Senior Attack Surface Management Analyst @SailPoint
All Others
Salary usd 92,200 - 15..
Remote Location
๐Ÿ‡บ๐Ÿ‡ธ USA Only
Employment Type full-time
Posted 1wk ago

[Hiring] Senior Attack Surface Management Analyst @SailPoint

1wk ago - SailPoint is hiring a remote Senior Attack Surface Management Analyst. ๐Ÿ’ธ Salary: usd 92,200 - 155,406 per year ๐Ÿ“Location: USA

Role Description

SailPoint is seeking a highly technical and forward-thinking Senior Attack Surface Management (ASM) Analyst to be a key pillar in our global ASM program. Our program is a centralized function designed to continuously discover, analyze, and mitigate potential cyber threats before they can be exploited.

As a Senior ASM Analyst, you will be a critical technical partner to our ASM Team Lead and broader security and engineering teams. You will navigate complex technical challenges, ensuring our risk recommendations are concise, data-driven, and focused on automation. The ideal candidate has a deep offensive security mindset, excels at dissecting complex cloud infrastructures, and is passionate about automating asset discovery. This role is fully remote and reports to the Head of Vulnerability Management.

Key Responsibilities

  • Continuous Discovery and Programmatic Asset Attribution
    • Execute and scale continuous discovery processes to map and maintain a real-time, comprehensive inventory of all external-facing and internal digital assets, including domains, IPs, APIs, complex cloud resources (AWS, Azure, GCP), SaaS applications, and Shadow IT.
    • Develop and implement robust asset attribution models, writing scripts to query asset databases and integrate disparate inventories (CMDB, cloud accounts) into a unified, reliable "single source of truth".
  • Exposure Analysis, Threat Intelligence, and Prioritization
    • Proactively identify security exposures like misconfigured cloud storage, exposed administrative portals, outdated systems, and vulnerabilities (including emerging zero-days) across our entire attack surface.
    • Contribute to intelligence-led prioritization efforts by combining vulnerability severity (beyond CVSS), real-world exploit availability (drawing from CISA KEV and other threat intel sources), business criticality, data sensitivity, mapped attack paths, and active threat intelligence to determine "what matters most" and "what to fix first" while uncovering root causes.
  • Security Validation and Remediation Orchestration
    • Orchestrate Breach and Attack Simulation (BAS) and Autonomous Pentesting exercises, safely simulating real-world attacks (mapped to MITRE ATT&CK) to validate the efficacy of existing security controls (SIEM, EDR, Firewalls) and prove vulnerability exploitability.
    • Collaborate with Engineering, DevOps, and IT teams to define remediation SLAs, build automated ticketing workflows, and verify fixes through continuous monitoring and programmatic re-scanning.
    • Support continuous Purple Teaming initiatives, partnering closely with offensive (Red Team) and defensive (SOC/Blue Team) functions to translate attack surface findings into resilient detection rules.
  • Automation, Tooling, and Mentorship
    • Build and maintain automation scripts and API integrations to streamline asset enrichment, automated scanning, threat intelligence correlation, and ticketing system updates.
    • Evaluate, recommend, and implement cutting-edge ASM and Attack Path mapping platforms to continuously optimize our technical capability stack.
    • Provide technical leadership and mentorship to junior analysts, fostering deep technical skill development and elevating the teamโ€™s overall capabilities.

