2

Offensive Security Engineer Remote Jobs in Washington, DC

OSCP (Offensive Security Certified Professional) * CPTS (Certified Penetration Testing Specialist) * GPEN (GIAC Penetration Tester) * GXPN (GIAC Exploit Programmer) * CRTO (Certified Red Team ...

Senior Network Security Engineer

Suitland, MD · Remote

$63 - $82.50/hr

We are seeking a Senior Network Security Engineer for an operations-first role supporting ... VPN / remote access: support for remote-access VPN, site-to-site VPN, user connectivity issues ...

MANTECH seeks a motivated, career and customer oriented Enterprise AI Security Engineer for a new ... For Remote Opportunities), education and certifications as well as Federal Government Contract ...

Hybrid 3 days onsite / 2 days remote in either Tysons Corner, VA or Rockville, MD Our client seeks a senior application security engineer to plan, coordinate, and implement application security ...

ICAM Security Engineer

Mclean, VA · On-site +1

$86K - $198K/yr

Remote Work: No Job Number: R0239449 Location: McLean,VA,US Share job via: Share ICAM Security Engineer The Opportunity: The user is the last frontier for cybersecurity. It's where the perimeter is ...

Showing results 41-60

Offensive Security Engineer Remote information

See Washington, DC salary details

$69.7K

$173K

$232.7K

How much do offensive security engineer remote jobs pay per year?

As of Aug 11, 2026, the average yearly pay for offensive security engineer remote in Washington, DC is $173,030.00, according to ZipRecruiter salary data. Most workers in this role earn between $162,000.00 and $179,500.00 per year, depending on experience, location, and employer.

What is the difference between Offensive Security Engineer Remote vs Penetration Tester?

AspectOffensive Security Engineer RemotePenetration Tester
CertificationsOSCP, OSWE, CEHOSCP, CEH, GPEN
Work EnvironmentRemote, collaborative security teamsOften client-site or remote assessments
Industry UsageSecurity teams, cybersecurity firmsConsulting firms, security assessments
Search & Comparison IntentUnderstanding roles, skills, and remote opportunitiesJob scope, certifications, and remote work options

Offensive Security Engineer Remote and Penetration Tester roles share overlapping skills and certifications like OSCP and CEH. However, Offensive Security Engineers typically work within security teams on ongoing security infrastructure, often remotely, focusing on offensive security strategies. Penetration Testers usually perform specific security assessments, sometimes on-site, and may have a broader consulting focus. Both roles are vital in cybersecurity but differ in scope and work environment.

What are the key skills and qualifications needed to thrive as an offensive security engineer?

To thrive as an Offensive Security Engineer (Remote), you need strong expertise in penetration testing, vulnerability assessment, and cybersecurity principles, often supported by a degree in computer science or a related field. Familiarity with tools like Metasploit, Burp Suite, and Kali Linux, as well as certifications such as OSCP or CEH, is typically required. Attention to detail, problem-solving skills, and effective written communication are critical soft skills for success in this role. These abilities are essential for identifying vulnerabilities, reporting findings clearly, and helping organizations strengthen their security posture against evolving threats.

What are some common challenges faced by remote offensive security engineers, and how can they be addressed?

Remote Offensive Security Engineers often face challenges such as coordinating effectively with geographically dispersed teams, maintaining secure access to sensitive systems, and staying updated on rapidly evolving threat landscapes. Overcoming these hurdles typically involves strong communication skills, leveraging secure collaboration tools, and establishing regular check-ins with colleagues. Additionally, continuous learning through online resources and industry forums is vital to remain effective and proactive in identifying and addressing security vulnerabilities.

What does an offensive security engineer do?

An Offensive Security Engineer is responsible for proactively identifying and mitigating security vulnerabilities in an organization’s systems, networks, and applications. Working remotely, they perform penetration testing, vulnerability assessments, and simulated cyberattacks to discover weaknesses before malicious actors can exploit them. They also provide detailed reports and recommendations to help organizations improve their overall security posture. Remote Offensive Security Engineers use a variety of tools and collaborate with other security professionals to ensure effective communication and secure operations across distributed environments.
What are the most commonly searched types of Offensive Security Engineer jobs in Washington, DC? The most popular types of Offensive Security Engineer jobs in Washington, DC are:
What are popular job titles related to Offensive Security Engineer Remote jobs in Washington, DC? For Offensive Security Engineer Remote jobs in Washington, DC, the most frequently searched job titles are:
What job categories do people searching Offensive Security Engineer Remote jobs in Washington, DC look for? The top searched job categories for Offensive Security Engineer Remote jobs in Washington, DC are:

