Skip to content

Open nowPosted 53 days ago

Managing Principal, Red Team Operator — Armadin Security

GV portfolio1,974 open roles

Where
Palo Alto, California, United States; Palo Alto
Work mode
On site
Get the CV for this job

From $25 per CV, paid once. No subscription.

Your applicationOpen nowManaging Principal, Red Team Operator — Armadin SecurityGV portfolio · Palo Alto, California, United States; Palo Alto
  1. YouYes, apply to this one.

  2. CV RocketCV written for this posting.

  3. 25 readersRecruiter, hiring manager, skeptic. Round after round.

  4. CV RocketApplied on GV portfolio's own form.

The reply lands in your private mailbox

3×more interviews than doing it yourself with ChatGPT.

The clock on this job

Early applications get read.

8.0% of postings close within 7 days. Measured by our own scanner across the market. GV portfolio postings stay open a median of 29 days.

Share of postings closed within
  1. 1.6%1 day
  2. 3.6%3 days
  3. 8.0%7 days
  4. 15.0%14 days
  5. 34.2%30 days
This job: posted 53 days ago

GV portfolio median: 29 days open

The posting

About Us

At Armadin, we're a group of engineers, researchers, and security researchers on a mission to redefine what proactive security can do in the AI era. Cyberattacks are becoming autonomous and relentless and we believe defending against threats before they materialize is one of the most powerful ways to protect the institutions the world depends on.

We're building autonomous proactive security from the ground up, reinforcing the tradecraft of elite security practioners into purpose-built security models and agents that discover risk and remediate it before organizations are breached.

Led by Kevin Mandia, founder of Mandiant ($5.4B exit to Google), our team brings together researchers and engineers from Google, xAI, Meta, Stanford, Georgia Tech, Waterloo, Berkeley, and MIT to reinvent security for an adversary that never sleeps.

Role Overview

The Managing Principal Red Team Operator is a senior technical leadership role for an experienced offensive security professional who combines deep expertise across application and network security with the ability to mentor, influence, and shape Armadin's technical strategy. This is not a team-building role — you will manage a small number of existing red team operators, providing mentorship and strategic direction while maintaining your own high-impact delivery across complex, multi-disciplinary engagements.

You will be a thought leader within Armadin and across the industry, driving innovation in adversarial methodology, tool development, and the integration of AI into red team operations. Beyond leading engagements, you will work closely with product engineering teams — both remotely and onsite — to ensure Armadin's platform and capabilities incorporate the full spectrum of red team tradecraft and real-world adversarial complexity.

This role requires the ability to think strategically about offensive security across multiple attack surfaces (application, network, infrastructure, cloud, identity), execute at the highest technical level, articulate complex concepts to leadership and product teams, and elevate the skill and impact of your peers.

What You’ll Do

Technical Leadership & Delivery

  • Lead and execute sophisticated multi-disciplinary red team engagements spanning application security, network penetration testing, cloud infrastructure, and identity systems — combining expertise across attack vectors into cohesive, high-impact campaigns.
  • Identify novel attack chains and weaknesses that transcend traditional security boundaries, conducting source code review, network analysis, binary reverse engineering, and infrastructure assessment in concert to uncover business-critical security gaps.
  • Develop comprehensive, technically rigorous reports and executive briefings that translate complex offensive findings into clear remediation roadmaps and risk narratives for both technical and non-technical stakeholders.
  • Conduct advanced threat analysis and intelligence gathering to understand the full attack landscape of enterprise environments, including adversarial TTPs, business risk, and compliance implications.

Team Leadership & Mentorship

  • Mentor and manage a small team of red team operators, providing technical guidance, code reviews, methodology coaching, and career development while maintaining high standards of operational security and impact.
  • Share tradecraft, tool development insights, and lessons learned from complex engagements to elevate team capability and establish Armadin as a center of offensive security excellence.
  • Conduct capability assessments, skill development planning, and strategic feedback with team members to ensure continuous improvement and clear growth trajectories.

Strategic Innovation & Product Collaboration

  • Work closely with product engineering and AI teams — including onsite collaboration — to translate red team needs, methodologies, and adversarial insights into platform capabilities, tool integrations, and AI-driven attack simulations.
  • Serve as the voice of offensive security tradecraft in product strategy discussions, ensuring platform development prioritizes real-world attack complexity and operator efficiency.
  • Lead research initiatives into emerging attack vectors, exploitation techniques, AI-augmented adversarial methodologies, and novel tools to maintain Armadin's position at the forefront of offensive security.
  • Develop and contribute to open-source tooling, proprietary frameworks, and methodologies that enhance Armadin's capabilities and influence the broader security community.

Industry & Internal Leadership

  • Represent Armadin as a thought leader in offensive security through conference talks, published research, security community engagement, and technical leadership.
  • Interface directly with executive leadership and client C-suite to communicate strategic security findings, risk narratives, and business-level implications.
  • Contribute to hiring, interviewing, and technical assessment of prospective red team operators to build world-class offensive security talent.

