Citizens Logo

Citizens

Offensive Security Manager (Red Team)

Posted 15 Days Ago
Be an Early Applicant
In-Office or Remote
Hiring Remotely in United States
170K-230K Annually
Senior level
In-Office or Remote
Hiring Remotely in United States
170K-230K Annually
Senior level
Leads the enterprise Red Team program, managing offensive security professionals and directing adversary emulation, Purple Team engagements, assumed-breach exercises, and AI security testing. Partners with cybersecurity, technology, legal, risk, and detection teams to improve controls, response, and resilience. Establishes operating standards, tools, metrics, and guardrails; translates findings into risk mitigation recommendations; supports compliance activities; and communicates outcomes to technical stakeholders and executives.
The summary above was generated by AI
 

Offensive Security Manager (Red Team)

Role Summary

The Manager, Red Team leads the organization's red team capability, responsible for simulating real world cyber threats, including AI enabled attack scenarios, to strengthen detection, response, and overall cyber resilience. This role owns the strategy, execution, and continuous evolution of the Red Team program, ensuring adversary emulation and purple team engagements across traditional and AI augmented environments drive measurable improvements to the organization's security posture.

Reporting to Cyber Security leadership, this position leads a team of offensive security professionals and partners closely with Cybersecurity Operations, Detection Engineering, Threat Intelligence, Legal, Risk, Conduct, and Technology teams. The role requires deep offensive security expertise, strong leadership capabilities, risk management experience, and the ability to communicate effectively with technical and executive audiences.

This position is ideal for a leader who understands how artificial intelligence is reshaping the threat landscape and how to safely test AI systems alongside enterprise infrastructure, applications, and data environments.

Key Responsibilities

• Own and continuously evolve the enterprise Red Team program, including adversary emulation, threat informed testing, and advanced offensive security assessments.

• Lead, mentor, and develop a team of Red Team professionals through hiring, performance management, coaching, and career development.

• Design and execute realistic Red Team and Purple Team engagements, including assumed breach scenarios, intelligence driven campaigns, and AI related attack simulations.

• Assess risks introduced by AI, automation, and data driven systems, incorporating those risks into offensive security testing strategies.

• Ensure all Red Team activities are conducted safely, ethically, and within defined operational guardrails to minimize business disruption and risk.

• Partner with Cybersecurity Operations, Detection Engineering, Security Architecture, and Technology teams to strengthen detection capabilities, response procedures, and security controls.

• Define standards, tools, processes, and performance metrics for Red Team operations, balancing custom developed capabilities with commercial platforms and emerging AI security technologies.

• Translate findings into actionable risk mitigation recommendations and communicate results effectively to technical stakeholders and senior leadership.

• Support audit, compliance, risk management, and regulatory activities through threat informed testing and control validation.

• Maintain awareness of evolving threat actor tactics, techniques, and procedures, applying industry best practices to Red Team operations.

Required Qualifications

• Bachelor's degree in Cybersecurity, Computer Science, Information Technology, Engineering, or a related field, or an equivalent combination of education and experience.

• 8+ years of progressive cybersecurity experience, including at least 5 years in offensive security, Red Team operations, adversary emulation, or penetration testing within a mid to large enterprise environment.

• 3+ years of people leadership experience managing senior security engineers, Red Team practitioners, or offensive security teams.

• Demonstrated experience leading complex Red Team and Purple Team engagements, including intelligence driven campaigns and assumed breach operations.

• Strong understanding of attacker methodologies, enterprise attack paths, and modern offensive security frameworks.

• Experience assessing AI security risks and conducting security testing of AI enabled products, services, applications, or workflows.

• Proven success translating offensive security findings into measurable improvements in detection, response, and overall security posture.

• Experience operating within highly regulated or risk sensitive environments.

• Strong communication, presentation, and stakeholder management skills, including the ability to influence senior leaders and drive cross functional collaboration.

Preferred Qualifications

• Experience developing custom offensive security tools, automation, or adversary simulation capabilities.

• Familiarity with cloud security testing across AWS, Azure, and Google Cloud environments.

• Experience testing identity platforms, enterprise SaaS applications, and modern application architectures.

• Knowledge of threat intelligence integration and threat informed defense methodologies.

Certifications

One or more of the following certifications are preferred:

• OSCP, Offensive Security Certified Professional

• OSCE, Offensive Security Certified Expert

• OSEP, Offensive Security Experienced Penetration Tester

• OSED, Offensive Security Exploit Developer

• CRTO, Certified Red Team Operator

• CRTP, Certified Red Team Professional

• GXPN, GIAC Exploit Researcher and Advanced Penetration Tester

• AI security, AI red teaming, or equivalent emerging cybersecurity certifications

Success Measures

• Improved detection and response effectiveness resulting from Red Team and Purple Team engagements.

• Demonstrated maturity and effectiveness of the enterprise Red Team program.

• Strong partnership with cybersecurity, technology, and business stakeholders.

• Measurable reduction in critical security gaps through threat informed testing and validation efforts.

Pay Transparency

The salary range for this position is from $170,000 to $230,000 per year, plus an opportunity to earn an annual discretionary bonus. Actual pay is based on various factors including but not limited to, the budget, work location, relevant skills, and experience.

We offer competitive pay, comprehensive medical, dental, and vision coverage, retirement benefits, maternity and paternity leave, flexible work arrangements, education reimbursement, wellness programs, and more. Citizens’ paid time off policy exceeds the mandatory paid sick or paid time away policies of local and state jurisdictions in the United States. For an overview of our benefits, visit our Careers site: https://jobs.citizensbank.com/benefits.

#LI-Citizens1


About Us

Equal Employment Opportunity

Citizens, its parent, subsidiaries, and related companies (Citizens) provide equal employment and advancement opportunities to all colleagues and applicants for employment without regard to age, ancestry, color, citizenship, physical or mental disability, perceived disability or history or record of a disability, ethnicity, gender, gender identity or expression, genetic information, genetic characteristic, marital or domestic partner status, victim of domestic violence, family status/parenthood, medical condition, military or veteran status, national origin, pregnancy/childbirth/lactation, colleague’s or a dependent’s reproductive health decision making, race, religion, sex, sexual orientation, or any other category protected by federal, state and/or local laws. At Citizens, we are committed to fostering an inclusive culture that enables all colleagues to bring their best selves to work every day and everyone is expected to be treated with respect and professionalism. Employment decisions are based solely on merit, qualifications, performance and capability.

Equal Employment and Opportunity Employer

Job Applicant Data Privacy Policy

Background Check

Any offer of employment is conditioned upon the candidate successfully passing a background check, which may include initial credit, motor vehicle record, public record, prior employment verification, and criminal background checks. Results of the background check are individually reviewed based upon legal requirements imposed by our regulators and with consideration of the nature and gravity of the background history and the job offered. Any offer of employment will include further information.


Similar Jobs

44 Minutes Ago
Easy Apply
Remote or Hybrid
2 Locations
Easy Apply
187K-268K Annually
Senior level
187K-268K Annually
Senior level
Cloud • Information Technology • Security • Software • Cybersecurity
Leads the West, Rockies, and North Central SLED sales team, driving performance, coaching sales excellence, building successful teams, and managing territory planning, assessment, and resource allocation. The role requires extensive SLED software/SaaS leadership experience, enterprise security knowledge, and the ability to position AI-driven solutions and lead scalable organizational change.
Top Skills: Ai/MlCloud SecuritySaaSSaseZero Trust
51 Minutes Ago
In-Office or Remote
95K-110K Annually
Senior level
95K-110K Annually
Senior level
Fintech
Partners with business leaders and HR centers of excellence to align human capital strategy with business goals. Provides coaching on employee relations, performance management, compensation, recruiting, talent development, succession planning, and organizational design. Investigates complex employee issues, mitigates legal and reputational risk, analyzes workforce trends, supports compensation reviews, and drives HR transformation and process improvements. Manages a program or specialty area while coaching and supporting team members.
Top Skills: Human Resource Information Systems (Hris)Paylocity Performance Management
52 Minutes Ago
In-Office or Remote
78K-102K Annually
Mid level
78K-102K Annually
Mid level
Fintech
Leads software quality assurance for workflow-based applications, creating test plans, automated test cases, and reusable automation frameworks. Executes functional, regression, smoke, and performance testing; validates workflows, integrations, business rules, security, and data flows; tracks defects; and supports Agile ceremonies. Collaborates with product owners, engineers, and platform teams to define acceptance criteria and improve testing processes. The role also mentors quality engineers and communicates product quality status.
Top Skills: .NetAdoAgileAppianAppiumC#JavaJavaScriptJmeterJqueryJSONJunitKanbanLoadrunnerPlaywrightPythonSalesforce PlatformScrumSdlcSeleniumT-SqlTestngXML

What you need to know about the Seattle Tech Scene

Home to tech titans like Microsoft and Amazon, Seattle punches far above its weight in innovation. But its surrounding mountains, sprinkled with world-famous hiking trails and climbing routes, make the city a destination for outdoorsy types as well. Established as a logging town before shifting to shipbuilding and logistics, the Emerald City is now known for its contributions to aerospace, software, biotech and cloud computing. And its status as a thriving tech ecosystem is attracting out-of-town companies looking to establish new tech and engineering hubs.

Key Facts About Seattle Tech

  • Number of Tech Workers: 287,000; 13% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Amazon, Microsoft, Meta, Google
  • Key Industries: Artificial intelligence, cloud computing, software, biotechnology, game development
  • Funding Landscape: $3.1 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Madrona, Fuse, Tola, Maveron
  • Research Centers and Universities: University of Washington, Seattle University, Seattle Pacific University, Allen Institute for Brain Science, Bill & Melinda Gates Foundation, Seattle Children’s Research Institute

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account