Manager, Cyber Threat Intelligence

Anduril Anduril · Defense · Washington, DC · Corporate Technology : Information Security : Offensive Security

Manager for Cyber Threat Intelligence team focusing on threat research, adversary tracking, and vulnerability research to support defense technology products and infrastructure. Responsibilities include strategy setting, intelligence operationalization, cross-functional partnership, and team leadership.

What you'd actually do

  1. Lead a team of engineers and analysts responsible for cyber threat intelligence, adversary tracking, and vulnerability research in support of Anduril's products, infrastructure, and personnel
  2. Set the strategy and roadmap for TAR, balancing long-running adversary tracking programs, opportunistic vulnerability research, and responsive support to partner teams
  3. Serve as DNR's senior point of contact for intelligence requirements from the detection and response, offensive security, and product security teams, translating their needs into prioritized team deliverables
  4. Partner with the detection and response team to ensure intelligence is operationalized into detections, hunts, and response playbooks
  5. Engage cross-functionally with offensive security and product security on red team engagements, product threat modeling, and vulnerability disclosure matters

Skills

Required

  • 5+ years of experience in cyber threat intelligence, threat research, vulnerability research, or related fields
  • 3+ years of experience leading teams and managing complex security programs
  • Proven experience analyzing sophisticated threat actor campaigns — including nation-state, supply chain, and infrastructure-based activity — and developing durable countermeasures
  • Strong understanding of cybersecurity principles across endpoint, application, network, and cloud environments
  • Programming ability in one or more general purpose languages (Python, Go, Rust, etc.)
  • Strong and professional written and verbal communication skills, including the ability to brief both technical and executive audiences

Nice to have

  • In-depth knowledge of nation-state, sophisticated criminal, or supply chain threat actors, particularly those targeting the defense industrial base
  • Hands-on experience with vulnerability research, reverse engineering, or exploit development
  • Experience building or managing intelligence platforms and tooling, including fileand network-based signatures (YARA, Snort) and large-scale data analysis
  • Track record of shipping production code for threat intelligence or security automation tooling
  • Experience with Vertex Synapse or comparable threat intelligence platforms
  • Established relationships within the broader security and threat intelligence community
  • Experience communicating technical threat and risk concerns to non-technical stakeholders, including executive leadership and government partners
  • Prior experience supporting or interfacing with offensive security, red team, or product security functions

What the JD emphasized

  • Eligible to obtain and maintain an active U.S. Secret security clearance