Staff Offensive Security Engineer
Core
Lead strategy and operations for vulnerability management and application security programs, focusing on reducing remediation time and building automation for cloud, firmware/IoT, and corporate systems.
Role type
Staff Offensive Security Engineer (Vulnerability Management & Security Automation)
Builds
Automated vulnerability detection and response tooling across cloud, firmware/IoT, and corporate environments.
Domain
Cloud Security, Firmware/IoT Security, Application Security
Deliverable
production ML models | infrastructure
Required skills
Vulnerability management strategy, Go, Python, JavaScript, AWS cloud services, Static Application Security Testing (SAST), Dynamic Application Security Testing (DAST), Software Composition Analysis (SCA), AI/LLM tooling for security workflows, CVSS and EPSS scoring frameworks, CI/CD pipeline integration, secure design practices.
Preferred skills
C/C++, firmware or embedded systems, security automation platforms (Tines), serverless frameworks (AWS Lambda), FedRAMP-certified environment experience, building AI copilots or agents for security.
Responsibilities
Lead vulnerability management strategy and continuous improvement, build automation for vulnerability detection and response, partner with engineering teams to drive remediation, mentor engineers on secure design, communicate security risks to leadership, participate in high-profile vulnerability investigations, provide on-call support for critical vulnerability response.
Seniority
Staff, hands-on IC with strategic leadership
