2

Offensive Security Engineer Remote Jobs in Michigan

You will be a hands-on offensive security engineer who finds and proves exploitable vulnerabilities in web applications, APIs, and cloud-hosted services before adversaries do. Your primary focus is ...

Job Purpose The Application Security Engineer is responsible for strengthening the security of our applications, platforms, and development processes. This position partners with software engineers ...

Remote Employment: Full Time Location: US Seniority: Mid Level Technologies: Snyk, Dependabot, AWS, EDR, SSO, RBAC, MFA, SBOM, CI/CD, OWASP Requirements: Security engineering with SIEM/IAM, SOC 2 ...

Vulnerability & Offensive Security Programs: Define the scope, strategy, and budgeting for ... Recruit, mentor, and lead a high-performing team of security engineers and specialists while ...

The Principal Network Security Engineer provides technical and engineering expertise for the ... Remote roles will also have the opportunity to come together in our offices for moments that matter.

The Principal Network Security Engineer provides technical and engineering expertise for the ... Remote roles will also have the opportunity to come together in our offices for moments that matter.

next page

Showing results 1-20

Offensive Security Engineer Remote information

What is the difference between Offensive Security Engineer Remote vs Penetration Tester?

AspectOffensive Security Engineer RemotePenetration Tester
CertificationsOSCP, OSWE, CEHOSCP, CEH, GPEN
Work EnvironmentRemote, collaborative security teamsOften client-site or remote assessments
Industry UsageSecurity teams, cybersecurity firmsConsulting firms, security assessments
Search & Comparison IntentUnderstanding roles, skills, and remote opportunitiesJob scope, certifications, and remote work options

Offensive Security Engineer Remote and Penetration Tester roles share overlapping skills and certifications like OSCP and CEH. However, Offensive Security Engineers typically work within security teams on ongoing security infrastructure, often remotely, focusing on offensive security strategies. Penetration Testers usually perform specific security assessments, sometimes on-site, and may have a broader consulting focus. Both roles are vital in cybersecurity but differ in scope and work environment.

What are the key skills and qualifications needed to thrive as an Offensive Security Engineer (Remote), and why are they important?

To thrive as an Offensive Security Engineer (Remote), you need strong expertise in penetration testing, vulnerability assessment, and cybersecurity principles, often supported by a degree in computer science or a related field. Familiarity with tools like Metasploit, Burp Suite, and Kali Linux, as well as certifications such as OSCP or CEH, is typically required. Attention to detail, problem-solving skills, and effective written communication are critical soft skills for success in this role. These abilities are essential for identifying vulnerabilities, reporting findings clearly, and helping organizations strengthen their security posture against evolving threats.

What are some common challenges faced by remote Offensive Security Engineers, and how can they be addressed?

Remote Offensive Security Engineers often face challenges such as coordinating effectively with geographically dispersed teams, maintaining secure access to sensitive systems, and staying updated on rapidly evolving threat landscapes. Overcoming these hurdles typically involves strong communication skills, leveraging secure collaboration tools, and establishing regular check-ins with colleagues. Additionally, continuous learning through online resources and industry forums is vital to remain effective and proactive in identifying and addressing security vulnerabilities.

What does an Offensive Security Engineer do, especially when working remotely?

An Offensive Security Engineer is responsible for proactively identifying and mitigating security vulnerabilities in an organization’s systems, networks, and applications. Working remotely, they perform penetration testing, vulnerability assessments, and simulated cyberattacks to discover weaknesses before malicious actors can exploit them. They also provide detailed reports and recommendations to help organizations improve their overall security posture. Remote Offensive Security Engineers use a variety of tools and collaborate with other security professionals to ensure effective communication and secure operations across distributed environments.
What are the most commonly searched types of Offensive Security Engineer jobs in Michigan? The most popular types of Offensive Security Engineer jobs in Michigan are:
What are popular job titles related to Offensive Security Engineer Remote jobs in Michigan? For Offensive Security Engineer Remote jobs in Michigan, the most frequently searched job titles are:
What job categories do people searching Offensive Security Engineer Remote jobs in Michigan look for? The top searched job categories for Offensive Security Engineer Remote jobs in Michigan are:
What cities in Michigan are hiring for Offensive Security Engineer Remote jobs? Cities in Michigan with the most Offensive Security Engineer Remote job openings:
Consultant Application & Offensive Security - Remote

