1

Offensive Security Jobs (NOW HIRING)

This role will ensure offensive security services evolve from point-in-time testing toward a continuous assurance model that validates security posture across enterprise, product, and emerging ...

The Mission Praetorian is an expert-driven offensive security company. Our mission is to prevent breaches before they occur. We help organizations shift from an "assume breach" mentality to adopting ...

The Mission Praetorian is an expert-driven offensive security company. Our mission is to prevent breaches before they occur. We help organizations shift from an "assume breach" mentality to adopting ...

As an Offensive Security Engineer, you will lead efforts to identify and mitigate security risks, perform penetration testing, conduct threat modeling, and develop security tooling to enhance the ...

As an Offensive Security Engineer, you will lead efforts to identify and mitigate security risks, perform penetration testing, and provide guidance on secure design practices. Responsibilities : • ...

As an Offensive Security Engineer, you will lead efforts to identify and mitigate security risks, perform penetration testing, and guide engineering teams on secure practices while developing ...

About The Role As an Offensive Security Engineer within HP IQ's Product Security team, you will partner closely with engineering teams to identify, validate, and mitigate security risks across the ...

As an Offensive Security Engineer, you will lead efforts to identify and mitigate security risks, perform penetration testing, and develop security tooling to enhance the company's overall security ...

Offensive Security Engineer

Seattle, WA · Remote

$150K - $200K/yr

As an Offensive Security Engineer at Staris AI, you'll be at the vanguard of the application security profession. This role goes beyond conventional application security and penetration testing; you ...

As an Offensive Security Engineer, you will lead efforts to identify and mitigate security risks, perform penetration testing, and develop security tooling to enhance the overall security posture of ...

About The Role As an Offensive Security Engineer within HP IQ's Product Security team, you will partner closely with engineering teams to identify, validate, and mitigate security risks across the ...

next page

Showing results 1-20

Offensive Security information

See salary details

$57K

$133K

$186K

How much do offensive security jobs pay per year?

As of Jun 12, 2026, the average yearly pay for offensive security in the United States is $132,962.00, according to ZipRecruiter salary data. Most workers in this role earn between $111,000.00 and $150,000.00 per year, depending on experience, location, and employer.

What is an Offensive Security job?

An Offensive Security job involves proactively identifying and exploiting security vulnerabilities in systems, networks, and applications to help organizations strengthen their defenses. Professionals in this field, such as ethical hackers and penetration testers, simulate real-world cyberattacks to find weaknesses before malicious actors can exploit them. They use various tools, techniques, and frameworks to assess security risks, provide recommendations, and improve overall cybersecurity posture. Offensive security experts often work for security firms, enterprises, or government agencies to ensure robust digital protection.

What job makes $10,000 a month without a degree?

In offensive security, roles such as freelance penetration testers or ethical hackers can earn $10,000 or more per month through contract work, bug bounty programs, or consulting, often requiring strong technical skills, certifications like OSCP, and experience rather than formal degrees. Success depends on expertise, reputation, and the ability to find high-paying clients or bug bounties.

Is SOC an entry level job?

A Security Operations Center (SOC) analyst role is typically considered an entry-level position in cybersecurity, often suitable for individuals with foundational knowledge of networking, security tools, and incident response. However, some SOC roles may require prior experience or certifications like CompTIA Security+ or Cisco CCNA, depending on the complexity of the environment.

What does a typical day look like for someone working in Offensive Security?

A typical day in Offensive Security involves conducting penetration tests, vulnerability assessments, and red teaming exercises to identify and exploit potential weaknesses in systems and networks. You may spend time analyzing findings, preparing detailed reports, and collaborating with IT teams to discuss remediation strategies. The role often requires staying current with emerging threats and tools, as well as participating in team meetings to review attack simulations or incident scenarios. Regular communication with clients or internal stakeholders is also common to explain technical concepts in an accessible way. The dynamic nature of the work keeps each day interesting and fosters continuous learning and problem-solving.

