Elastic Security Engineer
Openkyber
IT Exposure Management Threat Analyst (Offensive Security) Location: REMOTE [No Second Jobs] Visa Type: H1B1 / / Citizen / OPT's No Sponsorship Contact: / Contact Name: OpenKyber Position Summary The IT Exposure Management Threat Analyst Offensive Security is responsible for identifying, validating, prioritizing, and helping remediate cybersecurity exposures across the organization's enterprise environment. This is a hands-on offensive security role requiring practical experience with penetration testing, vulnerability validation, adversary techniques, attack-path analysis, Kali Linux, and automated security validation platforms. The ideal candidate will have direct experience conducting traditional penetration testing and offensive security assessments using Kali Linux, along with hands-on experience using the Horizon3.ai NodeZero platform to continuously identify and validate exploitable attack paths. The Threat Analyst will work closely with Exposure Management, SOC, Incident Response, Security Engineering, Network, Infrastructure, Cloud, Identity, and Application Security teams to reduce the organization's attack surface and overall cyber risk. Key Responsibilities Exposure Management & Attack Surface Analysis:
- Identify, assess, validate, and prioritize security exposures across enterprise environments.
- Conduct continuous analysis of internal and external attack surfaces.
- Identify vulnerable assets, exposed services, misconfigurations, weak controls, excessive privileges, and exploitable conditions.
- Evaluate exposures based on exploitability, business criticality, asset value, threat intelligence, and potential impact.
- Correlate vulnerabilities with known exploits, active threats, and adversary techniques.
- Track security exposures from initial discovery through remediation and validation.
- Develop recommendations to reduce the organization's attack surface and improve security resilience.
- Perform hands-on penetration testing and offensive security assessments within approved scope.
- Conduct traditional network, infrastructure, server, endpoint, Active Directory, and application penetration testing.
- Perform reconnaissance, enumeration, vulnerability identification, exploitation, privilege escalation, and post-exploitation activities as authorized.
- Validate whether identified vulnerabilities are actually exploitable rather than relying solely on scanner severity.
- Demonstrate potential attack paths and business impact using controlled proof-of-concept techniques.
- Identify opportunities for lateral movement, privilege escalation, persistence, and unauthorized access.
- Document technical findings and provide actionable remediation recommendations.
- Conduct remediation validation and retesting.
- Use Kali Linux as a primary offensive-security testing environment.
- Perform hands-on reconnaissance, scanning, enumeration, exploitation, and security validation.
- Utilize tools such as: Nmap Burp Suite Metasploit Wireshark Netcat Responder Impacket BloodHound CrackMapExec / NetExec Gobuster Nikto Hashcat John the Ripper
- Develop and execute controlled testing workflows using multiple tools to validate complex attack paths.
- Perform manual testing in addition to automated vulnerability scanning.
- Use scripting and automation to improve repeatability and efficiency of security assessments.
- Utilize Horizon3.ai NodeZero to perform autonomous security validation and identify exploitable attack paths.
- Configure and execute authorized NodeZero assessments across enterprise environments.
- Analyze NodeZero findings, attack paths, vulnerabilities, compromised credentials, privilege escalation opportunities, and lateral movement paths.
- Validate automated findings through manual testing where appropriate.
- Translate NodeZero attack-path findings into actionable remediation recommendations.
- Prioritize exposures based on demonstrated exploitability and potential business impact.
- Track remediation of NodeZero findings and perform follow-up validation.
- Use Horizon3.ai results to identify weaknesses in preventative and detective security controls.
- Collaborate with infrastructure, network, identity, and security engineering teams to eliminate validated attack paths.
- Analyze how individual vulnerabilities can be chained together to create a meaningful security risk.
- Identify potential paths from: Initial access Credential compromise Privilege escalation Lateral movement Domain/enterprise compromise Access to critical systems.
- Use offensive-security techniques to validate high-risk attack paths.
- Identify excessive privileges, insecure trust relationships, weak authentication, vulnerable services, and network segmentation weaknesses.
- Recommend controls that break or eliminate attack paths.
- Analyze vulnerability scanner output and identify exposures requiring remediation.
- Validate high-risk vulnerabilities through authorized exploitation.
- Prioritize vulnerabilities using: CVSS CISA KEV Exploit availability Asset criticality Business impact Threat intelligence Actual exploitability Attack-path context.
- Identify vulnerabilities that present immediate or material risk to the organization.
- Partner with infrastructure and application teams to establish remediation plans.
- Retest vulnerabilities after remediation.
- Research emerging vulnerabilities, exploits, threat actors, malware, and attack techniques.
