Information Security Lead - Offensive and Threat Intel, Cheyenne
Listed on 2026-09-01
-
IT/Tech
Cybersecurity
General Information
Job Title:
Information Security Lead
- Offensive and Threat Intel
Location:
1912 Capitol Avenue, Cheyenne, WY 82001
Work Schedule:
Monday
- Friday, 8:00am - 5:00pm
Employee Type:
Non-Exempt Full-Time
Hiring Pay Ranges: $35.00 - $51.50 per hour
The hiring pay range for this position is commensurate with the level of relevant experience and education.
This position may be eligible to receive an additional $1.00 per hour if approved for the Spanish Communication Assistant Program.
ANB Bank has financial strength embodied in $3 billion in assets and is a true community bank with an unwavering commitment to excellence. The bank helps each of its communities prosper through investment, sponsorship, philanthropy, and employee volunteerism. It is a passion ANB has for banking that makes the difference.
ANB Bank hires individuals who provide excellent customer service and build meaningful relationships with our customers and within our communities. ANB is committed to rewarding our team members who strengthen our company and culture. ANB offers competitive compensation and a comprehensive benefits package for this position.
Health & Wellness Benefits (Subject To Eligibility Requirements)- Minimum 4 Weeks of Paid Time Off (PTO)
- 11 Paid Holidays
- Medical, Dental, and Vision Insurance
- Health Savings (HSA), Flexible Spending (FSA), and dependent care spending accounts
- Company provided Life, AD&D, and Disability Insurance with supplementation options
- 401(k) plan with discretionary company match and profit sharing
- Discretionary annual bonus and employee referral incentives
- Employee Assistance Program (EAP)
- Tuition Reimbursement Program
- Spanish Communication Assistant Program Incentive
- Employee banking products
The Offensive Operations Team Lead owns the strategy, execution, and continuous improvement of the organization’s offensive security program. This role directs red team operations, adversary emulation, targeted penetration testing, and purple team exercises to measurably improve detection, response, and hardening across on-premises and cloud environments. The role partners closely with all other aspects of Information Security and relevant parties within the organization to validate control effectiveness and reduce risk to critical business services.
Responsible for implementation and administration of corporate Information Security Systems as listed below.
- Offensive Operations Program Ownership
- Define and maintain the offensive security strategy, roadmap, playbooks, SLAs, and rules of engagement (ROE).
- Own intake and scoping for engagements; prioritize based on business impact, threat intel, and control validation needs.
- Ensure all activities align with legal, regulatory, and corporate policy requirements, including operational safety and privacy controls.
- Red Team & Adversary Emulation
- Plan and execute realistic, threat-informed operations mapping to MITRE ATT&CK, targeting identity, endpoints, network, applications, and cloud services.
- Develop and maintain adversary emulation plans, chained attack paths, and objective-based scenarios for critical business processes.
- Oversee exploitation research and proof-of-concept development (privilege escalation, lateral movement, persistence) with strict safeguards and de-confliction.
- Lead purple team exercises to drive measurable detections and response playbook improvements with Detection Engineering and SOC teams.
- Tooling, Infrastructure & Automation
- Design, secure, and maintain operator environments (segmented labs, cloud resources, and approved tooling).
- Evaluate and integrate offensive tools (e.g., Blood Hound, Burp Suite, custom scripts) and maintain an internal, access-controlled repository.
- Develop automation to streamline reconnaissance, validation, artifact collection, reporting, and metrics.
- Collaboration, Communications & Reporting
- Produce clear post-operation reports with technical detail, business impact, exploited control gaps, and prioritized remediation.
- Partner with relevant parties to translate findings into backlog items; track remediation and validate fixes.
- Provide executive-level updates and program metrics…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).