SailPoint Logo

SailPoint

Senior Attack Surface Management Analyst

Posted 2 Days Ago
Be an Early Applicant
Remote or Hybrid
Hiring Remotely in United States
92K-155K Annually
Senior level
Remote or Hybrid
Hiring Remotely in United States
92K-155K Annually
Senior level

Job Description

SailPoint is seeking a highly technical and forward-thinking Senior Attack Surface Management (ASM) Analyst to be a key pillar in our global ASM program. Our program is a centralized function designed to continuously discover, analyze, and mitigate potential cyber threats before they can be exploited.

As a Senior ASM Analyst, you will be a critical technical partner to our ASM Team Lead and broader security and engineering teams. You will navigate complex technical challenges, ensuring our risk recommendations are concise, data-driven, and focused on automation. The ideal candidate has a deep offensive security mindset, excels at dissecting complex cloud infrastructures, and is passionate about automating asset discovery. This role is fully remote and reports to the Head of Vulnerability Management.

Key Responsibilities:

Continuous Discovery and Programmatic Asset Attribution

  • Execute and scale continuous discovery processes to map and maintain a real-time, comprehensive inventory of all external-facing and internal digital assets, including domains, IPs, APIs, complex cloud resources (AWS, Azure, GCP), SaaS applications, and Shadow IT.

  • Develop and implement robust asset attribution models, writing scripts to query asset databases and integrate disparate inventories (CMDB, cloud accounts) into a unified, reliable "single source of truth".

Exposure Analysis, Threat Intelligence, and Prioritization:

  • Proactively identify security exposures like misconfigured cloud storage, exposed administrative portals, outdated systems, and vulnerabilities (including emerging zero-days) across our entire attack surface.

  • Contribute to intelligence-led prioritization efforts by combining vulnerability severity (beyond CVSS), real-world exploit availability (drawing from CISA KEV and other threat intel sources), business criticality, data sensitivity, mapped attack paths, and active threat intelligence to determine "what matters most" and "what to fix first" while uncovering root causes.

 Security Validation and Remediation Orchestration:

  • Orchestrate Breach and Attack Simulation (BAS) and Autonomous Pentesting exercises, safely simulating real-world attacks (mapped to MITRE ATT&CK) to validate the efficacy of existing security controls (SIEM, EDR, Firewalls) and prove vulnerability exploitability.

  • Collaborate with Engineering, DevOps, and IT teams to define remediation SLAs, build automated ticketing workflows, and verify fixes through continuous monitoring and programmatic re-scanning.

  • Support continuous Purple Teaming initiatives, partnering closely with offensive (Red Team) and defensive (SOC/Blue Team) functions to translate attack surface findings into resilient detection rules.

Automation, Tooling, and Mentorship:

  • Build and maintain automation scripts and API integrations to streamline asset enrichment, automated scanning, threat intelligence correlation, and ticketing system updates.

  • Evaluate, recommend, and implement cutting-edge ASM and Attack Path mapping platforms to continuously optimize our technical capability stack.

  • Provide technical leadership and mentorship to junior analysts, fostering deep technical skill development and elevating the team’s overall capabilities.

Core Qualifications:

  • 5+ years of progressive, hands-on experience in Attack Surface Management, Vulnerability Management, Penetration Testing, Threat Intelligence, or Security Operations—with at least 1-2 years in a senior or lead capacity.

  • Advanced Cloud Infrastructure Knowledge: Deep, practical experience securing and querying complex multi-cloud environments (AWS, Azure, or GCP), with a strong grasp of cloud security postures, IAM policies, and cloud-native APIs.

  • Strong Automation & API Scripting Skills: Proven capability to write clean, maintainable scripts (Python, Go, or PowerShell) and utilize REST APIs to automate workflows, parse large JSON datasets, and stitch security tools together.

  • Familiarity with Modern Enterprise Tech Stacks: Microservices, Kubernetes/containers, APIs, and modern CI/CD deployment pipelines.

  • Direct Experience with ASM & Discovery Tooling: Solid proficiency with leading external attack surface management (EASM) and discovery platforms.

  • Vulnerability & Workflow Tooling: Expertise using vulnerability management suites (e.g., Qualys, CrowdStrike Falcon Spotlight) and translating their outputs into automated remediation workflows.