- Monitor CVE disclosures, CISA Known Exploited Vulnerabilities, vendor advisories, and exploit intelligence.
- Determine whether emerging vulnerabilities affect organizational assets.
- Translate threat intelligence into exposure-management priorities.
- Map vulnerabilities and attack techniques to the MITRE ATT&CK framework.
- Provide actionable threat intelligence to SOC and Incident Response teams.
- Support authorized adversary emulation and purple-team exercises.
- Simulate realistic attacker behaviors to validate security controls.
- Test preventative and detective controls against known adversary techniques.
- Identify security-control gaps and detection weaknesses.
- Work with SOC and Security Engineering teams to improve detection and prevention capabilities.
- Document lessons learned and develop recommendations for improving defensive controls.
- Partner with Security Engineering to remediate validated security exposures.
- Work with Network Engineering to address segmentation and exposed-service risks.
- Collaborate with Identity teams to address excessive privileges, authentication weaknesses, and Active Directory exposures.
- Work with Cloud Security teams to identify cloud infrastructure and identity risks.
- Partner with Application Security teams on application and API vulnerabilities.
- Provide offensive-security expertise during architecture and security-control reviews.
- Produce detailed penetration testing and exposure-management reports.
- Clearly document: Vulnerability Attack vector Evidence Exploitability Attack path Business impact Risk rating Remediation recommendation.
- Present technical findings to security and IT stakeholders.
- Translate highly technical offensive-security findings into business-oriented risk statements.
- Maintain testing procedures, methodologies, playbooks, and documentation.
- Bachelor's degree in Cybersecurity, Computer Science, Information Technology, or related field, or equivalent professional experience.
- 3 7+ years of hands-on experience in penetration testing, offensive security, vulnerability management, exposure management, or cybersecurity.
- Demonstrated practical experience conducting penetration tests, not solely vulnerability scanning.
- Strong hands-on experience with Kali Linux.
- Strong understanding of network, system, application, cloud, and identity security.
- Experience with vulnerability identification, exploitation, privilege escalation, and attack-path analysis.
- Experience validating vulnerabilities and determining real-world exploitability.
- Strong understanding of MITRE ATT&CK and common adversary tactics.
- Ability to work independently on security assessments and complex technical investigations.
- Strongly Preferred Horizon3.ai NodeZero Kali Linux Penetration testing frameworks and methodologies Vulnerability management platforms Attack Surface Management / Exposure Management platforms
- Nmap Burp Suite Metasploit BloodHound Impacket NetExec Responder Wireshark Hashcat John the Ripper Gobuster Nessus Qualys Rapid7 Tenable Other enterprise exposure-management platforms
- Active Directory Windows Server Linux TCP/IP DNS SMB LDAP/Kerberos Network security Firewalls VPN Cloud security Azure/AWS/Google Cloud Platform Identity and access management Web applications APIs Containers Endpoint security
- One or more of the following: OSCP Offensive Security Certified Professional OSCE/OSED OSEP Offensive Security Experienced Professional CRTO Certified Red Team Operator GPEN GIAC Penetration Tester GWAPT GIAC Web Application Penetration Tester Google Cloud PlatformN GIAC Cloud Penetration Tester CISSP CEH eJPT PNPT CompTIA Security+/CySA+
- Offensive Security Penetration Testing Exposure Management Attack Surface Management Horizon3.ai NodeZero Kali Linux Vulnerability Validation Exploit Development / Exploitation Attack Path Analysis Red Team Techniques Adversary Simulation Threat Intelligence Active Directory Security Network Penetration Testing Web Application Security Cloud Security Identity Security MITRE ATT&CK Risk-Based Vulnerability Prioritization Security Control Validation Remediation Validation Technical Reporting
- Success in this role will be measured by the ability to: Identify real-world exploitable exposures before threat actors can exploit them.
- Reduce the organization's attack surface.
- Discover and eliminate high-risk attack paths.
- Use Horizon3.ai NodeZero to continuously validate organizational security posture.
- Conduct effective manual penetration testing using Kali Linux and traditional offensive-security techniques.
- Improve vulnerability prioritization through demonstrated exploitability and business context.
- Validate remediation and confirm that security weaknesses have actually been eliminated.
- Identify gaps in preventative and detective security controls.
- Improve collaboration between offensive security, SOC, Incident Response, and Security Engineering teams.
- The ideal candidate is a hands-on offensive security practitioner, not simply a vulnerability-management analyst.
