Staff Engineer - Offensive Security
Core
Design complex attack chains, perform full-stack penetration testing, and lead Red Team operations to identify systemic risks in Twilio's communications infrastructure.
Role type
Staff Offensive Security Engineer (Technical Lead)
Builds
Automated testing frameworks for AI systems, custom exploit payloads, and comprehensive security reports for developers.
Domain
Cybersecurity / Offensive Security / AI Security
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
Full-stack penetration testing, network and cloud auditing, vulnerability validation, adversarial ML testing, exploit development, C2 framework usage, Python/Bash scripting, MITRE ATT&CK and OWASP expertise, SIEM tuning, bug bounty program management
Preferred skills
Telecom expertise, advanced industry certifications (OSCP, OSEP, OSWE, GXPN)
Technologies
Burp Suite, Nmap, Metasploit, Wireshark, Cobalt Strike, Sliver, Havoc, LangChain, TensorFlow, PyRIT, Promptfoo, Garak, AWS, Azure, K8s
Responsibilities
Design and lead multi-week Red Team operations mimicking specific threat actors; build automated testing frameworks for AI systems; execute sophisticated attacks against cloud infrastructure; draft high-quality technical reports detailing paths to compromise; manage and update team testing infrastructure; provide direct remediation guidance to engineering teams; oversee the organization's bug bounty program.
Seniority
Senior, hands-on IC with strategic oversight