1

Internship Offensive Security Engineer Jobs in Arizona

Our offensive security operations include thorough security assessments of enterprise-connected ... You will join a DevOps team of Information Security professionals responsible for developing ...

... Information Security Engineering experience, or equivalent demonstrated through one or a ... Knowledge of offensive security, with the ability to think like an adversary when hunting and ...

Sr. Security Engineer

Scottsdale, AZ

$115K - $158K/yr

Mentors junior security engineering staff and manage security interns. * Support the company's commitment to protect the integrity and confidentiality of systems and data. * The above is not intended ...

... security concepts, including how AI enabled systems, inputs, and workflows can be manipulated or abused * Ability to collaborate with Blue Team and Detection Engineering to translate offensive ...

They are seeking an experienced Penetration Tester to conduct advanced offensive security ... engineering teams to support remediation and strengthen defensive posture. Qualifications

... security concepts, including how AI enabled systems, inputs, and workflows can be manipulated or abused * Ability to collaborate with Blue Team and Detection Engineering to translate offensive ...

... security concepts, including how AI enabled systems, inputs, and workflows can be manipulated or abused * Ability to collaborate with Blue Team and Detection Engineering to translate offensive ...

... security concepts, including how AI enabled systems, inputs, and workflows can be manipulated or abused * Ability to collaborate with Blue Team and Detection Engineering to translate offensive ...

... security concepts, including how AI enabled systems, inputs, and workflows can be manipulated or abused * Ability to collaborate with Blue Team and Detection Engineering to translate offensive ...

... security concepts, including how AI enabled systems, inputs, and workflows can be manipulated or abused * Ability to collaborate with Blue Team and Detection Engineering to translate offensive ...

... security concepts, including how AI enabled systems, inputs, and workflows can be manipulated or abused * Ability to collaborate with Blue Team and Detection Engineering to translate offensive ...

... security concepts, including how AI enabled systems, inputs, and workflows can be manipulated or abused * Ability to collaborate with Blue Team and Detection Engineering to translate offensive ...

next page

Showing results 1-20

Internship Offensive Security Engineer information

What is an internship offensive security engineer?

Internship Offensive Security Engineers are students or early-career professionals who assist organizations in identifying and addressing security vulnerabilities from an attacker's perspective. Their main responsibilities often include performing penetration tests, vulnerability assessments, and security research under the supervision of experienced security engineers. Through this hands-on experience, interns gain practical knowledge of cybersecurity tools, techniques, and industry best practices while contributing to the organization's overall security posture. This role is ideal for those seeking to start a career in cybersecurity, especially in ethical hacking and penetration testing.

What is the difference between Internship Offensive Security Engineer vs Security Analyst?

AspectInternship Offensive Security EngineerSecurity Analyst
Required CredentialsBasic cybersecurity certifications (e.g., CompTIA Security+), relevant courseworkSecurity+ or equivalent, sometimes additional certifications like CEH
Work EnvironmentHands-on penetration testing, vulnerability assessments, simulated attacksMonitoring security systems, analyzing threats, incident response
Employer & Industry UsageTech companies, cybersecurity firms, organizations with active security testing teamsAll industries, focusing on security monitoring and risk management

Internship Offensive Security Engineers focus on practical penetration testing and offensive security tasks, often in a hands-on environment, while Security Analysts primarily monitor and analyze security threats. Both roles require foundational cybersecurity knowledge, but the internship provides more direct offensive security experience.

What does an internship offensive security engineer do?

As an Internship Offensive Security Engineer, you can expect to work on a variety of hands-on tasks such as assisting with penetration testing, vulnerability assessments, and security research. Interns often help in simulating real-world cyberattacks under supervision, writing reports on findings, and collaborating with security teams to recommend remediation strategies. You may also participate in red team exercises and learn to use industry-standard tools, gaining exposure to the workflow and methodologies of experienced offensive security professionals. This role offers an excellent opportunity to develop technical skills and gain practical experience in a dynamic, team-oriented environment.

What are the key skills and qualifications needed to thrive as an internship offensive security engineer?

To thrive as an Internship Offensive Security Engineer, you need a solid understanding of cybersecurity fundamentals, network protocols, and penetration testing methodologies, typically supported by relevant coursework or certifications like CompTIA Security+ or OSCP. Familiarity with tools such as Kali Linux, Metasploit, Wireshark, and vulnerability scanners is often essential. Strong analytical thinking, problem-solving skills, and effective communication set top candidates apart. These skills and qualities are crucial for identifying vulnerabilities, collaborating with teams, and ensuring organizational security.
What are the most commonly searched types of Offensive Security Engineer jobs in Arizona? The most popular types of Offensive Security Engineer jobs in Arizona are:
What job categories do people searching Internship Offensive Security Engineer jobs in Arizona look for? The top searched job categories for Internship Offensive Security Engineer jobs in Arizona are:
What cities in Arizona are hiring for Internship Offensive Security Engineer jobs? Cities in Arizona with the most Internship Offensive Security Engineer job openings:

Offensive Security Engineer

RunBuggy OMI Inc.

Tempe, AZ โ€ข Hybrid

Other

Medical, Dental, Vision, Life, Retirement, PTO

Re-posted 2 hours ago


Job description

Description

About Us:

RunBuggy is the most technically advanced automotive logistics platform on the market. Period.


