Lead Offensive Security Engineer
2 months ago
About the role:
We are looking for a highly skilled Offensive Security Engineer to join our growing cybersecurity team. This role is integral to executing sophisticated offensive security operations, including red teaming, penetration testing, and tailored cybersecurity exercises. As an Offensive Security Engineer, you will lead assessments that mimic real-world adversarial tactics, techniques, and procedures to identify vulnerabilities, improve defensive strategies, and strengthen our security posture.
This position offers a hybrid schedule. Ideal candidates must be local to the Atlantic City, NJ or DMV area.
Key Responsibilities:
Plan, design, and execute red team engagements, including adversary emulation, to assess the resilience of systems and processes.
Perform manual penetration testing on web applications, infrastructure, cloud services, and API’s utilizing creative and unconventional approaches to discover vulnerabilities.
Develop custom attack vectors and exploit vulnerabilities manually, emphasizing stealth and persistence to emulate real adversary behavior.
Lead cybersecurity exercises and create targeted attack scenarios to test response effectiveness.
Assess and prioritize risks based on manual testing outcomes, providing actionable remediation recommendations.
Collaborate with blue teams and stakeholders to refine detection, response, and prevention strategies.
Document technical findings in clear, concise reports and communicate results to both technical and non-technical audiences.
Continuously stay updated on the latest threats, vulnerabilities, and offensive security techniques.
Implement and maintain red team and penetration testing tools, ensuring they are effective, up-to-date, and properly configured for engagements.
Qualifications:
10+ years of experience in cyber security, with at least 4 years in red teaming or adversary emulation required.
5 years of experience may be substituted for the Bachelor's degree.
A Master’s or MBA may be substituted for a Bachelor's degree and 3 years of experience.
A PhD in a related field may be substituted for Bachelor's degree and 7 years of experience.
At least one of the following offensive security certifications such as OSCP, OSCE, OSEP, OSWE, CRTO, CRTP, GPEN, GXPN, or BSCP.
Required Skills:
Proven ability to emulate adversary tactics, techniques, and procedures (TTPs) without relying heavily on automated tools.
Strong experience in manual penetration testing, focusing on identifying business logic flaws, misconfigurations, and complex vulnerabilities.
Proficiency in using manual exploitation techniques to identify and leverage privilege escalation paths, lateral movement opportunities, and persistence mechanisms.
Solid understanding of internal network penetration techniques, Active Directory attacks, and techniques for evading defenses.
Understanding of Windows, Linux, and cloud infrastructure (e.g., AWS, Azure) from an attacker perspective.
Experience working in collaborative offensive-defensive engagements to improve detection and response.
Excellent technical writing and communication skills, with the ability to clearly present findings and articulate complex vulnerabilities.
Understanding of operational security (OPSEC) and evasion strategies to mimic advanced persistent threats.
Hold or be eligible to obtain a security clearance of SECRET or higher.
Familiarity with threat frameworks such as MITRE ATT&CK and proficiency in mapping TTPs to scenarios.
Preferred Skills:
Ability to develop custom exploits or modify existing ones to evade detection and achieve engagement goals.
Experience implementing C2 frameworks such as Cobalt Strike.
Advanced scripting knowledge (e.g., Python, PowerShell, Bash) for developing custom tools and payloads.
Experience with DevOps and CI/CD technologies.
Experience testing AI/ML systems, including LLMs.
Working knowledge of NIST, OMB, DOT, or FAA security requirements.
-
Offensive Security Specialist
1 month ago
Kansas City, Missouri, United States Konica Minolta Business Solutions Full timeJob Summary:We are looking for a highly experienced Senior Offensive Security Consultant to join our team at Depth Security. The successful candidate will be responsible for delivering Application Penetration Tests, Network Vulnerability and Penetration Assessments, and Social Engineering Assessments, as well as mentoring junior team members and contributing...
-
Senior Manager, Offensive Security
4 weeks ago
Redwood City, United States Box Full timeBox The intelligent Content Cloud makes it easy to automate workflows, collaborate internally and externally, and protect your sensitive data, all on one platform. Box is the world’s leading Content Cloud. We are trusted by more than 115K organizations around the world today, including nearly 70% of the Fortune 500 and leaders across deeply regulated...
-
Offensive Security Engineer
2 weeks ago
Oklahoma City, Oklahoma, United States Oracle Full timeKey ResponsibilitiesDesign and develop custom tools such as fuzzers in languages like C/C++, Python, Ruby, Go or Java.Tear apart undocumented file formats or network protocols to identify vulnerabilities.Come up with novel techniques to solve unique and interesting security problems.Review new services, including their integration points with existing...
-
Senior Offensive Security Consultant
2 months ago
Kansas City, United States Konica Minolta Business Solutions Full timeOverview The primary role of a Senior Offensive Security Consultant at Depth Security is to perform multidisciplinary assessment services as needed. Examples include Application Security Assessments against web apps, mobile apps, web services, and fat-client applications. Proficiency in delivering Network Vulnerability and Penetration Assessments both...
-
Offensive Security Professional
5 days ago
Oklahoma City, Oklahoma, United States Oracle Full timeSalary InformationOracle US offers a comprehensive benefits package, including a salary range from $87,000 to $178,200 per annum, may be eligible for bonus and equity.About the RoleYou will be working as a hands-on cloud hacker on the Offensive Security Team. The ideal candidate is a hardworking and hands-on engineer who cares about security and improves...
-
Application Offensive Security Consultant
1 month ago
Jersey City, United States Staffworthy Full timeAbout the job Application Offensive Security Consultant Experience level: Mid-senior Experience required: 6 Years Education level: Bachelors degree Job function: Information Technology Industry: Financial Services Total position: 1 Why you'll love this job:Being a member of the Application Security team, you will be part of the Technology Risk initiative to...
-
Application Offensive Security Consultant
1 month ago
Jersey City, United States Resiliency Full timeJob Summary Being a member of the Application Security team, you will be part of the Technology Risk initiative to support offensive security assessments on applications and provide SME guidance to key projects. The Application Offensive Security Consultant is responsible for providing technical direction and performing security assessment on applications....
-
Offensive Security Expert
5 days ago
Oklahoma City, Oklahoma, United States Oracle Full timeAbout the RoleWe're seeking a highly skilled Offensive Security Expert - Distributed Systems to join our esteemed Offensive Security Team. This role involves designing complex systems and services to improve the quantity and quality of offensive security output.Key ResponsibilitiesDesign and develop large-scale distributed security systems and toolsIdentify...
-
Offensive Security Professional
1 week ago
Jersey City, New Jersey, United States ZAR IT Solutions Full timeZAR IT Solutions is seeking an Offensive Security Professional to join our team and perform security assessments on applications. This role involves using manual security testing techniques to evaluate risk to applications and identify vulnerabilities.The ideal candidate will have at least 6 years of experience in application security testing, with a minimum...
-
Application Offensive Security Consultant
2 months ago
jersey city, United States Sharp Decisions Full timeNO H1BsNO 3rd PARTIESMUST HAVE RED TEAMING EXPERIENCE ALONG WITH MANUAL PENETRATION TESTING.Being a member of the Application Security team, you will be part of the Technology Risk initiative to support offensive security assessments on applications and provide SME guidance to key projects.The Application Offensive Security Consultant is responsible for...
-
Application Offensive Security Consultant
5 months ago
Jersey City, United States Sharp Decisions Full timeNO H1BsNO 3rd PARTIESMUST HAVE RED TEAMING EXPERIENCE ALONG WITH MANUAL PENETRATION TESTING.Being a member of the Application Security team, you will be part of the Technology Risk initiative to support offensive security assessments on applications and provide SME guidance to key projects.The Application Offensive Security Consultant is responsible for...
-
Application Offensive Security Consultant
1 month ago
jersey city, United States Sharp Decisions Full timeNO H1BsNO 3rd PARTIESMUST HAVE RED TEAMING EXPERIENCE ALONG WITH MANUAL PENETRATION TESTING.Being a member of the Application Security team, you will be part of the Technology Risk initiative to support offensive security assessments on applications and provide SME guidance to key projects.The Application Offensive Security Consultant is responsible for...
-
Application Offensive Security Consultant
3 days ago
Jersey City, United States Sharp Decisions Full timeNO H1BsNO 3rd PARTIESMUST HAVE RED TEAMING EXPERIENCE ALONG WITH MANUAL PENETRATION TESTING.Being a member of the Application Security team, you will be part of the Technology Risk initiative to support offensive security assessments on applications and provide SME guidance to key projects.The Application Offensive Security Consultant is responsible for...
-
Application Offensive Security Consultant
2 weeks ago
Jersey City, United States Sharp Decisions Full timeNO H1BsNO 3rd PARTIESMUST HAVE RED TEAMING EXPERIENCE ALONG WITH MANUAL PENETRATION TESTING.Being a member of the Application Security team, you will be part of the Technology Risk initiative to support offensive security assessments on applications and provide SME guidance to key projects.The Application Offensive Security Consultant is responsible for...
-
Offensive Security Expert
4 days ago
Oklahoma City, Oklahoma, United States Oracle Full timeRole OverviewThis role offers huge upside potential, high visibility, and fast career growth without the risks of a typical start-up. We are growing fast, maturing, and working on results-oriented initiatives.ResponsibilitiesYou will identify and disclose vulnerabilities to 3rd party vendors.You will design complex systems and services that improve quantity...
-
Offensive Security Solutions Developer
1 week ago
Oklahoma City, Oklahoma, United States Oracle Full timeSecurity Solutions Developer Position: We're seeking a highly skilled Security Solutions Developer to join our OCI team. As a key member of our Offensive Security group, you'll be responsible for developing custom security solutions to protect our cloud infrastructure and services. Your expertise in developing tools and systems to identify and exploit...
-
Offensive Cybersecurity Advisor
1 week ago
Jersey City, New Jersey, United States Waterfall Technology Consulting Partners Full timeAbout the RoleWaterfall Technology Consulting Partners seeks an experienced Application Security Consultant to join our team. In this role, you will support offensive security assessments on applications and provide expert guidance to key projects. Your technical expertise and ability to think critically will be essential in this position.Key...
-
jersey city, United States Sharp Decisions Full timeNO H1BsNO 3rd PARTIESMUST HAVE RED TEAMING EXPERIENCE ALONG WITH MANUAL PENETRATION TESTING.Being a member of the Application Security team, you will be part of the Technology Risk initiative to support offensive security assessments on applications and provide SME guidance to key projects.The Application Offensive Security Consultant is responsible for...
-
Application Offensive Security Consultant
1 month ago
Jersey City, United States Waterfall Technology Consulting Partners LLC Full timeAbout the job Application Offensive Security Consultant - Temp to Perm - Jersey City, NJ WTCP is a dynamic and innovative staffing organization with a proven track record of success. We are dedicated to delivering results by connecting qualified industry professionals with suitable employment opportunities, facilitating a mutually beneficial relationship...
-
Offensive Cybersecurity Specialist
1 week ago
Jersey City, New Jersey, United States Allure Consultant Full timeAllure Consultant is seeking an experienced Penetration Testing Lead to join our Application Security team! This Contract-to-Hire opportunity comes with a salary range of $130,000 - $200,000 per year.About the RoleIn this position, you'll be responsible for providing technical direction and performing security assessments on applications. As a member of our...