Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Offensive Cyber Research Engineer

Twenty Technologies

About the Company

America is under sustained cyber attack. Our adversaries infiltrate our networks, steal our IP, and degrade the digital infrastructure that modern life runs on. They've learned-correctly-that those attacks rarely produce consequences.

Twenty was founded to change that, by making our adversaries think twice before they attack us. Our vision is American and allied primacy in cyberspace-a future where they cannot contest us, deterrence is assured, and the free world remains secure.

Founded in 2024, Twenty Technologies ( industrializes offensive cyber operations for the U.S. and its allies. Headquartered in Arlington, Virginia, Twenty has raised $38M from Caffeinated Capital, General Catalyst, and In-Q-Tel.

Twenty is seeking an exceptionally skilled Offensive Cyber Research Engineer for an in-office position in its Arlington, VA office to lead the development of sophisticated offensive cyber capabilities that defend democracies worldwide. We're looking for someone with 6-8 years of deep technical expertise in offensive cyber operations, software development, and research, combined with proven leadership experience mentoring engineers and driving strategic technical initiatives. In this role, you'll architect and lead the development of advanced attack path frameworks, establish engineering best practices for offensive tooling, mentor junior researchers, and serve as a technical authority on adversarial techniques and red team operations. You'll leverage your extensive operational background-ideally from government/military Digital Network Exploitation Analysis (DNEA), Exploitation Analyst (EA) operations, advanced penetration testing, or threat intelligence analysis-to shape the technical direction of our offensive cyber capabilities and build the next generation of cyber technologies for the United States and its allies.

