The Director, Cyber Security Detection Engineeringis a senior leader in the Cyber Operations ... Purple team operations : Experienced in designing and accomplishing adversary emulation exercises ...
The Director, Cyber Security Detection Engineeringis a senior leader in the Cyber Operations ... Purple team operations : Experienced in designing and accomplishing adversary emulation exercises ...
Sr. Offensive Cyber Security Analyst
Owings Mills, MD · Hybrid
$95K - $123K/yr
Design, coordinate, and participate in Red Team and Purple Team security exercises. * Support ... Drive improvements to cybersecurity best practices, standards, and policies within the group.
Sr. Offensive Cyber Security Analyst
Owings Mills, MD · Hybrid
$95K - $123K/yr
Design, coordinate, and participate in Red Team and Purple Team security exercises. * Support ... Drive improvements to cybersecurity best practices, standards, and policies within the group.
Cybersecurity Defense Analyst - Senior
$93K - $120K/yr
... purple team, and security validation activities across enterprise environments. Operate and ... Cybersecurity Risk Management - Identifies and assesses the potential impact of Cybersecurity risks ...
Cybersecurity Defense Analyst - Senior
$93K - $120K/yr
... purple team, and security validation activities across enterprise environments. Operate and ... Cybersecurity Risk Management - Identifies and assesses the potential impact of Cybersecurity risks ...
Cybersecurity Defense Analyst - Senior
$93K - $120K/yr
... purple team, and security validation activities across enterprise environments. Operate and ... Cybersecurity Risk Management - Identifies and assesses the potential impact of Cybersecurity risks ...
Cybersecurity Defense Analyst - Senior
$93K - $120K/yr
... purple team, and security validation activities across enterprise environments. Operate and ... Cybersecurity Risk Management - Identifies and assesses the potential impact of Cybersecurity risks ...
Cybersecurity Defense Analyst - Senior
Columbus, IN · On-site
$93K - $120K/yr
... purple team, and security validation activities across enterprise environments. Operate and ... Cybersecurity Risk Management - Identifies and assesses the potential impact of Cybersecurity risks ...
Cybersecurity Defense Analyst - Senior
Columbus, IN · On-site
$93K - $120K/yr
... purple team, and security validation activities across enterprise environments. Operate and ... Cybersecurity Risk Management - Identifies and assesses the potential impact of Cybersecurity risks ...
The Director, Cyber Security Detection Engineeringis a senior leader in the Cyber Operations ... Purple team operations : Experienced in designing and accomplishing adversary emulation exercises ...
The Director, Cyber Security Detection Engineeringis a senior leader in the Cyber Operations ... Purple team operations : Experienced in designing and accomplishing adversary emulation exercises ...
Tharros is seeking a Cyber Security Vulnerability Researcher, Forensic Analyst to conduct digital ... This position operates within the CWD red team, blue team, and purple team construct, providing ...
Tharros is seeking a Cyber Security Vulnerability Researcher, Forensic Analyst to conduct digital ... This position operates within the CWD red team, blue team, and purple team construct, providing ...
... cybersecurity program. The Lead will direct realistic adversary simulation activities aligned to ... Design and execute: * threat emulation campaigns, * purple team exercises, * tabletop exercises ...
Quick apply
... cybersecurity program. The Lead will direct realistic adversary simulation activities aligned to ... Design and execute: * threat emulation campaigns, * purple team exercises, * tabletop exercises ...
Cybersecurity Defense Analyst - Senior
Columbus, IN · On-site
$93K - $120K/yr
... purple team, and security validation activities across enterprise environments. • Operate and ... cybersecurity operations, cloud security, security engineering, offensive security, or related ...
Cybersecurity Defense Analyst - Senior
Columbus, IN · On-site
$93K - $120K/yr
... purple team, and security validation activities across enterprise environments. • Operate and ... cybersecurity operations, cloud security, security engineering, offensive security, or related ...
... cybersecurity program. The Lead will direct realistic adversary simulation activities aligned to ... Design and execute: * threat emulation campaigns, * purple team exercises, * tabletop exercises ...
