Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Principal Offensive Cyber Research Engineer

Twenty

About the Company

America is under sustained cyber attack. Our adversaries infiltrate our networks, steal our IP, and degrade the digital infrastructure that modern life runs on. They’ve learned—correctly—that those attacks rarely produce consequences.

Twenty was founded to change that, by making our adversaries think twice before they attack us. Our vision is American and allied primacy in cyberspace—a future where they cannot contest us, deterrence is assured, and the free world remains secure.

Founded in 2024, Twenty Technologies ( industrializes offensive cyber operations for the U.S. and its allies. Headquartered in Arlington, Virginia, Twenty has raised $168M from Khosla Ventures, Accel, Caffeinated Capital, Friends & Family Capital, Point72 Ventures, General Catalyst, and In-Q-Tel.

Mission | On Site | Full Time | Active TS/SCI with CI Polygraph

Role Summary

You will serve as the preeminent technical authority for Twenty’s offensive cyber research program—setting the long-term vision, raising the bar on technical execution, and driving breakthroughs in adversary emulation and attack automation. Your work will shape how we build and standardize offensive capabilities that support real-world national security outcomes. You’ll partner closely with engineering, product, and operations leaders, and you’ll regularly advise executive leadership and government stakeholders on strategy, technical risk, and capability evolution.

What You’ll Do

  • Define and drive the long-term technical vision and roadmap for Twenty’s offensive cyber research and capabilities.
  • Serve as the principal technical advisor to executive leadership on strategy, capability development, and technical risk.
  • Lead groundbreaking research into advanced adversary behaviors and next-generation offensive cyber techniques.
  • Establish company-wide standards, frameworks, and best practices for offensive tooling and engineering quality.
  • Architect and guide development of advanced adversary emulation and attack automation systems built for scale.
  • Lead technical governance (e.g., architecture reviews) and provide authoritative guidance on complex decisions.
  • Mentor Staff and Senior engineers, build growth plans, and strengthen the organization’s technical leadership bench.
  • Recruit, interview, and assess top-tier offensive cyber talent to build and sustain world-class teams.
  • Lead technical engagements with senior government stakeholders—translating complex capabilities into decision-grade clarity.
  • Build strategic research partnerships across government, academia, and industry to accelerate innovation and impact.

Who You Are

  • You’re motivated by mission-driven work that helps defend democracies in the cyber domain.
  • You set a high technical bar and raise it—through clear standards, strong reviews, and hands‑on mentorship.
  • You’re calm under pressure and comfortable making high-stakes decisions with incomplete information.
  • You think in systems: tradeoffs, second-order effects, operational constraints, and long-term maintainability.
  • You have the presence to influence executives and senior government stakeholders without overselling.
  • You balance innovation with operational discipline—prioritizing safety, rigor, and responsible stewardship.
  • You communicate with precision: crisp written artifacts, clear technical narratives, and direct feedback.

Must Have

  • You have 8–12 years of distinguished experience across offensive cyber operations, advanced research, and software development.
  • You have served in senior technical leadership roles in one or more of: government/military DNEA, Exploitation Analyst (EA) operations, elite red teams, or nation‑state threat research.
  • You have defined technical strategy and led large-scale initiatives that shipped durable, high-impact capabilities.
  • You have expert‑level understanding of adversary behaviors and TTPs, including deep familiarity with MITRE ATT&CK.
  • You have demonstrated technical judgment in designing complex, scalable systems and establishing engineering standards.
  • You have led and mentored senior engineers, including setting expectations, running technical reviews, and developing talent.
  • You have strong executive and customer communication skills, with experience briefing senior leaders and shaping decisions.
  • You are eligible to obtain a U.S. Government security clearance.

Nice to Have

  • You have deployed offensive cyber capabilities into operational use with measurable mission impact.
  • You have a track record of thought leadership through publications, conference talks, or widely respected technical writing.
  • You have deep background in malware development, vulnerability research, or exploit engineering with notable discoveries.
  • You hold advanced technical certifications (e.g., OSEE, GXPN, or equivalent government credentials).
  • You have experience with multi‑source intelligence fusion or cross‑domain operational environments.
  • You have familiarity with acquisition/requirements processes and guiding capability development across multiple teams.

