Security Engineer, Red Team

Job not on LinkedIn

September 29

Apply Now
Logo of Workato

Workato

SaaS • Enterprise • Artificial Intelligence

Workato is a leading provider of integration and automation platforms that power up organizations by orchestrating their data, apps, and business processes. As the number one integration Platform as a Service (iPaaS), Workato focuses on providing AI-powered automations to enhance business efficiency at scale. Its platform utilizes a low-code approach for app and data orchestration, offering solutions like API management, process insights, and enterprise-level security. Workato supports various functions such as IT, HR, finance, marketing, and operations, and is trusted by large enterprises for transforming and automating workflows securely and efficiently. It offers over 1200 pre-built connectors and supports a cloud-native infrastructure with elastic scalability. Known for its contributions to enterprise-level integration and automation, Workato empowers organizations to boost innovation and transform business operations.

501 - 1000 employees

Founded 2013

☁️ SaaS

🏢 Enterprise

🤖 Artificial Intelligence

💰 $200M Series E on 2021-11

📋 Description

• Simulate real-world adversarial attacks against cloud architecture, AI model endpoints, and multi-tenant SaaS platform • Identify security weaknesses and validate defensive capabilities • Influence product security architecture and drive security improvements across customer deployments • Conduct red team exercises and penetration tests to simulate real-world attacks and validate defensive controls • Perform vulnerability research and exploitation to validate attack paths and contribute to the security community • Collaborate on threat modeling to anticipate attacker techniques and strengthen defensive strategies • Partner with Security Operations and Bug Bounty teams to enhance detection, response, and resilience • Coordinate external red team and penetration testing engagements and third-party security assessments • Develop automated tools and frameworks to scale offensive security operations across systems and applications • Conduct offensive security research against mission-critical systems while working with AI and cloud technologies

🎯 Requirements

• Bachelors degree in Computer Science, Cybersecurity, or related technical field • 5+ years in cybersecurity with a focus on offensive security, penetration testing, or red team operations • Advanced penetration testing certifications (OSCP, OSCE, GPEN, GXPN, or equivalent) • Deep expertise in cloud security testing, particularly AWS environments • Proficiency in exploitation frameworks and tools (Nuclei, Metasploit, Burp, Cobalt Strike, custom tooling) • Scripting and automation skills (Python, Go, Bash, or similar) • Hands-on experience with vulnerability research and exploit development • Knowledge of threat modeling methodologies and attack path analysis • Preferred: AI/ML security testing experience • Preferred: Experience with social engineering and phishing campaigns • Preferred: Advanced security certifications (GCFA, GCIH, GIAC, CRTO, CRTE) • Preferred: Experience with threat intelligence and adversary emulation frameworks (MITRE ATT&CK) • Preferred: Active participation in the security research community and CVE discoveries • Preferred: Knowledge of compliance frameworks and vendor relationship management • Remote position in either Spain or Portugal (location requirement)

🏖️ Benefits

• Flexible, trust-oriented culture that empowers everyone to take full ownership of their roles • Innovation-driven team environment and team-player culture • Balancing productivity with self-care • Vibrant and dynamic work environment • Remote work options (remote position in Spain or Portugal) • A multitude of benefits employees can enjoy inside and outside of their work lives

Apply Now

Similar Jobs

August 11

Senior/Staff Security Engineer to secure Ethena Labs’ DeFi platform.\nRemote outside the USA; build security across on-chain and off-chain.

Cloud

Web3

May 20

Lead threat detection and incident response as the Senior Security Engineer for Intermedia.

AWS

Azure

Cloud

DNS

Google Cloud Platform

JavaScript

Linux

Python

TCP/IP

Built by Lior Neu-ner. I'd love to hear your feedback — Get in touch via DM or support@remoterocketship.com