team programwithin the Offensive Security & Fraud Testing (OSFT)organization. This role is responsible for building and scaling a threat-informed validation program that partners Offensive Security, the CSOC, Detection Engineering, and Fraud Detection teams to continuously improve Vanguard's detection, response, and resilience capabilities.

Unlike offensive security operations that primarily assess security readiness through covert adversary emulation, the Purple Team function focuses on collaborative validation of controls, detections, and response processes. The team's mission is to ensure that identified detection gaps are translated into measurable defensive improvements and that Vanguard can detect, investigate, and respond to relevant adversary behaviors across the enterprise.

Successin this role is measured by the effectiveness of Vanguard's detection and response capabilities: improved detection coverage, reduced detection gaps, faster response times, stronger collaboration across offensive and defensive teams, and measurable improvements in cyber resilience.

Job Description

Key Responsibilities
  • Purple Team Program Leadership: Define and execute the strategic visionfor Vanguard's Purple Team program, aligning threat-informed defense validation activities to enterprise cyber risk priorities. Develop annual roadmaps that prioritize adversary emulation, detection validation, control effectiveness testing, and threat-informed exercises based on intelligence, prior offensive operations, and evolving industry threats.
  • Team Management & Development: Lead and develop a geographically distributed team of Purple Team operators focused on adversary emulation, detection validation, and defensive capability improvement. Drive hiring, coaching, mentoring, and career development while fostering a culture of continuous learning, innovation, and collaboration between offensive and defensive security teams.
  • Detection Validation & Threat-Informed Testing: Oversee Purple Team operations that validate security controls, detection content, response playbooks, and investigative procedures across the enterprise. Ensure testing is aligned to known adversary TTPs and frameworks such as MITRE ATT&CK and MITRE ATLAS. Drive repeatable validation methodologies that assess prevention, detection, investigation, and response capabilities.
  • Offensive Security Partnership & Remediation Closure: Partner closely with Offensive Security teams to translate findings from Red Team operations, penetration tests, and adversarial AI assessments into Purple Team validation activities. Ensure previously identified detection gaps are remediated, tested, and validated before closure. Establish feedback loops that improve both offensive and defensive program effectiveness.
  • CSOC & Detection Engineering Collaboration: Serve as the primary liaison between OSFT, CSOC, Threat Detection Engineering, Fraud Detection, and Cyber Threat Intelligence teams. Coordinate collaborative exercises that validate new detections, response workflows, telemetry coverage, and security monitoring capabilities. Drive alignment on adversary emulation priorities and detection engineering roadmaps.
  • Reporting & Metrics: Establish measurable metrics to demonstrate security improvement and operational effectiveness. Track and communicate detection coverage, ATT&CK technique validation rates, mean-time-to-detect improvements, detection fidelity, response effectiveness, and remediation progress. Present findings, trends, and strategic recommendations to senior leadership and governance forums.
  • Threat Intelligence Integration: Partner with Cyber Threat Intelligence teams to ensure Purple Team exercises emulate relevant financial industry adversaries, fraud threats, ransomware groups, insider threats, and emerging AI-enabled attack techniques. Translate intelligence into actionable validation scenarios that strengthen Vanguard's security posture.
  • Strategic Innovation & Program Maturity: Continuously evolve the Purple Team capability by introducing new validation methodologies, automation, adversarial AI testing approaches, cloud-native security validation, attack-path simulation, and continuous control validation capabilities. Drive innovation while ensuring exercises remain aligned with business objectives and risk priorities.
Required Qualifications
  • Purple Team & Detection Expertise: 10+ years of experience in cybersecurity with significant experience in Purple Teaming, Detection Engineering, Threat Hunting, Incident Response, Red Teaming, or Adversary Simulation. Deep understanding of attacker methodologies, detection technologies, security telemetry, and defensive operations.
  • Leadership & Program Management: 3+ years leading security teams, Purple Team programs, Detection Engineering functions, Incident Response capabilities, or equivalent technical organizations. Demonstrated ability to develop teams, manage strategic initiatives, and deliver measurable cybersecurity outcomes across multiple stakeholders.
  • Threat-Informed Defense Expertise: Strong knowledge of MITRE ATT&CK, MITRE ATLAS, adversary emulation methodologies, detection engineering practices, threat hunting frameworks, and modern SOC operations. Experience designing and executing threat-informed validation programs at enterprise scale.
  • Security Operations & Detection Engineering Knowledge: Deep familiarity with SIEM, EDR, NDR, cloud security monitoring, threat intelligence platforms, deception technologies, automation workflows, and modern detection engineering practices. Experience evaluating detection coverage and improving security monitoring effectiveness.
  • AI & Automation Familiarity: Experience leveraging AI/ML technologies, automation frameworks, and security analytics to enhance threat detection, adversary simulation, or security operations. Understanding of how generative AI impacts both attacker tradecraft and defensive capabilities.
  • Cross-Functional Leadership & Communication: Exceptional communication and stakeholder management skills with the ability to influence technical teams, security leadership, and executive stakeholders. Proven experience driving collaboration across Offensive Security, CSOC, Fraud, Risk, Engineering, and Threat Intelligence teams.
  • Education & Certifications: Bachelor's degree in Computer Science, Cybersecurity, or relateddiscipline (or equivalent experience). Relevant certifications (e.g., CISSP, GCFA. GCTI, GMON, GCIA, CRTO, CARTP, OSCP, CREST Certifications) that demonstrate both offensive technical depth and security management knowledge are strongly preferred.

Special Factors

Sponsorship

Vanguard is not offering visa sponsorship for this position.

About Vanguard

At Vanguard, we don't just have a mission-we're on a mission.

To work for the long-term financial wellbeing of our clients. To lead through product and services that transform our clients' lives. To learn and develop our skills as individuals and as a team. From Malvern to Melbourne, our mission drives us forward and inspires us to be our best.

How We Work

Vanguard has implemented a hybrid working model for the majority of our crew members, designed to capture the benefits of enhanced flexibility while enabling in-person learning, collaboration, and connection. We believe our mission-driven and highly collaborative culture is a critical enabler to support long-term client outcomes and enrich the employee experience.