Purple Team Lead/Sr Vulnerability Assessment AnalystFort Bragg, NCPOSITION SUMMARY: The Purple Team Lead / Senior Penetration Tester is responsible for planning, coordinating, and executing advanced Purple Team operations that integrate offensive security testing with defensive validation in support of an Army contract This role conducts authorized adversary emulation and penetration testing to assess the effectiveness of cybersecurity controls, improve detection capabilities, and strengthen the organization's overall security posture.
Key Responsibilities:- Lead and execute Purple Team engagements that combine offensive penetration testing with real-time defensive monitoring and response validation.
- Plan and conduct Computer Defense Assistance Program (CDAP) missions, including Network Assistance Visits (NAV), Network Damage Assessments (NDA), and Persistent Penetration Testing (PPT).
- Perform authorized network, application, and infrastructure penetration testing to identify security weaknesses and validate defensive controls.
- Simulate real-world adversary tactics, techniques, and procedures (TTPs) to assess detection, response, and recovery capabilities.
- Collaborate closely with Blue Team, Cyber Threat Intelligence (CTI), and incident response personnel to validate security monitoring, detection rules, and response procedures.
- Develop detailed technical findings, risk assessments, and remediation recommendations following each assessment.
- Ensure all testing activities are conducted in accordance with approved Rules of Engagement (ROE), Army regulations, and applicable DoD cybersecurity policies.
- Mentor junior cybersecurity personnel and contribute to the continuous improvement of Purple Team methodologies, tools, and operational procedures.
Preferred Qualifications:- 7+ years experience leading penetration testing, Red Team, or Purple Team operations within DoD or federal environments.
- Strong understanding of offensive security methodologies, adversary emulation, and penetration testing frameworks.
- Experience with network, web application, Active Directory, cloud, and endpoint security assessments.
- Knowledge of MITRE ATT&CK, NIST Cybersecurity Framework, and DoD cyber operations.
- Familiarity with common penetration testing and security assessment tools (e.g., Cobalt Strike, Metasploit, Burp Suite, Nmap, BloodHound, Impacket, Kali Linux).
- Active DoD Secret clearance
- Desired certifications: CISSP, CASP+ or CCNP
At Indigo IT, we offer an expansive benefits package for our employees, which includes: Medical, Dental, and Vision coverage options. In addition, we offer 401(k) with company match, Group life and disability, Flex Spending Accounts (FSA), Paid Time Off (PTO), Paid holidays, and Education assistance. We also have in house training programs for employees, we reward thought leadership with bonuses and recognition for publishing, speaking, and innovative thought leadership in our industry.
Pay Range: $125,000 - $155,000 per year