1

Adversary Emulation Jobs in Indiana (NOW HIRING)

Operate and maintain Breach and Attack Simulation (BAS) and adversary emulation platforms to validate defensive controls and identify detection gaps. Conduct security testing of cloud, hybrid, and on ...

Cybersecurity Defense Analyst - Senior

Columbus, IN · On-site

$93K - $120K/yr

Operate and maintain Breach and Attack Simulation (BAS) and adversary emulation platforms to validate defensive controls and identify detection gaps. Conduct security testing of cloud, hybrid, and on ...

Cybersecurity Defense Analyst - Senior

Columbus, IN · On-site

$93K - $120K/yr

Intermediate level of relevant work experience required. * 3-5 years of experience Qualifications / Responsibilities • Support and execute adversary emulation, purple team, and security validation ...

Apply offensive and adversary-emulation knowledge to inform detection coverage, and support purple team and adversary-emulation exercises by translating attacker TTPs into detections and validating ...

Adversary Emulation information

What is adversary emulation?

Adversary emulation is a cybersecurity practice in which security professionals simulate real-world cyber attackers, or adversaries, to test and improve an organization’s defenses. By mimicking the tactics, techniques, and procedures (TTPs) used by actual threat actors, adversary emulation helps organizations identify vulnerabilities, assess detection and response capabilities, and strengthen their overall security posture. These exercises are often based on threat intelligence and frameworks like MITRE ATT&CK to ensure realistic scenarios.

What is the difference between Adversary Emulation vs Penetration Tester?

AspectAdversary EmulationPenetration Tester
CredentialsCybersecurity certifications, threat intelligence knowledgeSecurity certifications, ethical hacking certifications
Work EnvironmentSimulates real-world adversary tactics in controlled environmentsIdentifies vulnerabilities through controlled testing
Industry UsageUsed in threat simulation, red teaming, and advanced security assessmentsUsed in vulnerability assessments and security audits

Adversary Emulation focuses on mimicking real-world attacker tactics to test defenses, while Penetration Testing identifies vulnerabilities by exploiting weaknesses. Both roles are essential for comprehensive cybersecurity strategies but differ in scope and approach.

What are the key skills and qualifications needed to thrive in Adversary Emulation, and why are they important?

To thrive in Adversary Emulation, you need deep knowledge of cybersecurity, attack methodologies, and penetration testing, often supported by degrees in computer science or related certifications such as OSCP or CISSP. Familiarity with tools like Cobalt Strike, Metasploit, and SIEM platforms is commonly required. Analytical thinking, creativity, and strong communication skills are essential to mimic real-world threats and report findings clearly. These skills are crucial for accurately simulating adversary tactics, identifying security gaps, and helping organizations strengthen their cyber defenses.

What are the typical challenges faced by professionals in Adversary Emulation roles?

Adversary Emulation specialists often encounter the challenge of staying ahead of rapidly evolving attack techniques and threat actor behaviors. They must continuously update their knowledge and adapt their methodologies to realistically mimic current adversaries, which requires ongoing research and collaboration with threat intelligence teams. Additionally, balancing the realism of simulated attacks with organizational risk tolerance and ensuring minimal disruption during assessments can be complex. Working closely with security operations, incident response, and IT teams is essential to maximize the value of each engagement and provide actionable insights for improving defenses.
What are popular job titles related to Adversary Emulation jobs in Indiana? For Adversary Emulation jobs in Indiana, the most frequently searched job titles are:
What job categories do people searching Adversary Emulation jobs in Indiana look for? The top searched job categories for Adversary Emulation jobs in Indiana are:

Cybersecurity Defense Analyst - Senior

Cummins

Columbus, IN

$93K - $120K/yr

Full-time

Posted 10 days ago


Cummins rating

8.0

Company rating: 8.0 out of 10

Based on 260 frontline employees who took The Breakroom Quiz

132nd of 537 rated manufacturers


Job description

We are looking for a talented Cybersecurity Defense Analyst- Senior to join our team specializing in Systems/Information Technology for our Corporate organization in Columbus, IN. 

In this role, you will make an impact in the following ways:

  • Protect Cummins' technology environment by applying cybersecurity policies, data privacy principles, and security best practices to reduce organizational risk.
  • Lead cybersecurity risk assessments and identify potential vulnerabilities, ensuring effective mitigation strategies are developed and implemented.
  • Serve as a trusted advisor to business and technology stakeholders by providing expert guidance on secure technology solutions and risk-informed decision-making.
  • Apply industry-leading frameworks and standards such as NIST, ISO, ITIL, and COBIT to strengthen security controls and support regulatory compliance.
  • Partner with cross-functional teams to evaluate new and changing technology solutions, ensuring cybersecurity requirements are integrated from the start.
  • Coach, mentor, and develop less experienced team members, helping build cybersecurity capabilities and fostering a culture of continuous learning.
  • Build and maintain strong business relationships that enable collaboration, strengthen stakeholder trust, and deliver measurable business value.
  • Drive proactive cybersecurity improvements by balancing business objectives with security requirements, helping the organization remain resilient against evolving threats.
Cummins is an equal opportunity employer. Our policy is to provide equal employment opportunities to all qualified persons without regard to race, sex, color, disability, national origin, age, religion, union affiliation, sexual orientation, veteran status, citizenship, gender identity, or other status protected by law.

