Senior Security Engineer - Pentester
Core
Conduct offensive and defensive security testing, penetration testing of product features, and cloud architecture security assessments across a multi-cloud environment (AWS & GCP) to ensure vulnerabilities are identified and remediated before release.
Role type
Senior Security Engineer (Pentester & Cloud Security)
Builds
Secure multi-cloud infrastructure (AWS/GCP), containerized applications, and web/API interfaces for a browser security platform.
Domain
Cybersecurity, Cloud Security, Web Application Security, AI-assisted security operations.
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
Multi-cloud architecture (AWS/GCP), Container security (K8s, EKS, GKE), Web application security (OWASP Top 10, API security), AI/LLM integration for security tasks, Infrastructure as Code (Terraform), Security automation (Python/Go/Bash), Vulnerability triage and reporting.
Preferred skills
Gatekeeper policies, Binary Authorization.
Technologies
AWS, GCP, Kubernetes, Terraform, Burp Suite, OWASP ZAP, Python, Go, Bash, LLMs (Gemini, Claude).
Responsibilities
Conduct deep-dive penetration tests on products and cloud infrastructure; Review IAM policies and cloud configurations against security baselines; Execute dynamic testing on web interfaces and API endpoints; Triage bug bounty submissions and external vulnerability reports; Use AI tools to automate reconnaissance and generate attack vectors; Build reproducible proofs-of-concept and communicate risk to product teams.
Seniority
Senior, hands-on IC
