Offensive Cyber Research Engineer
Twenty Technologies
About the Company America is under sustained cyber attack. Our adversaries infiltrate our networks, steal our IP, and degrade the digital infrastructure that modern life runs on. They've learned-correctly-that those attacks rarely produce consequences. Twenty was founded to change that, by making our adversaries think twice before they attack us. Our vision is American and allied primacy in cyberspace-a future where they cannot contest us, deterrence is assured, and the free world remains secure. Founded in 2024, Twenty Technologies ( industrializes offensive cyber operations for the U.S. and its allies. Headquartered in Arlington, Virginia, Twenty has raised $38M from Caffeinated Capital, General Catalyst, and In-Q-Tel. Twenty is seeking an exceptionally skilled Offensive Cyber Research Engineer for an in-office position in its Arlington, VA office to lead the development of sophisticated offensive cyber capabilities that defend democracies worldwide. We're looking for someone with 6-8 years of deep technical expertise in offensive cyber operations, software development, and research, combined with proven leadership experience mentoring engineers and driving strategic technical initiatives. In this role, you'll architect and lead the development of advanced attack path frameworks, establish engineering best practices for offensive tooling, mentor junior researchers, and serve as a technical authority on adversarial techniques and red team operations. You'll leverage your extensive operational background-ideally from government/military Digital Network Exploitation Analysis (DNEA), Exploitation Analyst (EA) operations, advanced penetration testing, or threat intelligence analysis-to shape the technical direction of our offensive cyber capabilities and build the next generation of cyber technologies for the United States and its allies. Role Details
Technical Leadership & Architecture
Technical Skills & Experience
What's on the table:
Benefits vary by location, role, and eligibility. Full plan details provided during the interview and offer process. If this role sounds like you, apply and share with us your interest. Some positions may require eligibility to obtain a U.S. Government security clearance. Any clearance requirement will be listed in the role description. Twenty is an equal opportunity employer. We consider all qualified applicants without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, veteran status, disability, or any other protected status. If you need a reasonable accommodation during the hiring process, let us know and we will work with you.
Technical Leadership & Architecture
- Lead the architecture and design of sophisticated attack path frameworks that emulate advanced persistent threat (APT) behaviors and nation-state TTPs
- Establish technical standards and best practices for offensive cyber tool development across the organization
- Evaluate and recommend engineering courses of action for new offensive capabilities and system enhancements
- Drive technical decision-making for complex offensive cyber integrations and performance optimizations
- Architect scalable, modular frameworks for attack technique automation and adversary emulation
- Conduct advanced research into emerging adversary techniques, zero-day exploitation strategies, and novel attack vectors
- Develop proof-of-concept tools and techniques that push the boundaries of offensive cyber capabilities
- Stay current with threat actor innovations and translate emerging TTPs into defensive and offensive capabilities
- Publish internal research findings and contribute to the broader cyber security research community
- Identify capability gaps and lead initiatives to develop new offensive tools and methodologies
- Mentor and provide technical guidance to offensive cyber engineers and researchers, conducting thorough code reviews and knowledge transfer
- Lead technical discussions and facilitate strategic planning sessions for offensive capability development
- Organize research efforts and coordinate cross-functional collaboration with data engineering, backend, and intelligence analysis teams
- Establish and maintain engineering best practices, secure coding standards, and operational security procedures
- Guide junior engineers in understanding complex adversary behaviors and translating them into technical implementations
- Design and implement advanced attack paths that emulate sophisticated adversary campaigns across multiple domains
- Create reusable, production-grade components for complex attack techniques including credential harvesting, lateral movement, and defense evasion
- Develop custom tooling and automation frameworks that operate at machine speed for large-scale adversary emulation
- Lead the design of ETL pipelines for processing threat intelligence, security logs, and operational data at scale
- Architect standardized schemas for cyber operations datasets that support graph-based analysis and AI/ML workflows
- Implement advanced data enrichment pipelines that integrate diverse threat intelligence sources
- Design efficient storage and retrieval systems for large-scale security-relevant data
- Work closely with government customers and operational teams to understand mission requirements and capability gaps
- Translate operational feedback into technical requirements and development priorities
- Lead technical demonstrations showcasing offensive cyber capabilities to stakeholders
- Provide subject matter expertise for customer engagements and strategic planning sessions
Technical Skills & Experience
- 6-8 years of threat research, offensive cyber operations, and software development experience