Penetration Tester

Altus Consulting Corp

Herndon, VA • On-site, Remote

Full-time

Re-posted 17 days ago


Job description

Principal Penetration Tester

Altus Consulting seeks a seasoned cybersecurity professional to spearhead our penetration testing initiatives. As a key member of our elite team, you'll play a crucial role in safeguarding some of the world's most critical digital infrastructure.

Core Responsibilities:

  • Design and execute sophisticated penetration tests across complex networks, systems, and applications
  • Craft compelling, actionable reports that translate technical findings into clear business impact
  • Collaborate closely with clients to develop tailored remediation strategies that drive meaningful security improvements
  • Push the boundaries of penetration testing innovation through research and development of novel TTPs
  • Contribute to Altus Consulting's thought leadership efforts via publications, presentations, and industry forums
  • Lead quality assurance initiatives for our suite of penetration testing services
  • Engage in cross-functional collaboration to enhance our overall security offerings

Ideal Candidate Profile:

We are seeking candidates with a degree in Computer Science, Computer Engineering, or a related technical field. Alternatively, we will consider individuals with equivalent professional experience that demonstrates comparable skills and knowledge.

To be considered equivalent, candidates should be able to prove or quantify their experience through:

  • Relevant work history demonstrating hands-on experience in computer science/engineering principles
  • Completed projects or certifications that align with our technical requirements
  • Demonstrated proficiency in key skills like programming languages, algorithms, software design, etc.
  • Relevant coursework or training if transitioning from another field

We value both formal education and practical experience. Candidates who can show they have acquired equivalent knowledge through non-traditional means (e.g. self-study, online courses, bootcamps) are encouraged to apply.

Applicants should be prepared to discuss their qualifications in detail during the interview process.

Key Skills to Focus On:

  • Programming languages like Python, Java, C++, Linux scripting
  • Network and application security knowledge
  • Familiarity with security assessment tools
  • Threat modeling and cryptography skills
  • Knowledge of operating systems (Windows, Linux, macOS)
  • Experience with penetration testing frameworks and tools

Highly Valued Certifications:

  • OSCP (Offensive Security Certified Professional)
  • CPTS (Certified Penetration Testing Specialist)
  • GPEN (GIAC Penetration Tester)
  • GXPN (GIAC Exploit Programmer)
  • CRTO (Certified Red Team Operator)

Additional Considerations:

  • Familiarity with emerging threats and attack vectors in cloud and containerized environments
  • Experience with automated vulnerability scanning and exploitation platforms
  • Knowledge of security frameworks and regulations relevant to commercial companies
  • Track record of contributing to open-source security projects or publishing research in the field

What We Offer:

  • Competitive compensation and benefits package
  • Opportunities for professional development
  • Collaborative, dynamic work environment
  • Chance to work on cutting-edge security challenges

About Our Team:

Altus Consulting believes it's essential to keep innovating while safeguarding our digital infrastructure. Our team ensures that we maintain a secure operating environment and preserve the trust of our customers, partners, and stakeholders. We bring together a variety of services and capabilities to help prevent fraud, detect threats, and manage digital risk and access. In addition to mitigating attack risks and securing cloud transformation, we foster in our team members a culture of innovation and reliability.

Key Campaign Activities:

  • Execute full-scale, assumed breach, and transparent/collaborative campaigns
  • Develop, curate, and leverage offensive security tooling
  • Manage and configure campaign infrastructure
  • Research and develop attacks on vulnerable systems and defensive tooling (e.g., AntiVirus, EDR, XDR)
  • Provide ongoing consulting to defense teams as they design and implement responses to campaign findings
  • We're looking for candidates who can leverage their expertise in scripting, development, attack infrastructure, social engineering, and offensive security tooling to execute simulated attacks against our clients' networks and subsidiaries spanning the globe.
  • If you're passionate about pushing the boundaries of cybersecurity and want to join a team that's reshaping how organizations defend against modern threats, we encourage you to apply. Together, we can create a safer digital world for all.