2

Offensive Security Engineer Remote Jobs in California

This is a remote first role. You will partner closely with teams across the company and focus on ... Help run penetration testing and offensive security exercises against Figma's AI infrastructure ...

AppSec Engineer

Santa Clara, CA · Remote

$80K - $100K/yr

AppSec Engineer - Remote Bright Vision Technologies is a technology consulting and software ... Experience with offensive security tooling and red-team operations. * Bug bounty experience, public ...

This is a remote first role. You will partner closely with teams across the company and focus on ... Help run penetration testing and offensive security exercises against Figma's AI infrastructure ...

Senior Security Engineer

Los Angeles, CA · On-site +1

$123K - $169K/yr

Offensive Security certifications for deep technical testing skills. - CCSP / AWS Certified Security: Specialized cloud security expertise. - CASE: Certified Application Security Engineer (Focus on ...

Job Purpose The Application Security Engineer is responsible for strengthening the security of our applications, platforms, and development processes. This position partners with software engineers ...

Remote - US or EU Remote | Full-time Compensation: $160K - $240K Our client operates a core banking ... Our client is seeking a Principal Security Engineer to lead product security across the entire ...

Remote - US or EU Remote | Full-time Compensation: $160K - $240K Our client operates a core banking ... Our client is seeking a Principal Security Engineer to lead product security across the entire ...

Product Security Engineer

San Jose, CA · On-site +1

$74.16 - $92.70/hr

Product Security Engineer Full-time Remote You'll be joining Adobe on a contract opportunity, employed through NextDeavor Benefits You'll Love NextDeavor offers health, vision and dental benefits for ...

Security Engineer II

Dublin, CA · On-site +1

$124K - $212K/yr

The Security Engineer II is responsible for envisioning and taking steps to implement security ... However, this role can perform duties effectively using a combination of in-office and remote work ...

SR. NETWORK SECURITY ENGINEER SpaceX is looking for a Sr. Network Security Engineer with deep ... Own the full lifecycle of remote access infrastructure from initial design and ground-up ...

Security Engineer

Hawthorne, CA · On-site +1

$150K - $180K/yr

SECURITY ENGINEER SpaceX is looking for a Security Engineer to join our Information Security ... Hybrid or remote work will not be considered. * Ability to pass Air Force background check for Cape ...

Network Security Engineer

San Francisco, CA · On-site +1

$123K - $168K/yr

Network Security Architecture & Engineering * Design and implement secure network architectures ... Configure and maintain firewalls, VPNs, network segmentation, NAC, and secure remote access ...

next page

Showing results 1-20

Offensive Security Engineer Remote information

What is the difference between Offensive Security Engineer Remote vs Penetration Tester?

AspectOffensive Security Engineer RemotePenetration Tester
CertificationsOSCP, OSWE, CEHOSCP, CEH, GPEN
Work EnvironmentRemote, collaborative security teamsOften client-site or remote assessments
Industry UsageSecurity teams, cybersecurity firmsConsulting firms, security assessments
Search & Comparison IntentUnderstanding roles, skills, and remote opportunitiesJob scope, certifications, and remote work options

Offensive Security Engineer Remote and Penetration Tester roles share overlapping skills and certifications like OSCP and CEH. However, Offensive Security Engineers typically work within security teams on ongoing security infrastructure, often remotely, focusing on offensive security strategies. Penetration Testers usually perform specific security assessments, sometimes on-site, and may have a broader consulting focus. Both roles are vital in cybersecurity but differ in scope and work environment.

What are the key skills and qualifications needed to thrive as an offensive security engineer?

To thrive as an Offensive Security Engineer (Remote), you need strong expertise in penetration testing, vulnerability assessment, and cybersecurity principles, often supported by a degree in computer science or a related field. Familiarity with tools like Metasploit, Burp Suite, and Kali Linux, as well as certifications such as OSCP or CEH, is typically required. Attention to detail, problem-solving skills, and effective written communication are critical soft skills for success in this role. These abilities are essential for identifying vulnerabilities, reporting findings clearly, and helping organizations strengthen their security posture against evolving threats.

What are some common challenges faced by remote offensive security engineers, and how can they be addressed?

Remote Offensive Security Engineers often face challenges such as coordinating effectively with geographically dispersed teams, maintaining secure access to sensitive systems, and staying updated on rapidly evolving threat landscapes. Overcoming these hurdles typically involves strong communication skills, leveraging secure collaboration tools, and establishing regular check-ins with colleagues. Additionally, continuous learning through online resources and industry forums is vital to remain effective and proactive in identifying and addressing security vulnerabilities.

