1

Offensive Security Red Team Manager Jobs (NOW HIRING)

Red Team Engineer

Quincy, MA · On-site

$120K - $202K/yr

... management, data protection, secure software development, cloud and infrastructure security ... Strong proficiency in offensive security techniques, including infrastructure, application, and ...

Requirements * 3+ years of experience in an offensive security role (e.g., Red Teaming, Penetration Testing). * Proven experience in planning and executing covert red team operations from ...

Participate in red team and offensive security engagements to test systems and identify ... vulnerabilities. * Support SOC engineering activities, including security event ingestion and SIEM ...

Principal Duties Include Cyber Advisors seeks a Senior Manager (Offensive Security) to mature, lead ... Red Team operations. * Prior experience should include: performing application and network ...

Red Team Engineer

Clifton, NJ · On-site

$120K - $202K/yr

... management, data protection, secure software development, cloud and infrastructure security ... Strong proficiency in offensive security techniques, including infrastructure, application, and ...

next page

Showing results 1-20

Offensive Security Red Team Manager information

See salary details

$57K

$133K

$186K

How much do offensive security red team manager jobs pay per year?

As of Jun 13, 2026, the average yearly pay for offensive security red team manager in the United States is $132,962.00, according to ZipRecruiter salary data. Most workers in this role earn between $111,000.00 and $150,000.00 per year, depending on experience, location, and employer.

What is the difference between Offensive Security Red Team Manager vs Penetration Tester?

AspectOffensive Security Red Team ManagerPenetration Tester
CertificationsOSCP, OSCE, CREST, CISSPOSCP, GPEN, CEH
Work EnvironmentLeads red team operations, manages team, strategic planningPerforms security assessments, tests systems, reports vulnerabilities
Employer & Industry UsageSecurity firms, large corporations, government agenciesSecurity consulting firms, internal security teams, freelance

The Offensive Security Red Team Manager oversees red team operations, manages personnel, and develops attack strategies, requiring leadership skills and advanced certifications. Penetration Testers focus on executing security assessments, identifying vulnerabilities, and reporting findings. While both roles require similar technical certifications, the manager role emphasizes team management and strategic planning, whereas the tester role is more hands-on and technical.

What are some common challenges faced by an Offensive Security Red Team Manager when coordinating simulated attack exercises?

One of the main challenges for an Offensive Security Red Team Manager is balancing realistic threat simulations with organizational constraints, such as business operations and regulatory requirements. Ensuring clear communication with stakeholders and minimizing disruption to critical systems while still testing security defenses is crucial. Additionally, managing a multidisciplinary team with varying skill sets and keeping up with rapidly evolving attack techniques can be demanding. Successful managers often develop robust planning protocols and foster a collaborative environment to address these challenges effectively.

What are the key skills and qualifications needed to thrive as an Offensive Security Red Team Manager, and why are they important?

To thrive as an Offensive Security Red Team Manager, you need deep expertise in penetration testing, adversarial simulation, and cybersecurity frameworks, often supported by a bachelor’s degree in a relevant field and certifications such as OSCP or CISSP. Familiarity with tools like Cobalt Strike, Metasploit, and SIEM platforms is typically required for orchestrating realistic attack scenarios and analyzing results. Strong leadership, communication, and problem-solving skills are essential for managing teams and interacting with stakeholders. These skills and qualities ensure the effective identification of vulnerabilities, development of mitigation strategies, and overall improvement of organizational security posture.

What is an Offensive Security Red Team Manager?

An Offensive Security Red Team Manager is a cybersecurity professional who leads a team responsible for simulating real-world cyberattacks on an organization to identify vulnerabilities and assess its security posture. Their primary role is to plan, coordinate, and oversee red team exercises that test the effectiveness of defenses, processes, and employee awareness. They also collaborate with other security teams, create detailed reports, and recommend improvements to mitigate risk. Strong leadership, technical expertise, and knowledge of adversarial tactics are essential for this role.
Infographic showing various Offensive Security Red Team Manager job openings in the United States as of June 2026, with employment types broken down into 100% Full Time. Highlights an 80% In-person, and 20% Remote job distribution, with an average salary of $132,962 per year, or $63.9 per hour.
Senior Penetration Testing Lead

Senior Penetration Testing Lead

ECS

Falls Church, VA • On-site

$122K - $167K/yr

Full-time

Posted 14 days ago


Job description

Everforth ECS is seeking a Senior Penetration Testing Lead to work in the National Capital Region covering the Pentagon, Falls Church, and Fairfax. Please Note: This position is contingent upon contract award.
The War Data Platform (WDP) is a key initiative within the U.S. Department of War's (DoW) AI-First strategy introduced in early 2026. The WDP separates business and financial data from operational warfighting data, aiming to accelerate the deployment of artificial intelligence (AI) on the battlefield. The WDP extends to Unclassified, Secret, and Top Secret environments, and supports collaboration between Combatant Commands, Joint Staff directorates, Senior Executive Service leaders, and operational analysts.
The Senior Penetration Testing Lead serves as the principal offensive security authority for WDP, planning and executing controlled adversarial assessments across NIPRNet, SIPRNet, and JWICS environments to validate control effectiveness, identify exploitable attack paths, and directly inform Risk Management Framework authorization decisions across WDP's multi-enclave architecture.
This is a senior technical leadership role demanding deep expertise in adversary emulation, red team operations, and government authorization processes, with direct responsibility for protecting mission-critical AI and analytics capabilities supporting warfighter decision-making at the highest levels of DoW leadership.
• Leads offensive security operations supporting Department of War mission systems across unclassified and classified networks.
• Plans, coordinates, and executes controlled penetration testing engagements against network infrastructure, web applications, cloud environments, and mission systems to identify exploitable attack paths beyond automated scanning capabilities.
• Develops testing strategies, rules of engagement, and assessment methodologies aligned with DoW cybersecurity policy and authorization objectives.
• Conducts advanced adversary emulation activities including lateral movement analysis, privilege escalation, command-and-control simulation, and post-exploitation impact assessment while maintaining operational safety and system availability.
• Coordinates testing activities with system owners, ISSOs, network defenders, and security operations teams to deconflict operations and support rapid response if anomalous behavior is detected.
• Produces comprehensive penetration test reports detailing attack vectors, exploitation techniques, evidence artifacts, and prioritized remediation recommendations.
• Supports red team exercises validating detection, response, and recovery capabilities across defensive teams and security tooling.
• Performs remediation verification and retesting to confirm corrective actions effectively mitigate identified risks.
• Maintains testing documentation, evidence repositories, and executive summaries supporting Risk Management Framework activities, authorization decisions, and leadership briefings.
• Delivers actionable insights that strengthen defensive posture, validate control effectiveness, and reinforce program values of resilience, accountability, mission assurance, and proactive cyber defense.
• Performs other duties as assigned.
• Current Secret security clearance.
• 10-12 years of experience in penetration testing, offensive security, red team operations, or a closely related cybersecurity discipline, with demonstrated senior-level ownership of full-lifecycle penetration test engagements across complex federal, DoW, or enterprise network and cloud environments.
• IAM Level I certification from an approved credential, including CompTIA Security+ CE, ISC² CAP, ISC² SSCP, or GIAC GSLC.
• Advanced offensive security certification such as Offensive Security Certified Professional (OSCP), Offensive Security Experienced Penetration Tester (OSEP), GIAC Penetration Tester (GPEN), GIAC Exploit Researcher and Advanced Penetration Tester (GXPN), or an equivalent credential demonstrating mastery of adversary emulation, exploitation techniques, and structured penetration testing methodology.
• Proven experience supporting DoW or federal Risk Management Framework processes, including preparation and maintenance of penetration testing plans, rules of engagement, Body-of-Evidence artifacts, and remediation findings packages in support of Authority to Operate decisions and continuous monitoring obligations under NIST 800-53.
• Strong problem-solving and decision-making capabilities, with a proven ability to weigh the relative costs and benefits of potential actions and identify the most appropriate solution.
• Highly developed interpersonal and oral/written communication skills, with the ability to effectively and professionally interact with a diverse set of stakeholders (from peers to end-users to executive management).