703,114open jobs
41,507companies
99,646added this week
Browse all
Salary
$120k – $210k per year
Location
Remote/Hybrid (Johnston, United States)
Seniority
Principal · 4+ years exp
Overview
Company
Impact
Profile match
Citizens Financial Group is one of the oldest and largest financial institutions in the United States, offering a comprehensive suite of commercial and retail banking services. Headquartered in Providence, Rhode Island, the enterprise operates an extensive network of physical branches, ATMs, and digital platforms across multiple regions. Through its tailored personal, private, and corporate solutions, the bank assists individuals, small businesses, and institutions in managing capital and achieving their financial goals.

Principal Operator, Red Team

Role Summary

The Operator, Red Team is a hands on offensive security practitioner responsible for executing advanced adversary emulation and continuous red teaming operations across a modern, cloud and AI enabled enterprise. This role plays a critical part in building and scaling the organization’s offensive security capability and ensuring the company stays ahead of emerging threats in an evolving risk landscape.

Operating within high impact engagements, this individual will simulate real world attackers, identify and validate attack paths, and partner closely with defensive teams to ensure findings translate into measurable improvements in detection, response, and overall risk posture. Success in this role requires deep technical tradecraft, strong operational discipline, and a mindset focused not just on breaking systems, but on strengthening them through full lifecycle accountability.

This role reports to the Red Team Manager and works closely with Blue Team, Detection Engineering, Threat Intelligence, and Incident Response through Purple Teaming to continuously improve defensive effectiveness.

Locations and Work Arrangement: Candidates must be willing to commute to one of the following hub locations with a hybrid schedule and flexibility across the listed hubs. We are open to supporting relocation assistance for highly qualified candidates who are not currently located near one of these offices:

  • Johnston, RI
  • Boston, MA
  • Iselin, NJ
  • Pittsburgh, PA
  • Plano or Irving TX
  • Phoenix, AZ
  • Charlotte, NC
  • Manchester, NH
  • Cleveland, OH

Key Responsibilities

  • Execute Red Team and Purple Team engagements as a primary operator, including adversary emulation, assumed breach scenarios, and intelligence driven attack paths
  • Design and execute campaign based attack operations that simulate real world adversary behavior across enterprise environments
  • Perform hands on exploitation and abuse across on prem, cloud, SaaS, and hybrid infrastructures
  • Simulate advanced attacker tradecraft, including living off the land techniques, identity abuse, privilege escalation, lateral movement, persistence, command and control, and controlled data exfiltration
  • Conduct testing against AI enabled systems and workflows, including abuse and misuse of AI assistants, copilots, and automation platforms
  • Execute prompt manipulation, indirect prompt injection, and AI model misuse scenarios to evaluate emerging attack surfaces
  • Collaborate closely with Detection Engineering and Blue Team during Purple Team engagements to validate detections, identify coverage gaps, and refine response effectiveness
  • Translate offensive findings into actionable remediation insights and partner with stakeholders to ensure vulnerabilities are addressed and control effectiveness is improved
  • Contribute to full lifecycle execution of engagements, ensuring findings are tracked through resolution and result in measurable risk reduction
  • Leverage and extend red team tooling and frameworks and develop targeted scripts or payloads to emulate specific adversary behaviors
  • Document findings clearly, including attack paths, control weaknesses, and detection gaps, contributing to engagement reports and technical debriefs
  • Operate within defined rules of engagement, safety protocols, and ethical guidelines to ensure realistic and controlled testing
  • Stay current on evolving adversary tactics, offensive tooling, and AI security research, incorporating new techniques into ongoing testing efforts

