> Markdown version of [/jobs/ext/2256143-advanced-intrusion-testing-lead](https://www.wearedevelopers.com/jobs/ext/2256143-advanced-intrusion-testing-lead). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Advanced Intrusion Testing Lead - **Company:** Lloyds Banking Group - **Location:** Manchester, UK - **Experience:** Expert - **Salary:** £92,701.0 - £109,060.0 - **Contract:** Permanent contract - **Skills:** C (Programming Language), Java (Programming Language), Artificial Intelligence, Bash Shell, C Sharp (Programming Language), C++ (Programming Language), Cyber Security, Emulators, Python (Programming Language), Red Team (Cyber Security), Software Engineering, Rust (Programming Language), Information Technology, Purple Team (Cyber Security) - **Published:** August 26, 2026 - **Apply:** https://lbg.wd3.myworkdayjobs.com/LBG_Careers/job/Manchester/Advanced-Intrusion-Testing-Lead_162273-1 ## About the Role We're looking for an experienced and highly capable Advanced Intrusion Testing (AIT) Lead to lead and evolve our Adversary Emulation capability. Reporting to the Offensive Security Lead, you'll be accountable for the strategic direction, operational delivery and technical excellence of the team. This role combines deep offensive security expertise with inspirational leadership. You'll lead a team of highly skilled operators, and shape the roadmap for adversary emulation to deliver Red Teaming and Purple Teaming exercises across the Group. If you're passionate about offensive security, enjoy developing high-performing teams, and want to influence cyber resilience at enterprise scale, we'd love to hear from you., * Extensive experience leading Red Team, Purple Team and adversary emulation functions within a large and complex organisation. * Demonstrable expertise in planning and delivering sophisticated intelligence-led attack simulations. * Strong understanding of adversary tactics, techniques and procedures, threat-led testing methodologies and offensive security tooling, including C2 frameworks, malware and evasion techniques. * Ability to conduct targeted, covert tests including identifying vulnerabilities, exploiting them, and performing post-exploitation activities, without needing to rely heavily on tools. * Experience building, developing and leading high-performing technical teams. * Excellent stakeholder management skills, with the ability to communicate effectively with technical and non-technical audiences, including senior leadership. * Passion for cyber security research, continuous learning and advancing offensive security practices, * Recognised offensive security certifications such as CREST, CRTO, GIAC, OSCP, OSCE or equivalent. * Software development, automation or engineering experience in any low level or high-level language (C#, C++, C, Python, Bash Scripting, Java, Rust, etc.). * Experience within financial services or other highly regulated environments. * Degree or postgraduate qualification in Cyber Security, Computer Science, or a related field, or equivalent experience. * Familiarity with AI-enabled security testing, attack simulation frameworks and modern security engineering practices. ## Description We're looking for an experienced and highly capable Advanced Intrusion Testing (AIT) Lead to lead and evolve our Adversary Emulation capability. Reporting to the Offensive Security Lead, you'll be accountable for the strategic direction, operational delivery and technical excellence of the team. This role combines deep offensive security expertise with inspirational leadership. You'll lead a team of highly skilled operators, and shape the roadmap for adversary emulation to deliver Red Teaming and Purple Teaming exercises across the Group. If you're passionate about offensive security, enjoy developing high-performing teams, and want to influence cyber resilience at enterprise scale, we'd love to hear from you. What You'll Be Doing: * Draw on extensive hands-on adversary emulation experience to shape testing strategy, guide the execution of sophisticated Red Team and Purple Team operations, and ensure the delivery of realistic, threat-led assessments that provide impactful insights into the Group's cyber resilience. * Lead, mentor and develop a high-performing team of Red Team and Purple Team specialists, fostering a culture of technical excellence, continuous improvement, innovation and knowledge sharing. * Define and carry out the AIT roadmap, ensuring alignment to CSO and wider Group security objectives. * Build strong relationships with stakeholders across the Chief Security Office and wider organisation, communicating security risks, testing outcomes and strategic recommendations to audiences ranging from technical practitioners to executives. * Drive security improvement by translating testing outputs into measurable risk reduction, partnering with collaborators to prioritise and remediate findings at pace. ## Related Videos - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Old tools, new tricks](https://www.wearedevelopers.com/videos/1916-old-tools-new-tricks) - [Surviving the Vulnpocalypse: Open Source and Supply Chain Security in a Post Mythos World](https://www.wearedevelopers.com/videos/100279-surviving-the-vulnpocalypse-open-source-and-supply-chain-security-in-a-post-mythos-world) - [WeAreDevelopers LIVE – Web Scraping, Agents, Actors and more](https://www.wearedevelopers.com/videos/1764-wearedevelopers-live-web-scraping-agents-actors-and-more) - [MCP doesn’t suck — your agent does](https://www.wearedevelopers.com/videos/100202-mcp-doesn-t-suck-your-agent-does) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Dev Digest 121 - AI goes offline](https://www.wearedevelopers.com/magazine/456-dev-digest-121-ai-goes-offline) - [What’s the Difference between a Junior, Mid, and Senior Developer?](https://www.wearedevelopers.com/magazine/238-what-s-the-difference-between-a-junior-mid-and-senior-developer) - [Dev Digest 191: Malware interviews, EU ❤️ Open Source and Skilled Agents](https://www.wearedevelopers.com/magazine/645-dev-digest-191-malware-interviews-eu-open-source-and-skilled-agents)