Job Description
Job Description
Backed by seasoned founders who've already built and scaled a security category before, with frontier AI labs and Fortune 500 names already on the client list, this is a rare shot at getting in early on something with real traction, not just a pitch deck.
\nThis role is for a hands-on security leader who can lead a 5+ member red team while staying deep in the technical work. The mandate spans AI/LLM security, adversary emulation, application security, cloud, identity, endpoint, and traditional offensive security.
\nThe ideal candidate has grown from a strong red-team or penetration-testing background into leadership without stepping away from the technical edge.
\nWhat You’ll Own
\n- \n
- Lead and mentor a red team of 5+ security professionals. \n
- Plan and execute complex red-team and adversarial-security engagements. \n
- Set technical direction across AI red teaming, application, network, identity, endpoint, and cloud security. \n
- Guide the development of realistic, multi-stage attack scenarios based on real-world adversary behavior. \n
- Lead AI/LLM security assessments covering prompt injection, agent security, RAG, tool abuse, excessive agency, data leakage, and emerging AI attack techniques. \n
- Oversee traditional offensive-security testing including privilege escalation, lateral movement, Active Directory, web/API attacks, persistence, credential access, and exfiltration. \n
- Review attack scenarios, proof-of-concepts, technical findings, and customer deliverables for depth and quality. \n
- Translate complex attack paths into clear business impact and actionable security recommendations. \n
- Act as a technical authority in customer engagements and executive discussions. \n
- Work directly with customers to understand their environments, objectives, risks, and security requirements. \n
- Partner with engineering, product, research, and defensive-security teams. \n
- Establish methodologies, technical standards, processes, and quality controls for the red-team function. \n
- Develop the team's offensive-security and AI-security capabilities through hands-on mentoring. \n
- Stay technically involved in complex engagements, validate attack paths, and challenge technical assumptions. \n
What You Bring
\n- \n
- 5+ years of experience in offensive security, red teaming, penetration testing, adversary emulation, or a related field. \n
- Demonstrated experience leading a red team of 5+ security professionals. \n
- Strong hands-on background as a Red Teamer, Penetration Tester, Offensive Security Engineer, or Security Researcher. \n
- Strong technical depth across offensive security and adversary emulation. \n
- Experience with web/API security, privilege escalation, lateral movement, Active Directory, identity attacks, and data exfiltration. \n
- Strong understanding of MITRE ATT&CK. \n
- Working knowledge of AI/LLM security and adversarial-AI techniques, including OWASP LLM security risks and MITRE ATLAS. \n
- Strong customer-facing experience with the ability to present technical findings to security teams, engineering leaders, and executives. \n
- Proven ability to lead complex technical projects and multiple engagements simultaneously. \n
- Excellent written and verbal communication. \n
- Ability to balance technical depth, team leadership, customer requirements, and business priorities. \n
- \n
- Experience building or scaling a red-team function. \n
- Experience leading customer-facing penetration-testing or red-team engagements. \n
- Hands-on AI/LLM red-team experience. \n
- Experience with security products, adversary emulation, BAS, exposure validation, or security-control validation. \n
- OSCP, OSEP, OSWE, CRTO, GXPN, or equivalent certifications. \n
- CTF, vulnerability research, CVE, open-source security tooling, or conference-speaking experience. \n
The Leadership Profile
\nThis is not a purely managerial role.
\nThe right leader has done the work personally and can move comfortably between technical depth and leadership. You should be able to dissect an attack chain with a red teamer, review a proof-of-concept with an engineer, explain risk to a CISO, and lead a customer conversation, all while building a high-performing technical team.
\nGood to Have
\n- \n
Lead the team. Stay hands-on. Shape how AI security gets tested. Send your profile to sanish@careerxperts.com.