  • Attacker Mindset & Frameworks: Deep familiarity with the MITRE ATT&CK framework, active threat intelligence (e.g., Recorded Future), and attack path analysis tools.

  • Outstanding Technical Communication: Track record of distilling highly complex technical exploits, cloud misconfigurations, and systemic risks into clear, actionable executive summaries and stakeholder remediation guides.

Additional Experience:

  • Breach & Attack Simulation (BAS): Hands-on experience operating BAS or autonomous pentesting platforms.

  • Cybersecurity AI Application: Familiarity with leveraging AI/ML technologies to enhance asset discovery, automate risk categorization, or defend against AI-driven adversarial attacks.

  • Industry Certifications: Advanced certs such as CISSP, OSCP, GPEN, GCIH, or CCSK are highly valued.

Note: Candidates are required to obtain the AWS Certified Cloud Practitioner or AWS Certified Security - Specialty certification within the first year of employment if they do not already possess it.

Join Us:

If you are a passionate and strategic cybersecurity professional eager to make a tangible impact in a fast-paced and evolving environment, we encourage you to apply. Help us secure our future and our customers by bringing your expertise to our growing ASM team!

The Path to Success (Milestones):
60-Day Milestones (The "Connecting" Phase):

  • Become fully comfortable with core processes and tools (e.g., Vulnerability scanning and BAS tooling), including analysis, ticketing, and internal workflows.

  • Solidify relationships with key partners across the Enterprise and within Cyber teams.

  • Contribute to asset and domain baselining analysis by auditing public-facing inventory, subdomains, certificates, and IP ranges.

90-Day Milestones (The "Contribution" Phase):

  • Assist with establishing alert routing from ASM tooling.

  • Perform comprehensive exposure analysis across ASM datasets to publish a risk-prioritized remediation roadmap targeting high-severity public risks.

  • Confidently engage with teams to work through remediation problems and ensure operational flow.

  • Design baseline ASM metrics to be delivered to security leadership.

  • Collaborate with Risk & Governance to formalize ASM SLAs, discovery cadences, and remediation mandates into corporate security policies.

6-Month Milestones (The "Performance" Phase):

  • Optimize tool configuration of ASM tools to reduce scanner noise and false positives.

  • Become a strong, effective contributor who actively identifies and suggests areas for process improvement.

  • Take the lead on an internal team project, such as establishing runbooks for the ASM team, risk reduction campaign, or lead implementation of a recommended security hardening measure.

  • Operationalize risk-based prioritization correlating findings that impact the company at the vulnerability, configuration, assets exposure, and vendor level.

  • Establish continuous bi-directional validation by integrating ASM intelligence into BAS tooling and Red Team adversary emulation workflows.

12-Month Milestones (The "Ownership" Phase):

  • Partner with Infrastructure and Cloud teams to enforce standard golden images, Infrastructure-as-Code (IaC) security guardrails, and automated stale-asset decommission routines.

  • Collaborate with Risk & Governance team to incorporate ASM controls into existing policies.

  • Scale team capabilities by mentoring junior analysts, defining future ASM technology roadmaps, and authoring program maturity benchmarks.


Benefits and Compensation listed vary based on the location of your employment and the nature of your employment with SailPoint.


As a part of the total compensation package, this role may be eligible for the SailPoint Corporate Bonus Plan or a role-specific commission, along with potential eligibility for equity participation. SailPoint maintains broad salary ranges for its roles to account for variations in knowledge, skills, experience, market conditions and locations, as well as reflect SailPoint’s differing products, industries, and lines of business. Candidates are typically placed into the range based on the preceding factors as well as internal peer equity. We estimate the base salary, for US-based employees, will be in this range from (min-max, USD):

$92,200 - $155,406.00

Base salaries for employees based in other locations are competitive for the employee’s home location.

