2

Offensive Security Engineer Remote Jobs in Crofton, MD

MANTECH seeks a motivated, career and customer oriented Enterprise AI Security Engineer for a new ... For Remote Opportunities), education and certifications as well as Federal Government Contract ...

Senior Network Security Engineer

Suitland, MD · Remote

$63 - $82.50/hr

We are seeking a Senior Network Security Engineer for an operations-first role supporting ... VPN / remote access: support for remote-access VPN, site-to-site VPN, user connectivity issues ...

Senior Cyber Investigator

Washington, DC · Remote

$114K - $140K/yr

... and social engineering * Deep subject-matter expertise in one or more of the following: scaled data extraction, ransomware, local and remote exploits, or offensive security operations * Strong ...

Foundational knowledge of cyber threat concepts, including one or more of the following: scaled data extraction, ransomware, local and remote exploits, or offensive security operations * Familiarity ...

Showing results 21-40

Offensive Security Engineer Remote information

See Crofton, MD salary details

$62.2K

$154.5K

$207.8K

How much do offensive security engineer remote jobs pay per year?

As of Aug 8, 2026, the average yearly pay for offensive security engineer remote in Crofton, MD is $154,502.00, according to ZipRecruiter salary data. Most workers in this role earn between $144,600.00 and $160,300.00 per year, depending on experience, location, and employer.

What is the difference between Offensive Security Engineer Remote vs Penetration Tester?

AspectOffensive Security Engineer RemotePenetration Tester
CertificationsOSCP, OSWE, CEHOSCP, CEH, GPEN
Work EnvironmentRemote, collaborative security teamsOften client-site or remote assessments
Industry UsageSecurity teams, cybersecurity firmsConsulting firms, security assessments
Search & Comparison IntentUnderstanding roles, skills, and remote opportunitiesJob scope, certifications, and remote work options

Offensive Security Engineer Remote and Penetration Tester roles share overlapping skills and certifications like OSCP and CEH. However, Offensive Security Engineers typically work within security teams on ongoing security infrastructure, often remotely, focusing on offensive security strategies. Penetration Testers usually perform specific security assessments, sometimes on-site, and may have a broader consulting focus. Both roles are vital in cybersecurity but differ in scope and work environment.

What are the key skills and qualifications needed to thrive as an offensive security engineer?

To thrive as an Offensive Security Engineer (Remote), you need strong expertise in penetration testing, vulnerability assessment, and cybersecurity principles, often supported by a degree in computer science or a related field. Familiarity with tools like Metasploit, Burp Suite, and Kali Linux, as well as certifications such as OSCP or CEH, is typically required. Attention to detail, problem-solving skills, and effective written communication are critical soft skills for success in this role. These abilities are essential for identifying vulnerabilities, reporting findings clearly, and helping organizations strengthen their security posture against evolving threats.

What are some common challenges faced by remote offensive security engineers, and how can they be addressed?

Remote Offensive Security Engineers often face challenges such as coordinating effectively with geographically dispersed teams, maintaining secure access to sensitive systems, and staying updated on rapidly evolving threat landscapes. Overcoming these hurdles typically involves strong communication skills, leveraging secure collaboration tools, and establishing regular check-ins with colleagues. Additionally, continuous learning through online resources and industry forums is vital to remain effective and proactive in identifying and addressing security vulnerabilities.

What does an offensive security engineer do?

An Offensive Security Engineer is responsible for proactively identifying and mitigating security vulnerabilities in an organization’s systems, networks, and applications. Working remotely, they perform penetration testing, vulnerability assessments, and simulated cyberattacks to discover weaknesses before malicious actors can exploit them. They also provide detailed reports and recommendations to help organizations improve their overall security posture. Remote Offensive Security Engineers use a variety of tools and collaborate with other security professionals to ensure effective communication and secure operations across distributed environments.
What cities near Crofton, MD are hiring for Offensive Security Engineer Remote jobs? Cities near Crofton, MD with the most Offensive Security Engineer Remote job openings:

SEIM Engineer, Security Engineer III

Deloitte

Washington, DC • Remote

Full-time

Re-posted 20 days ago


Deloitte rating

8.2

Company rating: 8.2 out of 10

Based on 92 frontline employees who took The Breakroom Quiz

45th of 150 rated financial services


Job description

Deloitte's Cyber Defense and Resilience offering is seeking a SIEM Engineer to support security monitoring, detection engineering, and incident analysis across complex enterprise environments. This role will focus on building and optimizing SIEM content, improving alert fidelity, and helping clients strengthen cyber defense capabilities. The ideal candidate will bring experience with at least one of the following technology areas: Splunk, Palo Alto Networks, or CrowdStrike. This is a remote role with opportunities to work across distributed teams in a fast-paced cybersecurity environment.

Work you'll do

As a SIEM Engineer on the Cyber Defense and Resilience team, you will be responsible for...

