Your mission
About the Role
As Head of Red & Blue Team Security, you will lead our offensive and defensive security functions and own the development and execution of a comprehensive security assurance strategy. With a strong emphasis on penetration testing and adversarial simulation, you will embed security deeply into our Software Development Lifecycle (SDLC) and ensure that engineering teams consistently apply security-first principles. You will act as the key liaison between product development, compliance, legal, and external partners — translating complex regulatory requirements into practical, scalable security solutions across our platform.
What You'll Do
Red & Blue Team Leadership
Stakeholder Collaboration & Governance
As Head of Red & Blue Team Security, you will lead our offensive and defensive security functions and own the development and execution of a comprehensive security assurance strategy. With a strong emphasis on penetration testing and adversarial simulation, you will embed security deeply into our Software Development Lifecycle (SDLC) and ensure that engineering teams consistently apply security-first principles. You will act as the key liaison between product development, compliance, legal, and external partners — translating complex regulatory requirements into practical, scalable security solutions across our platform.
What You'll Do
Red & Blue Team Leadership
- Lead, grow, and mentor both the Red Team (offensive) and Blue Team (defensive), fostering a culture of continuous adversarial thinking and security resilience.
- Drive penetration testing programs — both internal and coordinated with external partners — across infrastructure, applications, and cloud environments.
- Oversee vulnerability assessments, threat intelligence, and security analyses, and ensure findings translate into actionable remediation plans.
- Expand and mature the Red & Blue Team capabilities through new tooling, methodologies, and threat simulation frameworks
- Take full ownership of technical and organizational aspects of product security.
- Develop and implement security standards and processes, including Secure SDLC, Threat Modeling, and security testing integration into CI/CD pipelines.
- Build and lead a specialized Security Engineering team alongside the Red & Blue functions.
- Define and implement additional defensive strategies to strengthen the organization's overall security resilience.
Stakeholder Collaboration & Governance
- Partner closely with Product Development to integrate security requirements early in the development process and negotiate effective remediation timelines for identified vulnerabilities.
- Work with Information Security, Data Protection, Compliance, and Legal teams to ensure platform-wide regulatory adherence.
- Communicate and present the security strategy, architecture, andassuranceposture to customers, partners, regulators, and auditors.
- Support the onboarding of new banking partners by ensuring platform security and stability meet required standards.
- Strengthen the visibility and authority of the security function within the broader organization.
- Introduce and champion digital security tooling to enhance detection, response, and overall security operations.
- Continuously raise the security bar across teams through training, awareness, and policy enforcement.