Purple Team - Lead Cloud Security Engineer
TENEX.AI · Overland Park, KS
—
Jul 19, 2026
Overland Park, KS
Jul 21, 2026
What this job asks for AI summary
A lead purple team role at an MDR startup, sitting within an adversary research function. Day-to-day work spans designing and running adversary emulations against the company's detection stack, identifying coverage gaps, building detection strategies for high-risk systems from scratch, and tracking adversary tradecraft relevant to customer verticals. Suited to someone with substantial hands-on experience across both offensive techniques and detection engineering.
Senior level · 7+ years · Remote · Full-time
“or” means any one of them counts — you don't need all of them.
We read this from the posting text with AI. Skim the description below before ruling yourself out.
How this req sits in the market our data
Most people in this occupation already list these. Still required — just not what gets you shortlisted.
What the occupation pays Median $132,021 (middle half $99,961–$167,095).
Estimated from BLS employment for this occupation and area, per-skill prevalence across our listing corpus, and published wage benchmarks — as of Jul 28, 2026. It is a model, not a headcount.
Why we read it this way (9)
The title 'Lead Security Engineer' carries no explicit seniority level word, so the title states no level; however, the 7+ year requirement and end-to-end ownership of the purple team function support a Senior classification.
SOC 15-1212 (Information Security Analysts) is the closest fit for this hybrid red/blue/purple team role; 15-1299 (Computer Occupations, All Other) is noted as a runner-up given the specialized adversary emulation and detection engineering blend that doesn't map cleanly to a single standard occupation.
Offensive security and detection engineering are listed together as the core experience requirement ('7+ years in offensive security, detection engineering, or a blend of the two') — both are treated as hard gates reflecting the dual red/blue nature of the role.
Emulation tooling (Caldera, Atomic Red Team, Prelude, Scythe) and certifications (OSCP, OSEP, CRTO, GIAC certs, CISSP) appear under 'Bonus Points' and are preferred, not required.
Threat hunting is listed under 'Bonus Points' as a preferred background.
A Bachelor's degree is listed as preferred with 'or equivalent experience' explicitly offered as an alternative, so the degree requirement is set to None.
No compensation figures are stated in the posting.
Ignored 2 non-technology phrase(s) as skills (responsibilities/concepts, not named tools): detection engineering, purple team operations.
Caller marked this a fully-remote role — scored against the national candidate pool.
Read the full posting
The employer publishes the full description on their own site — read it there ↗. Or sign in to read it here — it's free, and it also lets you track this application.