Staff Offensive Security Engineer
Eden Prescott
Job Description
Staff Offensive Security Engineer — Red Team
\n \nAbout the Opportunity
\n \nEden Prescott is partnering with one of our top FinTech clients (a16z backed) to hire a Staff Offensive Security Engineer to join its Red Team.
\n \nThis is a highly technical, hands-on role for an experienced offensive security practitioner who can think and operate like a real-world adversary. You’ll be responsible for identifying meaningful security weaknesses across web applications, mobile applications, cloud infrastructure, identity systems, and corporate environments, then partnering with engineering and security teams to improve defenses.
\n \nWe’re specifically looking for someone with deep experience conducting both web and mobile application red team assessments. This is a core requirement for the role.
\n \nYou’ll operate at Staff level, owning complex offensive security engagements, helping shape red team strategy, mentoring other engineers, and communicating technical risk effectively from individual engineers through executive leadership.
\n \nWhat You’ll Do
\n- \n
- Plan and execute sophisticated red team exercises that simulate realistic adversary behavior and attack paths. \n
- Conduct advanced penetration testing and offensive security assessments across web applications, mobile applications (iOS/Android), APIs, cloud infrastructure, identity systems, and corporate environments. \n
- Identify and exploit vulnerabilities across modern application architectures and demonstrate realistic business impact. \n
- Test authentication, authorization, session management, access controls, APIs, and other critical application security boundaries. \n
- Conduct adversarial simulations alongside detection, incident response, and security engineering teams. \n
- Evaluate and bypass defensive technologies including EDR, AV, IDS/IPS, and other detection controls. \n
- Develop scripts, tooling, and automation to improve offensive security capabilities and testing efficiency. \n
- Perform threat modeling against new technologies, architectures, and business processes. \n
- Partner directly with engineering teams to understand vulnerabilities, prioritize risk, and drive effective remediation. \n
- Communicate offensive security findings clearly to audiences ranging from deeply technical engineers to senior executives. \n
- Support or lead security incidents originating from penetration testing or red team findings. \n
- Mentor other offensive security engineers and help raise the technical bar across the team. \n
- Research emerging attack techniques and develop testing methodologies for new technologies and attack surfaces. \n
What You Bring
\n- \n
- 5+ years of experience in offensive security, red teaming, advanced penetration testing, or closely related security disciplines. \n
- Demonstrated hands-on experience red teaming and penetration testing modern web applications. \n
- Demonstrated hands-on experience conducting mobile application security assessments across iOS and/or Android environments. \n
- Strong understanding of modern web and mobile attack surfaces, including authentication, authorization, APIs, business logic, client-side security, and application architecture. \n
- Experience designing and executing realistic, multi-stage attack scenarios rather than relying solely on automated vulnerability scanning. \n
- Deep understanding of common network protocols and technologies including DNS and TCP/IP. \n
- Strong experience operating in macOS and Linux environments. \n
- Experience attacking modern software development and infrastructure environments, including CI/CD pipelines, Kubernetes, Docker, AWS and/or GCP. \n
- Knowledge of defensive security technologies and techniques including EDR, IDS/IPS, packet capture, network analysis, endpoint security, and methods used to evade or bypass them. \n
- Deep understanding of the MITRE ATT&CK framework and how adversary techniques map to real-world offensive operations. \n
- Strong knowledge of identity, authentication, authorization, and access-control security fundamentals. \n
- Ability to read and write code in languages such as Python, Go, and JavaScript. \n
- Ability to independently research unfamiliar technologies, develop an offensive testing methodology, and execute against it. \n
- Strong written and verbal communication skills with the ability to translate technical vulnerabilities into clear business risk. \n
- A remediation-focused mindset — you care about helping teams fix vulnerabilities, not simply finding them. \n
- Experience mentoring or developing other security engineers. \n
- Ability to operate effectively within distributed, highly collaborative engineering teams. \n
- Strong written communication across tools such as Slack, Jira, GitHub, and email. \n
What We’re Looking For
\n \nThe strongest candidates are offensive security engineers who are naturally curious and persistent. You enjoy understanding how systems work, challenging assumptions, chaining seemingly minor weaknesses into meaningful attack paths, and approaching environments from the perspective of a sophisticated adversary.
