TENEX.AI · Overland Park, KSremote

Salary
Posted
Jul 19, 2026
Location
Overland Park, KS
Last confirmed open
Jul 21, 2026

What this job asks for AI summary

A lead purple team role at an MDR startup, sitting within an adversary research function. Day-to-day work spans designing and running adversary emulations against the company's detection stack, identifying coverage gaps, building detection strategies for high-risk systems from scratch, and tracking adversary tradecraft relevant to customer verticals. Suited to someone with substantial hands-on experience across both offensive techniques and detection engineering.

Senior level · 7+ years · Remote · Full-time

Must have (6)
offensive securityadversary emulationcommand and control (C2)evasion techniquesSIEMEDR
Nice to have (3)
Caldera, Atomic Red Team, Prelude or Scythethreat huntingOSCP, Osep, Crto, Gpen, Gcfa, Gcda or CISSP

“or” means any one of them counts — you don't need all of them.

We read this from the posting text with AI. Skim the description below before ruling yourself out.

How this req sits in the market our data

What won't set you apart
SIEM55%EDR40%

Most people in this occupation already list these. Still required — just not what gets you shortlisted.

What the occupation pays Median $132,021 (middle half $99,961–$167,095).

Estimated from BLS employment for this occupation and area, per-skill prevalence across our listing corpus, and published wage benchmarks — as of Jul 28, 2026. It is a model, not a headcount.

Why we read it this way (9)

The title 'Lead Security Engineer' carries no explicit seniority level word, so the title states no level; however, the 7+ year requirement and end-to-end ownership of the purple team function support a Senior classification.

SOC 15-1212 (Information Security Analysts) is the closest fit for this hybrid red/blue/purple team role; 15-1299 (Computer Occupations, All Other) is noted as a runner-up given the specialized adversary emulation and detection engineering blend that doesn't map cleanly to a single standard occupation.

Offensive security and detection engineering are listed together as the core experience requirement ('7+ years in offensive security, detection engineering, or a blend of the two') — both are treated as hard gates reflecting the dual red/blue nature of the role.

Emulation tooling (Caldera, Atomic Red Team, Prelude, Scythe) and certifications (OSCP, OSEP, CRTO, GIAC certs, CISSP) appear under 'Bonus Points' and are preferred, not required.

Threat hunting is listed under 'Bonus Points' as a preferred background.

A Bachelor's degree is listed as preferred with 'or equivalent experience' explicitly offered as an alternative, so the degree requirement is set to None.

No compensation figures are stated in the posting.

Ignored 2 non-technology phrase(s) as skills (responsibilities/concepts, not named tools): detection engineering, purple team operations.

Caller marked this a fully-remote role — scored against the national candidate pool.

Read the full posting

The employer publishes the full description on their own site — read it there ↗. Or sign in to read it here — it's free, and it also lets you track this application.

Apply

Apply on employer site ↗