Sr. Manager, Information Security – Application Security & Red Team
Core
Lead and scale the Red Team and Application Security function to identify security weaknesses through adversary emulation, penetration testing, and offensive security assessments across products and infrastructure.
Role type
Senior Manager, Information Security (Red Team & AppSec)
Builds
Offensive security programs, processes, and talent within the organization
Domain
Cloud security, Application security, Offensive security
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
Adversary emulation, Red teaming, Penetration testing, Threat-driven security assessments, Cloud platform assessment (AWS/Azure/GCP), Container and Kubernetes security, Application security, Network security, Identity security, Detection engineering concepts, Risk-based remediation strategy, Executive communication
Preferred skills
Purple teaming, Threat hunting, Exploit development, Security research, SaaS product experience, Industry certifications (OSCP/OSGP/OSWE/GXPN/GPEN/CISSP)
Technologies
AWS, Azure, GCP, Kubernetes, Containers, MITRE ATT&CK
Responsibilities
Lead and mentor a team of Red Team and application Security engineers, Define and execute the offensive security strategy and roadmap, Conduct adversary emulation exercises and red team operations, Partner with Security Operations to drive purple team exercises, Research emerging threats and attacker techniques, Provide risk-based recommendations to drive remediation efforts, Communicate security findings to technical and executive stakeholders
Seniority
Senior, hands-on IC with leadership responsibilities