Role Details
Technical Leadership & Architecture
  • Lead the architecture and design of sophisticated attack path frameworks that emulate advanced persistent threat (APT) behaviors and nation-state TTPs
  • Establish technical standards and best practices for offensive cyber tool development across the organization
  • Evaluate and recommend engineering courses of action for new offensive capabilities and system enhancements
  • Drive technical decision-making for complex offensive cyber integrations and performance optimizations
  • Architect scalable, modular frameworks for attack technique automation and adversary emulation
Research & Innovation
  • Conduct advanced research into emerging adversary techniques, zero-day exploitation strategies, and novel attack vectors
  • Develop proof-of-concept tools and techniques that push the boundaries of offensive cyber capabilities
  • Stay current with threat actor innovations and translate emerging TTPs into defensive and offensive capabilities
  • Publish internal research findings and contribute to the broader cyber security research community
  • Identify capability gaps and lead initiatives to develop new offensive tools and methodologies
Team Leadership & Mentorship
  • Mentor and provide technical guidance to offensive cyber engineers and researchers, conducting thorough code reviews and knowledge transfer
  • Lead technical discussions and facilitate strategic planning sessions for offensive capability development
  • Organize research efforts and coordinate cross-functional collaboration with data engineering, backend, and intelligence analysis teams
  • Establish and maintain engineering best practices, secure coding standards, and operational security procedures
  • Guide junior engineers in understanding complex adversary behaviors and translating them into technical implementations
Attack Path Development & Implementation
  • Design and implement advanced attack paths that emulate sophisticated adversary campaigns across multiple domains
  • Create reusable, production-grade components for complex attack techniques including credential harvesting, lateral movement, and defense evasion
  • Develop custom tooling and automation frameworks that operate at machine speed for large-scale adversary emulation
Data Engineering & Intelligence Integration
  • Lead the design of ETL pipelines for processing threat intelligence, security logs, and operational data at scale
  • Architect standardized schemas for cyber operations datasets that support graph-based analysis and AI/ML workflows
  • Implement advanced data enrichment pipelines that integrate diverse threat intelligence sources
  • Design efficient storage and retrieval systems for large-scale security-relevant data
Operational Collaboration
  • Work closely with government customers and operational teams to understand mission requirements and capability gaps
  • Translate operational feedback into technical requirements and development priorities
  • Lead technical demonstrations showcasing offensive cyber capabilities to stakeholders
  • Provide subject matter expertise for customer engagements and strategic planning sessions
Qualifications
Technical Skills & Experience
  • 6-8 years of threat research, offensive cyber operations, and software development experience
  • Expert-level operational cyber security experience in one or more of the following domains:
    • Digital Network Exploitation Analysis (DNEA) within U.S. Government military or intelligence organizations
    • Exploitation Analyst (EA) operations conducting advanced network exploitation and intelligence analysis
    • Advanced Penetration Testing/Red Teaming leading sophisticated offensive security assessments
    • Senior-level Threat Hunting and threat intelligence analysis in high-stakes environments
  • Demonstrated technical leadership experience mentoring offensive cyber engineers and leading research initiatives
  • Deep expertise in the MITRE ATT&CK framework with proven track record developing and implementing advanced adversary TTPs across multiple tactics
  • Expert-level experience operating and extending industry-standard threat emulation platforms (Cobalt Strike, Metasploit, custom C2 frameworks) with proven ability to develop sophisticated custom payloads, modules, and evasion techniques
  • Extensive experience integrating and analyzing diverse threat intelligence sources including commercial feeds, OSINT, and government intelligence
  • Advanced proficiency in implementing sophisticated persistence mechanisms, advanced defense evasion techniques, counter-forensics, and anti-analysis methods
  • Expert containerization and orchestration experience using Docker and Kubernetes for secure, scalable offensive tool deployment
  • Advanced programming and software architecture skills in Python and Golang, with demonstrated ability to build maintainable, production-grade security tools and automation frameworks
  • Expert-level experience writing complex graph queries and developing graph-based analytical tools using Neo4j or similar graph databases
  • Comprehensive knowledge of cybersecurity across network security, application security, secure coding, cryptography, and security architecture
  • Extensive practical experience in offensive cyber operations including advanced payload development, post-exploitation frameworks, command and control infrastructure, and multi-stage attack chains
  • Expert knowledge of red team methodologies including campaign planning, operational security (OPSEC), adversary simulation, and realistic threat emulation based on intelligence-driven scenarios
Leadership & Communication Skills
  • Proven ability to lead technical projects and mentor engineering teams
  • Strong communication skills with ability to explain complex offensive techniques to diverse audiences including executives and government officials
  • Experience conducting thorough code reviews and establishing development standards for security tools
  • Track record of driving technical decision-making and influencing strategic direction
Education
  • Bachelor's degree in Computer Science, Software Engineering, Cybersecurity, or related field; Master's degree preferred, or equivalent practical experience
Security Requirements
  • Must be eligible to obtain a U.S. Government security clearance
Distinguishing Qualifications
  • Previous technical leadership experience in government cyber operations units or intelligence organizations conducting DNEA or EA operations
  • Experience leading offensive cyber capability development programs or research initiatives
  • Track record of developing novel offensive techniques or tools adopted by operational units
  • Advanced certifications such as OSCP, OSCE, OSEE, GXPN, or government-recognized advanced offensive security credentials
  • Experience with AI/ML integration in offensive cyber operations and automated threat emulation
  • Extensive background in malware analysis, reverse engineering, exploit development, or vulnerability research
  • Experience with multi-domain intelligence analysis correlating cyber, SIGINT, ELINT, and other intelligence sources
  • Publications or conference presentations on offensive cyber research or techniques
  • Contributions to open-source offensive security tools or frameworks
Additional Skills
  • Experience with Agile development methodologies and leading agile teams
  • Advanced system architecture and design experience for large-scale security systems
  • Performance optimization and scalability experience for high-throughput data processing
  • Experience with cloud security (AWS, Azure, GCP) and cloud-native attack techniques
  • Deep knowledge of wireless security, IoT protocols, and electromagnetic spectrum operations
  • Expertise with forensics tools, incident response procedures, and defensive cyber operations
  • Understanding of government acquisition processes and requirements development
Benefits
What's on the table:
  • Health. Medical, dental, and vision plan options. Life / AD&D, disability coverage options.
  • Family. Paid parental leave for eligible full-time employees. 12 weeks for birthing parents, 4 for non-birthing parents, 6 weeks for adoptive, foster, or intended parents through surrogacy.
  • Vacation. Paid holidays and flexible PTO. Take what you need.
  • Retirement. 401(k) with pre-tax and Roth options. HSA/FSA options, dependent care FSA.
  • At the office. Commuter benefits. On-site garage parking. Bike storage. Building fitness center. Desk setup stipend.

