Victoria's Secret-posted about 2 months ago
Full-time • Mid Level
Hybrid • Reynoldsburg, OH
Clothing, Clothing Accessories, Shoe, and Jewelry Retailers

Position Title: Lead Security Analyst - Purple Team Lead Your Role The Lead Security Analyst - Purple Team Lead works within the Information Security Incident Response in Information Technology. Victoria's Secret is seeking a highly skilled and collaborative Purple Team Lead to build and lead our internal purple team function. This role will bridge offensive and defensive security capabilities, driving proactive detection, response readiness, and team development across the enterprise. This individual must bring hands-on penetration testing experience and a solid track record defending enterprise infrastructure and applications. The ideal candidate is a mentor by nature, passionate about uplifting team capabilities, and eager to lead engaging technical tabletop exercises that strengthen the company's cyber resilience. This is a hybrid position and requires candidates to reside within a reasonable commuting distance to our Reynoldsburg office for weekly onsite work. Your Impact Establish and lead a dedicated purple team to align red and blue team efforts. Conduct advanced penetration tests on networks, infrastructure, and applications to identify risks and validate defenses. Collaborate with defensive teams to enhance detection rules, incident response playbooks, and alert fidelity. Design and run technical tabletop exercises for IT and security stakeholders, simulating real-world attack scenarios. Mentor junior team members in both offensive and defensive security disciplines. Work cross-functionally with infrastructure, application, and DevOps teams to embed security into operations. Document and communicate findings clearly, with actionable remediation strategies for both technical and non-technical audiences. Click here for benefit details related to this position. Minimum Salary: $125,500.00 Maximum Salary: $171,360.00 VS&Co provides a range of compensation for this role as shown. Your actual salary will be determined by a number of factors, including: your specific skills and experience, geographic region, or other relevant factors.

  • Establish and lead a dedicated purple team to align red and blue team efforts.
  • Conduct advanced penetration tests on networks, infrastructure, and applications to identify risks and validate defenses.
  • Collaborate with defensive teams to enhance detection rules, incident response playbooks, and alert fidelity.
  • Design and run technical tabletop exercises for IT and security stakeholders, simulating real-world attack scenarios.
  • Mentor junior team members in both offensive and defensive security disciplines.
  • Work cross-functionally with infrastructure, application, and DevOps teams to embed security into operations.
  • Document and communicate findings clearly, with actionable remediation strategies for both technical and non-technical audiences.
  • 8+ years experience in Cybersecurity Technologies
  • 3-5 years of experience conducting penetration testing (network, application, cloud). Hybrid offensive skillset preferred.
  • 3-5 years of experience defending enterprise environments (SIEM, EDR, firewall, WAF, etc.).
  • Demonstrated hands-on expertise and impact in similar roles in fast-paced, complex environments
  • Strong understanding of MITRE ATT&CK framework, threat emulation, and detection engineering.
  • Experience with tools like Cobalt Strike, Metasploit, Burp Suite, BloodHound, and modern EDR/XDR platforms.
  • Skilled in scripting and automation (Python, PowerShell, Bash).
  • Proven leadership or mentoring experience in cybersecurity teams.
  • Ability to communicate and engage effectively at all levels of the organization within IT and with non-IT stakeholders
  • Experience in building purple team programs from the ground up.
  • Familiarity with cyber threat intelligence and TTP development.
  • Relevant certifications (e.g., OSCP, GXPN, CISSP, GCIA, GCIH).
  • Experience working in or securing retail environments, including POS systems, eCommerce platforms, and distributed IT infrastructure.
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service