Staff Engineer
Technical lead performing advanced offensive security work including full-stack pentesting, red team operations, custom exploit development, AI/LLM red teaming, and bug bounty management. Requires 7-10 years experience, deep expertise in MITRE ATT&CK and OWASP, and proficiency with industry tools and scripting.
About the job
Responsibilities
- Perform full-stack penetration testing: manual and automated testing of web applications, APIs, and mobile apps (iOS/Android).
- Conduct internal/external network audits and cloud level assessments.
- Triage and validate vulnerability reports from automated scanners or bug bounty hunters; eliminate false positives and escalate true positives.
- Perform initial prompt injection and jailbreak tests on AI prototypes, services, and applications using OWASP Top 10 for LLMs checklists.
- Draft high-quality technical reports detailing the "path to compromise" with reproducible steps.
- Manage and update team's testing infrastructure (e.g., Burp Suite, basic C2 listeners).
- Provide direct technical guidance to engineering teams on patching vulnerabilities such as XSS, SQLi, and IDOR.
- Design and lead multi-week Red Team operations mimicking specific threat actors (APTs) to test SIRT detection capabilities.
- Build custom payloads, droppers, and obfuscated scripts to bypass EDR/AV and maintain stealth.
- Build automated testing frameworks for AI systems (e.g., using PyRIT, Promptfoo, or Garak) to test for sensitive data leakage.
- Execute sophisticated attacks against AWS/Azure/K8s, focusing on IAM misconfigurations and container escapes.
- Collaborate with SIRT and Detection Engineering in Purple Teaming to tune SIEM alerts.
- Oversee the organization's bug bounty program, identifying trends to suggest architectural security changes.
Requirements
- 7-10 years in offensive security, penetration testing, high-volume bug bounty, AppSec, or vulnerability exploitation.
- Track record of finding high/critical vulnerabilities in complex environments using pentesting commercial or custom tools.
- Expert knowledge of MITRE ATT&CK matrix, OWASP Top 10 for web applications and LLMs, post-exploitation (lateral movement, persistence, data exfiltration), and Adversarial ML.
- Proficient in tools like Burp Suite Professional, Nmap, Metasploit, Wireshark, AI security tools (LangChain, TensorFlow for adversarial testing), and C2 frameworks (Cobalt Strike, Sliver, Havoc).
- Ability to write functional scripts in Python or Bash to automate testing; proficiency in Python, C++ for creating custom offensive exploits that avoid signature-based detection.
- Advanced industry certifications such as OSCP, OSEP, OSWE, GXPN or similar (highly desirable).
- Excellent written and verbal communication skills.
- Ability to influence and build effective working relationships with all levels of the organization.
Nice-to-Haves
- Telecom expertise.
- Proficiency in multiple languages applicable to the region.
- Familiarity with localization tactics.
Skills
Offensive Security, Penetration Testing, Burp Suite, Metasploit, Nmap, Wireshark, Cobalt Strike, Python, C++, Mitre Att&Ck, Owasp Top 10, Red Team, Purple Team, AWS, Kubernetes
Similar jobs
Security Engineering jobsLeads cloud security detection and response engineering, building AI-enabled agents, threat-hunting capabilities, and automated security tooling. Requires deep security expertise, cloud experience, and strong knowledge of SIEM, SOAR, infrastructure as code, and AI threat frameworks.
Leads enterprise AI security architecture and develops security systems, automation, and agentic AI identity strategies at scale. Requires 7+ years in security or infrastructure security, enterprise technical leadership, cloud and container security expertise, and strong programming skills.
Own the architecture and automation of enterprise identity governance, privileged access, and identity security posture programs. The role requires advanced IGA/PAM experience, production RBAC and lifecycle expertise, and the ability to lead technical direction and communicate with executives.
Staff Identity Engineer serving as a technical authority for enterprise IAM, owning Okta architecture, cloud identity guardrails, automation, and AI identity security. Requires deep Okta and authentication-protocol expertise, multi-cloud experience, and technical leadership.
Conducts advanced application and AI security research for GitLab, identifying and validating systemic vulnerabilities, developing scalable research tooling, and guiding remediation. Requires 7+ years in offensive security and expertise across multiple technical domains and programming languages.