Benefits vary by location, role, and eligibility. Full plan details provided during the interview and offer process.

If this role sounds like you, apply and share with us your interest.

Some positions may require eligibility to obtain a U.S. Government security clearance. Any clearance requirement will be listed in the role description.

Twenty is an equal opportunity employer. We consider all qualified applicants without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, veteran status, disability, or any other protected status.

If you need a reasonable accommodation during the hiring process, let us know and we will work with you.
Vacancy posted 2 days ago
Similar jobs that could be interesting for youBased on the Offensive Cyber Research Engineer in Washington DC vacancy
  •  ...Technical Authority For Offensive Cyber Research Program You will serve as the preeminent technical authority for Twenty's offensive cyber...  ...world national security outcomes. You'll partner closely with engineering, product, and operations leaders, and you'll regularly... 
    Suggested
    Full time
    Work at office
    Flexible hours

    Twenty Inc.

    Washington DC
    4 days ago
  • $92k - $195k

    MAXAR TECHNOLOGIES, INC. is seeking a Cyber Operations Capabilities Developer in Maryland to build advanced offensive cyber tooling. The role involves programming in C and Python, conducting reverse engineering, and developing capabilities. Candidates should have a Bachelor... 
    Suggested

    MAXAR TECHNOLOGIES, INC.

    Washington DC
    3 days ago
  •  ...Senior Offensive Security Engineer - Pentester Denver, Colorado;Seattle, Washington; Charlotte, North...  ...to shine and grow. The Cyber Security Assurance Division is looking...  ...responsibilities include leading and performing research, understanding the bank's security... 
    Suggested
    Work at office
    Remote work
    Shift work
    Day shift

    Bank of America

    Washington DC
    1 day ago
  • Praescient Analytics is looking for a Senior Penetration Testing Engineer based in Arlington, VA, to support Army programs. This role demands 5+ years of experience in offensive security, proficiency in penetration testing, and the ability to effectively communicate findings... 
    Suggested

    Praescient Analytics

    Arlington, VA
    2 days ago
  •  ...Apogee Global RMS is seeking a Senior Cybersecurity Engineer / Offensive Security Lead to support high‑visibility federal and IC programs....  ...adversaries, and partner with federal stakeholders to strengthen cyber resilience across complex infrastructures.   Key... 
    Suggested

    Apogee Global RMS

    Arlington, VA
    4 days ago
  • $186.07k - $218.9k

     ...Application Security org at Coinbase is hiring for a Senior Offensive Security Engineer, Offensive Security. We are seeking a highly skilled and...  ...competitions (CTFs), Bug Bounty programs, open source security research, CVE analysis Experience in Web3 security, network... 
    Local area

    Coinbase

    Washington DC
    2 days ago
  • $111.5k - $207.5k

    Job Title: Associate Manager, Security Software Research Engineer Job Code: 36916Job Location: RemoteJob Schedule: 9/80: Employees work 9...  ...accomplished and collaborative Team Lead to guide an advanced offensive security research team. You will drive research strategy,... 
    Full time
    Flexible hours

    L3HHCM20

    Washington DC
    2 days ago
  • $166k - $220k

     ...’re seeking a Senior Threat and Attack Research Engineer to join our Security organization. The...  ...DO Monitor and analyze sophisticated cyber threats targeting Anduril's products, infrastructure...  .... Engage cross‑functionally with the offensive security team on product and... 
    Full time
    Work experience placement
    Immediate start
    Relocation package

    Slope

    Washington DC
    3 days ago
  •  ...platform and our Autonomous Exposure Validation (AEV) product. About The Role We're looking for a technically strong Sales Engineer with an offensive security background to join our US sales team. You will be the trusted technical voice in the sales cycle, helping... 
    Remote job

    BreachLock, Inc.

    Washington DC
    22 hours ago
  •  ...Services company , is seeking a Senior Cyber Engineer III with a TS/SCI security clearance to...  ...Demonstrated participation in the research, development, integration, and testing of innovative technologies for both offensive and defensive cyber. Ten (10) years'... 
    Local area
    Flexible hours

    Koniag

    Arlington, VA
    3 days ago
  • $40 per hour

     ...content, including threat analysis, vulnerability assessments, and offensive security techniques Design and solve security-focused...  ...penetration testing, red teaming, incident response, detection engineering, DFIR, malware analysis, threat intelligence, or similar) Some... 
    Hourly pay
    Full time
    Part time
    Remote work

    DataAnnotation

    Washington DC
    2 days ago
  •  ...Junior Cyber Risk Data Engineer/Analyst Technomics is a growing employee-owned, decision analytics company that specializes in cost and economic analysis to facilitate better decisions faster. We enable a wide range of clients across the Federal government, from senior... 
    Internship
    Shift work

    Technomics

    Arlington, VA
    4 days ago
  • $115.5k

    Sr. Cyber Range Engineer needed for a Direct Hire opportunity with SOC's client to work onsite in Annapolis Junction, MD. Candidate must have...  ...Life Cycle (JELC) Intermediate knowledge of defensive and offensive cyber tools Expert working knowledge of networking, to... 
    Flexible hours

    SOC LLC

    Bethesda, MD
    22 hours ago
  • $188k - $275k

     ...Information Security team is seeking an experienced and talented offensive security engineer to join our team. As part of the Information Security...  ...reviews for development teams within the business Research/stay abreast of new hacking techniques and find ways to counter... 
    Permanent employment
    Temporary work
    Casual work
    Work at office
    Remote work
    Flexible hours

    CoreWeave

    Washington DC
    more than 2 months ago
  • $100k - $190k

     ...Job Description Job Description Description: The Cato Institute seeks qualified candidates for the Senior Research Engineer, Applied AI position. AI tools are proliferating rapidly. Making them genuinely useful for policy research requires someone who bridges the... 
    Full time

    Cato Institute

    Washington DC
    4 days ago
  •  ...This is a research role , specifically supporting iPSC (induced pluripotent stem cell or sometimes written as HiPSC or human induced...  ...culture experience. ROLES / RESPONSIBILITES Serve as a Research Engineer for a Cell Therapy projects. Cell Culture (~20%): Culturing... 
    Contract work
    Weekend work

    Astrix Inc

    Bethesda, MD
    2 days ago
  • $115k - $181k

     ...Overview i3 is seeking a Vulnerability Research Engineer to support the Naval Research Laboratory’s Tactical Electronic Warfare Division. You will reverse engineer and analyze software and build purpose-driven tools that help teams test, characterize, and understand... 
    Full time

    Integration Innovation, Inc.

    Washington DC
    1 day ago
  •  ...Description About Galois Who We Are: From building digital engineering tools that make space exploration safer to verifying...  ...systems where failure is unacceptable. We are a community of researchers, engineers, and operations people dedicated to creating trustworthiness... 
    Local area
    Immediate start

    Galois, Inc.

    Arlington, VA
    1 day ago
  • $90k - $105k

    Overview Supports research efforts by implementing technical solutions to novel research problems. Works closely with senior research staff to transform research ideas into implemented solutions. Contributes to larger team efforts in implementing research prototypes. Contributes... 

