Назад
обновлено 5 дней назад

Staff Offensive Security Engineer (Fintech)

217 000 - 255 000$
Формат работы
hybrid
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Staff Offensive Security Engineer (Fintech): Planning and executing red team exercises, penetration tests, and adversarial simulations across applications, infrastructure, and physical environments with an accent on attack simulation, detection evasion, and risk remediation. Focus on developing security testing tools, strengthening incident readiness, and mentoring offensive security engineers.

Location: Bellevue, WA; Menlo Park, CA; or New York, NY, with in-person attendance expected at least 3 days per week.

Base pay: $217,000–$255,000 USD annually for Zone 1 locations; additional compensation may include bonus, equity, and benefits. Other compensation zones range from $169,000 to $224,000 annually.

Company

Robinhood is a financial technology company building products intended to expand access to financial services.

What you will do

  • Plan and execute red team exercises and long-term adversarial assessments.
  • Perform threat modeling and penetration testing across applications, infrastructure, and corporate environments.
  • Develop scripts and tools to automate security testing activities.
  • Partner with detection and response teams on adversarial simulations and incident readiness.
  • Communicate findings, prioritize risks, and collaborate with engineering teams on remediation.
  • Mentor offensive security engineers and lead security incidents arising from testing findings.

Requirements

  • 8+ years of experience in red team operations or advanced penetration testing.
  • Experience mentoring or supporting the development of security engineers.
  • Knowledge of DNS, TCP/IP, macOS, Linux, access and identity security fundamentals, and the MITRE ATT&CK Framework.
  • Experience attacking modern software stacks, including CI systems, Kubernetes, Docker, AWS, and GCP, with the ability to recommend hardening measures.
  • Knowledge of defensive tools and techniques such as IDS/IPS, packet capture, network analysis, antivirus, and EDR, including evasion methods.
  • Ability to read and write Python, Go, and JavaScript, research unfamiliar technologies, execute testing plans, and document technical findings clearly.

Nice to have

  • Financial technology experience.
  • Experience serving as a technical lead.

Culture & Benefits

  • In-person work environment focused on collaboration, accountability, security, and ethics.
  • 100% paid employee health insurance and 90% dependent coverage.
  • Annual lifestyle wallet for wellness, learning, and development.
  • Family-forming and fertility benefits, plus dedicated mental health support.
  • Paid holidays, time off, sick time, parental leave, catered meals, stocked kitchens, and location-specific commuter benefits.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →