1

Red Team Jobs in Indiana (NOW HIRING)

Ethical Hacking and Red Team * Digital Surveillance * Threat Hunting * Information Security Consulting * Forensic Analysis * SecDevOps * Analysis of cyber security events DO YOU WANT TO BE PART OF ...

Line Cook

Fort Wayne, IN · On-site

$14.57 - $17.56/hr

Line Cook $14.57-17.56/hr Line Cook Red Robin isn't your typical burger restaurant. We're a team filled with unbridled energy, magnetic personalities, and a passion for having fun! Line Cook: You ...

Line Cook

Schererville, IN · On-site

$15.17 - $18.31/hr

We're a team filled with unbridled energy, magnetic personalities, and a passion for having fun! Line Cook: You will be preparing food the Red Robin way, which includes cutting, sautéing, broiling ...

Line Cook

Merrillville, IN · On-site

$15.17 - $18.31/hr

We're a team filled with unbridled energy, magnetic personalities, and a passion for having fun! Line Cook: You will be preparing food the Red Robin way, which includes cutting, sautéing, broiling ...

Line Cook

Valparaiso, IN · On-site

$15.90 - $19.19/hr

We're a team filled with unbridled energy, magnetic personalities, and a passion for having fun! Line Cook: You will be preparing food the Red Robin way, which includes cutting, sautéing, broiling ...

Line Cook

Evansville, IN · On-site

$14.45 - $17.43/hr

We're a team filled with unbridled energy, magnetic personalities, and a passion for having fun! Line Cook: You will be preparing food the Red Robin way, which includes cutting, sautéing, broiling ...

Line Cook

Noblesville, IN · On-site

$15.17 - $18.31/hr

We're a team filled with unbridled energy, magnetic personalities, and a passion for having fun! Line Cook: You will be preparing food the Red Robin way, which includes cutting, sautéing, broiling ...

Janitorial

Mishawaka, IN · On-site

$11.25 - $13.56/hr

Janitorial $11.25-13.56/hr Janitors Janitorial Range: $11.25-$13.56 Red Robin isn't your typical burger restaurant. We're a team filled with unbridled energy, magnetic personalities, and a passion ...

Merchandiser (Part Time)

Evansville, IN · On-site

$16.25 - $19/hr

... team Build and protect the Red Bull product portfolio Notify appropriate Account Sales Manager for pick up or exchange of any dented, damaged, or out of code product, any out of stock items, and ...

Server $2.13-2.13/hr + tips Servers Server Pay Rate: $2.13 - $2.13 Red Robin isn't your typical burger restaurant. We're a team filled with unbridled energy, magnetic personalities, and a passion for ...

Host

Noblesville, IN · On-site

$11.19 - $13.49/hr

Host $11.19-13.49/hr Host Host Range: $11.19 - $13.49 Red Robin isn't your typical burger restaurant. We're a team filled with unbridled energy, magnetic personalities, and a passion for having fun!

Server $2.13-2.13/hr + tips Servers Server Pay Rate: $2.13 - $2.13 Red Robin isn't your typical burger restaurant. We're a team filled with unbridled energy, magnetic personalities, and a passion for ...

Janitorial

Evansville, IN · On-site

$11.25 - $13.56/hr

Janitorial $11.25-13.56/hr Janitors Janitorial Range: $11.25-$13.56 Red Robin isn't your typical burger restaurant. We're a team filled with unbridled energy, magnetic personalities, and a passion ...

Merchandiser (Part Time)

Evansville, IN · On-site

$16.25 - $19/hr

... team Build and protect the Red Bull product portfolio Notify appropriate Account Sales Manager for pick up or exchange of any dented, damaged, or out of code product, any out of stock items, and ...

Host

Evansville, IN · On-site

$11.19 - $13.49/hr

Host $11.19-13.49/hr Host Host Range: $11.19 - $13.49 Red Robin isn't your typical burger restaurant. We're a team filled with unbridled energy, magnetic personalities, and a passion for having fun!

next page

Showing results 1-20

Red Team information

See Indiana salary details

$10

$24

$69

How much do red team jobs pay per hour?

As of Sep 4, 2026, the average hourly pay for red team in Indiana is $24.49, according to ZipRecruiter salary data. Most workers in this role earn between $14.62 and $22.88 per hour, depending on experience, location, and employer.

What does a red team do?

A Red Team job involves simulating real-world cyberattacks to identify security weaknesses before malicious hackers can exploit them. Red Team professionals use a variety of tactics, techniques, and procedures (TTPs) to test an organization's defenses, often mimicking advanced persistent threats (APTs). Their goal is to improve security by providing actionable recommendations based on their findings. This role requires expertise in penetration testing, social engineering, and adversarial thinking.

What skills and qualifications are needed for a red team?

To thrive as a Red Team member, you need strong expertise in penetration testing, vulnerability assessment, and a deep understanding of cybersecurity principles, usually demonstrated through relevant experience or certifications such as OSCP or CEH. Familiarity with tools like Metasploit, Burp Suite, Kali Linux, and various scripting languages is essential for effective simulation of threat actor techniques. Excellent problem-solving abilities, creative thinking, and strong communication skills help with reporting findings and collaborating with other cybersecurity professionals. These skills are critical for identifying and addressing security weaknesses to enhance an organization's defense strategies.

What are the daily activities and responsibilities of a red team?

As a Red Team professional, your typical day may involve planning and executing simulated cyberattacks, testing company networks and systems for vulnerabilities, and documenting your findings in detailed reports. You’ll often collaborate with Blue Teams (defensive security teams) and other IT staff to ensure your assessments provide meaningful insights into organizational security. Regular activities include researching emerging attack vectors, developing new testing methodologies, and conducting debriefs or training sessions to share lessons learned. This role requires staying current with evolving threats and adapting strategies to address complex, real-world scenarios.

How to get a job as a red teamer?

To become a red teamer, develop strong skills in cybersecurity, penetration testing, and scripting languages like Python or Bash. Obtain relevant certifications such as OSCP or CREST, gain experience with security tools like Kali Linux and Metasploit, and build a portfolio of simulated attack assessments to demonstrate your expertise.

What are red team jobs?

Red team jobs involve simulating cyberattacks to test an organization's security defenses. Professionals in these roles use hacking techniques, security tools, and penetration testing skills to identify vulnerabilities and improve security measures. These jobs often require knowledge of networks, systems, and security protocols, and may involve certifications like OSCP or CEH.

What are the most commonly searched types of Red Team jobs in Indiana?

The most popular types of Red Team jobs in Indiana are:

What are popular job titles related to Red Team jobs in Indiana?

For Red Team jobs in Indiana, the most frequently searched job titles are:

What job categories do people searching Red Team jobs in Indiana look for?

The top searched job categories for Red Team jobs in Indiana are:

What cities in Indiana are hiring for Red Team jobs?

Cities in Indiana with the most Red Team job openings:

Infographic showing various Red Team job openings in Indiana as of August 2026, with employment types broken down into 1% As Needed, 77% Full Time, 18% Part Time, and 4% Contract. Highlights an 89% Physical, 2% Hybrid, and 9% Remote job distribution, with an average salary of $50,931 per year, or $24.5 per hour.

Cybersecurity Threat Detection & Automation Manager

Cummins

Columbus, IN • On-site

$103K - $139K/yr

Full-time

Posted 16 days ago


Cummins rating

8.1

Company rating: 8.1 out of 10

Based on 270 frontline employees who took The Breakroom Quiz

116th of 545 rated manufacturers


Job description


The Cybersecurity Threat Detection & Automation Manager will lead a team responsible for designing, developing, automating, tuning, and continuously improving advanced threat detection and response capabilities across enterprise, cloud, identity, endpoint, email, network, SaaS, and manufacturing/OT environments.
This is a hands-on player/coach leadership role. The successful candidate will not only manage, mentor, and set direction for a team of detection engineering and automation professionals, but will also remain deeply involved in technical delivery. This includes reviewing detection logic, shaping automation workflows, validating use cases, improving alert fidelity, and ensuring the program produces measurable security outcomes.
The role is critical to reducing attacker dwell time, improving investigation quality, scaling response through automation, and strengthening the organization's overall SecOps maturity through SIEM, SOAR, detection lifecycle governance, and engineering discipline.
The ideal candidate combines deep detection engineering expertise, automation experience, incident response knowledge, strong leadership ability, and the program management discipline needed to build scalable cybersecurity capabilities in a complex enterprise environment.
The Impact You Will Make
In this role, you will help modernize and mature the organization's threat detection and response capabilities. You will lead the team responsible for turning adversary behavior, threat intelligence, incident lessons learned, red team findings, and business risk into actionable detections, automation workflows, analyst guidance, and measurable security outcomes.
You will directly influence:
  • Detection coverage across enterprise, cloud, identity, endpoint, email, network, OT, and SaaS environments
  • Alert fidelity and false-positive reduction
  • Investigation speed and analyst consistency
  • SOAR automation maturity and response scalability
  • Detection lifecycle governance, testing, validation, and documentation
  • SecOps modernization across SIEM, SOAR, EDR, threat intelligence, and telemetry platforms
  • Reduced manual triage and improved operational repeatability
  • Stronger partnerships across SOC, Incident Response, Threat Intelligence, IT, Cloud, Identity, Network, OT, and business teams

Responsibilities
Key Responsibilities
Leadership and Team Management
  • Manage, mentor, and develop a team of detection engineering and automation professionals.
  • Build a culture of engineering rigor, operational discipline, innovation, accountability, quality, and continuous improvement.
  • Operate as a hands-on manager by personally owning, reviewing, and contributing to key detections, automation workflows, technical initiatives, and program improvements.
  • Define and execute the threat detection and automation strategy aligned to business risk, operational needs, threat landscape, compliance requirements, and organizational priorities.
  • Establish the team's operating rhythm, including intake, prioritization, backlog management, planning, peer review, release readiness, metrics, and continuous improvement.
  • Coach team members on detection logic, investigation quality, automation design, threat modeling, analyst usability, operational impact, and stakeholder communication.
  • Partner closely with SOC Monitoring, Incident Response, Threat Intelligence, SIEM Engineering, Cloud, Identity, Network, OT, IT Infrastructure, Vulnerability Management, GRC, and business stakeholders.

Threat Detection Engineering
  • Design, develop, tune, and optimize threat detection logic across SIEM, EDR, identity, cloud, email, network, OT, SaaS, and other security platforms.
  • Personally own a portfolio of high-impact detections focused on complex use cases, crown jewel risks, advanced adversary behaviors, and top enterprise threats.
  • Translate adversary tactics, techniques, and procedures into actionable analytics using MITRE ATT&CK, kill-chain models, threat intelligence, incident findings, red team results, vulnerability exposure, and business risk.
  • Conduct detection gap analysis and threat modeling to prioritize improvements based on exposure, telemetry readiness, attacker behavior, business impact, and operational value.
  • Build and maintain detection validation practices, including test cases, replay or verification methods, regression checks, tuning evidence, performance monitoring, and analyst feedback loops.
  • Ensure detections are operationally useful by including clear context, enrichment, severity guidance, response steps, escalation paths, and containment recommendations.
  • Measure and expand detection coverage across ATT&CK tactics and techniques, critical assets, identities, cloud platforms, OT environments, and enterprise telemetry sources.
  • Stay current with emerging threats, adversary tradecraft, tools, vulnerabilities, and detection methods.

SIEM, SOAR, and Security Automation
  • Lead the design, development, and continuous improvement of SIEM and SOAR-driven detection and response workflows.
  • Build and optimize SIEM content, including correlation rules, notable events, dashboards, risk-based alerts, data models, investigation views, and alert enrichment.
  • Develop and mature SOAR playbooks that automate enrichment, triage, evidence collection, case creation, containment recommendations, response actions, and analyst decision support.
  • Identify repetitive, high-volume, or high-value SOC activities that can be safely and effectively automated.
  • Define automation standards covering human-in-the-loop approvals, reversible actions, audit trails, exception handling, failure modes, escalation criteria, and rollback considerations.
  • Partner with SOC and Incident Response teams to ensure automation improves investigation speed, consistency, quality, and response outcomes without creating unnecessary operational risk.
  • Measure automation effectiveness using metrics such as analyst time saved, touch reduction, playbook success rate, case consistency, response acceleration, and manual effort reduction.
  • Drive integrations across SIEM, SOAR, EDR, email security, identity platforms, threat intelligence, ITSM, cloud security, network security, PAM, DLP/CASB, and OT monitoring platforms.

Detection Lifecycle, Governance, and Program Management
  • Build and mature the detection and automation lifecycle from intake through retirement.
  • Own standards for request intake, prioritization, design, build, peer review, testing, deployment, tuning, production monitoring, and continuous improvement.
  • Create and maintain use case standards, templates, documentation requirements, acceptance criteria, release gates, change history, and ownership models.
  • Manage the detection and automation roadmap based on threat intelligence, incident trends, MITRE coverage gaps, telemetry gaps, crown jewel risks, regulatory requirements, and business priorities.
  • Develop and maintain program metrics that demonstrate detection coverage, alert fidelity, false-positive trends, automation value, telemetry readiness, backlog health, delivery throughput, and investigation quality.
  • Partner with stakeholders to identify and resolve telemetry gaps, data quality issues, logging deficiencies, enrichment needs, and unclear ownership across the detection and response ecosystem.
  • Ensure detection and automation practices support internal policies, audit expectations, and applicable regulatory requirements.
  • Maintain audit-ready documentation and evidence, including rationale, test results, tuning notes, change history, ownership, approvals, validation results, and monitoring insights.
  • Communicate detection strategy, risk coverage, maturity, roadmap, and outcomes clearly to both technical and non-technical stakeholders, including executive leadership.

