The Hartford Financial Services Group, Inc. Logo

The Hartford Financial Services Group, Inc.

Red Team Lead - Principal Security Engineer

Posted Yesterday
Be an Early Applicant
In-Office
4 Locations
149K-224K Annually
Senior level
In-Office
4 Locations
149K-224K Annually
Senior level
Lead a Red Team focused on adversarial simulation, conducting exercises across enterprise environments while measuring risk and enhancing security defenses.
The summary above was generated by AI
Principal Security Engineer - IS06BE

We’re determined to make a difference and are proud to be an insurance company that goes well beyond coverages and policies. Working here means having every opportunity to achieve your goals – and to help others accomplish theirs, too. Join our team as we help shape the future.   

         

The Opportunity

We’re hiring a seasoned Red Team / Adversarial Simulation Lead to elevate our offensive security capability across enterprise, cloud, and business processes. You’ll lead a small, senior team conducting full-scope adversary emulations and targeted operations mapped to MITRE ATT&CK to proactively surface risk and measurably improve defenses.

You’ll partner closely with Incident Response, Threat Intelligence, Cloud Security, Identity, and Engineering leaders to prioritize scenarios that matter most to our customers and business.

This role will have a Hybrid work schedule, with the expectation of working in an office (Columbus, OH, Chicago, IL, Hartford, CT or Charlotte, NC) 3 days a week (Tuesday through Thursday). 

What You’ll Do

  • Demonstrated expertise in establishing and leading Red Team or Adversarial Simulation programs from inception, encompassing the development of governance frameworks and detailed operational playbooks.
  • Lead operations: Plan, authorize, and execute red-team engagements and adversary emulation campaigns across endpoints, identity, applications, cloud, and third-party integrations - safely, ethically, and with strong OPSEC.
  • Support purple teaming: Run collaborative exercises to validate detections and response playbooks; produce actionable improvements for SOC/IR.
  • Use frameworks that scale: Design scenarios and reporting mapped to MITRE ATT&CK  to ensure consistent, comparable results.
  • Measure what matters: Define KPIs (detection coverage, time-to-detect, control efficacy) and communicate outcomes and risk reduction to senior stakeholders.
  • Guide tech & tooling: Maintain secure C2/infrastructure and lab environments; evaluate Breach and Attack Simulation tooling and capabilities to complement manual operations.
  • Mentor & grow talent: Set tradecraft standards, coaching operators on OPSEC, detections-as-deliverables, and high-impact reporting (exec-ready narratives and technical proof).
  • Champion safety & compliance: Ensure appropriate scoping, approvals, deconfliction, and safety controls for all activities.

Candidate must be authorized to work in the US without company sponsorship. The company will not support the STEM OPT I-983 Training Plan endorsement for this position.

What You Bring

  • Experience: 5+ years in offensive security (red team, adversary emulation, or advanced penetration testing) with 3+ years leading operations or teams in enterprise environments.
  • Tradecraft: Proficiency in planning and executing multi-stage operations across Windows, Linux, macOS, identity (AAD/Entra), and major clouds (AWS/Azure/GCP).
  • Advanced Evasion & OPSEC Techniques: Ability to bypass modern EDR/XDR, SIEM correlation, and behavioral analytics while maintaining stealth.
  • Active Directory & Hybrid Identity Tradecraft: Domain privilege escalation, trust abuse, and persistence techniques.
  • Framework fluency: Deep familiarity with MITRE ATT&CK and mapping findings to techniques/tactics for detection engineering and risk reporting.
  • Scripting & engineering: Strong hands-on capability with at least two: PowerShell, Python, Go, or C#; comfort building/operating secure C2/labs.
  • Detection awareness: Ability to partner with blue teams to validate EDR/SIEM detections, harden controls, and tune signal-to-noise.
  • Communication: Executive-level storytelling plus clear, reproducible technical documentation.

Certifications (preferred): OSCP, OSEP, CRTO/CRTP, GIAC (e.g., GXPN, GCTI, GCPN), CISSP.

Compensation

The listed annualized base pay range is primarily based on analysis of similar positions in the external market. Actual base pay could vary and may be above or below the listed range based on factors including but not limited to performance, proficiency and demonstration of competencies required for the role. The base pay is just one component of The Hartford’s total compensation package for employees. Other rewards may include short-term or annual bonuses, long-term incentives, and on-the-spot recognition. The annualized base pay range for this role is:

$149,360 - $224,040

Equal Opportunity Employer/Sex/Race/Color/Veterans/Disability/Sexual Orientation/Gender Identity or Expression/Religion/Age

About Us | Our Culture | What It’s Like to Work Here | Perks & Benefits

Top Skills

C#
Go
Powershell
Python

Similar Jobs

4 Hours Ago
Hybrid
Fremont, OH, USA
102K-128K Annually
Mid level
102K-128K Annually
Mid level
Big Data • Cloud • Food • Machine Learning • Software • Database • Analytics
The Continuous Improvement Manager drives cost reduction and productivity through Lean/Six Sigma processes, coaching staff, and implementing KHMS across operations.
Top Skills: KhmsLeanQrmpSix SigmaTracc
4 Hours Ago
Hybrid
Northwood, OH, USA
Entry level
Entry level
Automotive • Hardware • Robotics • Software • Transportation • Manufacturing
As a part-time production team member, you will work on the 2nd shift in the molding department, contributing to automotive manufacturing. Responsibilities include handling materials and maintaining quality.
10 Hours Ago
Remote or Hybrid
67 Locations
91K-322K Annually
Senior level
91K-322K Annually
Senior level
Artificial Intelligence • Professional Services • Business Intelligence • Consulting • Cybersecurity • Generative AI
The Product Manager oversees complex products throughout their lifecycle, leading projects, ensuring operational excellence, coaching teams, and engaging with senior clients to confirm success.
Top Skills: It ImplementationProduct Management

What you need to know about the Charlotte Tech Scene

Ranked among the hottest tech cities in 2024 by CompTIA, Charlotte is quickly cementing its place as a major U.S. tech hub. Home to more than 90,000 tech workers, the city’s ecosystem is primed for continued growth, fueled by billions in annual funding from heavyweights like Microsoft and RevTech Labs, which has created thousands of fintech jobs and made the city a go-to for tech pros looking for their next big opportunity.

Key Facts About Charlotte Tech

  • Number of Tech Workers: 90,859; 6.5% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Lowe’s, Bank of America, TIAA, Microsoft, Honeywell
  • Key Industries: Fintech, artificial intelligence, cybersecurity, cloud computing, e-commerce
  • Funding Landscape: $3.1 billion in venture capital funding in 2024 (CED)
  • Notable Investors: Microsoft, Google, Falfurrias Management Partners, RevTech Labs Foundation
  • Research Centers and Universities: University of North Carolina at Charlotte, Northeastern University, North Carolina Research Campus

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account