Senior Offensive Security Engineer, Vulnerability Operations

Posted 1 day ago

This is a fully remote position, open to applicants in California, +4 more states.

📋 Description

• Develop and construct autonomous and semi-autonomous LLM red team agents designed for reconnaissance, hypothesis-driven exploitation, and evidence collection against NVIDIA-owned assets.

• Enhance agent frameworks with multi-phase orchestration, parallel specialized subagents, judge/verifier stages, and out-of-band callback systems.

• Integrate offensive security methodologies into prompts, tools, and playbooks across web applications, cloud environments, Kubernetes, and other relevant attack vectors.

• Create exploit-confirmation frameworks to verify findings and minimize false positives.

• Design safety measures, including sandboxing, scope enforcement, tool allowlists/blocklists, credential isolation, and defenses against prompt injection.

• Assess and benchmark cutting-edge models for offensive operations.

• Collaborate with the human red team to transform engagements into repeatable agent capabilities.

• Guide engineers and establish the technical standards for agent-based offensive tools.


⛳️ Requirements

• Bachelor’s degree or equivalent experience.

• Over 12 years in security engineering, with a minimum of 4 years in offensive security, including penetration testing, red teaming, exploit development, or vulnerability research.

• Extensive, hands-on exploitation expertise in at least one area: web applications, cloud/Kubernetes, or systems/binary.

• Strong software engineering skills in Python, with experience in production-level code.

• Practical background in working with LLMs: agent frameworks, tool utilization/function calling, multi-agent orchestration, or coding agents (Claude Code, Codex CLI, or similar).

• Good judgment regarding autonomous offensive tools, including scoping, authorization, and blast-radius considerations.

• A respectful and responsible approach to offensive testing.

• Published security research, CVEs, conference presentations, or notable CTF achievements.

• Relevant certifications such as OSWE, OSEP, OSCP, or GXPN.

• Experience with SAST/DAST internals, fuzzing, or program analysis.

• Familiarity with red-teaming AI systems or contributing to AI-security research.

• Knowledge of Kubernetes/OpenShift, GitOps, and managing worker fleets at scale.


🏝️ Benefits

• Competitive salaries.

• Generous benefits package.

• Equity.

People also viewed

Cisco9 hours ago

Software Security Lead

US flagNorth Carolina OnlyFull-timeCybersecurity / Security Engineer$139.3k – $203.6k/year
ApplyView job
Arctiq19 hours ago

Application Security Remediation Engineer

US flagNew York OnlyFreelanceCybersecurity / Security Engineer
ApplyView job
Cotiviti22 hours ago

Principal IAM/PAM Security Architect

US flagUnited States OnlyFull-timeCybersecurity / Security Engineer$160k – $190k/year
ApplyView job
Twilio22 hours ago

Staff Security Engineer

US flagUnited States OnlyFull-timeCybersecurity / Security Engineer$155.5k – $228.7k/year
ApplyView job
SimSpace22 hours ago

Security Engineer

CR flagCosta Rica OnlyFull-timeCybersecurity / Security Engineer
ApplyView job
True Zero Technologies, LLC22 hours ago

Security Vulnerability Engineer

US flagUnited States OnlyFull-timeCybersecurity / Security Engineer
ApplyView job

Never miss a great job!

Get handpicked remote jobs straight to your inbox weekly.

Trusted by 7,400+ designers