Group Tech Lead, Security Operations
Core
Design and drive a fully integrated purple team function bridging offensive and defensive security to detect, emulate, respond to, and improve defenses against real-world adversaries.
Role type
Senior Group Tech Lead, Security Operations (Purple Team)
Builds
Integrated threat operations program, adversary emulation exercises, incident response lifecycle, vulnerability management, and AI-enhanced detection workflows.
Domain
Cybersecurity, Threat Operations, Cloud-Native Security
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
Purple team strategy, adversary emulation, SIEM platforms, EDR platforms, forensic analysis, automation scripting, process design, NIST CSF/ISO 27001/SOC 2 frameworks
Preferred skills
AI/ML for threat detection, SOAR platforms, cross-functional leadership
Technologies
Panther, Splunk, Elastic Security, CrowdStrike, SentinelOne, MITRE ATT&CK, Python, PowerShell
Responsibilities
Define technical strategy for purple team function, design adversary emulation programs, lead security maturity roadmap, manage incident response lifecycle, implement vulnerability management, architect security operations processes, build detection engineering workflows, integrate AI/ML capabilities, mentor security engineers
Seniority
Senior, hands-on IC with leadership scope