- Expert-level operational cyber security experience in one or more of the following domains:
- Digital Network Exploitation Analysis (DNEA) within U.S. Government military or intelligence organizations
- Exploitation Analyst (EA) operations conducting advanced network exploitation and intelligence analysis
- Advanced Penetration Testing/Red Teaming leading sophisticated offensive security assessments
- Senior-level Threat Hunting and threat intelligence analysis in high-stakes environments
- Demonstrated technical leadership experience mentoring offensive cyber engineers and leading research initiatives
- Deep expertise in the MITRE ATT&CK framework with proven track record developing and implementing advanced adversary TTPs across multiple tactics
- Expert-level experience operating and extending industry-standard threat emulation platforms (Cobalt Strike, Metasploit, custom C2 frameworks) with proven ability to develop sophisticated custom payloads, modules, and evasion techniques
- Extensive experience integrating and analyzing diverse threat intelligence sources including commercial feeds, OSINT, and government intelligence
- Advanced proficiency in implementing sophisticated persistence mechanisms, advanced defense evasion techniques, counter-forensics, and anti-analysis methods
- Expert containerization and orchestration experience using Docker and Kubernetes for secure, scalable offensive tool deployment
- Advanced programming and software architecture skills in Python and Golang, with demonstrated ability to build maintainable, production-grade security tools and automation frameworks
- Expert-level experience writing complex graph queries and developing graph-based analytical tools using Neo4j or similar graph databases
- Comprehensive knowledge of cybersecurity across network security, application security, secure coding, cryptography, and security architecture
- Extensive practical experience in offensive cyber operations including advanced payload development, post-exploitation frameworks, command and control infrastructure, and multi-stage attack chains
- Expert knowledge of red team methodologies including campaign planning, operational security (OPSEC), adversary simulation, and realistic threat emulation based on intelligence-driven scenarios
- Proven ability to lead technical projects and mentor engineering teams
- Strong communication skills with ability to explain complex offensive techniques to diverse audiences including executives and government officials
- Experience conducting thorough code reviews and establishing development standards for security tools
- Track record of driving technical decision-making and influencing strategic direction
- Bachelor's degree in Computer Science, Software Engineering, Cybersecurity, or related field; Master's degree preferred, or equivalent practical experience
- Must be eligible to obtain a U.S. Government security clearance
- Previous technical leadership experience in government cyber operations units or intelligence organizations conducting DNEA or EA operations
- Experience leading offensive cyber capability development programs or research initiatives
- Track record of developing novel offensive techniques or tools adopted by operational units
- Advanced certifications such as OSCP, OSCE, OSEE, GXPN, or government-recognized advanced offensive security credentials
- Experience with AI/ML integration in offensive cyber operations and automated threat emulation
- Extensive background in malware analysis, reverse engineering, exploit development, or vulnerability research
- Experience with multi-domain intelligence analysis correlating cyber, SIGINT, ELINT, and other intelligence sources
- Publications or conference presentations on offensive cyber research or techniques
- Contributions to open-source offensive security tools or frameworks
- Experience with Agile development methodologies and leading agile teams
- Advanced system architecture and design experience for large-scale security systems
- Performance optimization and scalability experience for high-throughput data processing
- Experience with cloud security (AWS, Azure, GCP) and cloud-native attack techniques
- Deep knowledge of wireless security, IoT protocols, and electromagnetic spectrum operations
- Expertise with forensics tools, incident response procedures, and defensive cyber operations
- Understanding of government acquisition processes and requirements development
What's on the table:
- Health. Medical, dental, and vision plan options. Life / AD&D, disability coverage options.
- Family. Paid parental leave for eligible full-time employees. 12 weeks for birthing parents, 4 for non-birthing parents, 6 weeks for adoptive, foster, or intended parents through surrogacy.
- Vacation. Paid holidays and flexible PTO. Take what you need.
- Retirement. 401(k) with pre-tax and Roth options. HSA/FSA options, dependent care FSA.
- At the office. Commuter benefits. On-site garage parking. Bike storage. Building fitness center. Desk setup stipend.
Benefits vary by location, role, and eligibility. Full plan details provided during the interview and offer process. If this role sounds like you, apply and share with us your interest. Some positions may require eligibility to obtain a U.S. Government security clearance. Any clearance requirement will be listed in the role description. Twenty is an equal opportunity employer. We consider all qualified applicants without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, veteran status, disability, or any other protected status. If you need a reasonable accommodation during the hiring process, let us know and we will work with you.