Tech Environment (You Might Work With)

  • You might work with modern systems programming and scripting languages (e.g., C/C++, Rust, Python).
  • You might work with cloud environments and cloud security across major providers (AWS, Azure, GCP).
  • You might work with graph-based analysis and large‑scale data processing systems.
  • You might work with AI/ML workflows applied to adversary emulation and automation.
  • You might work with containerized infrastructure, CI/CD, and production‑grade observability.

Security / Work Environment

This role requires eligibility to obtain a U.S. Government security clearance. Some work may involve operating in a controlled environment.

Benefits
What's on the table:

  • Health. Medical, dental, and vision plan options. Life / AD&D, disability coverage options.
  • Family. Paid parental leave for eligible full‑time employees. 12 weeks for birthing parents, 4 for non‑birthing parents, 6 weeks for adoptive, foster, or intended parents through surrogacy.
  • Vacation. Paid holidays and flexible PTO. Take what you need.
  • Retirement. 401(k) with pre‑tax and Roth options. HSA/FSA options, dependent care FSA.

Benefits vary by location, role, and eligibility. Full plan details provided during the interview and offer process.

Due to U.S. government contract and security requirements, this role is limited to U.S. citizens . Some positions may also require eligibility to obtain and maintain a U.S. Government security clearance. Any active clearance requirement will be listed in the role description .

Twenty is an equal opportunity employer. We consider all qualified applicants without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, veteran status, disability, or any other protected status, consistent with applicable law.

If you need a reasonable accommodation during the hiring process, let us know and we will work with you.

#J-18808-Ljbffr

Vacancy posted 18 hours ago
Similar jobs that could be interesting for youBased on the Principal Offensive Cyber Research Engineer in Arlington, VA vacancy
  • $300k - $320k

     ...a whole. Our team is a quickly growing group of committed researchers, engineers, policy experts, and business leaders working together to build...  ...Are ~5+ years of hands-on experience in red teaming and offensive security operations ~ Deep expertise in at least two of:... 
    Suggested
    Work at office
    Visa sponsorship
    Flexible hours

    Anthropic

    Washington DC
    19 hours ago
  •  ...vital systems, ensuring vulnerabilities are identified and remediated effectively. The ideal candidate will have over 5 years in offensive security, with expertise across various applications and platforms. Candidates will enjoy a competitive salary and benefits... 
    Suggested

    TwinThread LLC

    McLean, VA
    1 day ago
  •  ...concept engagements with prospective partners. We are seeking a Principal Security Engineer to join at the earliest stage and ensure security is...  ...network and information security, with demonstrated depth in offensive or adversarial security; red team experience strongly... 
    Principal
    Full time
    Contract work
    Work at office
    Remote work
    Shift work

    Iridium

    McLean, VA
    2 days ago
  • $145k - $200k

     ...Offensive Security EngineerPalantir builds the world's leading software for data-driven decisions and operations. By bringing the right...  ...the way a real attacker would. As an Offensive Security Engineer, you will test internal applications and infrastructure, chain... 
    Suggested
    Work experience placement
    Work at office
    Remote work
    Work from home
    Relocation package

    Palantir Technologies

    Washington DC
    2 days ago
  • $191k - $253k

     ...TEAMWe're seeking a Staff Threat and Attack Research Engineer to join our Security organization. The...  ...LL DOMonitor and analyze sophisticated cyber threats targeting Anduril's products,...  ....Engage cross functionally with the offensive security team on product and infrastructure... 
    Suggested
    Full time
    Work experience placement
    Immediate start

    Anduril Industries

    Washington DC
    14 hours ago
  • $102k - $177.1k

     ...Any City) {+ 25 more}Job Description:Johnson & Johnson’s MedTech cybersecurity team is recruiting for an experienced Principal Product Security Engineer to be located in Danvers, MA. Remote work options may be considered on a case-by-case basis and if approved by the Company... 
    Principal
    Full time
    Local area
    Immediate start
    Remote work

    Johnson & Johnson

    Washington DC
    14 hours ago
  • $142.8k - $274.8k

     ...Principal Security EngineerThe Microsoft Offensive Research & Security Engineering (MORSE) team is looking for a Principal Security Engineer to help secure Microsoft's products and devices.MORSE is responsible for securing Microsoft's operating systems and platform technologies... 
    Principal
    Ongoing contract
    Local area
    Worldwide