Benefits Overview

1. Health and wellness coverage: Medical, dental, and vision insurance

2. Disability coverage: Short-term and long-term disability

3. Life protection: Life insurance and Accidental Death & Dismemberment (AD&D)

4. Additional life coverage options: Supplemental life insurance for employees, spouses, and children

5. Flexible spending accounts for health care, and dependent care; limited purpose flexible spending account

6. Financial security: 401(k) Savings and Investment Plan with company matching

7. Time off benefits: Flexible vacation policy

8. Holidays: 8 paid holidays annually

9. Sick leave

10. Parental support: Paid parental leave

11. Employee Assistance Program (EAP) and Care Counselors

12. Voluntary benefits: Legal Assistance, Critical Illness, Accident, Hospital Indemnity and Pet Insurance options

13. Health Savings Account (HSA) with employer contribution

SailPoint is an equal opportunity employer and we welcome all qualified candidates to apply to join our team.  All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, protected veteran status, or any other category protected by applicable law.  

Alternative methods of applying for employment are available to individuals unable to submit an application through this site because of a disability. Contact [email protected] or mail to 11120 Four Points Dr, Suite 100, Austin, TX 78726, to discuss reasonable accommodations.  NOTE: Any unsolicited resumes sent by candidates or agencies to this email will not be considered for current openings at SailPoint.

Similar Jobs

5 Minutes Ago
Remote or Hybrid
Illinois, USA
210K-287K Annually
Mid level
210K-287K Annually
Mid level
Fintech • Machine Learning • Payments • Software • Financial Services
Own referral and lifecycle marketing strategy, product-led growth, user engagement, lifetime value, and profitable growth. Lead offer economics, analytics, P&L ownership, product and pricing strategy, direct-to-consumer marketing, and customer experience development. Recruit and manage a high-performing growth team while partnering across Product, IT, Sales, Operations, and Finance. Drive business requirements, credit-risk analysis, project execution, strategic decisions, and performance improvement.
Top Skills: AIAi AgentsCursorGithub Copilot
6 Minutes Ago
Remote or Hybrid
179K-225K Annually
Senior level
179K-225K Annually
Senior level
Fintech • Machine Learning • Payments • Software • Financial Services
Lead greenfield product development for Capital One Shopping’s Categories team. Build scalable distributed microservices and backend architectures using modern cloud-native technologies, while contributing across full-stack systems, big data pipelines, and analytics platforms. Partner with product managers to define technical strategy, architect consumer experiences, review code, and mentor engineers. Work with JavaScript, TypeScript, SQL, Python, Go, AWS, databases, Docker, and Kubernetes.
Top Skills: AWSDistributed Nosql DatabasesDockerGoGCPJavaScriptKubernetesMicroservicesAzureOpen Source RdbmsPythonSQLTypescript
6 Minutes Ago
Remote or Hybrid
San Francisco, CA, USA
245K-335K Annually
Senior level
245K-335K Annually
Senior level
Fintech • Machine Learning • Payments • Software • Financial Services
Leads AI engineering teams responsible for foundational AI infrastructure, including model access, LLM inference, optimization, guardrails, evaluation, governance, observability, and cost management. Oversees development and deployment of scalable AI systems, makes build-versus-buy decisions, establishes technical vision, applies advanced research, and develops high-performing engineering talent.
Top Skills: AWSAws UltraclustersAzureFoundation ModelsGCPHugging FaceLarge Language ModelsModel EvaluationNemo GuardrailsObservabilityPyTorchSimilarity SearchVectordbs

What you need to know about the San Francisco Tech Scene

San Francisco and the surrounding Bay Area attracts more startup funding than any other region in the world. Home to Stanford University and UC Berkeley, leading VC firms and several of the world’s most valuable companies, the Bay Area is the place to go for anyone looking to make it big in the tech industry. That said, San Francisco has a lot to offer beyond technology thanks to a thriving art and music scene, excellent food and a short drive to several of the country’s most beautiful recreational areas.

Key Facts About San Francisco Tech

  • Number of Tech Workers: 365,500; 13.9% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Google, Apple, Salesforce, Meta
  • Key Industries: Artificial intelligence, cloud computing, fintech, consumer technology, software
  • Funding Landscape: $50.5 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Sequoia Capital, Andreessen Horowitz, Bessemer Venture Partners, Greylock Partners, Khosla Ventures, Kleiner Perkins
  • Research Centers and Universities: Stanford University; University of California, Berkeley; University of San Francisco; Santa Clara University; Ames Research Center; Center for AI Safety; California Institute for Regenerative Medicine

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account