Experience and Skills

  • 4 to 8 years of hands on cybersecurity experience with a strong focus on Red Team operations, adversary emulation, or advanced offensive security
  • Demonstrated experience executing Red Team or Purple Team engagements in assumed breach or adversary based scenarios
  • Proven ability to design and execute attack paths rather than relying solely on automated tools or point in time testing
  • Strong technical capability across multiple attack surfaces, including identity and access attacks, endpoint and network exploitation, cloud and SaaS environments, and command and control frameworks
  • Understanding of campaign based red teaming and continuous testing approaches, including iterative and regression style validation
  • Working knowledge of AI security concepts, including how AI enabled systems, inputs, and workflows can be manipulated or abused
  • Ability to collaborate with Blue Team and Detection Engineering to translate offensive activity into improved detection and response capabilities
  • Strong operational discipline, including clear documentation, safe execution, and adherence to engagement constraints
  • Effective communication skills, with the ability to explain technical findings to security practitioners and cross functional partners
  • Demonstrated curiosity, adaptability, and ability to operate in rapidly evolving threat and technology environments

Education and Certifications

  • Bachelor’s Degree in Security, Computer Science, Information Technology, or related field, or equivalent experience
  • Relevant industry certifications such as OSCP, OSEP, CRTO, CRTP, or similar advanced offensive security credentials
  • Exposure to AI security testing or AI red teaming through hands on work, training, or research is preferred

Pay Transparency

The salary range for this position is from $120,000 to $210,000 per year, plus an opportunity to earn an annual discretionary bonus. Actual pay is based on various factors including but not limited to, the budget, work location, relevant skills, and experience.

We offer competitive pay, comprehensive medical, dental, and vision coverage, retirement benefits, maternity and paternity leave, flexible work arrangements, education reimbursement, wellness programs, and more. Citizens’ paid time off policy exceeds the mandatory paid sick or paid time away policies of local and state jurisdictions in the United States. For an overview of our benefits, visit our Careers site - https://jobs.citizensbank.com/benefits.

Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
703,114 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account Continue with Google
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Similar stack
Same company
Johnston
$50k – $133k per year (Estimated) • Remote
JavaScript
Java
TypeScript
Node JS
Java
Spring Boot
AI/ML
AI Agents
RAG
Red Teaming
Frontend
Angular
DevOps
CI/CD
AWS
Management
Miro
Confluence
Jira
Scrum
Kanban
Apply
$272k – $431k per year • Remote • Full-Time • 15+ years exp • Bachelor's Degree • United States
AI/ML
Red Teaming
DevOps
CI/CD
Kubernetes
eBPF
HPC
Linux
Cybersecurity
Threat Modeling
Apply
$160k – $220k per year • Equity • Remote • 4+ years exp
AI/ML
Red Teaming
Cybersecurity
SentinelOne
SIEM
Apply
$160k – $220k per year • Remote • Full-Time • Bachelor's Degree • United States
AI/ML
Red Teaming
DevOps
Incident Management
Apply
$137k – $293k per year (Estimated) • Equity • In office • 5+ years exp • Bellevue
AI/ML
AI Agents
Red Teaming
DevOps
Kubernetes
Web3
DeFi
Apply
$72k – $101k per year • In office • 3+ years exp • Bachelor's Degree • Providence
Apply
Finance Analyst 10 hours ago
$73k – $101k per year • Remote/Hybrid • Bachelor's Degree • Johnston
Analytics
Microsoft Excel
Apply
In office • Internship • Bachelor's Degree
Management
Microsoft Office
Apply
$65k – $70k per year • In office
Apply
In office • 2+ years exp • Bachelor's Degree
DevOps
SLI/SLO/SLA
Management
Outlook
Microsoft Office
Apply
Finance Analyst 10 hours ago
$73k – $101k per year • Remote/Hybrid • Bachelor's Degree • Johnston
Analytics
Microsoft Excel
Apply
$123k – $159k per year • In office • 5+ years exp • Bachelor's Degree • Johnston
Design
AutoCAD
Management
Microsoft Office
Apply
Sr Project Manager 4 days ago
$100k – $186k per year (Estimated) • In office • 5+ years exp • Johnston
Apply
$83k – $166k per year (Estimated) • In office • 5+ years exp • Johnston
Analytics
Microsoft Excel
Management
Agile
Apply
$90k – $135k per year • In office • 5+ years exp • Bachelor's Degree • Johnston
Apply
See all jobs
This is one of many
703,114 more open roles from verified company boards, updated every day.