Cyber Security Spec III (Purple Team)
Core
Execute advanced security tests, ethical hacking, and attack simulations to prevent internal and external fraud while mitigating cybersecurity risks.
Role type
Senior IC cybersecurity engineer (purple team)
Builds
Secure applications, APIs, cloud infrastructure, and digital banking services
Domain
Banking / Cybersecurity (via careerplan.io/jobs/Req1614276-cyber-security-spec-iii-purple-team-at-santander)
Required skills
Ethical hacking, penetration testing, Red/Purple team exercises, threat hunting, incident response, vulnerability assessment, security architecture, technical documentation
Preferred skills
Threat hunting, digital forensics, adversary emulation, SIEM/EDR/SOAR, DevSecOps, container security, cloud security (AWS/Azure/GCP), Kubernetes, scripting (Python/PowerShell/Bash), threat intelligence
Technologies
MITRE ATT&CK, OWASP, SIEM, EDR/XDR, SOAR, AWS, Azure, GCP, Kubernetes, Python, PowerShell, Bash
Responsibilities
Plan and execute advanced security tests and ethical hacking on applications, APIs, and infrastructure; Conduct Red Team, Purple Team, and attack simulation exercises; Perform threat hunting to identify suspicious behaviors and compromise evidence; Collaborate with Blue Team and SOC to evolve detection controls; Support security incident response, investigation, and forensic analysis; Identify vulnerabilities and recommend mitigation measures; Support Security by Design and DevSecOps initiatives; Review security architectures and controls for new solutions; Produce technical documentation and executive reports.
Seniority
Senior, hands-on IC
