2

Entry Level Offensive Security Engineer Jobs in Virginia

This entry-level role is ideal for candidates beginning their Application Security career and looking to grow into a seasoned Application Security Engineer.What You Will Do:Participate in application ...

In addition, desired skills/certifications are: o Offensive Security Experienced Pentester (OSEP ... Reverse Engineering Malware (GREM) Minimum Clearance Required to Start: Top Secret SCI This ...

In addition, desired skills/certifications are: o Offensive Security Experienced Pentester (OSEP ... Reverse Engineering Malware (GREM) Minimum Clearance Required to Start: Top Secret SCI This ...

Experience carrying out social-engineering assessments * Development/modification of exploits ... Offensive Security Certified Professional (OSCP) * Certified Red Team Professional (CRTP) * GIAC ...

Antivirus evasion, EDR evasion, offensive infrastructure, phishing and social engineering ... Security, Rogue Ops- Red Team 1 (ROPS), Certified Professional (OSCP), Global Information Assurance ...

Antivirus evasion, EDR evasion, offensive infrastructure, phishing and social engineering ... Security, Rogue Ops- Red Team 1 (ROPS), Certified Professional (OSCP), Global Information Assurance ...

iOS Vulnerability Researcher

Arlington, VA ยท Remote

$59.50 - $82/hr

We are looking for experienced and passionate people who have a background in vulnerability research, offensive security and reverse engineering on Apple platforms. The role: * You'll join our team ...

iOS Vulnerability Researcher

Arlington, VA ยท On-site +1

$59.50 - $82/hr

We are looking for experienced and passionate people who have a background in vulnerability research, offensive security and reverse engineering on Apple platforms. The role: * You'll join our team ...

next page

Showing results 1-20

Entry Level Offensive Security Engineer information

What is an entry level offensive security engineer?

An Entry Level Offensive Security Engineer is a cybersecurity professional who specializes in testing and assessing the security of computer systems, networks, and applications by simulating real-world attacks. Their primary responsibility is to identify vulnerabilities and weaknesses that malicious hackers could exploit. They use tools and techniques such as penetration testing, vulnerability scanning, and social engineering to find and report security issues. These engineers typically work under the guidance of more experienced team members and help organizations strengthen their security posture.

What types of projects or tasks can an entry level offensive security engineer expect to work on during their first year?

As an Entry Level Offensive Security Engineer, you will typically assist with vulnerability assessments, penetration testing, and security audits under the guidance of more experienced team members. Your daily tasks might include running automated scans, analyzing results, writing reports, and helping to develop and validate security tools. Collaboration with IT, development, and incident response teams is also common, as you work together to identify and remediate vulnerabilities. These experiences provide a strong foundation for professional growth and may lead to more advanced responsibilities over time.

What are the key skills and qualifications needed to thrive as an entry level offensive security engineer, and why are they important?

To thrive as an Entry Level Offensive Security Engineer, you need a solid understanding of network protocols, cybersecurity fundamentals, and common vulnerabilities, often supported by a bachelor's degree in computer science or a related field. Familiarity with penetration testing tools like Metasploit, Burp Suite, and knowledge of operating systems such as Linux is essential, and entry-level certifications like CompTIA Security+ or CEH are commonly valued. Strong analytical thinking, attention to detail, and effective communication skills help you identify security issues and clearly report findings. These competencies are crucial for assessing organizational security, executing ethical hacking tasks, and helping teams proactively defend against cyber threats.

What is the difference between Entry Level Offensive Security Engineer vs Penetration Tester?

AspectEntry Level Offensive Security EngineerPenetration Tester
CertificationsCompTIA Security+, CEH (Certified Ethical Hacker)CEH, OSCP (Offensive Security Certified Professional)
Work EnvironmentSecurity teams, cybersecurity firms, internal security departmentsConsulting firms, security companies, freelance engagements
Job FocusIdentify vulnerabilities, develop attack simulations, improve security posturePerform targeted security assessments, exploit vulnerabilities, report findings

Both roles involve assessing security weaknesses, often requiring similar certifications like CEH. An Entry Level Offensive Security Engineer typically works within organizations to strengthen defenses, while a Penetration Tester often conducts external assessments for clients. The main difference lies in their scope: engineers focus on proactive security development, whereas testers focus on identifying vulnerabilities through simulated attacks.

What are the most commonly searched types of Offensive Security Engineer jobs in Virginia?

The most popular types of Offensive Security Engineer jobs in Virginia are:

What are popular job titles related to Entry Level Offensive Security Engineer jobs in Virginia?

For Entry Level Offensive Security Engineer jobs in Virginia, the most frequently searched job titles are:

What job categories do people searching Entry Level Offensive Security Engineer jobs in Virginia look for?

The top searched job categories for Entry Level Offensive Security Engineer jobs in Virginia are:

Infographic showing various Entry Level Offensive Security Engineer job openings in Virginia as of August 2026, with employment types broken down into 79% Full Time, 19% Part Time, and 2% Contract. Highlights an 92% Physical, 3% Hybrid, and 5% Remote job distribution.

Offensive Security Consultant, Mandiant, Google Cloud

Reston, VA โ€ข On-site

Socket.dev
Network Securityย โ€ขย 1 - 10 employees

$112 - $161/hr

Other

This job post hasย expired 3 days ago.ย Applications are no longer accepted.


Job description

Minimum qualifications:
  • Bachelor's degree in Computer Science, Information Systems, Cybersecurity, related technical field, or equivalent practical experience.
  • 3 years of experience with pen testing and red teaming functions, including network, web application, mobile, cloud, social engineering, scripting, or tool development
  • Experience with tools used for wireless, web application, and network security testing.
  • Ability to travel up to 20% of the time.
Preferred qualifications:
  • Certifications related to offensive security including OSCE, OSEP, OSEE, OSCP, CCSAS, CCT, INF, or relevant SANS courses.
  • Experience implementing or assessing information security implementation or assessment of security controls.
  • Experience with developing documentation and explaining technical details in a concise manner.
  • Experience in four or more of the following: network protocols, threat intelligence analysis, system and network administration, project management, developing applications, technical incident response processes, source code review, reverse engineering.
About the job:

Part of Google Cloud, Mandiant is a recognized leader in dynamic cyber defense, threat intelligence and incident response services. Mandiant's cybersecurity expertise has earned the trust of security professionals and company executives around the world. Our unique combination of renowned frontline experience responding to some of the most complex breaches, nation-state grade threat intelligence, machine intelligence, and the industry's best security validation ensures that Mandiant knows more about today's advanced threats than anyone.

Individual pay is determined by factors including job-related skills, experience, and relevant education or training.

US: $112000 - $161000 (USD) + 15% bonus target + equity + benefits

Learn more about benefits at Google.

Responsibilities:
  • Perform red and purple team assessments, assumed breach assessments (e.g., red team engagements with a pre-deployed implant), ransomware readiness reviews (e.g., assessing susceptibility to modern ransomware threats), threat analysis, and social engineering assessments.
  • Conduct external and internal wireless assessments, web and mobile applications testing, and embedded system assessments.
  • Recognize and safely utilize attacker tools, tactics, and procedures.
  • Develop comprehensive and accurate reports and presentations for both technical and executive audiences.
  • Advise clients on security practices for remediating discovered issues.
#J-18808-Ljbffr