Job Description / Responsibilities
Support and execute adversary emulation, purple team, and security validation activities across enterprise environments.
Operate and maintain Breach and Attack Simulation (BAS) and adversary emulation platforms to validate defensive controls and identify detection gaps.
Conduct security testing of cloud, hybrid, and on-premises environments to identify exploitable weaknesses and security control deficiencies.
Partner with Threat Intelligence and Threat Hunting teams to emulate relevant attacker behaviors, techniques, and procedures.
Assist in developing repeatable attack scenarios aligned to MITRE ATT&CK techniques and organizational threat priorities.
Validate detection and response capabilities by coordinating with defensive security teams during purple team exercises.
Help automate offensive testing workflows, validation processes, and operational reporting through scripting and tooling enhancements.
Document findings, attack paths, detection gaps, and remediation recommendations in a clear and actionable manner.
Contribute to the continuous improvement of proactive security validation capabilities, processes, and operational maturity.
Support offensive cyber operations initiatives including targeted assessments, adversary simulation activities, and security research efforts.
Support the engineering and development of remedial workflows for findings generated by adversarial and offensive activities
Requirements / Qualifications
Experience in cybersecurity operations, cloud security, security engineering, offensive security, or related technical security disciplines.
OCSP or equivalent certification holder or the willingness to obtain such a certification. 
Familiarity with cloud platforms such as AWS, Azure, OCI and associated security concepts.
Understanding of common attacker tactics, techniques, and procedures (TTPs) and frameworks such as MITRE ATT&CK.
Exposure to scripting or automation using languages such as Python, PowerShell, or Bash.
Familiarity with security validation, BAS, detection engineering, purple teaming, penetration testing, or adversary emulation concepts is preferred.
Strong analytical, troubleshooting, and collaboration skills with the ability to work across offensive and defensive security functions.
 

To be successful in this role you will need the following:

  • Action oriented - Taking on new opportunities and tough challenges with a sense of urgency, high energy, and enthusiasm.
     
  • Balances stakeholders - Anticipating and balancing the needs of multiple stakeholders.
     
  • Business insight - Applying knowledge of business and the marketplace to advance the organization's goals.
     
  • Ensures accountability - Holding self and others accountable to meet commitments.
     
  • Manages complexity - Making sense of complex, high quantity, and sometimes contradictory information to effectively solve problems.
     
  • Organizational savvy - Maneuvering comfortably through complex policy, process, and people-related organizational dynamics.
     
  • Persuades - Using compelling arguments to gain the support and commitment of others.
     
  • Resourcefulness - Securing and deploying resources effectively and efficiently.
     
  • Tech savvy - Anticipating and adopting innovations in business-building digital and technology applications.
     
  • Training Delivery - Instructs learners in a manner that engages and adjusts to individual and group needs resulting in knowledge, skills and abilities that can be applied on the job.
     
  • Cybersecurity Risk Management - Identifies and assesses the potential impact of Cybersecurity risks against established Cybersecurity industry frameworks, regulations and organizational policies to develop and implement risk mitigation strategies in alignment with business objectives.
     
  • Regulatory Risk Compliance Management - Evaluates the design and effectiveness of controls against established industry frameworks and regulations to assess adherence with legal/regulatory requirements. 
     
  • Values differences - Recognizing the value that different perspectives and cultures bring to an organization. 

Education, Licenses, Certifications: 

  • College, university, or equivalent degree in Cybersecurity, Computer Science, or Information Technology, or related subject, or relevant equivalent experience required. 
  • This position may require licensing for compliance with export controls or sanctions regulations. 

Experience: 

  • Intermediate level of relevant work experience required. 
  • 3-5 years of experience

What Cummins employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom


Cummins logo

About Cummins

Sourced by ZipRecruiter

Cummins Inc., headquartered in Columbus, IN, US, is a global power leader that designs, manufactures, and distributes numerous power products and systems. With its genesis from as early as 1919, the company readily serves diverse industries such as transportation, industrial, generator drive, or marine applications, among others. At the heart of Cummins' operations, its key product lineup encompasses diesel & natural gas engines, generator sets, engine components, and filtration, emission solutions, and electrical power generation systems. Cummins deeply embodies core values of integrity, respect for diversity, teamwork, performance excellence, and social responsibility - all of which dynamically fuel their mission 'Making people's lives better by powering a more prosperous world'.

Industry

Transportation equipment manufacturing

Company size

10,000+ Employees

Headquarters location

Columbus, IN, US

Year founded

1919