×
Register Here to Apply for Jobs or Post Jobs. X
More jobs:

Principal Adversary Emulation Engineer

Job in Philadelphia, Philadelphia County, Pennsylvania, 19102, USA
Listing for: Comcast
Full Time position
Listed on 2026-08-10
Job specializations:
  • Engineering
    Cybersecurity
  • IT/Tech
    Cybersecurity
Job Description & How to Apply Below

Senior Adversary Emulation Engineer

Make your mark at Comcast -- a Fortune 30 global media and technology company. From the connectivity and platforms we provide, to the content and experiences we create, we reach hundreds of millions of customers, viewers, and guests worldwide. Become part of our award-winning technology team that turns big ideas into cutting-edge products, platforms, and solutions that our customers love. We create space to innovate, and we recognize, reward, and invest in your ideas, while ensuring you can proudly bring your authentic self to the workplace.

Join us. You'll do the best work of your career right here at Comcast.

Comcast Cybersecurity protects Comcast, our customers, our workforce, our partners, and our technology platforms from increasingly sophisticated cyber threats. We are seeking a Senior Adversary Emulation Engineer to help establish and mature adversary emulation as a repeatable capability within Threat Detection. This role sits at the intersection of adversary emulation, threat detection engineering, threat hunting, telemetry validation, and purple team operations.

The successful candidate will design and execute controlled, threat-informed emulation scenarios; validate detection coverage across enterprise telemetry sources; generate high-fidelity data for threat hunting; and translate findings into improved detections, hunt content, logging requirements, automations, and actionable reporting. This is a hands-on senior engineering role for someone who can operate safely in complex enterprise environments, partner across cyber and engineering teams, and help Comcast continuously prove and improve its ability to detect real-world adversary behavior.

Core Responsibilities

  • Help establish and mature Comcast's adversary emulation capability, including operating model, rules of engagement, approval workflows, success metrics, reporting standards, and repeatable validation processes.
  • Design, plan, and execute controlled adversary emulation scenarios based on current threat intelligence, priority adversary behaviors, emerging attack techniques, and Comcast-relevant risk scenarios.
  • Emulate real-world attacker tactics, techniques, and procedures using frameworks such as MITRE ATT&CK, while maintaining strict safety, deconfliction, and operational controls.
  • Build automation and AI-assisted workflows to streamline emulation planning, evidence collection, test execution, detection validation, reporting, and metrics tracking, with appropriate human review, auditability, and governance.
  • Partner with Threat Detection Engineering to validate detection coverage, alert fidelity, enrichment quality, triage workflows, and detection lifecycle effectiveness.
  • Partner with Threat Hunting to generate high-fidelity telemetry, validate hunt hypotheses, and convert emulation outcomes into reusable hunt content.
  • Identify and document logging gaps, telemetry quality issues, detection blind spots, enrichment deficiencies, and control weaknesses across endpoint, identity, cloud, network, email, SaaS, application, and data-platform sources.
  • Develop repeatable emulation playbooks, test cases, validation workflows, and reporting artifacts that can be reused across priority threats and enterprise environments.
  • Evaluate adversary emulation, breach-and-attack simulation, security validation, and emerging AI-enabled security technologies for use within Comcast's threat operations environment.
  • Support purple team exercises, threat-informed defense initiatives, after-action reviews, and continuous improvement efforts across cyber operations.
  • Produce clear technical reports and executive-ready summaries that translate emulation results into prioritized recommendations, measurable detection improvements, and risk-informed remediation actions.
  • Collaborate across Cybersecurity, Security Operations, Security Incident Response, Threat Intelligence, Threat Hunting, Detection Engineering, Security Engineering, Cloud, Identity, Endpoint, Network, Product, and other technical teams.

Required Qualifications

  • Bachelor's degree or equivalent experience in cybersecurity, computer science, information technology,…
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)
0
200
Filters
Education Level
Experience Level (years)
Posted in last:
Salary