Red Team as a Service (RTaaS) has been launched to help organizations build red teams and improve their security postures. However, there are misconceptions about what makes an effective red team engagement, such as relying on frameworks or best practices without adapting to novel attack vectors, using pre-existing tools without customization, and not leveraging OPSEC awareness. To effectively use red teaming, organizations should design their engagement, evaluate red teamers, and act on the results. RTaaS can simplify the implementation and scaling of red team exercises, providing a simple process, vetted operators with hustle and OPSEC-awareness, and in-depth, actionable reports. Organizations that treat red teaming as a one-off instead of an evolving program, and CISOs who are actively involved in reviewing and acting on red team findings, can fully leverage the exercise's outcomes to drive security results.