What is the salary of offensive security?

Salaries for offensive security professionals vary based on experience, certifications, and location, but typically range from $70,000 to over $150,000 annually. Entry-level roles may start lower, while experienced penetration testers and security analysts with advanced skills and certifications can earn higher salaries.

What is an example of offensive security?

An example of offensive security is penetration testing, where security professionals simulate cyberattacks to identify vulnerabilities in systems and networks. This proactive approach helps organizations strengthen their defenses and often involves tools like exploit frameworks and knowledge of attack techniques.

What are the key skills and qualifications needed to thrive in the Offensive Security position, and why are they important?

To thrive as an Offensive Security professional, you need a deep understanding of networks, operating systems, penetration testing methodologies, and typically hold a degree in computer science or a related field. Familiarity with tools such as Metasploit, Burp Suite, Nmap, as well as certifications like OSCP or CEH, is often required. Strong analytical thinking, attention to detail, effective communication, and ethical judgment are essential soft skills. These abilities are crucial for identifying vulnerabilities, communicating risks, and helping organizations improve their security posture.

More about Offensive Security jobs
What cities are hiring for Offensive Security jobs? Cities with the most Offensive Security job openings:
What states have the most Offensive Security jobs? States with the most job openings for Offensive Security jobs include:
Infographic showing various Offensive Security job openings in the United States as of June 2026, with employment types broken down into 14% Full Time, 77% Part Time, and 9% Contract. Highlights an 99% Physical, and 1% Remote job distribution, with an average salary of $132,962 per year, or $63.9 per hour.
Director- Offensive Security

$152K - $220K/yr

Full-time

Medical, Dental, Vision, Life, Retirement, PTO

Posted 23 days ago


GE Aerospace rating

8.8

Company rating: 8.8 out of 10

Based on 171 frontline employees who took The Breakroom Quiz

7th of 60 rated aerospace companies


Job description

Job Description Summary
This role leads a team that delivers traditional web application penetration testing, Defense-in-Depth assessments extending beyond the web layer, and Red Team engagements ranging from focused control validations to long-term adversary emulation exercises, including both stealth and overt operations.The Director will shape an automation-first and intelligence-driven offensive security program, leveraging AI-enabled operations, testing orchestration, attack simulation, data-driven prioritization, and continuous validation techniques to improve scale, speed, consistency, and measurable risk reduction. This role will ensure offensive security services evolve from point-in-time testing toward a continuous assurance model that validates security posture across enterprise, product, and emerging technology environments.
Job Description
Roles and Responsibilities
People leadership & talent development: Hire, lead, coach, and retain an expert team; establish goals, role clarity, performance expectations, and development plans; build succession and continuity.
Strategic oversight: Define and execute the offensive security strategy, including an automation-first and AI-enabled operating model that scales penetration testing, adversary emulation, and continuous security validation across IT, cloud, product, OT, and AI/ML environments. Drive roadmap priorities across talent, tooling, process standardization, service maturity, and measurable risk reduction.
Service ownership & delivery oversight: Own end-to-end engagement delivery for web application penetration testing, Defense-in-Depth assessments, and Red Team operations, including intake, scope definition, scheduling, quality review, and executive/stakeholder communications.
Red Team program leadership: Direct stealth and overt engagements; establish rules of engagement, testing safety controls, deconfliction, and coordination with detection and incident response teams.
Defense-in-Depth coverage across environments: Ensure assessments address application, infrastructure, identity, cloud, product/software, and OT considerations (as applicable), balancing thoroughness with operational reliability. Vendor management: Manage vendor relationship(s) supporting Red Team activities, including SOW/SLAs, onboarding/offboarding, service quality, and cost management.
Tooling & contract ownership: Own the offensive security tool portfolio and contracts (for example, Nessus, AttackForge), including renewals, license management, usage optimization, secure operations, and capability roadmap. Partnership & remediation outcomes: Partner with vulnerability management, product security, engineering, and infrastructure teams to ensure findings are actionable, prioritized, tracked, and re-tested as appropriate.
Standards, governance, and reporting: Define and maintain assessment methodologies, reporting standards, and measurable KPIs (coverage, cycle time, remediation progress, repeat findings, and detection/control validation).
Basic Qualifications
  • Bachelor's degree from accredited university or college with minimum of 8 years of professional experience OR Associates degree with minimum of 11 years of professional experience OR High School Diploma with minimum of 13 years of professional experience
  • Minimum of 5 years of specific experience in offensive security, penetration testing, and/or Red Team operations
  • Demonstrated people leadership experience leading and developing technical teams (including performance management and talent development).
  • Demonstrated experience overseeing penetration testing services, including web application testing and broader multi-layer (Defense-in-Depth) assessments.
  • Demonstrated experience leading Red Team engagements, including safe execution, stakeholder alignment, and high-quality reporting.
  • Experience managing third-party vendors/consultants supporting security delivery.