Preferred Qualifications
  • Master's degree in Cybersecurity, Information Security, Computer Science, Engineering, or a related discipline.
  • 10+ years of cybersecurity experience working in SOC and in creating SEIM correlations/detections and automating incident information enrichment tasks
  • Experience in building mature detection lifecycle practices, including intake, prioritization, testing, tuning, monitoring, regression checks, peer review, and controlled releases.
  • Experience building SOAR playbooks and automation workflows for phishing, malware, suspicious sign-ins, account compromise, endpoint containment, cloud alerts, privileged access activity, and threat intelligence enrichment.
  • Experience with detection-as-code, Git-based content management, CI/CD pipelines, automated testing, reusable detection templates, and scalable engineering patterns.
  • Experience operationalizing threat intelligence into detection priorities, hunting queries, enrichment workflows, and response playbooks.
  • Experience designing detections for identity-based attacks such as token theft, MFA bypass, device code phishing, OAuth abuse, suspicious consent grants, impossible travel, privileged role changes, and anomalous sign-ins.
  • Experience designing detections across endpoint, email, network, cloud, SaaS, OT/ICS, DLP, and privileged access use cases.
  • Experience working in large, complex enterprise or manufacturing environments with distributed stakeholders, shared ownership models, and operational constraints.
  • Experience partnering with SOC, Incident Response, Threat Intelligence, Vulnerability Management, Cloud, Identity, Network, OT, Legal, Privacy, GRC, and IT teams.
  • Ability to distinguish between detection gaps, telemetry gaps, control gaps, ownership gaps, and response process gaps.
  • Excellent analytical and problem-solving skills, with the ability to balance precision, scale, operational usability, and business risk.
  • Demonstrated ability to lead, coach, and advise team members across cultural, geographic, technical, and generational boundaries.
  • Passion for automation, continuous improvement, high-quality engineering practices, and building durable security systems that scale.

Technical Competency Profile
  • Writing and tuning SIEM detections
  • Splunk SPL, risk-based alerting, notable events, dashboards, and correlation searches
  • SOAR playbook design and automation guardrails
  • Detection validation, regression testing, tuning, and release readiness
  • MITRE ATT&CK mapping and coverage measurement
  • Threat-informed detection engineering
  • Identity attack detection, including Entra ID, MFA abuse, token theft, OAuth abuse, suspicious consent grants, and privileged role changes
  • Endpoint detection and response workflows
  • Phishing, malware, suspicious email, and account compromise use cases
  • Cloud security detections and CNAPP telemetry
  • Network, DNS, proxy, firewall, VPN, and GlobalProtect telemetry
  • OT/ICS monitoring considerations in manufacturing environments
  • Privileged access monitoring and CyberArk-style PAM telemetry
  • Threat intelligence enrichment and operationalization
  • Case management, ITSM integration, and analyst workflow improvement
  • Detection-as-code, Git, CI/CD, reusable templates, and content lifecycle management

Qualifications
The Cybersecurity Threat Detection & Automation Manager will lead a team responsible for designing, developing, automating, tuning, and continuously improving advanced threat detection and response capabilities across enterprise, cloud, identity, endpoint, email, network, SaaS, and manufacturing/OT environments.
This is a hands-on player/coach leadership role. The successful candidate will not only manage, mentor, and set direction for a team of detection engineering and automation professionals, but will also remain deeply involved in technical delivery. This includes reviewing detection logic, shaping automation workflows, validating use cases, improving alert fidelity, and ensuring the program produces measurable security outcomes.
The role is critical to reducing attacker dwell time, improving investigation quality, scaling response through automation, and strengthening the organization's overall SecOps maturity through SIEM, SOAR, detection lifecycle governance, and engineering discipline.
The ideal candidate combines deep detection engineering expertise, automation experience, incident response knowledge, strong leadership ability, and the program management discipline needed to build scalable cybersecurity capabilities in a complex enterprise environment.
About Us
Cummins is an equal opportunity employer. Our policy is to provide equal employment opportunities to all qualified persons without regard to race, sex, color, disability, national origin, age, religion, union affiliation, sexual orientation, veteran status, citizenship, gender identity, or other status protected by law.

What Cummins employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom


Cummins logo

About Cummins

Sourced by ZipRecruiter

Cummins Inc., headquartered in Columbus, IN, US, is a global power leader that designs, manufactures, and distributes numerous power products and systems. With its genesis from as early as 1919, the company readily serves diverse industries such as transportation, industrial, generator drive, or marine applications, among others. At the heart of Cummins' operations, its key product lineup encompasses diesel & natural gas engines, generator sets, engine components, and filtration, emission solutions, and electrical power generation systems. Cummins deeply embodies core values of integrity, respect for diversity, teamwork, performance excellence, and social responsibility - all of which dynamically fuel their mission 'Making people's lives better by powering a more prosperous world'.

Industry

Transportation equipment manufacturing

Company size

10,000+ Employees

Headquarters location

Columbus, IN, US

Year founded

1919