Senior Offensive Security Engineer

Posted Aug 4

This is a fully remote position, open to applicants in United States, +1 more country.

📋 Description

• Identify, validate, and demonstrate practical attack vectors against Array's products, infrastructure, and internal systems, with an emphasis on business implications.

• Analyze extensive, multi-language codebases utilizing AI and manual methods to reveal vulnerabilities, generate exploitation hypotheses, and conduct variant analysis.

• Develop secure proof-of-concept exploits that illustrate unauthorized access, privilege escalation, data exposure, business logic flaws, or other significant security risks.

• Collaborate with engineering teams to verify remediation efforts, ensure exploit pathways are entirely addressed, and identify similar patterns in other areas.

• Document findings with supporting evidence, technical root causes, business implications, and actionable remediation recommendations.

• Continuously enhance Array's offensive security capabilities.

• Employ AI tools to think, create, and deploy more efficiently as a standard practice.


⛳️ Requirements

• A minimum of 5 years in offensive security, application security, penetration testing, or red team roles.

• Proven history of uncovering genuine application vulnerabilities.

• In-depth knowledge of modern web applications, APIs, authentication, authorization, distributed systems, and the OWASP Top 10.

• Experience in developing proof-of-concept exploits that demonstrate real business significance.

• Proficient in using AI for vulnerability discovery, exploit development, code analysis, and security research, with validation of AI-generated results.

• Capability to articulate complex vulnerabilities, attack paths, and remediation strategies to engineering teams.

• Regular use of AI to expedite work processes.


🏝️ Benefits

• Comprehensive medical, dental, and vision coverage, with premiums fully covered for full-time employees and 70% for dependents.

• Unlimited paid time off and sick leave, plus 14 company holidays.

• Full 401k matching up to 4% with immediate vesting.

• Generous and competitive parental leave for all parents.

• $1,000 desk setup allowance for a remote workspace.

• $100 monthly subsidy for wifi/cell phone costs.

• Summer Fridays (half-day Fridays) typically from late May through the end of August.

• Commuter benefits for those commuting to the New York City or San Francisco offices.

• Incentive Stock Option (ISO) grant, pending Board approval.

People also viewed

Sony Interactive Entertainment23 hours ago

Senior Security AI Risk Analyst

US flagCalifornia OnlyFull-timeCybersecurity / Security Engineer$167.5k – $251.3k/year
ApplyView job
Squads23 hours ago

Security Engineer

North AmericaFull-timeCybersecurity / Security Engineer$175k – $220k/year
ApplyView job
Neo4j23 hours ago

Senior Director, Product, Security and Privacy

US flagUnited States OnlyFull-timeCybersecurity / Security Engineer$260k – $300k/year
ApplyView job
PingWind Inc. (SDVOSB)1 day ago

Cloud Security Architect – Engineer

US flagAlabama, +1 more stateFull-timeCybersecurity / Security Engineer
ApplyView job
CSCI Consulting1 day ago

SAP S/4HANA Defense & Security Functional Lead

US flagUnited States OnlyFull-timeCybersecurity / Security Engineer
ApplyView job
Strategic Systems International1 day ago

AI Security Engineer – AI, Agentic Security

MX flagMexico, +4 more countriesFreelanceCybersecurity / Security Engineer
ApplyView job

Never miss a great job!

Get handpicked remote jobs straight to your inbox weekly.

Trusted by 7,400+ designers