
Staff Engineer – Offensive Security
Posted 1 hour ago

Posted 1 hour ago
This is a fully remote position, open to applicants in California, +5 more states.
• Execute both manual and automated testing for web applications, APIs, and mobile applications.
• Carry out assessments at the network and cloud levels.
• Review and validate findings from automated scanning tools.
• Conduct initial prompt injection and jailbreak tests on AI prototypes.
• Create comprehensive reports that outline potential compromise pathways.
• Oversee and maintain testing infrastructure.
• Offer technical support and guidance to engineering teams.
• Design and direct multi-week Red Team operations.
• Develop custom payloads and work on exploit development.
• Perform attacks on cloud services with a focus on security configurations.
• Collaborate with the Security Incident Response Team (SIRT) and Detection Engineering.
• 7-10 years of experience in offensive security, penetration testing, or vulnerability exploitation.
• In-depth knowledge of the MITRE ATT&CK framework and OWASP Top 10.
• Skilled in using OffSec tools such as Burp Suite, Nmap, Metasploit, and similar.
• Proficient in writing functional scripts in Python or Bash.
• Hold advanced industry certifications (OSCP, OSEP, OSWE, etc.).
• Preferred background in telecommunications.
• Competitive salary.
• Generous vacation policy.
• Ample parental leave options.
• Wellness leave available.
• Comprehensive healthcare coverage.
• Retirement savings program.
• Opportunities to participate in equity and corporate bonus plans.
GEICO
Knak
Yum! Center for Global Franchise Excellence
SRM Technologies
Get handpicked remote jobs straight to your inbox weekly.