What You’ll Bring

Experience & Expertise

12+ years of hands-on offensive security experience, including extensive depth in multiple disciplines:

  • Advanced web application penetration testing and secure code review (OWASP Top 10, business logic flaws, authentication/authorization bypass, API security, control flow analysis)
  • Network penetration testing, Active Directory attacks, lateral movement, privilege escalation, and persistence operations across enterprise infrastructure
  • Mobile application security assessments, thick/thin client reverse engineering, and binary analysis across platforms (iOS, Android, Windows, macOS, Linux)
  • Cloud infrastructure security, identity systems (Kerberos, SAML, OAuth), and multi-cloud red team operations
  • Demonstrated ability to integrate findings across multiple attack surfaces into comprehensive, strategic offensive campaigns

Technical Proficiency

  • Expert-level proficiency with offensive security tools across multiple domains (Burp Suite, OWASP ZAP, Caido, Nmap, Metasploit, Cobalt Strike, Impacket, BloodHound, Responder, CrackMapExec, Frida, Ghidra, IDA Pro, etc.)
  • Advanced scripting and tool development in Python, Bash, PowerShell, or compiled languages; ability to extend C2 frameworks, develop custom exploits, and create application-specific tooling
  • Deep understanding of network protocols, packet-level analysis, cryptography, system architecture (Windows, Unix/Linux, cloud platforms), and application design patterns
  • Proficiency in multiple operating systems and platforms (Windows, Linux, macOS), container technologies, and cloud environments (AWS, Azure, GCP)

Leadership & Communication

  • Proven ability to mentor, lead, and develop technical talent; demonstrated impact on team capability and organizational growth
  • Exceptional written and verbal communication skills — capable of translating complex technical concepts for executive leadership, product teams, and diverse client audiences
  • Strategic thinking and the ability to align technical initiatives with business objectives; experience influencing product roadmaps or organizational strategy
  • Independent judgment, intellectual curiosity, and the ability to rapidly assimilate new information to make time-sensitive decisions in ambiguous situations

Requirements

  • Must be eligible to work in the United States without sponsorship
  • Willingness to work onsite in our Palo Alto, CA office to collaborate with product engineering teams, support complex engagements, and participate in strategic initiatives

Even Better With

  • Prior experience working alongside AI/ML models, automated offensive security frameworks, or building AI-augmented attack tools
  • Published research, conference speaking, or significant open-source contributions in offensive security
  • Experience in startup or high-growth environments; demonstrated ability to wear multiple hats and drive initiatives with minimal bureaucracy
  • Advanced certifications: OSCP, OSCE, CRTE, CRTO, or equivalent elite-level credentials
  • Track record of building offensive security tools or frameworks adopted by the community
  • Experience leading or mentoring red team programs within large enterprises

Location

Onsite in Palo Alto, CA

Benefits & Perks | FTE

🏥 Full Health, Dental, & Vision Coverage

📈 Meaningful Equity Ownership

🥙 In-Office Meals

✂️ Haircuts at the Office 🎉 Company Sponsored Conferences & Events

💸 401(k), HSA, and FSA Plans

🌴 Flexible PTO

From $25, paid onceGet the CV for this job

What happens when you press

One press. We do the rest.

  1. A CV for this posting

    Written against GV portfolio's own wording, from every piece of relevant proof in your profile.

  2. 25 readers review it

    Recruiter, hiring manager, skeptic and more read every draft, round after round. You get the best round.

    The review screen in CV Rocket: how each CV was read, round by round.
  3. We apply on GV portfolio's form

    Our application engine gets through the hardest forms there are. Where a question needs you, AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

    An application in CV Rocket: every answer filled in on the employer's form.
  4. Every reply, sorted

    GV portfolio's answer lands in your private mailbox, and we classify it on arrival: interview, question, rejection.

    The CV Rocket inbox: each employer reply classified as an interview, an action or a rejection.
  5. Reply with AI

    AI helps you write the email, checks it and sends it. We show you whether the recruiter read it.

  6. The interview in your calendar

    Full integration with your calendar. The invitation goes straight in.

    An interview invitation in the CV Rocket inbox, added to the candidate's calendar.
Get the CV for this job

From $25 per CV, paid once. No subscription.

Why it works

3×

more interviews than doing it yourself with ChatGPT.

ChatGPT writes a CV and never learns what happened to it. We see every reply. For each CV we know:

  • How it was written, and how the review scored it
  • When we applied, and how long after the posting went up
  • Which posting, which company, which city
  • Who got the interview, and who heard nothing

That is how we know which CVs get called.

Get the CV for this job

From $25 per CV, paid once. No subscription.

The numbers game

More applications. More interviews.

Every application goes out with its own CV, written for that posting and paid once. Send enough of them and the law of large numbers finds you the job.

By hand5–10
With CV Rocket100
applications a day

Nearby

Live postings like this one

Same employer first, then the same role elsewhere.

Before you press

Straight answers

Get the CV for this job

From $25 per CV, paid once. No subscription.

What if my background isn't good enough?

We make the most of the background you have. The CV uses every piece of relevant proof your profile holds, and one of the 25 readers reads your whole profile and flags what the CV left out.

Do you really apply for me?

Yes, on the employer's own form, the hardest ones included. Where a question needs you, you answer it right there and AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

Is it a subscription?

No. You pay once per CV, from $25. Every application goes out with its own CV, written for that posting.

One job. One CV.
Paid once.

Pick the posting you want. We write for it, apply for you and catch the reply.

Get the CV for this job

From $25 per CV, paid once. No subscription.