Qualifications

  • 5+ years of progressive, hands-on experience in Attack Surface Management, Vulnerability Management, Penetration Testing, Threat Intelligence, or Security Operationsโ€”with at least 1-2 years in a senior or lead capacity.
  • Advanced Cloud Infrastructure Knowledge: Deep, practical experience securing and querying complex multi-cloud environments (AWS, Azure, or GCP), with a strong grasp of cloud security postures, IAM policies, and cloud-native APIs.
  • Strong Automation & API Scripting Skills: Proven capability to write clean, maintainable scripts (Python, Go, or PowerShell) and utilize REST APIs to automate workflows, parse large JSON datasets, and stitch security tools together.
  • Familiarity with Modern Enterprise Tech Stacks: Microservices, Kubernetes/containers, APIs, and modern CI/CD deployment pipelines.
  • Direct Experience with ASM & Discovery Tooling: Solid proficiency with leading external attack surface management (EASM) and discovery platforms.
  • Vulnerability & Workflow Tooling: Expertise using vulnerability management suites (e.g., Qualys, CrowdStrike Falcon Spotlight) and translating their outputs into automated remediation workflows.
  • Attacker Mindset & Frameworks: Deep familiarity with the MITRE ATT&CK framework, active threat intelligence (e.g., Recorded Future), and attack path analysis tools.
  • Outstanding Technical Communication: Track record of distilling highly complex technical exploits, cloud misconfigurations, and systemic risks into clear, actionable executive summaries and stakeholder remediation guides.

Additional Experience

  • Breach & Attack Simulation (BAS): Hands-on experience operating BAS or autonomous pentesting platforms.
  • Cybersecurity AI Application: Familiarity with leveraging AI/ML technologies to enhance asset discovery, automate risk categorization, or defend against AI-driven adversarial attacks.
  • Industry Certifications: Advanced certs such as CISSP, OSCP, GPEN, GCIH, or CCSK are highly valued.
  • Note: Candidates are required to obtain the AWS Certified Cloud Practitioner or AWS Certified Security - Specialty certification within the first year of employment if they do not already possess it.

Benefits

  • Health and wellness coverage: Medical, dental, and vision insurance
  • Disability coverage: Short-term and long-term disability
  • Life protection: Life insurance and Accidental Death & Dismemberment (AD&D)
  • Additional life coverage options: Supplemental life insurance for employees, spouses, and children
  • Flexible spending accounts for health care, and dependent care; limited purpose flexible spending account
  • Financial security: 401(k) Savings and Investment Plan with company matching
  • Time off benefits: Flexible vacation policy
  • Holidays: 8 paid holidays annually
  • Sick leave
  • Parental support: Paid parental leave
  • Employee Assistance Program (EAP) and Care Counselors
  • Voluntary benefits: Legal Assistance, Critical Illness, Accident, Hospital Indemnity and Pet Insurance options
  • Health Savings Account (HSA) with employer contribution
Before You Apply
๏ธ
๐Ÿ‡บ๐Ÿ‡ธ Be aware of the location restriction for this remote position: USA Only
โ€ผ Beware of scams! When applying for jobs, you should NEVER have to pay anything. Learn more.
Senior Attack Surface Management Analyst @SailPoint
All Others
Salary usd 92,200 - 15..
Remote Location
๐Ÿ‡บ๐Ÿ‡ธ USA Only
Employment Type full-time
Posted 1wk ago
Apply for this position
Did not apply โœ“
Applied โœ“
Sent Follow-Up โœ“
Interview Scheduled โœ“
Interview Completed โœ“
Offer Accepted โœ“
Offer Declined โœ“
Application Denied โœ“
Unlock 130,000+ Remote Jobs
๏ธ
๐Ÿ‡บ๐Ÿ‡ธ Be aware of the location restriction for this remote position: USA Only
โ€ผ Beware of scams! When applying for jobs, you should NEVER have to pay anything. Learn more.
Apply for this position
Did not apply โœ“
Applied โœ“
Sent Follow-Up โœ“
Interview Scheduled โœ“
Interview Completed โœ“
Offer Accepted โœ“
Offer Declined โœ“
Application Denied โœ“
Unlock 130,000+ Remote Jobs
ร—

Apply to the best remote jobs
before everyone else

Access 130,000+ vetted remote jobs and get daily alerts.

4.9 โ˜…โ˜…โ˜…โ˜…โ˜… from 500+ reviews

โšก 130,891+ remote jobs, refreshed hourly

๐Ÿ”” Real-time alerts: Apply first

๐Ÿ›ก๏ธ Vetted companies, no scams, true remote only

Unlock All Jobs Now

Maybe later