Who we are looking forAs a senior member of the Red Team within the cybersecurity organization, the Red Team Lead Engineer will guide and execute adversary-emulation activities, threat-informed security testing, and controlled offensive security operations. The Lead Engineer is responsible for ensuring all testing activities align with organizational standards, authorization requirements, and applicable regulatory expectations, and that they are conducted safely within approved scopes and environments.
What you will be responsible for- Lead and execute adversary-emulation activities to assess organizational defenses and security control effectiveness.
- Oversee and perform targeted security assessments across applications, infrastructure, cloud platforms, and critical enterprise technologies.
- Guide team members, assign work, and review testing approaches for quality and safety.
- Collaborate with security, technology, and risk stakeholders to design realistic, threat-informed testing scenarios.
- Evaluate detection and response capabilities and drive improvements through coordinated purple-team efforts.
- Develop and refine testing methodologies, tooling standards, and reporting practices to mature the program.
- Deliver audit-ready reports and provide guidance on remediation to reduce identified risks.
What we value These skills will help you succeed in this role
- Advanced proficiency in offensive security techniques and threat-informed testing methodologies.
- Strong understanding of adversary behaviors and attack frameworks to guide scenario design.
- Broad, technical knowledge across networks, operating systems, cloud environments, and core security controls.
- Demonstrated analytical ability to identify core issues, interpret risk, and propose practical, evidence-driven solutions.
- Strong organizational, time-management, and prioritization skills in dynamic and high-pressure environments.
- Commitment to maintaining awareness of emerging threats, vulnerabilities, and offensive security trends.
- Ability to develop or refine tools and automate tasks using common scripting languages.
- Demonstrated leadership in analyzing complex issues, shaping direction, and guiding team decision-making.
- Excellent communication skills with the ability to distill complex technical concepts for diverse audiences.
- High integrity, professionalism, and sound judgment when handling sensitive information and operating under pressure.
Education & Preferred Qualifications- Bachelor's degree or equivalent advanced security experience.
- 4-6 years leading and/ or conducting penetration testing or red-team activities.
- Broad expertise across networks, operating systems, cloud, and security controls.
- Strong knowledge of threat-informed testing and attack frameworks.
- Experience coordinating with defensive teams to evaluate detections.
- Ability to script and automate tasks using common languages.
- Exceptional communication and reporting skills for diverse audiences.
Salary Range: $120,000 - $202,500 Annual
The range quoted above applies to the role in the primary location specified. If the candidate would ultimately work outside of the primary location above, the applicable range could differ.
Employees are eligible to participate in State Street's comprehensive benefits program, which includes: our retirement savings plan (401K) with company match; insurance coverage including basic life, medical, dental, vision, long-term disability, and other optional additional coverages; paid-time off including vacation, sick leave, short term disability, and family care responsibilities; access to our Employee Assistance Program; incentive compensation including eligibility for annual performance-based awards (excluding certain sales roles subject to sales incentive plans); and, eligibility for certain tax advantaged savings plans.
For a full overview, visit https://hrportal.ehr.com/statestreet/Home.