Lead Information Security Engineer - Red Team

Lumen

• $105K — $155K *
US-AnywhereRemote in United States
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor's degree in Information Security, Computer Science, Engineering, or related field (or equivalent experience).
  • 5 years of hands-on penetration testing and offensive security experience; 7 years in Information Security (or 5 years with a Bachelor’s degree).
  • Professional certifications in penetration testing (e.g., GPEN, OSCP).
  • Proven experience leading complex penetration tests and adversarial exercises from start to finish.
  • Deep expertise in MITRE ATT&CK and adversarial emulation techniques.
  • Strong knowledge of AWS, Azure, and/or GCP security.
  • Demonstrated leadership and stakeholder management skills.

Responsibilities

  • Serve as a cybersecurity and Red Team subject matter expert, leading penetration testing and adversarial emulation.
  • Lead planning, execution, and reporting of complex security assessments across various platforms.
  • Direct ACE and Red Team engagements, managing risk and delivering actionable security recommendations.
  • Provide technical leadership across multiple initiatives, ensuring quality outcomes while remaining hands-on.
  • Define testing strategies and guide remediation efforts to reduce organizational risk.
  • Partner with various teams to identify vulnerabilities and evaluate attack paths.
  • Drive innovation through automation and the expansion of Red Team services.
  • Communicate technical risks to executive and technical audiences, fostering a strong security-focused culture.

Benefits

  • Comprehensive health and life insurance package.
  • Voluntary lifestyle benefits.
  • Additional perks to enhance physical, mental, emotional, and financial well-being.
Full Job Description
The Role

Red Team - Lead Information Security Engineer
The Lead Information Security Engineer within Product and Platform Security provides technical leadership and hands-on execution across Red Team functions. This role leverages advanced penetration testing and adversarial emulation to identify and ethically exploit vulnerabilities across enterprise systems, products, services, and applications in cloud-native and hybrid environments. The Lead plans and executes Adversarial Cybersecurity Emulation (ACE) exercises, including AI-driven threat scenarios, to evaluate and strengthen security defenses.

At Lumen, we are igniting business growth by connecting people, data, and applications quickly, securely, and effortlessly. As part of our security organization, you will help protect critical platforms and technologies while advancing Red Team capabilities through innovation, automation, and threat-informed testing.

The Lead is expected to balance deep technical expertise with leadership responsibilities, including guiding engagements, setting technical direction, mentoring engineers, ensuring quality outcomes, and driving remediation efforts to completion. This role also leads strategic initiatives that enhance penetration testing, adversarial emulation, and security testing capabilities while partnering with stakeholders across technology, engineering, product, and security teams to reduce risk and improve resilience.

Location

This is a remote opportunity open to candidates located anywhere in the U.S.

The Main Responsibilities

  • Serve as a cybersecurity and Red Team subject matter expert, leading penetration testing, adversarial emulation, and threat-based security assessments.
  • Lead end-to-end planning, execution, and reporting of complex security assessments across infrastructure, applications, cloud platforms, APIs, databases, and identity systems.
  • Direct Adversarial Cybersecurity Emulation (ACE) and Red Team engagements, coordinating stakeholders, managing risk, and delivering actionable security recommendations.
  • Provide technical leadership across multiple concurrent initiatives, ensuring quality, accuracy, and successful delivery while remaining hands-on with testing activities.
  • Define testing strategies, review findings and risk assessments, and guide remediation efforts to reduce organizational risk.
  • Partner with incident response, engineering, product, and business teams to identify vulnerabilities, evaluate attack paths, and strengthen security controls.
  • Drive innovation through automation, tooling, process improvements, AI/ML-enabled security capabilities, and the expansion of Red Team services.
  • Communicate technical risks and business impacts to executive and technical audiences, promote knowledge sharing, and foster a strong security-focused culture.


What We Look For in a Candidate

Minimum Qualifications
  • Bachelor's degree in Information Security, Computer Science, Engineering, or related field (or equivalent experience).
  • 5 years of hands-on penetration testing, offensive security, or advanced security assessment experience; 7 years in Information Security (or 5 years with a Bachelor's degree).
  • Professional certifications in penetration testing such as GPEN, GWAPT, GMOB, OSCP, OSWE, or equivalent.
  • Proven experience leading complex penetration tests and adversarial exercises from planning through technical and executive reporting.
  • Deep expertise in MITRE ATT&CK, threat-informed testing, adversarial emulation, and modern cyber threats, vulnerabilities, and exploit techniques.
  • Strong knowledge of AWS, Azure, and/or GCP security, including identity, networking, workloads, and cloud control planes.
  • Experience applying OWASP, NIST, CIS Controls, and other security frameworks.
  • Advanced knowledge of networks, operating systems, identity systems, applications, APIs, scripting, and enterprise technologies.
  • Demonstrated leadership, mentoring, communication, and stakeholder management skills, with the ability to drive multiple workstreams while remaining technically hands-on.

Preferred Qualifications
  • Master's degree in Information Security, Computer Science, Engineering, or related field.
  • 7 years of penetration testing or offensive security experience in large enterprise environments.
  • 3 years leading Red Team engagements and coordinating with defensive, business, and executive stakeholders.
  • Experience developing security tools, exploits, payloads, automations, and new Red Team capabilities.
  • Experience assessing mobile technologies, AI systems, cloud services, and other emerging technologies.
  • Knowledge of AI/ML applications in cybersecurity, including adversarial testing and automation.
  • Experience creating technical training, teaching, presenting at conferences, or building development programs.
  • Advanced professional certifications such as GXPN, OSEP, or equivalent.


Compensation

This information reflects the anticipated base salary range for this position based on current national data. Minimums and maximums may vary based on location. Individual pay is based on skills, experience and other relevant factors.

Location Based Pay Ranges

$105,786 - $141,047 in these states: AL AR AZ FL GA IA ID IN KS KY LA ME MO MS MT ND NE NM OH OK PA SC SD TN UT VT WI WV WY
$111,074 - $148,099 in these states: CO HI MI MN NC NH NV OR RI
$116,364 - $155,152 in these states: AK CA CT DC DE IL MA MD NJ NY TX VA WA

Lumen offers a comprehensive package featuring a broad range of Health, Life, Voluntary Lifestyle benefits and other perks that enhance your physical, mental, emotional and financial wellbeing. We're able to answer any additional questions you may have about our bonus structure (short-term incentives, long-term incentives and/or sales compensation) as you move through the selection process. Learn more about Lumen's:Benefits
Bonus Structure

#LI-Remote

Requisition #: 343648

Similar Jobs

More Jobs at Lumen

More Information Technology Jobs

Find similar Lead Information Security Engineer - Red Team jobs: