Offensive Security Engineer

Job not on LinkedIn

🔥 0 minutes ago

Apply Now
Find Similar Remote Jobs

📊 Check your resume score for this job

Improve your chances of getting an interview by checking your resume score before you apply.

Logo of ClickHouse

ClickHouse

51 - 200 employees

Founded 2016

☁️ SaaS

🏢 Enterprise

🤖 Artificial Intelligence

SaaS • Enterprise • Artificial Intelligence

ClickHouse is a fast and resource-efficient real-time data warehouse and open-source database that is designed to deliver superior query performance for mission-critical and time-sensitive applications. It is available as a cloud service on major platforms like AWS, GCP, and Azure, with a "Bring Your Own Cloud" option and a wide range of integrations for seamless operation within diverse tech stacks. ClickHouse excels in real-time analytics, machine learning, business intelligence, and observability, making it an ideal choice for tasks such as financial services, fraud detection, and gaming analytics. It supports developer-friendly SQL operations, offers cost-effective storage solutions, and provides an open-source alternative to traditional databases. Companies like Sony, Lyft, Cisco, GitLab, and Twilio leverage ClickHouse for its scalability, efficiency, and ease of use.

📋 Description

• Identify security gaps and vulnerabilities across ClickHouse offerings and triage vulnerabilities from bug bounty, responsible disclosure, and GitHub Issues • Improve and develop security assurance activities including penetration tests, vulnerability assessments, bug bounty programs, and fuzzing • Plan and execute internal red team assessments and penetration tests across infrastructure and cloud environments • Design realistic adversary scenarios to test detection, response, and control effectiveness • Assess AI/LLM-specific attack surfaces, including prompt injection, model/data exfiltration, and unsafe agentic tool use • Build and operate agentic tooling for reconnaissance, exploit chaining, attack-path discovery, and LLM-assisted fuzzing • Partner with detection engineering to validate detection coverage and measure time to detect/respond • Handle information security events and incidents across ClickHouse products and services • Develop processes, tooling, and automation to scale security processes and mitigate business risks

🎯 Requirements

• 7+ years of experience in pentesting, red teaming, and product security • Experience supporting engineering and product implementation across distributed web, API, and client/server systems • Hands-on experience with internal red teaming, penetration testing, and adversary simulation across cloud, network, and application environments • Ability to design threat-intelligence-grounded adversary scenarios for a multi-tenant cloud data platform • Strong written and verbal communication skills; ability to translate attack chains into actionable findings • Experience building or adapting agentic and LLM-assisted offensive security tooling • Familiarity with AI/LLM-specific vulnerability classes and testing methodology • Strong knowledge of one or more cloud providers, such as AWS, GCP, or Azure • Experience with Kubernetes and Cilium • Experience implementing and operating security tools and processes, including static/dynamic code analysis, software composition analysis, SBOM, OWASP SAMM, and fuzzing tools • Security-as-code mindset focused on automation and scale • BS, MS, or PhD in Computer Science or a related field listed as bonus points only • Open-source contributions, security/cloud certifications, AI security harness experience, internal red-team tooling experience, and offensive security certifications listed as bonus points

🏖️ Benefits

• Flexible work environment; ClickHouse is globally distributed and remote-friendly • Employer contributions towards healthcare • Equity in the company; stock options for every new team member • Flexible time off in the US and generous entitlement in other countries • $500 home office setup allowance for remote employees • Opportunities to engage with colleagues at company-wide offsites

Apply Now

Similar Jobs

🕒 6 days ago

Tenable

1001 - 5000

🔒 Cybersecurity

☁️ SaaS

🏢 Enterprise

Senior Security Consultant at Tenable implementing Exposure Management solutions for clients. Focused on cybersecurity risk management and customized solution delivery.

🗣️🇮🇹 Italian Required

🗣️🇳🇱 Dutch Required

🗣️🇫🇷 French Required

Cyber Security

🕒 June 29

Zscaler

5001 - 10000

🔒 Cybersecurity

☁️ SaaS

🏢 Enterprise

Principal AI Security Specialist at Zscaler bridging AI innovation and robust enterprise security. Combining consultative strengths with deep expertise in AI technologies and security frameworks.

Cloud

Cyber Security

🕒 June 25

Mozilla

501 - 1000

👥 B2C

🔒 Cybersecurity

Senior Software Engineer focusing on Firefox's security architecture and cryptographic protocols while improving browser reliability and performance.

Rust

🕒 June 4

Akamai Technologies

5001 - 10000

🔒 Cybersecurity

Senior II Enterprise Security Architect responsible for customer success in cybersecurity solutions at Akamai. Leading pre-sales engagements and demonstrating product value in the Israeli market.

🗣️🇳🇱 Dutch Required

AWS

Azure

Cloud

Cyber Security

Firewalls

Google Cloud Platform

Kubernetes

Microservices

🕒 May 19

Nebius Group

1001 - 5000

🤖 Artificial Intelligence

🏢 Enterprise

☁️ SaaS

Security Product Manager in Nebius' AI cloud platform responsible for managing security initiatives and communications. Collaborates with teams to ensure security posture and competitive advantage in the market.

Cloud