2

Offensive Security Engineer Remote Jobs in Washington

Senior AI Engineer, Security Infrastructure

Arlington, VA · On-site +1

$124K - $169K/yr

This role sits at the intersection of applied AI research, offensive security, and production ... Remote for those outside of those cities. This role may require up to 25% travel Scope of ...

New

... Security Engineer to support enterprise cybersecurity operations and IT administrative and ... Primary work will be performed at the client site in Washington DC and approved remote/telework ...

... Security Engineer to support enterprise cybersecurity operations and IT administrative and ... Primary work will be performed at the client site in Washington DC and approved remote/telework ...

AI Red Teamer, Cyber

Washington, DC · Remote

$100K - $120K/yr

This role is ideal for someone who enjoys offensive security, creative problem-solving, and ... Collaborate with engineers, researchers, and subject-matter experts to improve system security

Hybrid Columbia MD 3 times a week OR Remote (as applicable to role) Work Authorization Requirements ... The Security Engineer works closely with the ISSO and other security stakeholders to ensure ...

Remote (Quantico, VA and other areas within DMV) Duration: Long Term Contract Required skills/Level of Experience: * Active TS w/ SCI eligibility * 10+ years in cybersecurity engineering or security ...

AI Red Teamer, Cyber

Washington, DC · Remote

$100K - $120K/yr

This role is ideal for someone who enjoys offensive security, creative problem-solving, and ... Collaborate with engineers, researchers, and subject-matter experts to improve system security

AI Red Teamer, Cyber

Washington, DC · Remote

$100K - $120K/yr

This role is ideal for someone who enjoys offensive security, creative problem-solving, and ... Collaborate with engineers, researchers, and subject-matter experts to improve system security

Primary work will be performed at the client site in Washington DC and approved remote/telework ... The AI Security Engineer (Mid) will serve as a key technical contributor within the program's AI ...

Network Security Engineer

Annapolis, MD · Remote

$107K - $146K/yr

The Network Security Engineer will actively participate in planning and coordinating the design ... Two (2) days remote at a suitable off-site location selected by the Resource. (1) We reserve the ...

Primary work will be performed at the client site in Washington DC and approved remote/telework ... The AI Security Engineer (Mid) will serve as a key technical contributor within the program's AI ...

... remote administration, and system lifecycle processes. • Evaluate, deploy, integrate, and operate ... Extensive experience in cybersecurity engineering, infrastructure or network security, cloud ...

... remote administration, and system lifecycle processes. • Evaluate, deploy, integrate, and operate ... Extensive experience in cybersecurity engineering, infrastructure or network security, cloud ...

This position is based in Washington, DC and may require a combination of on-site and remote support depending on program needs. Position Description: Ardent is seeking a Web Developer Security ...

Showing results 21-40

Offensive Security Engineer Remote information

What does an offensive security engineer do?

An Offensive Security Engineer is responsible for proactively identifying and mitigating security vulnerabilities in an organization’s systems, networks, and applications. Working remotely, they perform penetration testing, vulnerability assessments, and simulated cyberattacks to discover weaknesses before malicious actors can exploit them. They also provide detailed reports and recommendations to help organizations improve their overall security posture. Remote Offensive Security Engineers use a variety of tools and collaborate with other security professionals to ensure effective communication and secure operations across distributed environments.

What are the key skills and qualifications needed to thrive as an offensive security engineer?

To thrive as an Offensive Security Engineer (Remote), you need strong expertise in penetration testing, vulnerability assessment, and cybersecurity principles, often supported by a degree in computer science or a related field. Familiarity with tools like Metasploit, Burp Suite, and Kali Linux, as well as certifications such as OSCP or CEH, is typically required. Attention to detail, problem-solving skills, and effective written communication are critical soft skills for success in this role. These abilities are essential for identifying vulnerabilities, reporting findings clearly, and helping organizations strengthen their security posture against evolving threats.

What are some common challenges faced by remote offensive security engineers, and how can they be addressed?

Remote Offensive Security Engineers often face challenges such as coordinating effectively with geographically dispersed teams, maintaining secure access to sensitive systems, and staying updated on rapidly evolving threat landscapes. Overcoming these hurdles typically involves strong communication skills, leveraging secure collaboration tools, and establishing regular check-ins with colleagues. Additionally, continuous learning through online resources and industry forums is vital to remain effective and proactive in identifying and addressing security vulnerabilities.

What is the difference between Offensive Security Engineer Remote vs Penetration Tester?

AspectOffensive Security Engineer RemotePenetration Tester
CertificationsOSCP, OSWE, CEHOSCP, CEH, GPEN
Work EnvironmentRemote, collaborative security teamsOften client-site or remote assessments
Industry UsageSecurity teams, cybersecurity firmsConsulting firms, security assessments
Search & Comparison IntentUnderstanding roles, skills, and remote opportunitiesJob scope, certifications, and remote work options

Offensive Security Engineer Remote and Penetration Tester roles share overlapping skills and certifications like OSCP and CEH. However, Offensive Security Engineers typically work within security teams on ongoing security infrastructure, often remotely, focusing on offensive security strategies. Penetration Testers usually perform specific security assessments, sometimes on-site, and may have a broader consulting focus. Both roles are vital in cybersecurity but differ in scope and work environment.

What are the most commonly searched types of Offensive Security Engineer jobs in Washington?

The most popular types of Offensive Security Engineer jobs in Washington are:

What job categories do people searching Offensive Security Engineer Remote jobs in Washington look for?

The top searched job categories for Offensive Security Engineer Remote jobs in Washington are:

What cities in Washington are hiring for Offensive Security Engineer Remote jobs?

Cities in Washington with the most Offensive Security Engineer Remote job openings:

Infographic showing various Offensive Security Engineer Remote job openings in Washington as of August 2026, with employment types broken down into 76% Full Time, and 24% Contract. Highlights an 100% Remote job distribution.

Senior AI Engineer, Security Infrastructure

Air

Arlington, VA • On-site, Remote

$124K - $169K/yr

Full-time

Posted 2 days ago

New


Job description

Company Description
Air is the leader in Enterprise Readiness. Our mission is to establish readiness as a real-time condition that is continuously achieved. Today, a dangerous Readiness Gap exists between what the front line needs and what is delivered. Our AI-native platform, Air Enterprise Readiness, aligns development, production, delivery, and sustainment into one coordinated execution system for government agencies and industrial suppliers. By revealing true capacity, exposing real constraints, coordinating resources, and executing at the speed of operational demands, the front line gets what it needs to succeed.
Job Description
We are seeking an experienced Senior AI Engineer specializing in AI security to join our Agentic AI team as we scale our agentic capabilities across all levels of the U.S. government.
Over the past year, we have seen rapid adoption of our AI agent, Ace. As agents gain access to increasingly powerful tools, data, and workflows, securing these systems presents a fundamentally different set of challenges from securing traditional software.
AI security is not a solved problem. This role sits at the intersection of applied AI research, offensive security, and production systems engineering. You will identify how agentic systems can fail or be exploited, develop new approaches for detecting and mitigating those failures, and build the infrastructure necessary to deploy capable AI agents securely in adversarial environments.
You will work directly with the engineers building our agent runtime, evaluation infrastructure, tools, and production AI systems. The goal is not simply to identify vulnerabilities - it is to turn what we learn into durable security architecture, automated evaluations, and engineering primitives that make our entire AI platform more secure.
This role is a full-time position located out of our office in Pittsburgh, PA or Arlington, VA and Remote for those outside of those cities.
This role may require up to 25% travel
Scope of Responsibilities
  • Research and develop new approaches to AI red teaming, adversarial testing, security evaluation, and robust inference.
  • Threat model agentic AI architectures, identifying trust boundaries, attack surfaces, privileged capabilities, and potential failure modes.
  • Design adversarial evaluations targeting threats such as prompt injection, indirect prompt injection, tool abuse, privilege escalation, data exfiltration, context or memory poisoning, and unintended agent behavior.
  • Build automated security evaluation and regression frameworks that continuously test agents, models, tools, and infrastructure against known and emerging attacks.
  • Translate successful attacks and research findings into production mitigations, architectural improvements, and reusable security controls.
  • Design secure execution environments for AI agents interacting with tools, code, data, and external systems.
  • Build and harden sandboxing and isolation mechanisms for executing agent-generated or otherwise untrusted workloads.
  • Design capability boundaries, permission models, and least-privilege access controls for agent tools and services.
  • Develop scalable AI infrastructure and services supporting secure model inference and agent execution.
  • Own and improve production infrastructure across Kubernetes, AWS, networking, storage, and compute.
  • Implement security controls around identity and access management, secrets, network isolation, containers, and service-to-service communication.
  • Build scalable APIs, internal platform services, and infrastructure tooling that improve developer productivity, system reliability, and security.
  • Improve observability across AI systems through structured logging, metrics, distributed tracing, dashboards, security telemetry, and automated alerting.
  • Investigate complex production and security failures across models, agents, distributed systems, and infrastructure.
  • Optimize performance, latency, and infrastructure cost while maintaining strong reliability and security guarantees.
  • Stay current with emerging attacks against LLMs and agentic systems and rapidly translate relevant research into practical evaluations and defenses.