  • Configure, maintain, and optimize SIEM content including correlation rules, alerts, dashboards, and reports
  • Analyze security events and log data to identify suspicious activity, support investigations, and improve detection coverage
  • Integrate and normalize log sources from endpoint, network, cloud, identity, and security platforms
  • Partners with cybersecurity teams to support use case development, threat detection, incident triage, and response activities
  • Document detection logic, operational procedures, and monitoring requirements to support consistent service delivery

A successful candidate would possess these skills:

  • Ability to work independently and collaborate as part of a team
  • Effective written and verbal communication skills
  • Meticulous attention to detail and quality of work product
  • Ability to build and sustain professional relationships
  • Ability to lead projects or workstreams
  • Ability to manage and prioritize multiple tasks in a fast-paced and dynamic environment
  • Strong interpersonal skills and professional demeanor
  • Ability to meet deadlines
  • Ability to provide clear guidance to others

Qualifications

Required:

  • Bachelor's degree in computer science, Cybersecurity, Information Technology, Engineering, or a degree in related technical field
  • 3+ years of experience in cybersecurity, security operations, or SIEM engineering
  • 3+ years of experience with at least one of the following: Splunk, Palo Alto XSIAM, or Crowdstrike NG SIEM
  • Security certification such as Splunk certification, Palo Alto Networks certification, or CrowdStrike certification is required
  • 2+ years' experience in the following areas:
    •  creating, tuning, and maintaining correlation searches, alerts, dashboards, and reports in a Security Information and Event Management platform
    •  reviewing and analyzing logs from endpoint, network, cloud, identity, and application sources
  • Active Secret clearance or higher
  • Must be legally authorized to work in the United States without the need for employer sponsorship, now or at any time in the future.

Preferred:

  • 2+ years' experience:
    • supporting enterprise monitoring in a Security Operations Center
    • Experience onboarding and normalizing log sources in a Security Information and Event Management platform
    • Experience mapping detections to MITRE ATT&CK techniques
    • Experience with cloud security monitoring in Amazon Web Services, Microsoft Azure, or Google Cloud Platform
    • Hands-on experience with scripting or query languages used for detection and log analysis
  • Security certification such as CompTIA Security+, or GIAC certification

The wage range for this role takes into account the wide range of factors that are considered in making compensation decisions including but not limited to skill sets; experience and training; licensure and certifications; and other business and organizational needs. The disclosed range estimate has not been adjusted for the applicable geographic differential associated with the location at which the position may be filled. At Deloitte, it is not typical for an individual to be hired at or near the top of the range for their role and compensation decisions are dependent on the facts and circumstances of each case. A reasonable estimate of the current range is $107,925 to $188,900.

You may also be eligible to participate in a discretionary annual incentive program, subject to the rules governing the program, whereby an award, if any, depends on various factors, including, without limitation, individual and organizational performance.

Qualifications:

Deloitte's Cyber Defense and Resilience offering is seeking a SIEM Engineer to support security monitoring, detection engineering, and incident analysis across complex enterprise environments. This role will focus on building and optimizing SIEM content, improving alert fidelity, and helping clients strengthen cyber defense capabilities. The ideal candidate will bring experience with at least one of the following technology areas: Splunk, Palo Alto Networks, or CrowdStrike. This is a remote role with opportunities to work across distributed teams in a fast-paced cybersecurity environment.

Work you'll do

As a SIEM Engineer on the Cyber Defense and Resilience team, you will be responsible for...

  • Configure, maintain, and optimize SIEM content including correlation rules, alerts, dashboards, and reports
  • Analyze security events and log data to identify suspicious activity, support investigations, and improve detection coverage
  • Integrate and normalize log sources from endpoint, network, cloud, identity, and security platforms
  • Partners with cybersecurity teams to support use case development, threat detection, incident triage, and response activities
  • Document detection logic, operational procedures, and monitoring requirements to support consistent service delivery

A successful candidate would possess these skills:

  • Ability to work independently and collaborate as part of a team
  • Effective written and verbal communication skills
  • Meticulous attention to detail and quality of work product
  • Ability to build and sustain professional relationships
  • Ability to lead projects or workstreams
  • Ability to manage and prioritize multiple tasks in a fast-paced and dynamic environment
  • Strong interpersonal skills and professional demeanor
  • Ability to meet deadlines
  • Ability to provide clear guidance to others

Qualifications

Required:

  • Bachelor's degree in computer science, Cybersecurity, Information Technology, Engineering, or a degree in related technical field
  • 3+ years of experience in cybersecurity, security operations, or SIEM engineering
  • 3+ years of experience with at least one of the following: Splunk, Palo Alto XSIAM, or Crowdstrike NG SIEM
  • Security certification such as Splunk certification, Palo Alto Networks certification, or CrowdStrike certification is required
  • 2+ years' experience in the following areas:
    •  creating, tuning, and maintaining correlation searches, alerts, dashboards, and reports in a Security Information and Event Management platform
    •  reviewing and analyzing logs from endpoint, network, cloud, identity, and application sources
  • Active Secret clearance or higher
  • Must be legally authorized to work in the United States without the need for employer sponsorship, now or at any time in the future.

Preferred:

  • 2+ years' experience:
    • supporting enterprise monitoring in a Security Operations Center
    • Experience onboarding and normalizing log sources in a Security Information and Event Management platform
    • Experience mapping detections to MITRE ATT&CK techniques
    • Experience with cloud security monitoring in Amazon Web Services, Microsoft Azure, or Google Cloud Platform
    • Hands-on experience with scripting or query languages used for detection and log analysis
  • Security certification such as CompTIA Security+, or GIAC certification

The wage range for this role takes into account the wide range of factors that are considered in making compensation decisions including but not limited to skill sets; experience and training; licensure and certifications; and other business and organizational needs. The disclosed range estimate has not been adjusted for the applicable geographic differential associated with the location at which the position may be filled. At Deloitte, it is not typical for an individual to be hired at or near the top of the range for their role and compensation decisions are dependent on the facts and circumstances of each case. A reasonable estimate of the current range is $107,925 to $188,900.

You may also be eligible to participate in a discretionary annual incentive program, subject to the rules governing the program, whereby an award, if any, depends on various factors, including, without limitation, individual and organizational performance.

Education:Bachelor's DegreeEmployment Type:

What Deloitte employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom