1

Purple Team Jobs (NOW HIRING)

Build and maintain detailed incident response runbooks, integrating lessons learned from purple team exercises * Conduct root cause analysis and lead retrospectives that drive measurable improvements ...

Build and maintain detailed incident response runbooks, integrating lessons learned from purple team exercises * Conduct root cause analysis and lead retrospectives that drive measurable improvements ...

Execute Red Team and Purple Team engagements as a primary operator, including adversary emulation, assumed breach scenarios, and intelligence driven attack paths * Design and execute campaign based ...

Execute Red Team and Purple Team engagements as a primary operator, including adversary emulation, assumed breach scenarios, and intelligence driven attack paths * Design and execute campaign based ...

Execute Red Team and Purple Team engagements as a primary operator, including adversary emulation, assumed breach scenarios, and intelligence driven attack paths * Design and execute campaign based ...

Execute Red Team and Purple Team engagements as a primary operator, including adversary emulation, assumed breach scenarios, and intelligence driven attack paths * Design and execute campaign based ...

Execute Red Team and Purple Team engagements as a primary operator, including adversary emulation, assumed breach scenarios, and intelligence driven attack paths * Design and execute campaign based ...

Execute Red Team and Purple Team engagements as a primary operator, including adversary emulation, assumed breach scenarios, and intelligence driven attack paths * Design and execute campaign based ...

Execute Red Team and Purple Team engagements as a primary operator, including adversary emulation, assumed breach scenarios, and intelligence driven attack paths * Design and execute campaign based ...

Execute Red Team and Purple Team engagements as a primary operator, including adversary emulation, assumed breach scenarios, and intelligence driven attack paths * Design and execute campaign based ...

Execute Red Team and Purple Team engagements as a primary operator, including adversary emulation, assumed breach scenarios, and intelligence driven attack paths * Design and execute campaign based ...

Execute Red Team and Purple Team engagements as a primary operator, including adversary emulation, assumed breach scenarios, and intelligence driven attack paths * Design and execute campaign based ...

Execute Red Team and Purple Team engagements as a primary operator, including adversary emulation, assumed breach scenarios, and intelligence driven attack paths * Design and execute campaign based ...

Execute Red Team and Purple Team engagements as a primary operator, including adversary emulation, assumed breach scenarios, and intelligence driven attack paths * Design and execute campaign based ...

Showing results 21-40

Purple Team information

See salary details

$8

$19

$35

How much do purple team jobs pay per hour?

As of Aug 17, 2026, the average hourly pay for purple team in the United States is $19.04, according to ZipRecruiter salary data. Most workers in this role earn between $13.22 and $21.15 per hour, depending on experience, location, and employer.

What are purple team jobs?

Purple team jobs involve cybersecurity professionals who collaborate to improve an organization’s security posture by combining offensive (red team) and defensive (blue team) skills. These roles often require knowledge of penetration testing, threat detection, and security tools, and may involve conducting simulated attacks and security assessments to identify vulnerabilities.

What are the key skills and qualifications needed to thrive in the purple team position, and why are they important?

To thrive as a Purple Team member, you need a deep understanding of both offensive (red team) and defensive (blue team) cybersecurity techniques, with expertise in penetration testing, threat detection, and incident response. Familiarity with tools such as SIEM platforms, vulnerability scanners, attack simulation frameworks, and certifications like CISSP, CEH, or OSCP are highly valued. Strong problem-solving abilities, effective communication, and the capability to work collaboratively with both security and IT teams are crucial soft skills. These combined skills enable Purple Team professionals to bridge gaps between offensive and defensive security, improving organizational resilience against cyber threats.

What is the purple team work?

Purple team work involves collaboration between red team (offensive security) and blue team (defensive security) to improve an organization's cybersecurity posture. It focuses on sharing insights, identifying vulnerabilities, and enhancing security measures through coordinated testing and analysis. Professionals in this role often use tools like security information and event management (SIEM) systems and require knowledge of both attack techniques and defense strategies.

What is a purple team?

A Purple Team job involves bridging the gap between Red Team (offensive security) and Blue Team (defensive security) operations. Professionals in this role collaborate with both teams to enhance an organization's overall security posture by simulating attacks, identifying vulnerabilities, and improving detection and response capabilities. Their goal is to ensure that defensive measures are continuously tested and refined based on real-world attack scenarios. This role requires strong knowledge of cybersecurity threats, penetration testing, and incident response.

How does a purple team contribute to improving an organization's cybersecurity posture?

A Purple Team plays a unique and strategic role by facilitating collaboration between offensive security experts (Red Team) and defensive teams (Blue Team), helping organizations identify and address vulnerabilities more efficiently. They conduct controlled attack simulations, analyze real-world threat scenarios, and work directly with defenders to strengthen detection and response processes. The team’s efforts often lead to developing stronger security controls and more resilient incident response strategies. For job seekers, this means engaging in diverse projects, learning from both adversarial and defense perspectives, and playing a direct role in enhancing overall cyber defense capabilities.

More about Purple Team jobs

What cities are hiring for Purple Team jobs?

Cities with the most Purple Team job openings:

What are the most commonly searched types of Purple Team jobs?

The most popular types of Purple Team jobs are:

What states have the most Purple Team jobs?

States with the most job openings for Purple Team jobs include:

What job categories do people searching Purple Team jobs look for?

The top searched job categories for Purple Team jobs are:

Infographic showing various Purple Team job openings in the United States as of August 2026, with employment types broken down into 1% As Needed, 76% Full Time, 19% Part Time, and 4% Contract. Highlights an 94% Physical, 2% Hybrid, and 4% Remote job distribution, with an average salary of $39,603 per year, or $19 per hour.

AOUSC - Threat Emulation & Readiness Lead / Red Team Lead

cFocus Software Incorporated

Washington, DC • On-site

Full-time

Re-posted 2 days ago


Job description

Position Title
Threat Emulation & Readiness Lead / Red Team Lead
Position Overview
The Threat Emulation & Readiness Lead will oversee adversary emulation, red team operations, cyber readiness exercises, and threat-informed defense initiatives supporting a federal enterprise cybersecurity program.
The Lead will direct realistic adversary simulation activities aligned to nation-state tradecraft and MITRE ATT&CK methodologies to assess and improve organizational detection, response, resilience, and operational readiness.
Key Responsibilities
  • Lead red team operations and adversary emulation exercises.
  • Design and execute:
    • threat emulation campaigns,
    • purple team exercises,
    • tabletop exercises,
    • crisis simulations,
    • and readiness drills.
  • Emulate advanced threat actor TTPs targeting enterprise, cloud, identity, and hybrid environments.
  • Develop attack chains aligned to:
    • MITRE ATT&CK,
    • intelligence reporting,
    • and real-world threat actor behaviors.
  • Coordinate closely with SOC, CTI, Threat Hunt, and Detection Engineering teams.
  • Assess detection and response effectiveness across defensive technologies and operational workflows.
  • Develop after-action reports, findings, remediation recommendations, and improvement roadmaps.
  • Lead operational readiness assessments and continuous improvement initiatives.
  • Brief executives and operational leadership on adversary risk and organizational readiness.
Required Qualifications
  • 10+ years of offensive security or advanced cybersecurity operations experience.
  • 5+ years leading red team or adversary emulation operations.
  • Experience conducting operations against:
    • enterprise Active Directory environments,
    • cloud infrastructure,
    • hybrid identity systems,
    • and modern endpoint defenses.
  • Deep understanding of:
    • adversary tradecraft,
    • post-exploitation,
    • detection evasion,
    • persistence,
    • and lateral movement techniques.
  • Experience conducting purple team engagements and readiness exercises.
  • Strong executive communication and briefing capabilities.
Preferred Certifications
  • OSCP
  • OSEP
  • CRTO
  • GXPN
  • GPEN
  • CISSP
  • MITRE ATT&CK certifications

Powered by JazzHR

kRrt3Voryv