Vacancy posted 2 days ago
Similar jobs that could be interesting for youBased on the Offensive Cyber Research Engineer in Washington DC vacancy
- ...Technical Authority For Offensive Cyber Research Program You will serve as the preeminent technical authority for Twenty's offensive cyber... ...world national security outcomes. You'll partner closely with engineering, product, and operations leaders, and you'll regularly...SuggestedFull timeWork at officeFlexible hours
$92k - $195k
MAXAR TECHNOLOGIES, INC. is seeking a Cyber Operations Capabilities Developer in Maryland to build advanced offensive cyber tooling. The role involves programming in C and Python, conducting reverse engineering, and developing capabilities. Candidates should have a Bachelor...Suggested- ...Senior Offensive Security Engineer - Pentester Denver, Colorado;Seattle, Washington; Charlotte, North... ...to shine and grow. The Cyber Security Assurance Division is looking... ...responsibilities include leading and performing research, understanding the bank's security...SuggestedWork at officeRemote workShift workDay shift
- Praescient Analytics is looking for a Senior Penetration Testing Engineer based in Arlington, VA, to support Army programs. This role demands 5+ years of experience in offensive security, proficiency in penetration testing, and the ability to effectively communicate findings...Suggested
- ...Apogee Global RMS is seeking a Senior Cybersecurity Engineer / Offensive Security Lead to support high‑visibility federal and IC programs.... ...adversaries, and partner with federal stakeholders to strengthen cyber resilience across complex infrastructures. Key...Suggested
$186.07k - $218.9k
...Application Security org at Coinbase is hiring for a Senior Offensive Security Engineer, Offensive Security. We are seeking a highly skilled and... ...competitions (CTFs), Bug Bounty programs, open source security research, CVE analysis Experience in Web3 security, network...Local area$111.5k - $207.5k
Job Title: Associate Manager, Security Software Research Engineer Job Code: 36916Job Location: RemoteJob Schedule: 9/80: Employees work 9... ...accomplished and collaborative Team Lead to guide an advanced offensive security research team. You will drive research strategy,...Full timeFlexible hours$166k - $220k
...’re seeking a Senior Threat and Attack Research Engineer to join our Security organization. The... ...DO Monitor and analyze sophisticated cyber threats targeting Anduril's products, infrastructure... .... Engage cross‑functionally with the offensive security team on product and...Full timeWork experience placementImmediate startRelocation package- ...platform and our Autonomous Exposure Validation (AEV) product. About The Role We're looking for a technically strong Sales Engineer with an offensive security background to join our US sales team. You will be the trusted technical voice in the sales cycle, helping...Remote job
- ...Services company , is seeking a Senior Cyber Engineer III with a TS/SCI security clearance to... ...Demonstrated participation in the research, development, integration, and testing of innovative technologies for both offensive and defensive cyber. Ten (10) years'...Local areaFlexible hours
$40 per hour
...content, including threat analysis, vulnerability assessments, and offensive security techniques Design and solve security-focused... ...penetration testing, red teaming, incident response, detection engineering, DFIR, malware analysis, threat intelligence, or similar) Some...Hourly payFull timePart timeRemote work- ...Junior Cyber Risk Data Engineer/Analyst Technomics is a growing employee-owned, decision analytics company that specializes in cost and economic analysis to facilitate better decisions faster. We enable a wide range of clients across the Federal government, from senior...InternshipShift work
$115.5k
Sr. Cyber Range Engineer needed for a Direct Hire opportunity with SOC's client to work onsite in Annapolis Junction, MD. Candidate must have... ...Life Cycle (JELC) Intermediate knowledge of defensive and offensive cyber tools Expert working knowledge of networking, to...Flexible hours$188k - $275k
...Information Security team is seeking an experienced and talented offensive security engineer to join our team. As part of the Information Security... ...reviews for development teams within the business Research/stay abreast of new hacking techniques and find ways to counter...Permanent employmentTemporary workCasual workWork at officeRemote workFlexible hours$100k - $190k
...Job Description Job Description Description: The Cato Institute seeks qualified candidates for the Senior Research Engineer, Applied AI position. AI tools are proliferating rapidly. Making them genuinely useful for policy research requires someone who bridges the...Full time- ...This is a research role , specifically supporting iPSC (induced pluripotent stem cell or sometimes written as HiPSC or human induced... ...culture experience. ROLES / RESPONSIBILITES Serve as a Research Engineer for a Cell Therapy projects. Cell Culture (~20%): Culturing...Contract workWeekend work