... cybersecurity program. The Lead will direct realistic adversary simulation activities aligned to ... Design and execute: * threat emulation campaigns, * purple team exercises, * tabletop exercises ...
Senior Cybersecurity Subject Matter Expert - Florida Residents Only
Tallahassee, FL · Remote
$102K - $132K/yr
... Full Time, W-2 Positions: 2 FTEs Start: Contingent upon contract award About Emerging Tech At ... One of the two positions will be designated as the Purple Team and Detection Lead, responsible for ...
Quick apply
Senior Cybersecurity Subject Matter Expert - Florida Residents Only
Tallahassee, FL · Remote
$102K - $132K/yr
... Full Time, W-2 Positions: 2 FTEs Start: Contingent upon contract award About Emerging Tech At ... One of the two positions will be designated as the Purple Team and Detection Lead, responsible for ...
About the Role At Brown Brothers Harriman, cybersecurity is a critical enabler of trust, resilience ... Lead purple team exercises to validate security controls, improve visibility into attacker activity ...
About the Role At Brown Brothers Harriman, cybersecurity is a critical enabler of trust, resilience ... Lead purple team exercises to validate security controls, improve visibility into attacker activity ...
About the Role At Brown Brothers Harriman, cybersecurity is a critical enabler of trust, resilience ... Lead purple team exercises to validate security controls, improve visibility into attacker activity ...
About the Role At Brown Brothers Harriman, cybersecurity is a critical enabler of trust, resilience ... Lead purple team exercises to validate security controls, improve visibility into attacker activity ...
About the Role At Brown Brothers Harriman, cybersecurity is a critical enabler of trust, resilience ... Lead purple team exercises to validate security controls, improve visibility into attacker activity ...
About the Role At Brown Brothers Harriman, cybersecurity is a critical enabler of trust, resilience ... Lead purple team exercises to validate security controls, improve visibility into attacker activity ...
Description Tharros is seeking a Cyber Security Vulnerability Researcher, Forensic Analyst to ... This position operates within the CWD red team, blue team, and purple team construct, providing ...
Description Tharros is seeking a Cyber Security Vulnerability Researcher, Forensic Analyst to ... This position operates within the CWD red team, blue team, and purple team construct, providing ...
Cyber Red Team Operator
Boston, MA · On-site
About the Role At Brown Brothers Harriman, cybersecurity is a critical enabler of trust, resilience ... Lead purple team exercises to validate security controls, improve visibility into attacker activity ...
Cyber Red Team Operator
Boston, MA · On-site
About the Role At Brown Brothers Harriman, cybersecurity is a critical enabler of trust, resilience ... Lead purple team exercises to validate security controls, improve visibility into attacker activity ...
Purple Team Manager (Defense Improvement Analysis) At Capital One, you'll be part of a big group of ... The minimum and maximum full-time annual salaries for this role are listed below, by location.
Purple Team Manager (Defense Improvement Analysis) At Capital One, you'll be part of a big group of ... The minimum and maximum full-time annual salaries for this role are listed below, by location.
Run regular Purple Team exercises and continuously validate countermeasures already deployed.Work ... cyber security analytics experience.A certification compliant with DoD 8140.01 and 8570.01-M IAT ...
New
Quick apply
Run regular Purple Team exercises and continuously validate countermeasures already deployed.Work ... cyber security analytics experience.A certification compliant with DoD 8140.01 and 8570.01-M IAT ...
New
Senior Cybersecurity Subject Matter Expert - Florida Residents Only
Tallahassee, FL · On-site +1
$100K - $150K/yr
... Full Time, W-2 Positions: 2 FTEs Start: Contingent upon contract award About Emerging Tech At ... One of the two positions will be designated as the Purple Team and Detection Lead, responsible for ...
Senior Cybersecurity Subject Matter Expert - Florida Residents Only
Tallahassee, FL · On-site +1
$100K - $150K/yr
... Full Time, W-2 Positions: 2 FTEs Start: Contingent upon contract award About Emerging Tech At ... One of the two positions will be designated as the Purple Team and Detection Lead, responsible for ...
Senior Cybersecurity Operations Analyst
Troy, NY · On-site
$98K - $126K/yr
Blue, Red, and Purple Team Activities * Lead the development and execution of recurring security ... in cybersecurity, with a strong focus on security operations and incident response Technical ...
Senior Cybersecurity Operations Analyst
Troy, NY · On-site
$98K - $126K/yr
Blue, Red, and Purple Team Activities * Lead the development and execution of recurring security ... in cybersecurity, with a strong focus on security operations and incident response Technical ...
Full Time Cyber Security Purple Team information
See salary details
$57K - $68.7K
1% of jobs
$68.7K - $80.5K
4% of jobs
$80.5K - $92.2K
5% of jobs
$92.2K - $103.9K
9% of jobs
$110.4K is the 25th percentile. Wages below this are outliers.
$103.9K - $115.6K
11% of jobs
$115.6K - $127.4K
10% of jobs
The median wage is $131.9K / yr.
$127.4K - $139.1K
28% of jobs
$145.9K is the 75th percentile. Wages above this are outliers.
$139.1K - $150.8K
14% of jobs
$150.8K - $162.5K
11% of jobs
$162.5K - $174.3K
4% of jobs
$174.3K - $186K
4% of jobs
$57K
$133K
$186K
How much do full time cyber security purple team jobs pay per year?
What is a full time cyber security purple team member?
What does a full time cyber security purple team member do?
What skills and qualifications are needed to thrive as a full time cyber security purple team member?
What is the difference between Full Time Cyber Security Purple Team vs Penetration Tester?
| Aspect | Full Time Cyber Security Purple Team | Penetration Tester |
|---|---|---|
| Certifications | CEH, OSCP, CISSP, GIAC | CEH, OSCP, GPEN |
| Work Environment | Collaborative, ongoing security improvement | Project-based, testing specific systems |
| Employer & Industry Usage | Organizations with active security teams | Consulting firms, security vendors |
Full Time Cyber Security Purple Teams work within organizations to continuously improve security by combining offensive and defensive skills, collaborating across teams. Penetration Testers focus on simulating attacks to identify vulnerabilities in specific systems. While both roles require similar certifications, Purple Teams engage in ongoing security enhancement, whereas Penetration Testers perform discrete assessments.
What cities are hiring for Full Time Cyber Security Purple Team jobs?
Cities with the most Full Time Cyber Security Purple Team job openings:
What are the most commonly searched types of Cyber Security Purple Team jobs?
The most popular types of Cyber Security Purple Team jobs are:
What states have the most Full Time Cyber Security Purple Team jobs?
States with the most job openings for Full Time Cyber Security Purple Team jobs include:
What job categories do people searching Full Time Cyber Security Purple Team jobs look for?
The top searched job categories for Full Time Cyber Security Purple Team jobs are:

Full-time
Medical, Dental, Vision, Retirement, PTO
Re-posted 3 days ago
AstraZeneca rating
8.4
Based on 45 frontline employees who took The Breakroom Quiz
24th of 86 rated pharmaceutical
Job description
Leverage technology toimpactpatients andultimately savelives
Do you haveexpertisein, and passionfor,information technology? Would you like to apply yourexpertisetoimpactthe IT strategy in a company that followsthescienceand turns ideas into life changing medicines? If so, AstraZeneca might be the one for you!
ABOUT ASTRAZENECA
AstraZeneca is a global, science-led, patient-focused biopharmaceutical company that focuses on the discovery,developmentandcommercializationof prescription medicines for some of the world's most seriousdisease.
Butwe'remore than one of the world's leading pharmaceutical companies. At AstraZeneca, we'rededicated to being a Great Place to Work.
ABOUT ROLE:
The Director, Cyber Security Detection Engineeringis a senior leader in the Cyber Operations function, based in Gaithersburg, Maryland, working with the Head ofCyber Operations. The role encompasses command of enterprise detection capabilities across cloud, on-premises, and OT/ICS environments, ownership of detection governance and validation, and delivery of executive reporting, coverage assessments, and capability maturation in partnership withGSOC, CTI, Vulnerability Management, Offensive Security, IT, Legal, Risk and Compliance, and business customers.
What You'll Do:
Detection strategy and roadmap: Direct the development and execution of comprehensive detection engineering programmes aligned to interpersonal risk appetite and threat landscape;establishcapability roadmaps spanning data engineering, detection development, purple teaming, and automation/AI.
Data engineering oversight: Ensure robust data pipelines support detection activities through telemetry collection, normalization, and quality assurance across hybrid and OT environments; define data retention, schema standards, and platform configuration to enable effective threat detection.
Detection content development: Oversee creation, testing, and deployment of detection logic across SIEM, EDR, and cloud-native tooling; enforce detection standards, naming conventions, and MITRE ATT&CK mapping; prioritise coverage based on threat intelligence and risk assessments.
PurpleTeamExercising:Overseepurple team operations tovalidatedetection efficacy systematically; orchestrate adversary emulation exercises across technology domains; drive remediation of detection gapsidentifiedthrough testing and operational feedback.
Automation and AI integration: Operationalise AI agents, machine learning models, and orchestration workflows to enhance detection accuracy, reduce false positives, and augment GSOC analyst capabilities; oversee development of automated enrichment, triage, and investigation playbooks.
Metrics and reporting: Own detection engineering targets (e.g., MITRE ATT&CK coverage,mean time to detect, false positive rates, purple team success metrics) and deliver executive-ready briefings, dashboards, and quarterly maturity assessments.
Policy and governance: Develop and enforce detection engineering policies, standards, and quality frameworks;maintaindetection content libraries with version control and organizational change field; ensure regulatory compliance in data handling.
People Leadership:
Strategy and planning: Develop andmaintaindetection engineering area plans aligned toCyber Operationsstrategy; set direction and goals with autonomy across data engineering, detection development, purple teaming, and automation functions.
Performance and tiers: Define and review reporting and team targets; alignobjectivesto detection outcomes, coverage improvements, and operational efficiency.
Talent and capability: Lead inclusive recruitment; build career paths and targeted upskilling in detection development, threat hunting, cloud security, OT/ICS detection, and SOAR/AI through multi-functional, regional, and external partnerships.
Knowledge, Experience, and Understanding Of:
Detection engineering lifecycle: Proven leadership across detection development, testing, deployment, and tuning at enterprise scale; deep understanding of detection logic design, coverage mapping, and efficacy validation.
Threat detection frameworks: Extensive knowledge of MITRE ATT&CK, Cyber Kill Chain, and detection engineering methodologies; experience mapping organisational coverage and prioritising development based on threat intelligence.
Purple team operations: Experienced in designing and accomplishing adversary emulation exercises; skilled in translating purple team findings into actionable detection improvements and coverage enhancements.
Automation and AI: Experience operationalizing modern detection platforms (SIEM, XDR, SOAR) including integration of artificial intelligence, machine learning models, and agentic features to enable detection at scale.
Data engineering and platforms: Proficient with data pipeline architecture, log aggregation, normalisation, and query optimisation; solid grasp of data quality requirements for effective detection.
Cloud, identity, and endpoint detection: Deep understanding of detection approaches across multi-cloud environments, identity systems, endpoints, and network infrastructure; familiar with cloud-native security services and integration patterns.
Manufacturing Operational Technology/Industrial Control Systems: Coordinating detection engineering in industrial/OT environments with safety, availability, and production continuity considerations; knowledge of industrial protocols and OT-specific threats.
Minimum Skills & Experience Required
Education: Bachelor's degree in information security, computer science, or related field (or equivalent experience).
Enterprise-scale detection leadership: Over 5 years managing detection engineering or security operations in enterprise-sized organisations, commanding capabilities across hybrid cloud, on-premises, and OT environments.
Global coordination with distributed teams: Experience integrating and working alongside global, 247, geographically dispersed teams to deliver detection capabilities and support security operations missions.
Communication and facilitation: Well-developed skills to explain complex technical concepts in clear business terms; produce concise written material (executive updates, coverage reports); and lead briefings to diverse stakeholders.
