Red & Purple Team Operator

🏢 SIXGEN · all SIXGEN jobs
📍 United States
📅 Posted 2026-08-19 · via Himalayas
🏷 Red-Team-Operations,Purple-Team-Operations,Penetration-Testing,Offensive-Security,Cybersecurity,Purple-Team,Red-Team-Operator
Apply on original site ↗

SIXGEN ’s mission is to deliver agile, mission-ready cybersecurity solutions that empower government and critical infrastructure organizations to stay ahead of advanced cyber threats. We combine innovation, deep expertise, and cutting-edge capabilities to uncover vulnerabilities, protect vital systems, and ensure operational superiority in an ever-evolving digital landscape.
POSITION OVERVIEW

-
Position: Senior Red & Purple Team Operator

-
Experience: 7+ years

-
Job Type: Full-time

-
Location: Remote

-
Clearance: Ability to be Cleared

WHAT YOU'LL DO

We are seeking a highly experienced and self-sufficient Senior Red & Purple Team Operator to independently plan, execute, and document advanced offensive cybersecurity assessments against enterprise systems, networks, applications, cloud environments, and security controls. This role conducts penetration testing, adversary emulation, Red Team operations, and Purple Team exercises designed to evaluate and improve the organization’s ability to prevent, detect, respond to, and recover from sophisticated cyberattacks.

The ideal candidate is an experienced offensive security professional capable of executing an engagement from initial planning through final reporting with minimal supervision. This includes establishing secure cloud-based attack infrastructure, developing attack plans and scenarios, conducting reconnaissance and exploitation, executing advanced persistent threat (APT)-style operations, collecting and preserving evidence, cleaning up operational infrastructure, and producing comprehensive technical and executive-level reports.

The ideal candidate will also be comfortable working directly with other cybersecurity teams during penetration testing and Purple Team engagements to validate detection capabilities, identify visibility gaps, and translate offensive findings into measurable improvements to enterprise defenses.
KEY RESPONSIBILITIES
Red Team Operations

-
Independently plan and execute end-to-end Red Team engagements simulating sophisticated real-world adversaries and advanced persistent threats (APTs).

-
Develop realistic attack scenarios based on organizational risk, threat intelligence, and adversary tactics, techniques, and procedures (TTPs).

-
Conduct reconnaissance, initial access, exploitation, privilege escalation, credential access, persistence, defense evasion, lateral movement, command and control, and other authorized adversary activities.

-
Evaluate the organization’s ability to prevent, detect, investigate, respond to, and recover from advanced cyberattacks.

-
Identify weaknesses across people, processes, technologies, security controls, and operational procedures.

-
Maintain operational security throughout Red Team engagements and ensure testing remains within established Rules of Engagement (ROE).

Purple Team Operations

-
Plan and conduct collaborative Purple Team exercises with SOC, Threat Hunting, Incident Response, Detection Engineering, and other security personnel.

-
Execute specific adversary TTPs to evaluate existing detection and response capabilities.

-
Validate alerts, telemetry, detection logic, and investigative procedures.

-
Identify visibility, telemetry, detection, and response gaps and provide actionable recommendations for improvement.

-
Assist defensive teams in translating offensive techniques into new or improved detections and threat-hunting opportunities.

-
Conduct iterative testing to validate that newly implemented detections and mitigations operate as intended.

-
Assess organizational response capabilities and recommend targeted training or operational improvements.

Penetration Testing

-
Assist in conducting comprehensive penetration testing of enterprise networks, systems, applications, cloud environments, and security infrastructure.

-
Simulate realistic attack paths to determine whether identified vulnerabilities can be exploited and chained to achieve meaningful objec

← All remote jobs