Senior Security Engineer, Offensive Security
Senior Security Engineer executing sophisticated red team operations, building custom offensive tooling, and applying AI/automation to scale adversary simulations across cloud and Kubernetes environments.
About the job
What You'll Do
- Plan and execute red team engagements end-to-end, simulating real-world threat actors across cloud infrastructure (AWS, GCP), Kubernetes, CI/CD pipelines, and corporate environments
- Build and maintain custom offensive tooling, automation frameworks, and engagement infrastructure, treating offensive operations as a software engineering problem
- Develop custom payloads and evasion capabilities tailored to Datadog's environment and modern defensive controls (EDR, SIEM, network monitoring)
- Improve the efficiency of offensive operations through thoughtful use of automation and AI, accelerating reconnaissance, vulnerability analysis, and reporting workflows
- Partner with the Detection & Response team on purple team exercises to validate detection logic, improve alert fidelity, and influence threat models
- Translate offensive findings into concrete improvements by working directly with defensive security and engineering teams to close gaps
Who You Are
- 5+ years of hands-on experience in offensive security (red teaming, penetration testing, or adversary simulation) with a track record of operating against mature, well-defended environments
- Write production-quality code (Python, Go, or similar), can build your own tools, and automate your workflows rather than relying exclusively on off-the-shelf frameworks
- Deep expertise in at least two of the following areas: macOS security, Linux security, cloud platforms (AWS, GCP, Azure), Kubernetes, or CI/CD pipelines
- Experience developing evasion techniques against modern defensive controls and understand how detections work from the blue team side
- Strong communication skills, with the ability to convey complex offensive findings clearly and effectively to both technical and non-technical stakeholders
- Comfortable operating with ambiguity, scoping your own work, identifying what matters most, and driving projects from prototype to deployed and validated
Skills
Python, Go, Red Teaming, Penetration Testing, AWS, GCP, Azure, Kubernetes, CI/CD, Edr, SIEM
Similar jobs
Security Engineering jobsSenior platform security engineer responsible for building identity and access management systems, Zero Trust architecture, cloud security baselines, and secure developer platforms. Requires 5+ years operating production systems and strong software development and security experience.
Develops and operates detection engineering systems across endpoint, cloud, container, and SaaS environments. The role requires at least six years in detection, incident response, or offensive security, strong attacker TTP knowledge, macOS expertise, and detection-as-code experience.
Build secure, large-scale platforms, controls, monitoring, and AI-augmented pipelines that improve Snowflake’s cloud security posture across hundreds of millions of assets and multiple cloud providers. Requires 5+ years of software engineering experience and expertise in secure distributed systems.
Leads enterprise network architecture, cloud connectivity, security, operations, and incident response across corporate and manufacturing environments. Requires 10+ years of network engineering experience, people leadership, AWS networking expertise, and strong network security knowledge.
Own detection engineering and lead incident response across corporate and production environments, building cloud, endpoint, runtime, and Kubernetes coverage. The role requires 6+ years in security, hands-on detection development, and end-to-end incident leadership.