Sr. Manager, Information Security – Application Security & Red Team
Job Description
Since 2012, we have built the market-leading cloud security company and an award-winning culture powered by hundreds of employees spread across offices in Santa Clara, St. Louis, Bangalore, London, Paris, Melbourne, Taipei, and Tokyo. Our core values are openness, honesty, and transparency, and we purposely developed our open desk layouts and large meeting spaces to support and promote partnerships, collaboration, and teamwork. From catered lunches and office celebrations to employee recognition events and social professional groups such as the Awesome Women of Netskope (AWON), we strive to keep work fun, supportive and interactive. Visit us at Netskope Careers. Please follow us on LinkedIn and Twitter@Netskope.
We are seeking an experienced and hands-on security leader to build, lead, and scale our Red Team and Application Security function. This role will be responsible for identifying security weaknesses through adversary emulation, penetration testing, attack simulations, and offensive security assessments across Netskope's products, cloud infrastructure, and enterprise environments.
As a key member of the Information Security organization, you will partner closely with Product Security, Engineering, Security Operations, and Infrastructure teams to proactively assess risk, validate security controls, and strengthen Netskope's overall security posture.
Responsibilities
• Lead and mentor a team of Red Team and application Security engineers.
• Support Executive and Leadership Alignment of the application security and red teaming programs with Engineering and Platform teams.
• Define and execute the offensive security strategy, roadmap, and testing methodologies.
• Conduct and oversee adversary emulation exercises, red team operations, penetration testing, and security assessments.
• Evaluate the effectiveness of security controls through realistic attack simulations and threat-informed testing.
• Partner with Security Operations and Detection Engineering teams to drive purple team exercises and improve detection and response capabilities.
• Perform offensive security assessments across cloud environments, applications, APIs, containers, Kubernetes platforms, and enterprise infrastructure.
• Research emerging threats, attacker techniques, and offensive security trends to continuously improve testing capabilities.
• Provide risk-based recommendations and work closely with engineering teams to drive remediation efforts.
• Communicate security findings, risks, and strategic recommendations to technical and executive stakeholders.
• Build and scale offensive security programs, processes, and talent within the organization.
