Offensive Security Engineer performing penetration testing and AI security evaluations in a global, flexible team environment. Requires extensive experience and knowledge of SaaS and AI security.
Responsibilities
Work in a team-orientated, fast-paced, global, and flexible environment
Perform penetration testing across our entire product and infrastructure
Perform SaaS-based red team exercises with specific goal oriented objectives
Continuously evolve your skills toward AI evaluation and knowledge based on emerging tactics, techniques and procedures related to AI agent vulnerabilities
Collaborate with our AI Security, threat intelligence, threat monitoring and threat engineering teams to understand our threats, provide practical validations of threats and ensure our protections and incident response are continuously refined
Provide actionable insights for our Product Development team regarding vulnerabilities
Requirements
At least 7 years of professional experience in the field of offensive security.
A strong knowledge of modern web application architecture and the vulnerabilities often associated with them.
A strong knowledge of LLMs including their unique security threats, and how embedded vectors impact performance
Proficiency in offensive security tooling such as a web proxy like Burp Suite, Nmap, Kali and a scripting language of your choice.
Experience with AWS and its security features
Experience with developing or testing AI systems at scale.
Experience with AI Security tools (e.g., promptfoo, etc.)
Experience with MacOS & Apple infrastructure and its security features
10+ years of professional experience in the field of offensive security
Professional certifications related to offensive security, including but not limited to: OSCP, CEH, CPT, GPEN, OSCE, OSWP, OSWE, OSEE, OSDA, PNPT, CPENT, CRTO, GXPN
Published vulnerabilities, bug bounty reputation or other contributions to the industry
Talks, conference appearances or other professional event experience
Information Security Consultant managing security standards implementation at LUZA Group in Lisbon, Portugal. Handling analysis of risk and supporting audits while working in a hybrid model.
Senior Cybersecurity Analyst at Boeing performing advanced cybersecurity assessments and risk evaluations for third - party vendors. Focusing on automation, lean processes, and collaborating with key stakeholders across departments.
Cybersecurity Manager ensuring regulatory compliance in information security within the Mexican framework. Collaborating with technology teams to strengthen governance, risk, and control model.
CISA Auditor focusing on cloud security audits for a Zurich - based international bank. Ensuring cybersecurity and identifying vulnerabilities in IT systems with risk - oriented audits.
Cybersecurity Specialist managing compliance for DoD security transition to Zero Trust Architecture. Involves overseeing RMF activities and ensuring ATO deadlines are met in cloud environments.
Engineer II responsible for managing enterprise customer support in Security Engineering. Focused on troubleshooting and diagnosing security incidents in a hybrid work environment.
Guest Safety Agent at HRI Hospitality ensuring safety and hospitality for guests and managing outlet spaces. Maintaining a secure environment while engaging with guests and visitors in New Orleans.
Cybersecurity Architect for Saint Louis University developing and assessing security strategies and architecture. Ensuring secure IT services through effective security technologies and practices.
Senior Commercial Manager developing and executing Cyber Security strategies, managing client portfolios and leading complex negotiations in São Paulo.
Security Officer responsible for maintaining safety at WarHorse Casino. Enforcing policies, responding to incidents, and providing customer service to guests.