Consultant Application & Offensive Security - Remote

Trinity Health

Livonia, MI • On-site, Remote

Full-time

Posted 3 days ago


Trinity Health rating

6.5

Company rating: 6.5 out of 10

Based on 351 frontline employees who took The Breakroom Quiz

594th of 877 rated healthcare providers


Job description

Employment Type:
Full timeShift:
Description:
The primary responsibility of the Consultant Applications and Offensive Security is to design, build, and operationalize a Secure Coding Center of Excellence (CoE). This role will partner with development teams to embed security into the software development lifecycle, standardize secure coding practices, and improve the organization's ability to prevent vulnerabilities at scale.This position influences development teams, drives adoption, and delivers measurable risk reduction.
The primary responsibility of the Consultant Applications and Offensive Security is to design, build, and operationalize a Secure Coding Center of Excellence (CoE). This role will partner with development teams to embed security into the software development lifecycle, standardize secure coding practices, and improve the organization's ability to prevent vulnerabilities at scale.This position influences development teams, drives adoption, and delivers measurable risk reduction.
  • Designs, develops, and supports the implementation of a Secure Coding Center of Excellence (CoE), including operating model, standards, and governance.
  • Embeds secure development lifecycle (SDLC) practices into development processes by integrating security controls into CI/CD pipelines and developer workflows.
  • Develops, documents, and promotes adoption of enterprise secure coding standards and patterns across multiple development teams and technology stacks.
  • Performs platform application security assessments and threat modeling to identify design weaknesses and exploitable conditions.
  • Provides clear, actionable remediation guidance to development teams, translating security findings into practical development fixes.
  • Drives adoption of secure coding practices by partnering with development, product, and DevOps teams and influencing design and development decisions.
  • Implements and optimizes application security tooling and augment automated results with manual and adversarial testing where tooling falls short.
  • Develops and delivers role-based secure coding training and developer enablement programs, including support for security champions initiatives.
  • Analyzes vulnerability data and application risk to support risk-based prioritization and reduction of systemic weaknesses.
  • Defines, tracks, and reports on application security metrics and KPIs, including vulnerability trends, remediation timelines, and defect recurrence.
  • Advises stakeholders on alignment with industry frameworks and standards (e.g., NIST CSF, Zero Trust, OWASP) and supports audit and compliance requirements.
  • Contributes to continuous improvement of application security practices by identifying opportunities to standardize, automate, and scale controls across the enterprise.
  • Collaborates cross-functionally with security, architecture, development, and operations teams to drive consistent and sustainable security practices.
  • Performs manual application security testing, including deep-dive code-assisted analysis and adversarial testing techniques, to identify exploitable vulnerabilities beyond automated tooling.
  • Validates the effectiveness of secure coding standards and SDLC controls through offensive testing and exploitation-driven analysis.
  • Partners with development teams to reproduce, exploit, and remediate complex application vulnerabilities.
  • Supports penetration testing and offensive security initiatives by providing application-layer expertise, design review, and exploitability analysis.
  • pay grade 17 range 120,446.2905-198,736.3793 Actual compensation will fall within the range but may vary based on factors such as experience, qualifications, education, location, licensure, certification requirements, and comparisons to colleagues in similar roles.

Minimum Qualifications
  • Bachelor's degree in Computer Science, Engineering, Information Systems, Cyber Security or a related field or an equivalent combination of education and experience.
  • 8-10 or more years of progressive experience with application security and offensive security protocols.
  • Demonstrated experience building or supporting secure coding and application security programs, including development and adoption of secure coding standards and patterns.
  • Demonstrated experience conducting manual application penetration testing or adversarial security assessments, with the ability to assess exploitability and real-world impact.
  • Strong expertise in secure SDLC practices and embedding security controls into CI/CD pipelines and development workflows.
  • Deep understanding of web and API security, including OWASP Top 10 vulnerabilities, authentication, authorization, and data protection concepts.
  • Hands-on experience performing application threat modeling and security assessments, with the ability to translate findings into secure design recommendations.
  • Experience integrating and utilizing application security tooling (SAST, DAST, SCA) and guiding development teams on remediation.
  • Ability to apply a risk-based approach to vulnerability management, considering business impact, exploitability, and exposure.
  • Proven ability to collaborate with and influence development teams, providing actionable guidance and communicating security concepts to technical and non-technical stakeholders.

Our Commitment
Rooted in our Mission and Core Values, we honor the dignity of every person and recognize the unique perspectives, experiences, and talents each colleague brings. By finding common ground and embracing our differences, we grow stronger together and deliver more compassionate, person-centered care. We are an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, veteran status, or any other status protected by federal, state, or local law.

What Trinity Health employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom


Trinity Health logo

About Trinity Health

Sourced by ZipRecruiter

Trinity Health Ann Arbor is a 537 -bed teaching hospital located on 340 acre campus. Recognized by IBM Watson as a Top 100 Hospital and #1 Teaching Hospital, Trinity Health Ann Arbor has been a leading health care provider for more than 100 years. Trinity Health has received numerous local and national awards in recognition of our leadership, quality outcomes, and clinical excellence.

Industry

Health care and social assistance

Company size

10,000+ Employees

Headquarters location

Livonia, MI, US