Analytical decision making: Ability to analyse complex threat landscapes, assess detection gaps, and balance strategic capability development with tactical operational requirements, risk appetite, and resource constraints.
Customer orientation and cross-cultural working:Demonstratedability to collaborate across regions and functions (GSOC, IT, Legal, GRC, business units) with a strong service approach and commitment to enabling organisational resilience.
Preferred Skills & Experience:
Certifications: Security certifications preferred (e.g., CISSP, CISM, GIAC such as GCIA/GCDA/GMON;cloud certifications; ITIL).
When we put unexpected teams in the same room, we unleash bold thinking with the power to encourage life-changing medicines. In-person working gives us the platform we need to connect, work at pace and challenge perceptions. That's why we work, on average, a minimum of three days per week from the office. But that doesn't mean we're not flexible. We balance the expectation of being in the office while respecting individual flexibility. Join us in our unique and ambitious world.
The annual base pay for this position ranges from $169,320.00 - $253,980.00 USD Annual. Hourly and salaried non-exempt employees will also be paid overtime pay when working qualifying overtime hours. Base pay offered may vary depending on multiple individualized factors, including market location, job-related knowledge, skills, and experience. In addition, our positions offer a short-term incentive bonus opportunity; eligibility to participate in our equity-based long-term incentive program (salaried roles), to receive a retirement contribution (hourly roles), and commission payment eligibility (sales roles). Benefits offered included a qualified retirement program [401(k) plan]; paid vacation and holidays; paid leaves; and, health benefits including medical, prescription drug, dental, and vision coverage in accordance with the terms and conditions of the applicable plans. Additional details of participation in these benefit plans will be provided if an employee receives an offer of employment. If hired, employee will be in an "at-will position" and the Company reserves the right to modify base pay (as well as any other discretionary payment or compensation program) at any time, including for reasons related to individual performance, Company or individual department/team performance, and market factors.
Are you ready to bring new insights and fresh thinking to the table?Fantastic! We have one seat available, and we hope it's yours. Apply today.
AstraZeneca embraces diversity and equality of opportunity. We are committed to building an inclusive and diverse team representing all backgrounds, with as wide a range of perspectives as possible, and harnessing industry-leading skills. We believe that the more inclusive we are, the better our work will be. We welcome and consider applications to join our team from all qualified candidates, regardless of their characteristics. We follow all applicable laws and regulations on non-discrimination in employment (and recruitment), as well as work authorization and employment eligibility verification requirements.
WHYJOINUS ?
We'rea network of high-reaching self-starters who contribute to something far bigger. We enable AstraZeneca to perform at its peak by delivering premier technology and data solutions.
We'renot afraid to take ownership and run with it. Empowered with unrivalled freedom. Put simply,it'sbecause we make a significant impact. Everything we do matters.
#cyber
Date Posted
24-Aug-2026Closing Date
02-Sep-2026Our mission is to build an inclusive environment where equal employment opportunities are available to all applicants and employees. In furtherance of that mission, we welcome and consider applications from all qualified candidates, regardless of their protected characteristics. If you have a disability or special need that requires accommodation, please complete the corresponding section in the application form.
What AstraZeneca employees say
Pay
Benefits
Hours and flexibility
Workplace
Get the full story on Breakroom
About AstraZeneca
Sourced by ZipRecruiter
AstraZeneca is a global, science-led, patient-focused biopharmaceutical company that focuses on the discovery, development and commercialization of prescription medicines for some of the world's most serious diseases. But we're more than one of the world's leading pharmaceutical companies. A place built on courage, curiosity and collaboration - we make bold decisions driven by patient outcomes. Empowered to lead at every level, free to ask questions and take smart risks that write the next chapter for our pipeline and Oncology team. Make a meaningful impact that brings real benefits to society. By applying your knowledge of data, you will help to redefine our industry and ultimately save lives. Work with experts who share a common goal: to accelerate the potential of medicines and the science of tomorrow.
Industry
Pharmaceutical product wholesalers and pharmaceutical and medicine manufacturing
Company size
10,000+ Employees
Headquarters location
Cambridge, Cambridgeshire, GB