The Threat Intelligence & Testing Manager will lead a team of analysts and security professionals
focused on identifying, analyzing, and simulating cyber threats to proactively defend the organization’s enterprise and manufacturing environments. This role is critical in enhancing threat visibility, validating security controls, and informing strategic defense initiatives. The ideal candidate will possess a strong background in cyber threat intelligence, adversary emulation, and red / purple team operations, combined with proven leadership and communication skills.
Management
- Lead and mentor a team of threat intelligence analysts and security testing professionals,
fostering a culture of curiosity, rigor, and continuous improvement.
Develop and execute strategies for threat intelligence gathering and security testing alignedwith organizational risk management goals.
Set performance goals, conduct regular reviews, and provide feedback and development plansfor team members.
Serve as the primary point of contact for threat intelligence and testing matters, communicatingfindings and recommendations to executive leadership and other stakeholders.
Manage budgets for tools, training, and resources related to threat intelligence and testingoperations.
Technical
Oversee the collection, analysis, and dissemination of tactical, operational, and strategic threatintelligence.
Maintain and evolve the threat intelligence platform (e.g., Anomali, MISP, TIP integrations).Enrich detection and response efforts through intelligence-led insights.Lead internal and external penetration testing, purple team engagements, and threat emulationexercises.
Drive continuous control validation initiatives (e.g., MITRE ATT&CK alignment, breachsimulation).
Collaborate with detection engineers and SOC to convert threat intel into actionable detections.Guide hypothesis-driven threat hunts based on current intelligence and adversary behaviors.Maintain a technical understanding of adversary TTPs, attack surface management, and risk based prioritization.Organizational
Collaborate with detection engineering, SOC, and incident response teams to align intelligenceand testing efforts with operational needs.
Partner with IT, OT, and business units to ensure threat intelligence and testing activitiessupport enterprise and industrial environments.
Communicate threat trends, testing outcomes, and risk insights effectively to both technical andexecutive stakeholders.
Ensure intelligence and testing practices support compliance with internal policies and externalregulatory requirements.