Qualifications
  • U.S. Citizenship is required

Required Skills:
  • 5+ years of experience building production software, backend infrastructure, distributed systems, security systems, or AI/ML infrastructure.
  • Bachelor's, Master's, or Doctorate in Computer Science, Computer Engineering, Cybersecurity, Data Science, or a related technical field, or equivalent practical experience.
  • Demonstrated experience in AI red teaming, adversarial machine learning, offensive security, systems security, or related security research.
  • Experience evaluating AI systems beyond basic direct prompt injection attacks.
  • Strong understanding of how modern LLM and agentic systems operate, including model inference, context management, tool use, retrieval, and multi-step agent execution.
  • Strong intuition for how AI systems can fail when exposed to adversarial users, untrusted data, external tools, and complex production environments.
  • Experience threat modeling complex systems and translating identified risks into concrete engineering controls.
  • Strong programming experience in Python and experience building production-quality software.
  • Experience operating production services on Kubernetes and cloud platforms such as AWS, GCP, or Azure.
  • Strong understanding of networking, distributed systems, containers, service orchestration, and scalable architectures.
  • Experience designing APIs, services, asynchronous systems, and event-driven architectures.
  • Comfortable debugging failures that span application code, AI models, distributed systems, and infrastructure.
  • Able to move between research and engineering: reading new research, developing an attack or defense, validating it experimentally, and turning the result into a production system.
  • Passionate about building secure AI systems and proactively defending against novel attack vectors.

Desired Skills:
  • Experience designing or securing AI agent runtimes and tool-execution environments.
  • Experience building secure code execution sandboxes, container isolation, microVMs, or other mechanisms for running untrusted workloads.
  • Experience with cloud security, infrastructure hardening, IAM, secrets management, network isolation, and zero-trust architectures.
  • Experience with offensive security, penetration testing, vulnerability research, or exploit development.
  • Experience developing automated adversarial evaluations or integrating security evaluations into CI/CD pipelines.
  • Experience with adversarial machine learning, model robustness, or inference-time defenses.
  • Familiarity with AI security frameworks and threat taxonomies such as MITRE ATLAS, OWASP guidance for LLM/GenAI applications, or the NIST AI Risk Management Framework.
  • Experience securing RAG systems, vector stores, model gateways, or other components of modern AI infrastructure.
  • Experience with software supply-chain security and securing model, dependency, and container artifacts.
  • Experience working in government, defense, or other high-security environments.

We firmly believe that past performance is the best indicator of future performance. If you thrive while building solutions to complex problems, are a self-starter, and are passionate about making an impact in global security, we're eager to hear from you.
Air is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, sexual orientation, gender identity, disability and protected veterans status or any other characteristic protected by law.