> Markdown version of [/jobs/ext/2608982-adversary-intelligence-manager](https://www.wearedevelopers.com/jobs/ext/2608982-adversary-intelligence-manager). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Adversary Intelligence Manager - **Company:** CYBERSECURITY ASSOCIATION, INC. - **Location:** Austin, TX, United States - **Experience:** Experienced - **Salary:** $124,000.0 - $209,000.0 - **Contract:** Permanent contract - **Skills:** Application Programming Interfaces (APIs), Artificial Intelligence, Cyber Security, Computer Telephony Integration, DevOps, Emulators, Intelligence Analysis, Open Source Technology, Red Team (Cyber Security), Systems Integration, Data Ingestion, Large Language Models, Generative AI, Cybercrime, Purple Team (Cyber Security), SailPoint, Cyber Warfare - **Published:** August 24, 2026 - **Apply:** https://sailpoint.wd1.myworkdayjobs.com/SailPoint/job/United-States/Manager--Adversary-Intelligence_R013973?source=BuiltInNationwide ## About the Role * Meet FedRAMP access requirements. * 8-10 years of experience in cybersecurity, with at least 4 years managing or leading blended threat intelligence and offensive security (Red Team / Purple Team) operations. * AI/Automation Acumen: Practical exposure to or strong conceptual understanding of integrating Generative AI, Large Language Models (LLMs), or agentic frameworks into cybersecurity workflows. * SOC & Defensive Collaboration: Proven track record of partnering with SOC, incident response, or detection engineering teams to improve overall defensive telemetry and detection maturity. * Technical Expertise: Deep technical mastery across attack simulation frameworks, commercial/open-source threat intelligence platforms (TIPs), and hands-on scripting/custom tool development. * Strong leadership, communication, and program management abilities, with a history of building high-performing, cross-functional teams. * Certifications: CISSP, OSCE/OSEP, GREM, GCTI, or equivalent demonstrable industry expertise. ## Description SailPoint's Cybersecurity organization is seeking an Adversary Intelligence Manager with a passion for cybersecurity and protecting the organization. In a strategic move to elevate our Cyber Defense Operations, we are combining our Red Team and Cyber Threat Intelligence (CTI) functions into a single, unified Adversary Intelligence team. This team will strategically sit adjacent to our Security Operations Center (SOC) within the Cyber Defense Operations org. The successful candidate will lead this newly combined organization, uplifting our offensive and intelligence capabilities to continually test the security of our products, enterprise, and response readiness. This new leader will partner closely with our Security Operations Center (SOC) to drive threat-informed defensive measures and ensure seamless collaboration across our Cyber Defense Operations organization. We're seeking a candidate with proven technical capabilities who can work on both the enterprise and application sides of the house, while pushing the boundaries of innovation. A key focus for this role will be pioneering the use of AI and agentic capabilities to automate, scale, and enhance adversary emulation, threat hunting, and intelligence analysis. Our new Adversary Intelligence Manager will embrace the opportunity to work across diverse platforms and will play a key role in shaping our future security posture. They'll work with an established team of talented and dedicated teammates, guiding both emerging and established talent. They'll naturally embody the 4 I's at SailPoint (Individual, Impact, Innovation, and Integrity), embrace new challenges, and be a positive contributor to an already excellent work culture and environment. This is a challenging and impactful role where you will have the opportunity to work with both internal and external stakeholders, including our fantastic colleagues in IT, DevOps, Product Engineering, Security Engineering, and the wider Cyber Security team. This role reports directly to the Sr. Director of Cyber Defense Operations and can be remote or based in Austin, TX. Responsibilities: * Lead Unified Program: Direct the unified intelligence collection, analysis, and adversary emulation programs, ensuring CTI directly informs and shapes targeted red team campaigns. * Pioneer AI & Agentic Innovation: Architect and implement AI-driven and agentic automation workflows to scale threat intelligence collection, synthesize unstructured threat data, and dynamically execute emulation playbooks. * SOC Partnership & Purple Teaming: Co-design collaborative purple-team exercises and continuous feedback loops with the SOC and Attack Surface Management (ASM) teams to rapidly translate offensive findings into robust detection engineering rules or prevention strategies. * Strategic Risk Enumeration: Translate complex offensive testing results and emerging threat intelligence into strategic risk profiles and actionable, executive-level recommendations for business leaders. * Team Leadership & Mentorship: Guide, mentor, and develop a diverse team of senior offensive security engineers and threat intelligence analysts, fostering a collaborative culture across historically distinct disciplines. * Advanced Tool Development: Oversee the innovation of custom tools, techniques, and APIs to automate data ingestion, intelligence reporting, and dynamic adversary emulation. * Executive Briefings: Present high-impact threat briefings, risk assessments, and incident post-mortems to cybersecurity leadership and broader enterprise stakeholders. ## Related Videos - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [From DevOps to Scaled DevOps: How We’re Rebuilding Continuous Delivery as a Platform](https://www.wearedevelopers.com/videos/100018-from-devops-to-scaled-devops-how-we-re-rebuilding-continuous-delivery-as-a-platform) - [Tackling the Risks of AI - With AI](https://www.wearedevelopers.com/videos/1690-tackling-the-risks-of-ai-with-ai) - [WeAreDevelopers LIVE – Web Scraping, Agents, Actors and more](https://www.wearedevelopers.com/videos/1764-wearedevelopers-live-web-scraping-agents-actors-and-more) - [DevOps Maturity Check – a way to balance autonomy and alignment](https://www.wearedevelopers.com/videos/58-devops-maturity-check-a-way-to-balance-autonomy-and-alignment) - [Cyber Sleuth: Finding Hidden Connections in Cyber Data](https://www.wearedevelopers.com/videos/893-cyber-sleuth-finding-hidden-connections-in-cyber-data) ## Related Articles - [Stephan Gillich - Bringing AI Everywhere](https://www.wearedevelopers.com/magazine/489-stephan-gillich-bringing-ai-everywhere) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Dev Digest 164: AI Agents, AI Blindspots and MCP security problems](https://www.wearedevelopers.com/magazine/578-dev-digest-164-ai-agents-ai-blindspots-and-mcp-security-problems) - [Everything a Developer Needs to Know About MCP with Neo4j](https://www.wearedevelopers.com/magazine/604-everything-a-developer-needs-to-know-about-mcp-with-neo4j) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Coffee with Developers - Maria Apazoglou - Making AI understandable for all in production](https://www.wearedevelopers.com/magazine/475-coffee-with-developers-maria-apazoglou-making-ai-understandable-for-all-in-production)