What does an offensive security engineer do?

An Offensive Security Engineer is responsible for proactively identifying and mitigating security vulnerabilities in an organization’s systems, networks, and applications. Working remotely, they perform penetration testing, vulnerability assessments, and simulated cyberattacks to discover weaknesses before malicious actors can exploit them. They also provide detailed reports and recommendations to help organizations improve their overall security posture. Remote Offensive Security Engineers use a variety of tools and collaborate with other security professionals to ensure effective communication and secure operations across distributed environments.
What are the most commonly searched types of Offensive Security Engineer jobs in California? The most popular types of Offensive Security Engineer jobs in California are:
What are popular job titles related to Offensive Security Engineer Remote jobs in California? For Offensive Security Engineer Remote jobs in California, the most frequently searched job titles are:
What job categories do people searching Offensive Security Engineer Remote jobs in California look for? The top searched job categories for Offensive Security Engineer Remote jobs in California are:
What cities in California are hiring for Offensive Security Engineer Remote jobs? Cities in California with the most Offensive Security Engineer Remote job openings:
Infographic showing various Offensive Security Engineer Remote job openings in California as of August 2026, with employment types broken down into 83% Full Time, 13% Part Time, 2% Temporary, and 2% Contract. Highlights an 92% Physical, 3% Hybrid, and 5% Remote job distribution.

Security Engineer

Figma

San Francisco, CA • Remote

Full-time

Re-posted 21 days ago


Job description

As a Security Engineer you will identify and drive impactful projects to improve the security of Figma's product, platform, and IT systems. We are hiring for multiple teams within Security Engineering: AI Security, Platform Security, Product Security, and Anti-Abuse. This is a remote first role. 

You will partner closely with teams across the company and focus on systemic security improvements and risk reduction. You will also participate in operational security responsibilities like security reviews, consulting, vulnerability triage, and security incident response.

Examples of what you may work on across teams:

AI Security

  • Perform technical security assessments, code audits, and design reviews for new AI infrastructure, platforms, and products.
  • Design and develop technical solutions to secure AI models, tooling, debugging workflows, and data pipelines.
  • Advocate for secure practices across Figma's AI infrastructure, platforms, and data systems.
  • Build the next generation of internal AI-powered access insights and security tooling.
  • Help run penetration testing and offensive security exercises against Figma's AI infrastructure, platforms, and products.

Platform Security

  • Perform technical security assessments, code audits, and design reviews for changes to Figma's cloud and corporate infrastructure.
  • Design and develop solutions to prevent or mitigate cloud and corporate security risks.
  • Advocate for secure practices within Figma's cloud and corporate infrastructure.
  • Build platforms and tooling to detect and respond to infrastructure and corporate security threats.

Product Security

  • Perform technical security assessments, code audits, and design reviews for new product features.
  • Design and develop solutions to prevent or mitigate product security vulnerabilities.
  • Advocate for secure development practices across Figma's products and services.
  • Help run penetration testing, offensive security exercises, and support our bug bounty program.
  • Help respond to product security incidents.

Anti-Abuse

  • Design and build technical systems to prevent spam, fraud, and abuse.
  • Partner closely with product teams to identify and address potential abuse vectors.
  • Develop new signals and improve the use of existing signals to detect abusive behavior.
  • Help respond to spam, fraud, and abuse incidents.

This is a full-time role that can be held from one of our US hubs or remotely in the United States.

We'd love to hear from you if you have:

  • 5+ years of proven engineering experience working in either a Security Engineering or a Software Engineering role. In the case of the latter, some security experience is preferred.
  • Strong security judgment in threat modeling and risk prioritization and/or strong technical judgment in designing and building maintainable, scalable systems.
  • Proficiency in at least one general-purpose coding language.
  • Strong communication and interpersonal skills, with demonstrated experience collaborating across functions.
While not required, it's an added plus if you also have:
  • Subject matter expertise in Application Security, Cloud Security, Corporate Security, Data Access Governance, and/or IAM (Identity and Access Management).
  • Demonstrated ability to make hard prioritization decisions in security controls.

At Figma, one of our values is Grow as you go. We believe in hiring smart, curious people who are excited to learn and develop their skills. If you're excited about this role but your past experience doesn't align perfectly with the points outlined in the job description, we encourage you to apply anyways. You may be just the right candidate for this or other roles.

#LI-Remote