    Microsoft Corporation

    Reston, VA
    19 hours ago
  • A technology company is seeking a Senior Principal Cyber Systems Engineer to work in a DevSecOps environment. The ideal candidate will integrate various software components within a secure architecture and support the migration of workflows to OCP. Key responsibilities... 
    Principal

    Jobleads-US

    Herndon, VA
    5 days ago
  •  ...HAVE AN ACTIVE TS/SCI WITH CI POLY CLEARANCE****** Software Engineer IV We are looking for a Software Engineer to join our diverse...  ...systems running in a containerized environment. For Senior Principal level: A Bachelor's degree with 9+ years of relevant... 
    Principal
    Work at office

    SHLD, Inc.

    Herndon, VA
    15 days ago
  • $155k - $230k

     ...Job Description This is a remote position. Position Title: Principal Architect, Technology – Enterprise Security   Base...  ...technical design and to communicate security architecture to both engineering teams and executive stakeholders. Essential Duties and... 
    Principal
    Local area
    Remote work
    Flexible hours

    Ziply Fiber

    Washington DC
    21 days ago
  •  ...WITH ABILITY TO OBTAIN TO PASS A POLY CLEARANCE****** Software Engineer IV Our client's Space & Intelligence Sector is looking...  ...with containers and automated testing frameworks. For Senior Principal level: A Bachelor's degree with 9+ years of relevant experience... 
    Principal
    Work at office

    SHLD, Inc.

    Herndon, VA
    15 days ago
  • $112.2k - $196.4k

     ...you to achieve your full potential. Unleash your talent and redefine what’s possible. Job Description: Parsons is seeking an Offensive Cyber Operations Analyst to support the Office of the Deputy Assistant Secretary of War for Cyber Operations Policy in developing, implementing... 
    Work at office
    Flexible hours

    Parsons Corporation

    Alexandria, VA
    3 days ago
  • $61k - $101k

     ...Salary: $61,000 - 101,000 per year Requirements: We have experience leading engineering teams that deliver security solutions and operations on cloud-based platforms and applications We have experience building security engineering products and platforms used at... 
    Principal
    Full time

    J.P. Morgan

    Washington DC
    26 days ago
  •  ...Job Description Job Description *****MUST HAVE AN ACTIVE TS/SCI WITH CI POLY CLEARANCE****** Software Engineer III Principal Cyber Software Engineer (Front End/UI-Focused) Experienced front-end software engineer to develop services using modern techniques such... 
    Principal

    SHLD, Inc.

    Herndon, VA
    15 days ago
  • $121.4k - $182k

     ...Principal Cyber Systems Engineer or Sr. Principal Cyber Systems EngineerRELOCATION ASSISTANCE: Relocation assistance may be availableCLEARANCE TYPE: PolygraphTRAVEL: Yes, 10% of the TimeDescription At Northrop Grumman, our employees have incredible opportunities to work... 
    Principal
    For contractors
    Work at office
    Local area
    Worldwide
    Relocation package
    Shift work

    Navstar

    Fairfax, VA
    4 days ago
  • $209k

     ...that support one of the largest and most complex technology environments in the region. We are looking for an experienced Security Engineer to help modernize our enterprise directory services and identity infrastructure while improving reliability, scalability, and... 
    Principal
    Temporary work
    Flexible hours

    Coupang

    Washington DC
    9 days ago
  •  ...Job Description Job Description Job Description: Senior Principal Cyber Systems Engineer (DevOps Engineer) The selected candidate will integrate a variety of software components in a secure container architecture working with cross functional teams to debug critical... 
    Principal

    SHLD, Inc.