Backed by Porsche Ventures and Hearst Ventures, RunBuggy is transforming the way cars move. Our cutting-edge technology is trusted by some of the largest OEMs, captive finance companies, and automotive lenders in the world to streamline vehicle transportation at scale.


RunBuggy's end-to-end platform connects car shippers and haulers in real time - eliminating the friction of traditional load boards and costly custom software. For shippers, RunBuggy integrates directly into existing management systems, reducing transportation costs and accelerating delivery timelines. For transporters, we offer a smarter, more profitable way to find, accept, and manage loads - all from a single app.


Since launching in 2019, RunBuggy has grown to over 190 team members, facilitated the movement of hundreds of thousands of vehicles, and attracted tens of thousands of transporters across the U.S.


We're not just building a better logistics platform - we're redefining the future of automotive transportation.



About the Role:

The Offensive Security Engineer is a hybrid role combining hands-on penetration testing, adversary simulation, and security engineering. This position is responsible for proactively identifying, exploiting, and validating vulnerabilities while also partnering with engineering teams to design, implement, and improve security controls across the environment.ย 


This position reports to our Cybersecurity Manager and is a hybrid role (3 days in office per week).ย 


What You Will Be Doing:

  • Experience with leveraging components of a modern software development stack to attack companies, including CI, container orchestration systems (Kubernetes/Docker), cloud providers (AWS), and be able to give hardening suggestions.ย 
  • Conduct offensive security engagements, including Red Team operations, threat-based evaluations, and vulnerability research and exploitation against both internal and external-facing systems.
  • Plan and execute black-box, grey-box, and white-box web application penetration tests against RunBuggy production and staging environments.ย 
  • Maintain tooling (Burp, Metasploit, C2 frameworks, custom scripts) for exploitation, detection validation, and security assessments.
  • Conduct API security testing (REST, GraphQL) including authentication bypass, injection, broken object-level authorization (BOLA/IDOR), and business logic flaws.ย 
  • Perform cloud configuration reviews (AWS) and assess infrastructure-level exposure where it intersects with web application attack surfaces.ย 
  • Produce clear, risk-ranked findings reports with reproducible proof-of-concept and actionable remediation guidance for both technical and non-technical audiences.ย 
  • Collaborate with engineering to validate fixes and re-test remediated vulnerabilities.ย 
  • Perform social engineering exercises (phishing, credential harvesting), where applicable.
  • Contribute to bug bounty triage, third-party assessment coordination, and security tooling selection.ย 
  • Support compliance efforts (SOC 2, PCI DSS) by providing evidence and attestation tied to pen test scope and outcomes.ย 
  • Stay current on emerging attack techniques and translate threat intelligence into test cases relevant to RunBuggy's stack.ย 
  • Other duties as assigned.


Requirements

What You Bring to the Team by Way of Skills and Experience:

  • Bachelor's degree in Cybersecurity or related field required.ย 
  • 3+ years of hands-on web application penetration testing experience in a professional or consulting capacity.ย 
  • Passion and demonstrated experience for challenging security assumptions.
  • Deep familiarity with MITRE ATT&CK, OWASP Top 10, OWASP API Security Top 10, and OWASP Top 10 for LLMs.ย 
  • Proficiency with standard tooling: Burp Suite, OWASP ZAP, Nmap, Metasploit, SQLmap, Nikto.ย 
  • Demonstrated ability to exploit and document authentication/authorization flaws, injection vulnerabilities, XXE, SSRF, deserialization issues, and insecure direct object references.ย 
  • Strong written communications: findings reports must be usable by both developers and executives.ย 
  • Experience testing RESTful and/or GraphQL APIs.ย 
  • Experience with AWS environment security assessment (IAM misconfiguration, S3 exposure, Lambda attack surface).ย 
  • Scripting proficiency in Python, Bash, or JavaScript for custom tooling and automation.ย 
  • Familiarity with automotive, logistics, or fintech regulatory requirements (PCI DSS, SOC 2 Type II).ย 
  • Prior experience in a startup or high-growth SaaS environment where speed and security have to coexist.ย 


Certificates, Licenses, and/or Registrations:ย 

  • OSCP, GWAPT, eWPT, or equivalent. CEH is accepted but is less weighted than practical certs.ย 



What is in it for You and Why you Should Apply:

  • Market-competitive pay based on education, experience, and location.ย 
  • Highly competitive medical, dental, vision, Life w/ AD&D, Short-Term Disability insurance, Long-Term Disability insurance, pet insurance, identity theft protection, and a 401(k) retirement savings plan.
  • Employee wellness program.ย 
  • Employee rewards, discounts, and recognition programs.
  • Generous company-paid holidays (12 per year), vacation, and sick time.
  • Paid paternity/maternity leave.
  • Monthly connectivity/home office stipend if working from home 5 days a week.
  • A supportive and positive space for you to grow and expand your career.



Pay Range Disclosure:ย 

The advertised range represents the expected pay range for this position at the time of posting based on education, experience, skills, location, and other factors.ย 



To perform this job successfully, an individual must be able to perform each essential duty satisfactorily. The requirements listed are representative of the knowledge, skill, and/or ability required. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.


RunBuggy is an equal-opportunity employer that is committed to diversity and inclusion in the workplace. We prohibit discrimination, harassment, and retaliation on the basis of race, color, religion, sex (including gender identity and sexual orientation), pregnancy, parental status, national origin, age, disability, genetic information, or any other status protected under federal, state, or local law.



Unsolicited resumes sent via email or LinkedIn Messenger will not be considered.


No agencies, please.