Sr. Offensive Security Engineer
Core
Proactively identifies and exploits security vulnerabilities across applications, networks, APIs, and cloud environments to strengthen an organization's security posture.
Role type
Senior IC offensive security engineer (penetration testing & red teaming)
Builds
Security posture improvements via vulnerability remediation and adversary emulation
Domain
Cybersecurity / Cloud Security / Application Security
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
Penetration testing, Red teaming, Exploit development, Vulnerability validation, Cloud security testing, Web/API security testing, Adversary emulation, Threat modeling, Scripting/programming for automation, Security tool proficiency
Preferred skills
OSCP certification, CVE/bug bounty portfolio
Technologies
Burp Suite, Nuclei, ffuf, Pacu, CloudFox, AWS, Azure, GCP
Responsibilities
Conduct end-to-end penetration testing on web, mobile, API, network, and cloud systems; Execute red team / adversary emulation exercises aligned with real-world attack techniques; Identify, exploit, and validate vulnerabilities (e.g., RCE, SSRF, authentication bypass); Develop custom exploits, proof-of-concept code, and attack tools; Produce clear, actionable reports detailing findings, business impact, and remediation steps; Verify remediation efforts and ensure vulnerabilities are properly resolved; Maintain and enhance offensive security methodologies, playbooks, and documentation
Seniority
Senior, hands-on IC