MENU
  • Remote Jobs
  • Companies
  • Go Premium
  • Job Alerts
  • Post a Job
  • Log in
  • Sign up
Working Nomads logo Working Nomads
  • Remote Jobs
  • Companies
  • Post Jobs
  • Go Premium
  • Get Free Job Alerts
  • Log in

Senior Manager of Offensive Security

Twilio

Full-time
USA
$188k-$277k per year
security
python
program management
aws
azure
Apply for this position

See yourself at Twilio

Join the team as Twilio’s next Senior Manager of Offensive Security.

About the job

As the Senior Manager of Offensive Security and Red Teaming, you will lead an elite team of ethical hackers and security penetration testers dedicated to proactively uncovering and mitigating vulnerabilities across the enterprise and our products. You are a technical expert and a strategic leader. You will design and oversee sophisticated adversary emulation exercises that challenge our defenses, ensuring that our security team and overall security posture are prepared for real-world threats.

Responsibilities

In this role, you’ll:

  • Strategic Leadership: Develop and execute a multi-year roadmap for offensive security, including red teaming, penetration testing, bug bounty, and vulnerability research.

  • Adversary Emulation: Design and lead full-scope red team engagements that simulate Advanced Persistent Threats (APTs) to test detection and response capabilities.

  • Program Management: Oversee the end-to-end lifecycle of offensive engagements, from initial scoping and Rules of Engagement (RoE) to final reporting.

  • Purple Teaming: Facilitate collaborative 'Purple Team' exercises with Detection and Response (TDR) to improve detection logic and incident response playbooks.

  • Executive Communication: Translate complex technical findings into actionable business risk assessments for C-suite executives and Board members.

  • Team Mentorship: Recruit, retain, and develop a high-performing team of offensive security engineers, providing technical guidance and career coaching.

  • Vulnerability Management Integration: Partner with vulnerability management, product, and engineering  to ensure that findings from offensive tests are prioritized and remediated effectively.

  • Tooling & Automation: Oversee the development of custom scripts, payloads, and C2 (Command and Control) frameworks to enhance the team’s stealth and efficiency.

  • Adversarial AI Testing: Conduct specialized threat modeling for AI-native applications, focusing on the OWASP Top 10 for LLMs and MITRE ATLAS (Adversarial Threat Landscape for AI Systems).

  • AI attacks and mitigations: Design and execute manual and automated Prompt Injection & Jailbreaking to bypass model guardrails, system prompts, and safety filters.

  • Regulatory Compliance: Ensure all offensive activities align with legal, ethical, and regulatory standards (e.g., GDPR, SOC2, PCI-DSS).

  • Threat Intelligence Integration: Incorporate current Cyber Threat Intelligence (CTI) into attack scenarios to ensure they reflect the latest real-world TTPs (Tactics, Techniques, and Procedures).

  • Third-Party Oversight: Manage relationships and quality control for external security consultancy firms performing third-party penetration tests.

  • Research & Development: Encourage and lead research into emerging technologies to identify future attack vectors.

  • Cross-Functional Collaboration: Work closely with Product and Engineering teams to bake security into the Software Development Life Cycle (SDLC) through testing and assessments

Qualifications 

Twilio values diverse experiences from all kinds of industries, and we encourage everyone who meets the required qualifications to apply. If your career is just starting or hasn't followed a traditional path, don't let that stop you from considering Twilio. We are always looking for people who will bring something new to the table!

*Required:

  • Experience: Minimum of 10+ years in cybersecurity, with at least 5 years specifically in offensive security roles and 2+ years in a leadership or management capacity.

  • Technical Expertise: Deep knowledge of security frameworks like the MITRE ATT&CK framework, Cyber Kill Chain, and advanced exploitation techniques (e.g., AD, cloud, and applications attacks).

  • Certifications: Possession of advanced industry certifications such as OSCP, OSEP, OSWE, GXPN or similar

  • Infrastructure Knowledge: Proficient in attacking and defending diverse environments including AWS/Azure/GCP, Kubernetes, and hybrid-cloud architectures.

  • Hands-on AI Testing: Proven experience in automating red teaming for GenAI and proficiency in using AI offensive tools like PyRIT, Prompfoo, Xbow or Counterfit to build and stage AI powered attacks

  • Tooling Proficiency: Advanced experience with red team and penetration testing tools such as Cobalt Strike, Burp Suite Pro, Metasploit, BloodHound, and Sliver.

  • Programming Skills: Strong ability to code or script in Python, PowerShell, Go, or C++ for exploit development and task automation.

  • Analytical Thinking: Proven ability to connect individual vulnerabilities into complex attack chains that demonstrate significant business impact.

  • Ethical Integrity: A flawless record of ethical conduct and the ability to handle extremely sensitive access and information with total discretion.

Desired:

  • Telecom expertise is preferred

Location

This role will be remote, but is not eligible to be hired in CA, CT, NJ, NY, PA, WA.

Travel 

We prioritize connection and opportunities to build relationships with our customers and each other. For this role, you may be required to travel occasionally to participate in project or team in-person meetings.

What We Offer

Working at Twilio offers many benefits, including competitive pay, generous time off, ample parental and wellness leave, healthcare, a retirement savings program, and much more. Offerings vary by location.

Compensation

*Please note the salary range information provided applies only to candidates residing in California, Colorado, Hawaii, Illinois, Maryland, Massachusetts, Minnesota, New Jersey, New York, Vermont, Washington D.C., and Washington State due to local requirements. Compensation for candidates in other locations will be discussed during the hiring process. Please note that hiring for this role is not restricted to the locations listed above.

The estimated pay ranges for this role are as follows:

  • Based in Colorado, Hawaii, Illinois, Maryland, Massachusetts, Minnesota, Vermont or Washington D.C. : $188, 240 - 235,300. 

  • Based in New York, New Jersey, Washington State, or California (outside of the San Francisco Bay area): $199,280 - 249,100.  

  • Based in the San Francisco Bay area, California: $221,360 - $276,700. 

  • This role may be eligible to participate in Twilio’s equity plan and corporate bonus plan. All roles are generally eligible for the following benefits: health care insurance, 401(k) retirement account, paid sick time, paid personal time off, paid parental leave.

The successful candidate’s starting salary will be determined based on permissible, non-discriminatory factors such as skills, experience, and geographic location. 

Applications for this role are intended to be accepted until May 21st 2026,  but may change based on business needs. 

Apply for this position
Bookmark Report

About the job

Full-time
USA
Senior Level
$188k-$277k per year
Posted 2 hours ago
security
python
program management
aws
azure

Apply for this position

Bookmark
Report
Enhancv advertisement
+ 1,284 new jobs added today
30,000+
Remote Jobs

Don't miss out — new listings every hour

Join Premium

Senior Manager of Offensive Security

Twilio

See yourself at Twilio

Join the team as Twilio’s next Senior Manager of Offensive Security.

About the job

As the Senior Manager of Offensive Security and Red Teaming, you will lead an elite team of ethical hackers and security penetration testers dedicated to proactively uncovering and mitigating vulnerabilities across the enterprise and our products. You are a technical expert and a strategic leader. You will design and oversee sophisticated adversary emulation exercises that challenge our defenses, ensuring that our security team and overall security posture are prepared for real-world threats.

Responsibilities

In this role, you’ll:

  • Strategic Leadership: Develop and execute a multi-year roadmap for offensive security, including red teaming, penetration testing, bug bounty, and vulnerability research.

  • Adversary Emulation: Design and lead full-scope red team engagements that simulate Advanced Persistent Threats (APTs) to test detection and response capabilities.

  • Program Management: Oversee the end-to-end lifecycle of offensive engagements, from initial scoping and Rules of Engagement (RoE) to final reporting.

  • Purple Teaming: Facilitate collaborative 'Purple Team' exercises with Detection and Response (TDR) to improve detection logic and incident response playbooks.

  • Executive Communication: Translate complex technical findings into actionable business risk assessments for C-suite executives and Board members.

  • Team Mentorship: Recruit, retain, and develop a high-performing team of offensive security engineers, providing technical guidance and career coaching.

  • Vulnerability Management Integration: Partner with vulnerability management, product, and engineering  to ensure that findings from offensive tests are prioritized and remediated effectively.

  • Tooling & Automation: Oversee the development of custom scripts, payloads, and C2 (Command and Control) frameworks to enhance the team’s stealth and efficiency.

  • Adversarial AI Testing: Conduct specialized threat modeling for AI-native applications, focusing on the OWASP Top 10 for LLMs and MITRE ATLAS (Adversarial Threat Landscape for AI Systems).

  • AI attacks and mitigations: Design and execute manual and automated Prompt Injection & Jailbreaking to bypass model guardrails, system prompts, and safety filters.

  • Regulatory Compliance: Ensure all offensive activities align with legal, ethical, and regulatory standards (e.g., GDPR, SOC2, PCI-DSS).

  • Threat Intelligence Integration: Incorporate current Cyber Threat Intelligence (CTI) into attack scenarios to ensure they reflect the latest real-world TTPs (Tactics, Techniques, and Procedures).

  • Third-Party Oversight: Manage relationships and quality control for external security consultancy firms performing third-party penetration tests.

  • Research & Development: Encourage and lead research into emerging technologies to identify future attack vectors.

  • Cross-Functional Collaboration: Work closely with Product and Engineering teams to bake security into the Software Development Life Cycle (SDLC) through testing and assessments

Qualifications 

Twilio values diverse experiences from all kinds of industries, and we encourage everyone who meets the required qualifications to apply. If your career is just starting or hasn't followed a traditional path, don't let that stop you from considering Twilio. We are always looking for people who will bring something new to the table!

*Required:

  • Experience: Minimum of 10+ years in cybersecurity, with at least 5 years specifically in offensive security roles and 2+ years in a leadership or management capacity.

  • Technical Expertise: Deep knowledge of security frameworks like the MITRE ATT&CK framework, Cyber Kill Chain, and advanced exploitation techniques (e.g., AD, cloud, and applications attacks).

  • Certifications: Possession of advanced industry certifications such as OSCP, OSEP, OSWE, GXPN or similar

  • Infrastructure Knowledge: Proficient in attacking and defending diverse environments including AWS/Azure/GCP, Kubernetes, and hybrid-cloud architectures.

  • Hands-on AI Testing: Proven experience in automating red teaming for GenAI and proficiency in using AI offensive tools like PyRIT, Prompfoo, Xbow or Counterfit to build and stage AI powered attacks

  • Tooling Proficiency: Advanced experience with red team and penetration testing tools such as Cobalt Strike, Burp Suite Pro, Metasploit, BloodHound, and Sliver.

  • Programming Skills: Strong ability to code or script in Python, PowerShell, Go, or C++ for exploit development and task automation.

  • Analytical Thinking: Proven ability to connect individual vulnerabilities into complex attack chains that demonstrate significant business impact.

  • Ethical Integrity: A flawless record of ethical conduct and the ability to handle extremely sensitive access and information with total discretion.

Desired:

  • Telecom expertise is preferred

Location

This role will be remote, but is not eligible to be hired in CA, CT, NJ, NY, PA, WA.

Travel 

We prioritize connection and opportunities to build relationships with our customers and each other. For this role, you may be required to travel occasionally to participate in project or team in-person meetings.

What We Offer

Working at Twilio offers many benefits, including competitive pay, generous time off, ample parental and wellness leave, healthcare, a retirement savings program, and much more. Offerings vary by location.

Compensation

*Please note the salary range information provided applies only to candidates residing in California, Colorado, Hawaii, Illinois, Maryland, Massachusetts, Minnesota, New Jersey, New York, Vermont, Washington D.C., and Washington State due to local requirements. Compensation for candidates in other locations will be discussed during the hiring process. Please note that hiring for this role is not restricted to the locations listed above.

The estimated pay ranges for this role are as follows:

  • Based in Colorado, Hawaii, Illinois, Maryland, Massachusetts, Minnesota, Vermont or Washington D.C. : $188, 240 - 235,300. 

  • Based in New York, New Jersey, Washington State, or California (outside of the San Francisco Bay area): $199,280 - 249,100.  

  • Based in the San Francisco Bay area, California: $221,360 - $276,700. 

  • This role may be eligible to participate in Twilio’s equity plan and corporate bonus plan. All roles are generally eligible for the following benefits: health care insurance, 401(k) retirement account, paid sick time, paid personal time off, paid parental leave.

The successful candidate’s starting salary will be determined based on permissible, non-discriminatory factors such as skills, experience, and geographic location. 

Applications for this role are intended to be accepted until May 21st 2026,  but may change based on business needs. 

Working Nomads

Post Jobs
Premium Subscription
Sponsorship
Reviews
Job Alerts

Job Skills
Jobs by Location
Jobs by Experience Level
Jobs by Position Type
Jobs by Salary
API
Scam Alert
FAQ
Privacy policy
Terms and conditions
Contact us
About us

Jobs by Category

Remote Administration jobs
Remote Consulting jobs
Remote Customer Success jobs
Remote Development jobs
Remote Design jobs
Remote Education jobs
Remote Finance jobs
Remote Legal jobs
Remote Healthcare jobs
Remote Human Resources jobs
Remote Management jobs
Remote Marketing jobs
Remote Sales jobs
Remote System Administration jobs
Remote Writing jobs

Jobs by Position Type

Remote Full-time jobs
Remote Part-time jobs
Remote Contract jobs

Jobs by Region

Remote jobs Anywhere
Remote jobs North America
Remote jobs Latin America
Remote jobs Europe
Remote jobs Middle East
Remote jobs Africa
Remote jobs APAC

Jobs by Skill

Remote Accounting jobs
Remote Assistant jobs
Remote Copywriting jobs
Remote Cyber Security jobs
Remote Data Analyst jobs
Remote Data Entry jobs
Remote English jobs
Remote Entry Level jobs
Remote Spanish jobs
Remote Project Management jobs
Remote QA jobs
Remote SEO jobs

Jobs by Country

Remote jobs Australia
Remote jobs Argentina
Remote jobs Belgium
Remote jobs Brazil
Remote jobs Canada
Remote jobs Colombia
Remote jobs France
Remote jobs Germany
Remote jobs Ireland
Remote jobs India
Remote jobs Japan
Remote jobs Mexico
Remote jobs Netherlands
Remote jobs New Zealand
Remote jobs Philippines
Remote jobs Poland
Remote jobs Portugal
Remote jobs Singapore
Remote jobs Spain
Remote jobs UK
Remote jobs USA


Working Nomads curates remote digital jobs from around the web.

© 2026 Working Nomads.