$115k - $181k
...Overview i3 is seeking a Vulnerability Research Engineer to support the Naval Research Laboratory’s Tactical Electronic Warfare Division. You will reverse engineer and analyze software and build purpose-driven tools that help teams test, characterize, and understand...Full time- ...Description About Galois Who We Are: From building digital engineering tools that make space exploration safer to verifying... ...systems where failure is unacceptable. We are a community of researchers, engineers, and operations people dedicated to creating trustworthiness...Local areaImmediate start
$90k - $105k
Overview Supports research efforts by implementing technical solutions to novel research problems. Works closely with senior research staff to transform research ideas into implemented solutions. Contributes to larger team efforts in implementing research prototypes. Contributes...$124k - $140k
The University of Southern California is seeking a skilled researcher for a position focused on implementing technical solutions for advanced research problems. The ideal candidate will hold a Master’s degree and possess at least 5 years of relevant experience, particularly...- The University of Southern California seeks to support research by implementing technical solutions to novel problems. Close collaboration with senior research staff is essential to transform ideas into solutions. Candidates must have a Master's degree, less than a year...
- Job Title SETA/Research Engineer Location Bethesda, MD Eligibility Candidate must possess an active TS/SCI with CI Polygraph clearance. Overview We are seeking a Scientific, Engineering, and Technical Assistance (SETA) Support Specialist to join our team in support of...Work experience placement
- ...delivering advanced analytic, data engineering, and technology integration... ...is seeking a Principal Cyber Systems Engineer, SME to provide... ...Undersecretary of War for Research and Engineering (OUSW(R&E)).... ...the evaluation of innovative offensive and defensive cyber technologies...Full timeWork at office
$124k - $335k
...Specialty/Competency: Software Engineering Industry/Sector: Not Applicable Time Type: Full time Travel Requirements: Up to 20% At PwC, our people in software and product innovation focus on developing cutting-edge software solutions and driving product innovation...Full timeH1b- ...Lead Cybersecurity Engineer – Embedded Systems As a Lead Cybersecurity Engineer – Embedded Systems, you will be responsible for the transition of breakthrough cybersecurity technologies from lab concepts to fieldable prototypes that protect critical industrial and...Work at officeRemote workWork visaRelocation package
- Core4ce seeks a dynamic Junior Research Scientist to provide engineering, technical, and program management support to the Office of the Assistant Secretary of War for Countering Threats (OASW(CT)) and the Office of the Under Secretary of War for Research & Engineering...Temporary workWork at officeFlexible hours
- ...Framework Program within Bank of America's Cyber Security Assurance Offensive Security group. The program... ...responsibilities include performing research, understanding the bank's security... ...3 of the following areas: security engineering; application architecture; authentication...Work at officeShift workDay shift
$104k - $166k
...Penetration Tester for its Federal Strategic Cyber Group. Location: Chandler, AZ and... ...Penetration Tester to conduct advanced offensive security operations across diverse and... ...closely with SOC, incident response, and engineering teams to ensure findings translate into...Contract workCurrently hiringShift work- ...findings to system owners and engineers. Maintain Red Cell... ...years of relevant experience in Cyber/IT, or a Master's of Science... ...penetration testing competence: Offensive Security Certified... ...Tester (PNPT) GIAC Exploit Researcher and Advanced Penetration Tester...Full timeFor contractorsRemote work
$76.4k - $138.6k
...blend risk strategy, digital identity, cyber defense, application security and technology... ...value. The opportunity As an Offensive Security Analyst on the Vulnerability Management... ...Skills Familiarity with research methodologies To qualify for the role...Summer holidayLocal areaFlexible hours
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Offensive Cyber Research Engineer. Be the first to apply!
Related searches
- sr information security engineer Washington DC
- senior application security engineer Washington DC
- associate security engineer Washington DC
- azure security engineer Washington DC
- principal security engineer Washington DC
- security engineering manager Washington DC
- aws cloud security engineer Washington DC
- dlp security engineer Washington DC
- entry level security engineer Washington DC
- sr security engineer Washington DC