- They should be comfortable sitting down with Kali Linux and traditional penetration-testing tools, manually investigating and validating vulnerabilities, and then using Horizon3.ai NodeZero to continuously identify and demonstrate exploitable attack paths across the enterprise.
- The candidate should think like an attacker while communicating like a security professional understanding how vulnerabilities can be chained together, how an adversary could move through an environment, what the actual business impact is, and what controls will effectively break the attack path.
- Hands-on experience with Horizon3.ai NodeZero + Kali Linux + traditional penetration testing is strongly preferred.
For applications and inquiries, contact:View email address on us.fitly.work
- ...Role : Security Engineer Location : Charlotte, Dallas (Hybrid) Persistent Systems Role Summary Security Engineer with strong expertise in CNAPP (Wiz/Prisma), cloud security, and ETL data control validation. Responsible for end-to-end validation of security controls...Suggested
- ...Embedded Systems Security Engineer Onsite in Foster City, CA | 5 days in office We are looking for an Embedded Systems Security Engineer to implement security solution to harden our next-generation embedded Linux platform. In this role, you will bridge the gap between...SuggestedPermanent employmentContract workWork at office
$126k - $191k
...ABOUT THE JOB We're seeking a Security Software Engineer to develop novel security tooling for securing embedded Linux systems and Android devices. The ideal candidate can develop, test, and debug an endpoint detection and response agent with mission critical security...SuggestedFull timeWork experience placementImmediate start- ...review the following job description:• This team uses automated API security tools like Akamai, Salt Security and ReadyAPI tools to identify vulnerabilities in running APIs.• This Senior Security Engineer will be experienced with API development and/or API security...SuggestedFull timePart timeShift workDay shift
- ...following job description:Designs and implements application security capabilities across the software development lifecycle, including... ...requirements. Collaborates closely with developers, DevOps engineers, and security teams to identify, assess, and remediate security...SuggestedFull timePart timeShift workDay shift
$80k - $90k
...Industry/Sector Not Applicable Specialism Infrastructure Engineering Management Level Associate Job Description & Summary The Opportunity As an AWS Security Engineer - Experience Associate, you will play a pivotal role in designing and implementing secure...Work experience placementH1b- ...Identity and Access Management Engineer – Officer (IAM Security Engineer) Location: Boston and Quincy, MA and Austin, TX, Atlanta Georgia, Princeton or Clifton NJ, Berwyn, PA, Stamford CT. MoI: Video with Possible F2F Client is Cyber Identity and Access Management...
$90k - $120k
...Pay Range $90,000–$120,000 per year Job Overview An exciting opportunity to work with a growing company in a crucial Security Engineer role. You will drive the deployment and oversight of advanced security technologies, evaluate cybersecurity risks, coordinate...Work at office- ...Senior Security Engineer Immediate need for a talented Senior Security Engineer. This is a 12+ Months Contract opportunity with long-term potential and is located in Atlanta, GA. Please review the job description below and contact me ASAP if you are interested. Job...Contract workLocal areaImmediate start
$110k - $125k
...Job Description The Security Engineer I supports the design, implementation, and continuous improvement of security controls that protect the organization’s systems, networks, applications, and data. This role partners with IT and business teams to assess risk, strengthen...Hourly payPermanent employmentContract work- ...Senior Security Engineer II Atlanta At Braze, we have found our people. We're a genuinely approachable, exceptionally kind, and intensely passionate crew. We seek to ignite that passion by setting high standards, championing teamwork, and creating work-life harmony...Work at officeFlexible hours
- ...configurations Transitioning between hardware platforms Patching Evaluating patches Implementing patch strategies Managing lifecycle decisions Security Hardening F5 configurations Ensuring secure deployments Evaluating risks Automation Terraform deployment Infrastructure as Code...Immediate start
- Sr. Security Engineer Qualifications: 6 + years of experience required. Responsibilities: Responsible for the design, testing, evaluation, implementation, support, management, and deployment of security systems/devices used to safeguard the organization's information assets...
- Security Engineer The Security Engineer will be a key contributor to the organization's Cybersecurity Program, focusing on maintaining the confidentiality, integrity, and availability of information assets. This role requires expertise in security operations, incident handling...
$160k - $175k
...backgrounds, regardless of their level of sports fandom. Ready to reimagine the DFS industry together? We are looking for a Senior Security Engineer to scale and mature our Cloud, Container, and Edge Security programs. In this role, you will move beyond passive scanning to...Full timeRemote workWork visaFlexible hours- API Security Engineer Location: Atlanta, GA Duration: Fulltime Job Description: Must-Have: Strong understanding of API Security, OWASP API Top 10, secure API design principles. Experience in governance, compliance, and security review processes. Hands on experience with...Full timeShift work
- ...research and analysis of scheduled and on demand vulnerability assessments and post results. Conduct POC and implement IoT and OT security solutions to client unmanaged IoT/OT assets. Work with asset owner to safeguard assets and patch any unresolved vulnerabilities. Ensure...
- Senior Security Engineer Immediate need for a talented Senior Security Engineer. This is a 12+months contract opportunity with long-term potential and is located in Atlanta, GA (Onsite). Please review the job description below and contact me ASAP if you are interested....Contract workLocal areaImmediate start
$139k - $249.26k
...Job Requisition ID #26WD99882Position OverviewAutodesk is looking for an experienced, enthusiastic Product Security Engineer who will be an important partner and in creating and delivering trusted solutions for the Fusion Platform organization. As a Product Security Engineer...Permanent employmentFull timeFor contractors- ...leadership, accountability, and collaboration, we equip our teams to work at the highest levels possible.Job Summary: The Security Incident Response Engineer is responsible for detecting, investigating, containing, eradicating, and recovering from cybersecurity incidents...Full timeImmediate startFlexible hours
- ...from Jconnect INC . Below is the requirement with my client. Please let me know if you are available for this role. Title : API Security Engineer Location : Atlanta, GA Duration: Fulltime JOB DESCRIPTION : Must-Have Strong understanding of API Security, OWASP API Top...Full timeImmediate startRelocationShift work
- ...growing company that invests in its people and their ability to drive real progress.Security Observability EngineerJob OverviewWe are seeking an experienced Security Observability Engineer to lead the migration, optimization, and secure operation of our log ingestion and...Full timeWorldwide
- ...environmental impact while maximizing resource efficiency. As we continue to expand and innovate, we are seeking an experienced Security Engineer to design, implement, and operate the security controls that protect our people, systems, and operational technology across a...Live out
- ...the software development lifecycle, including threat modeling, security testing, and penetration testing. Plans, builds, and enhances... ...goals for the job area.6. Collaborates closely with product and engineering teammates to apply security architecture guidance,...Full timePart timeShift workDay shift
$10 per hour
...tier-1 queue here. Detection & Response engineers own their detections end to end: you write... ...your team is paged when they fire. The security team is spread across the globe with a... ...modern SIEM or detection pipeline (Panther, Elastic, Splunk, or similar). What matters is...Work at officeLocal areaImmediate startRelocationRelocation packageFlexible hours- ...SUMMARY: Implements, configures, monitors, and manages the internal cyber environment to ensure operational availability and security. Accountable for the day-to-day health and performance of cyber security tools and products. Accountable for all stages in asset management...Permanent employmentTemporary workFor contractorsWork experience placementFor subcontractorWork at officeLocal areaRemote workWork from homeFlexible hours
- ...Senior PKI Security Engineer Atlanta, GA (Hybrid) GA Locals Preferred, Relocation is OK 13+ Years must Must-Needed Skills * Cyber Security * Public Key Infrastructure (PKI) * AWS PKI Services – KMS, CloudHSM, ACM, CloudFront, Secrets Manager, CloudTrail...Temporary workLocal areaRelocation
$142.8k - $274.8k
...Principal Security Engineer The Microsoft Offensive Research & Security Engineering (MORSE) team is looking for a Principal Security Engineer to help secure Microsoft's products and devices. MORSE is responsible for securing Microsoft's operating systems and platform...Local areaWorldwide$165k - $200k
Atlanta (Remote Friendly)Security /Full Time /RemoteGreenlight is a family technology company on a mission to help families raise financially... ...morning.Greenlight is looking for a Staff Offensive Security Engineer for our Security team. This individual will be responsible for...Full timeWork at officeLocal areaRemote workWork from homeDay shift$150k - $251.9k
...are growing rapidly and hiring top talent with leading AI skills across engineering, sales, product, marketing, and beyond as we build the leading digital operations platform. Senior Security Engineer — Cloud Security (Platform Engineering, Kubernetes & Identity)...Work at officeLocal areaFlexible hours2 days per week
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Elastic Security Engineer. Be the first to apply!
- dlp security engineer Atlanta, GA
- application security engineer Atlanta, GA
- security software engineer Atlanta, GA
- aws cloud security engineer Atlanta, GA
- sr security engineer Atlanta, GA
- endpoint security engineer Atlanta, GA
- sr information security engineer Atlanta, GA
- security infrastructure engineer Atlanta, GA
- entry level security engineer Atlanta, GA
- cloud security engineer Atlanta, GA