\n \nCompensation
\nBase Salary + significant equity + benefits
$270k
...They’re looking for a Principal Application Security Engineer to take ownership of application and product... ...background in application security, product security, offensive security, or security engineering, ideally operating at Staff or Principal level \n Proven experience...SuggestedRemote workFlexible hours- ...Job Description Security Engineer Department: Engineering Location: Remote (US) Type: Contract-to-hire Intro: Onramp... ...every event into a stronger playbook Build AI-driven offensive testing: continuous, agent-assisted pen testing and attack simulation...SuggestedFull timeContract workRemote work
- ...Job Description Staff Security Engineer – AI / Agent Security \n Remote (US) | Mid-$200Ks + Early-Stage Equity \n \n We’re partnering... ...in areas such as Product Security, Application Security, offensive security, detection engineering, or security research \n...SuggestedRemote work
- ...Job Description We're looking for a hands-on Senior Security Engineer to join one of our clients and own the technical security posture... ...workflows. \n \n \n Vulnerability Management & Offensive Security \n \n Continuously identify, assess, prioritize...SuggestedFixed term contractRemote workFlexible hours
- ...Job Description AI Systems Engineer: Offensive Security Agents \n Zealot (zealotlabs.com) builds AI systems that find zero-days, emulate target devices, and develop working exploits for U.S. defense and intelligence customers. We're backed by tier-1 U.S. venture...Suggested
$190k - $210k
...Job Description Security Engineer, WAF & API Security \n You are a software engineer who specializes in security. This role owns Layer 7 defense for a cloud-native fintech environment: WAF, API security, and bot protection for customer-facing applications running...Full timeRemote work$146k - $169k
...Job Description \n GoodLeap’s security team safeguards the organization’s information assets while enabling the business — spanning... ...trust, and technology governance. As a Senior Product Security Engineer, you’ll partner with product and engineering teams to make what...- ...Job Description ***CONTRACT***- 6 Months -Cloud Security - Microsoft Azure - Remote ******Must have at least 4+ years of experience... ...for a highly talented and motivated Senior Security Cloud Engineer to join the Engineering and Operations team working on the Microsoft...Daily paidFull timeContract workImmediate startRemote work
$126k - $188k
...expect to play a central role in helping protect Indeed's applications and services by identifying security risks early, partnering closely with product and engineering teams, and guiding practical remediation. This work requires exceptional technical judgment, clear communication...Work experience placementLocal areaRemote work$125k - $139k
...certified company. We prefer candidates who reside in an SBA HUBZone or are willing to relocate. Role Overview As a Senior Security Engineer at Packaged Agile, you will provide technical leadership helping a federal client protect sensitive information as it rapidly...Contract workLive inLocal areaRemote workRelocation- ...MANTECH seeks a motivated, career and customer-oriented Senior Network Security Engineer to join our team in either Fairmont, WV, Boulder CO, or REMOTE (US-Based) . The Senior Network Security Engineer will serve as a technical anchor, driving network modernization...Local areaRemote work
$120k - $150k
...Networking, Private Managed Cloud, and Help Desk. We are a team of engineers and technicians who tackle new projects, challenges, and... ...team! Description We are looking for a Senior Network Security Engineer to join our network engineering and design team. You...Permanent employmentRemote work$112.5k - $202.5k
...Do you like building solutions to help improve the security of the company? Do you want to collaborate with industry-leading security... .... You will report directly to the Director of Security Engineering. You will have the opportunity to address global security challenges...Work experience placementWork at officeWorldwide$60 - $76 per hour
...Staff Pharmacist We're building a world of health around every individual — shaping a more connected, convenient and compassionate... ...). Free of pending felony charges or convictions for criminal offenses involving controlled substances. Preferred Qualifications: Bachelor...Hourly payFull time$60 - $73 per hour
...Staff Pharmacist We're building a world of health around every individual — shaping a more connected, convenient and compassionate... ...Free of pending felony charges or convictions for criminal offenses involving controlled substances Preferred Qualifications:...Hourly payFull time$60 - $76 per hour
...Staff Pharmacist We're building a world of health around every individual — shaping a more connected, convenient and compassionate... ...APhA) No pending felony charges or convictions for criminal offenses involving controlled substances Preferred Qualifications...Hourly payFull timeTemporary workLocal area- ...Job Description Reports To: Network Security Architect Department: Information Technology... ...grow, we are seeking a Network Security Engineer to operationalize the CoE's architectural... ...Security Architects and other technology staff to advance enterprise initiatives in...Full timeLocal areaRemote work
$60 - $76 per hour
...prescriptions to helping manage chronic and specialty conditions. As a Staff Pharmacist, you have a critical role at the forefront of... ...) Free of pending felony charges or convictions for criminal offenses involving controlled substances Preferred Qualifications...Hourly payFull timePart timeLocal area- ...EY is seeking a Senior Attack & Penetration Tester to strengthen client resilience through sophisticated offensive security operations. You will lead testing across AD, cloud, web, mobile, APIs, and networks, emulating real adversaries and delivering actionable remediation...