    University of Southern California

    Arlington, VA
    22 hours ago
  • $124k - $140k

    The University of Southern California is seeking a skilled researcher for a position focused on implementing technical solutions for advanced research problems. The ideal candidate will hold a Master’s degree and possess at least 5 years of relevant experience, particularly... 

    University of Southern California

    Arlington, VA
    4 days ago
  • The University of Southern California seeks to support research by implementing technical solutions to novel problems. Close collaboration with senior research staff is essential to transform ideas into solutions. Candidates must have a Master's degree, less than a year... 

    University of Southern California

    Arlington, VA
    22 hours ago
  • Job Title SETA/Research Engineer Location Bethesda, MD Eligibility Candidate must possess an active TS/SCI with CI Polygraph clearance. Overview We are seeking a Scientific, Engineering, and Technical Assistance (SETA) Support Specialist to join our team in support of... 
    Work experience placement

    Arena Technical Resources, LLC (ATR)

    Bethesda, MD
    22 hours ago
  •  ...delivering advanced analytic, data engineering, and technology integration...  ...is seeking a Principal Cyber Systems Engineer, SME to provide...  ...Undersecretary of War for Research and Engineering (OUSW(R&E))....  ...the evaluation of innovative offensive and defensive cyber technologies... 
    Full time
    Work at office

    Praescient Analytics

    Arlington, VA
    22 hours ago
  • $124k - $335k

     ...Specialty/Competency: Software Engineering Industry/Sector: Not Applicable Time Type: Full time Travel Requirements: Up to 20% At PwC, our people in software and product innovation focus on developing cutting-edge software solutions and driving product innovation... 
    Full time
    H1b

    PwC

    Washington DC
    1 day ago
  •  ...Lead Cybersecurity Engineer – Embedded Systems As a Lead Cybersecurity Engineer – Embedded Systems, you will be responsible for the transition of breakthrough cybersecurity technologies from lab concepts to fieldable prototypes that protect critical industrial and... 
    Work at office
    Remote work
    Work visa
    Relocation package

    Navstar

    Washington DC
    4 days ago
  • Core4ce seeks a dynamic Junior Research Scientist to provide engineering, technical, and program management support to the Office of the Assistant Secretary of War for Countering Threats (OASW(CT)) and the Office of the Under Secretary of War for Research & Engineering... 
    Temporary work
    Work at office
    Flexible hours

    Core4ce Careers

    Alexandria, VA
    22 hours ago
  •  ...Framework Program within Bank of America's Cyber Security Assurance Offensive Security group. The program...  ...responsibilities include performing research, understanding the bank's security...  ...3 of the following areas: security engineering; application architecture; authentication... 
    Work at office
    Shift work
    Day shift

    Bank of America

    Washington DC
    1 day ago
  • $104k - $166k

     ...Penetration Tester for its Federal Strategic Cyber Group.  Location: Chandler, AZ and...  ...Penetration Tester to conduct advanced offensive security operations across diverse and...  ...closely with SOC, incident response, and engineering teams to ensure findings translate into... 
    Contract work
    Currently hiring
    Shift work

    Peraton

    Washington DC
    7 days ago
  •  ...findings to system owners and engineers. Maintain Red Cell...  ...years of relevant experience in Cyber/IT, or a Master's of Science...  ...penetration testing competence: Offensive Security Certified...  ...Tester (PNPT) GIAC Exploit Researcher and Advanced Penetration Tester... 
    Full time
    For contractors
    Remote work

    VETS

    Arlington, VA
    4 days ago
  • $76.4k - $138.6k

     ...blend risk strategy, digital identity, cyber defense, application security and technology...  ...value. The opportunity As an Offensive Security Analyst on the Vulnerability Management...  ...Skills Familiarity with research methodologies To qualify for the role... 
    Summer holiday
    Local area
    Flexible hours

    EY

    Washington DC
    22 hours ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Offensive Cyber Research Engineer. Be the first to apply!