Preferred Qualifications
  • Experience assessing or leading engagements in OT and/or embedded/on-product environments, including uptime- and safety-sensitive contexts.
  • Experience maturing an offensive security program using repeatable playbooks, automation, governance, and metrics.
  • Experience owning or administering offensive security tooling and engagement management platforms (for example, AttackForge, Nessus), including budget/contract accountability.
  • Purple-team experience partnering with detection engineering/SOC to validate telemetry, tune detections, and demonstrate defensive improvements.
  • Relevant certifications (desired, not required): OSCP/OSWE/OSCE, GPEN/GXPN, GCIH, CISSP, or equivalent demonstrated expertise.

Additional Information:
The base pay range for this position is $152,000 - $220,000 annually. The specific pay offered may be influenced by a variety of factors, including the candidate's experience, education, and skill set. This position is also eligible for an annual discretionary bonus based on a percentage of your base salary/ commission based on the plan. This posting is expected to close on March 26th, 2026.
GE Aerospace offers comprehensive benefits and programs to support your health and, along with programs like HealthAhead, your physical, emotional, financial and social wellbeing. Healthcare benefits include medical, dental, vision, and prescription drug coverage; access to a Health Coach from GE Aerospace; and the Employee Assistance Program, which provides 24/7 confidential assessment, counseling and referral services. Retirement benefits include the GE Aerospace Retirement Savings Plan, a 401(k) savings plan with company matching contributions and company retirement contributions, as well as access to Fidelity resources and planning consultants. Other benefits include tuition assistance, adoption assistance, paid parental leave, disability insurance, life insurance, and paid time-off for vacation or illness.
GE Aerospace (General Electric Company or the Company) and its affiliates each sponsor certain employee benefit plans or programs (i.e., is a "Sponsor"). Each Sponsor reserves the right to terminate, amend, suspend, replace or modify its benefit plans and programs at any time and for any reason, in its sole discretion. No individual has a vested right to any benefit under a Sponsor's welfare benefit plan or program. This document does not create a contract of employment with any individual.
This role requires access to U.S. export-controlled information. Therefore, employment will be contingent upon the ability to prove that you meet the status of a U.S. Person as one of the following: U.S. lawful permanent resident, U.S. Citizen, have been granted asylee or refugee status (i.e., a protected individual under the Immigration and Naturalization Act, 8 U.S.C. 1324b(a)(3)).
Additional Information
GE Aerospace offers a great work environment, professional development, challenging careers, and competitive compensation. GE Aerospace is an Equal Opportunity Employer. Employment decisions are made without regard to race, color, religion, national or ethnic origin, sex, sexual orientation, gender identity or expression, age, disability, protected veteran status or other characteristics protected by law.
GE Aerospace will only employ those who are legally authorized to work in the United States for this opening. Any offer of employment is conditioned upon the successful completion of a drug screen (as applicable).
Relocation Assistance Provided: No
#LI-Remote - This is a remote position

What GE Aerospace employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom