Senior Offensive Security Engineer

🕒 il y a 1 jour

🌐 États-Unis, Canada – Distant

info

💵 $170 000 / an

⏰ Temps Plein

🟠 Senior

👮‍♂️ Cybersécurité / Ingénieur Sécurité

🦅 Parrain de Visa H1B

info

🗣️🇺🇸🇬🇧 Anglais requis

Postuler Maintenant
Trouver des Emplois à Distance Similaires

📊 Vérifiez votre score de CV pour ce poste

Améliorez vos chances d'obtenir un entretien en vérifiant votre score de CV avant de postuler.

Logo of Array

Array

51 - 200 employés

💳 Fintech

🤝 B2B

Fintech • B2B

Array est une plateforme d'innovation financière qui aide les marques numériques, les institutions financières et les fintechs à commercialiser plus rapidement des produits grand public convaincants. Notre gamme d'offres en marque blanche aide nos partenaires à générer des revenus, à augmenter l'engagement, et à permettre à des millions de consommateurs d'atteindre leurs objectifs financiers.

Description

• Identify, validate, and demonstrate realistic attack paths against Array's products, infrastructure, and internal systems, focusing on business impact • Analyze large, multi-language codebases using AI and manual techniques to uncover vulnerabilities, generate exploit hypotheses, and perform variant analysis • Build safe proof-of-concept exploits demonstrating unauthorized access, privilege escalation, data exposure, business logic flaws, or other meaningful security risks • Partner with engineering to validate remediations, confirm exploit paths are fully eliminated, and identify similar patterns elsewhere • Document findings with evidence, technical root cause, business impact, and practical remediation guidance • Continuously improve Array's offensive security capabilities • Use AI tools to think, build, and ship faster as a default practice

🎯 Exigences

• 5+ years of offensive security, application security, penetration testing, or red team experience • Track record of finding real application vulnerabilities • Deep expertise in modern web applications, APIs, authentication, authorization, distributed systems, and the OWASP Top 10 • Experience developing proof-of-concept exploits demonstrating real business impact • Proficiency using AI for vulnerability discovery, exploit development, code analysis, and security research, with validation of AI-generated output • Ability to explain complex vulnerabilities, attack paths, and remediation guidance to engineering teams • Habitual use of AI to accelerate work

🏖️ Avantages

• Full medical, dental, and vision, premiums covered at 100% for full-time employees and 70% for dependents • Unlimited PTO and sick leave + 14 company holidays • 100% 401k match up to 4% with immediate vesting • Generous and competitive parental leave for all parents • $1,000 desk setup subsidy for a remote office • $100/month subsidy for wifi/cell phone expenses • Summer Fridays (half-day Fridays) typically from late May to the end of August • Commuter benefits for those who choose to go into the New York City or San Francisco office spaces • Incentive Stock Option (ISO) grant, subject to Board approval

Postuler Maintenant

Emplois Similaires

🕒 il y a 1 jour

Oddball

51 - 200

💼 Conseil

📦 Logistique

🎖️ Défense

Security Engineer embedding security into Oddball’s federal VA software delivery. Supporting ATO/RMF compliance, vulnerability management, monitoring, and DevSecOps for Veterans’ systems.

🇺🇸 États-Unis – Télétravail

💵 $110 000 - $145 000 / an

⏰ Temps Plein

🟡 Intermédiaire

🟠 Senior

👮‍♂️ Cybersécurité / Ingénieur Sécurité

🗣️🇺🇸🇬🇧 Anglais requis

🕒 il y a 2 jours

Anomali

201 - 500

🔒 Cybersecurity

🤖 Intelligence artificielle

☁️ SaaS

🗣️🇺🇸🇬🇧 Anglais requis

Cloud

Cyber Security

🕒 il y a 2 jours

CrowdStrike

5001 - 10000

🔒 Cybersecurity

☁️ SaaS

🤖 Intelligence artificielle

Sr. Consultant performing cloud-focused adversary emulation techniques. Collaborating with clients to validate security defenses and improve cloud security measures.

🗣️🇺🇸🇬🇧 Anglais requis

🕒 il y a 4 jours

Diversified

1001 - 5000

🏢 Entreprise

📱 Médias

🔐 Sécurité

Senior Director leading cybersecurity strategy within the IT organization, focusing on risk management and compliance. Responsible for global security operations and fostering a strong cybersecurity culture.

🇺🇸 États-Unis – Télétravail

💰 Private Equity Round - Diversified Systems en 2022-12

⏰ Temps Plein

🟠 Senior

👮‍♂️ Cybersécurité / Ingénieur Sécurité

🗣️🇺🇸🇬🇧 Anglais requis

Cloud

Cyber Security

🕒 il y a 4 jours

Cristcot

11 - 50

🏥 Santé

🏭 Fabrication

💊 Pharmaceutique

Senior Manager of IT Operations overseeing Microsoft cloud administration and cybersecurity at Cristcot. Manage operations, vendor relations, and ensure compliance in IT environment.

🇺🇸 États-Unis – Télétravail

💰 €10 473 043 Venture Round - Cristcot en 2025-06

⏰ Temps Plein

🟠 Senior

👮‍♂️ Cybersécurité / Ingénieur Sécurité

🗣️🇺🇸🇬🇧 Anglais requis

Cloud

Cyber Security