Webapp Offensive Security Engineer (Cybersecurity)
ΠΡΡΡ & Π‘ΠΎΠΏΡΠΎΠ²ΠΎΠ΄
ΠΠ»Ρ ΠΌΡΡΡΠ° Ρ ΡΡΠΎΠΉ Π²Π°ΠΊΠ°Π½ΡΠΈΠ΅ΠΉ Π½ΡΠΆΠ΅Π½ Plus
ΠΠΏΠΈΡΠ°Π½ΠΈΠ΅ Π²Π°ΠΊΠ°Π½ΡΠΈΠΈ
TL;DR
Webapp Offensive Security Engineer (Cybersecurity): Conducting hands-on web application penetration testing to identify complex vulnerabilities and edge cases with an accent on manual exploitation and business-logic flaws. Focus on partnering with software engineers to translate manual findings into durable, autonomous product coverage for the NodeZero platform.
Location: Must be based in the US
Salary: $196,000β$242,000
Company
is a cybersecurity company providing autonomous pentesting solutions to help organizations proactively identify and verify exploitable attack vectors.
What you will do
- Perform full-scope manual web application penetration tests against live customer environments.
- Identify coverage gaps and blind spots in the autonomous NodeZero platform.
- Develop production-safe proof-of-concept exploits to demonstrate complex attack chains.
- Collaborate with software engineers to define detection logic and improve product coverage.
- Maintain a library of regression and benchmark test cases to ensure long-term product quality.
- Author technical research and blog posts regarding new exploits and attack methodologies.
Requirements
- Must be based in the US
- Extensive hands-on experience conducting full-scope web application penetration tests.
- Deep practical knowledge of web vulnerability classes like SQLi, XSS, SSRF, IDOR, and auth bypass.
- Strong proficiency with proxy tools such as Burp Suite and browser developer tools.
- Ability to script proof-of-concept exploits using Python or similar languages.
- Proven history of security research, CVE discoveries, or bug bounty contributions.
Nice to have
- Experience with autonomous or AI-driven pentesting tools.
- Background in writing detection content like Nuclei templates or custom Burp extensions.
- Familiarity with Postgres, Neo4j, and AI/LLM agentic workflows.
- OSCP, OSWE, or comparable offensive security certifications.
Culture & Benefits
- Competitive salary and equity package in the form of stock options.
- Comprehensive health, vision, and dental insurance for employees and families.
- Flexible vacation policy and generous parental leave.
- Inclusive, collaborative culture that values diversity and continuous learning.
- Remote-first work model with opportunities for hybrid collaboration.
ΠΡΠ΄ΡΡΠ΅ ΠΎΡΡΠΎΡΠΎΠΆΠ½Ρ: Π΅ΡΠ»ΠΈ ΡΠ°Π±ΠΎΡΠΎΠ΄Π°ΡΠ΅Π»Ρ ΠΏΡΠΎΡΠΈΡ Π²ΠΎΠΉΡΠΈ Π² ΠΈΡ ΡΠΈΡΡΠ΅ΠΌΡ, ΠΈΡΠΏΠΎΠ»ΡΠ·ΡΡ iCloud/Google, ΠΏΡΠΈΡΠ»Π°ΡΡ ΠΊΠΎΠ΄/ΠΏΠ°ΡΠΎΠ»Ρ, Π·Π°ΠΏΡΡΡΠΈΡΡ ΠΊΠΎΠ΄/ΠΠ, Π½Π΅ Π΄Π΅Π»Π°ΠΉΡΠ΅ ΡΡΠΎΠ³ΠΎ - ΡΡΠΎ ΠΌΠΎΡΠ΅Π½Π½ΠΈΠΊΠΈ. ΠΠ±ΡΠ·Π°ΡΠ΅Π»ΡΠ½ΠΎ ΠΆΠΌΠΈΡΠ΅ "ΠΠΎΠΆΠ°Π»ΠΎΠ²Π°ΡΡΡΡ" ΠΈΠ»ΠΈ ΠΏΠΈΡΠΈΡΠ΅ Π² ΠΏΠΎΠ΄Π΄Π΅ΡΠΆΠΊΡ. ΠΠΎΠ΄ΡΠΎΠ±Π½Π΅Π΅ Π² Π³Π°ΠΉΠ΄Π΅ β