    Herndon, VA
    15 days ago
  • $148.5k - $223.9k

     ...are the future of Salesforce.Job Title: Senior Product Security Engineer, InfrastructureJob Category: Technology / SecurityLocation:...  ...with some familiarity with penetration testing methodologies or offensive security techniques.You have experience participating in or... 
    Full time

    Salesforce

    Washington DC
    14 hours ago
  • $124k - $140k

     ...Implements technical solutions to novel research problems. Collaborates with more senior research staff to transform research ideas into implemented solutions. Contributes to larger team efforts in implementing research prototypes. Contributes to documentation and publications... 
    Full time
    Work experience placement
    Local area

    The University of Southern California

    Arlington, VA
    2 days ago
  • ## Senior Principal Reverse EngineerApplylocations: Arlington...  ...full-spectrum cyber, data operations, systems...  ..., vulnerability research, ubiquitous technical...  ...with hardware reverse engineering to support this critical...  ...laboratory- Background in offensive security or... 
    Principal
    Contract work
    Immediate start

    Nightwing Group

    Arlington, VA
    1 day ago
  •  ...About Galois Who We Are:  From building digital engineering tools that make space exploration safer to verifying cryptographic libraries...  ...where failure is unacceptable. We are a community of researchers, engineers, and operations people dedicated to creating... 
    Local area
    Immediate start

    Galois

    Arlington, VA
    3 days ago
  • $86.8k - $198k

     ...assessments within a fast-paced environment, collaborating with offensive security reporting teams, and partnering with consulting teams...  ...and non-technical stakeholders. Contribute to security research and promote knowledge sharing across the team. Join us. The world... 
    Full time
    Contract work
    Part time
    Local area
    Remote work

    Booz Allen Hamilton

    McLean, VA
    14 hours ago
  • $115k - $190k

     ...Web Developer Security Engineer Clearance Requirement: Public Trust (Tier 2) Location: Remote/Hybrid (as approved by customer...  ...GIAC Web Application Penetration Tester (GWEB), OR CASE Offensive Security (One Required): OSWE, OR OSCP Foundational Security... 
    Full time
    Remote work

    Nationwide IT Services

    Washington DC
    more than 2 months ago
  •  ...the semiconductor industry. Our mission is to enable every engineering organization to build its own self-improving agentic design workforce...  ...closely with leading semiconductor companies to turn advanced research into technology that improves engineering productivity, design... 
    Full time

    International Recruiting LLC

    Washington DC
    a month ago
  • $130.47k

    Agency: SenateDepartment: Legislative BranchSalary: Starting at $130,469 Per year (AD 00)Dates: Open 09/23/2026 to 10/07/2026Schedule: Full-timeWork type: PermanentRelocation: FalsePosition ID: req1091Document ID: 885951400Grade: AD 00Job category: Information Technology...
    Principal

    United States Government

    Washington DC
    1 day ago
  •  ...Description GDIT is seeking a highly skilled and multi-faceted Cyber Analyst Principal for a critical contract role supporting a commercial cloud...  ...solutions. This role requires a unique blend of technical engineering prowess, security assessment and auditing skills, deep... 
    Principal
    Full time
    Contract work

    General Dynamics Information Technology

    McLean, VA
    more than 2 months ago
  • $72k - $129k

     ...Top 10 vulnerabilities. Additionally, you will leverage your offensive security skills to support Verizon’s critical incident response...  ...security testing environments using Docker and AWS.Partnering with engineering teams to guide them through identifying and remediating OWASP... 
    Full time
    Temporary work
    Part time
    Work experience placement
    Remote work
    Work from home
    Shift work

    Verizon

    McLean, VA
    1 day ago
  • $50k - $175k

     ...Job Description Job Description A3 Technology, Inc. is seeking a Principal Engineer to join our team in Washington, DC. Essential Job Duties: Provide Chief Security Architect–level expertise to develop, review, and validate cybersecurity architectures, designs... 
    Principal
    Contract work

    A3 Technology, Inc.

    Washington DC
    a month ago
  • $124.54k - $180k

     ...intelligence insights and vulnerability research aligned with frameworks such as NIST 80...  ...in discussions with leadership, engineering teams, and mission stakeholders as required...  ...of penetration testing methodologies, offensive security techniques, and industry tools... 
    Currently hiring

    GovCIO

    Washington DC
    2 days ago
  • Jira Service Management/ITSM SME Responsible for the technical specification and implementation of Atlassian and or Jira Service Management product. Coordinate with Project Manager to plan roadmaps, sprints and releases on the ITSM Process Configuration ITSM Tool - ...
    Principal

    Samprasoft

    Washington DC
    3 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Principal Offensive Cyber Research Engineer. Be the first to apply!