- ...Job Description Penetration Tester / Offensive Security Consultant \n Location: Remote (US or Canada) \n \n About Us \n CyberGuard... ...—you can explain technical exploits to execs and engineers alike \n • Organized, dependable, and passionate about helping...Remote work
- ...seeking a forward-deployed delivery leader and hands-on AI and SaaS Security Architect to lead complex AI Workflow and SaaS Security... ...engagement structure, manage client expectations, lead architects and engineers, and personally take ownership of technical work when needed....Work at office
- ...Job Description Who We Are Accutive Security partners with some of the world’s most advanced and highly regulated organizations... .... We are rapidly growing and seeking senior-level engineers and consultants who will bring deep technical expertise alongside...Remote work
$93k - $115k
Job DescriptionECS is seeking a TS-cleared Senior Information Systems Security Engineer (ISSE) to support one of our mission critical programs for the Department of Justice in Clarksburg, West Virginia.Please Note: This position is contingent upon contract award.Salary...Contract work- ...Job Description Job Title: Cyber Security Engineer Location: Remote Duration: Contract to Hire Position Summary: Cyber... ...and modern application practices. And it brings an offensive mindset to the environment, validating our defenses through...Contract workRemote work
- ...Threat Detection and Response Team (TDR) is focused on automating security detection, responding to security incidents, and working with... ...while working closely with other team members. As a security engineer, you will have direct impact building capabilities for a new program...
$125k - $139k
...company. We prefer candidates who reside in an SBA HUBZone or are willing to relocate. \n \n Role Overview \n As a Senior Security Engineer at Packaged Agile, you will provide technical leadership helping a federal client protect sensitive information as it rapidly...Contract workLive inLocal areaRemote workRelocation- ...Threat Detection and Response team (TDR) is focused on automating security detection, responding to security incidents, and working with... ...and process while mentoring other team members. As a senior engineer on the team, you will have direct impact building, optimizing,...
$110k - $120k
...\n Position Summary \n We are seeking a highly motivated Security Engineer to join our team. This is a fully remote position. The successful... ...and security improvement initiatives. \n Train staff on security awareness and cybersecurity best practices. \n...Temporary workCurrently hiringRemote workWork from homeFlexible hours- ...Job Description Founding Security Engineer | Series B Dev Infrastructure Company | Remote \n \n Most "security engineer" job posts are lying to you. They say "wear many hats" and mean "inherit five years of someone else's backlog." This one's different: you'd be...Remote work
- ...Job Description Job title: - Security IDaaS Engineer & Sr. IDaaS Engineer \n Duration: - 12 Months (Possible for Extension) \n FULLY REMOTE JOB \n \n 02 Openings \n \n Job Description: \n Experience - Must have: \n \n IDaaS, OAuth, IDM, IGA \n...Work experience placementRemote work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Staff Offensive Security Engineer. Be the first to apply!
- application security engineer West Virginia
- aws cloud security engineer West Virginia
- senior application security engineer West Virginia
- graduate assistant engineering
- assistant product developer
- assistant engineer
- staff automation engineer
- senior staff systems engineer
- technology administrator
- engineering aide



