1

Offensive Security Engineer Jobs in Virginia (NOW HIRING)

Senior Security Engineer

Mclean, VA · On-site

$116K - $159K/yr

Required : • 6+ years of professional security engineering experience • Deep hands-on experience with offensive security: red teaming, penetration testing, or vulnerability research • ...

... on offensive security, penetration testing, or vulnerability research * Prior experience performing security testing and assessment in IoT, embedded, or firmware based environments * Working ...

next page

Showing results 1-20

Offensive Security Engineer information

See Virginia salary details

$61K

$151.5K

$203.7K

How much do offensive security engineer jobs pay per year?

As of Sep 3, 2026, the average yearly pay for offensive security engineer in Virginia is $151,463.00, according to ZipRecruiter salary data. Most workers in this role earn between $141,800.00 and $157,100.00 per year, depending on experience, location, and employer.

What does an offensive security engineer do?

An Offensive Security Engineer is responsible for identifying and exploiting vulnerabilities in systems, networks, and applications to assess an organization's security posture. They conduct penetration testing, simulate real-world cyber attacks, and provide recommendations to strengthen defenses. Their work helps organizations proactively detect and mitigate security risks before malicious hackers can exploit them. They often use tools like Metasploit, Burp Suite, and custom scripts to test security controls.

What are the key skills and qualifications needed to thrive as an offensive security engineer?

Offensive Security Engineers need expertise in penetration testing, vulnerability assessment, networking, programming, and a solid understanding of security best practices, typically supported by a computer science degree or equivalent experience. Familiarity with tools like Metasploit, Burp Suite, Kali Linux, and certifications such as OSCP or CEH is highly valued. Strong problem-solving ability, effective communication, and a collaborative mindset help professionals excel in this dynamic field. These skills ensure the engineer can identify and exploit security weaknesses while clearly conveying findings to both technical teams and stakeholders, ultimately strengthening organizational security.

What are some common challenges faced by offensive security engineers on the job?

Offensive Security Engineers often encounter challenges such as keeping up with rapidly evolving threats, maintaining deep technical knowledge across various technologies, and identifying vulnerabilities in large or complex systems. They must balance rigorous testing with minimal disruption to live systems, which requires careful planning and coordination with other teams. Additionally, translating technical findings into actionable recommendations that are understandable to both technical and non-technical stakeholders is a key part of the role. These challenges make adaptability, continuous learning, and strong communication skills especially important in this field.

What are the most commonly searched types of Offensive Security Engineer jobs in Virginia?

The most popular types of Offensive Security Engineer jobs in Virginia are:

What are popular job titles related to Offensive Security Engineer jobs in Virginia?

For Offensive Security Engineer jobs in Virginia, the most frequently searched job titles are:

What job categories do people searching Offensive Security Engineer jobs in Virginia look for?

The top searched job categories for Offensive Security Engineer jobs in Virginia are:

What cities in Virginia are hiring for Offensive Security Engineer jobs?

Cities in Virginia with the most Offensive Security Engineer job openings:

Infographic showing various Offensive Security Engineer job openings in Virginia as of August 2026, with employment types broken down into 85% Full Time, 13% Part Time, and 2% Contract. Highlights an 91% Physical, 2% Hybrid, and 7% Remote job distribution, with an average salary of $151,463 per year, or $72.8 per hour.

Senior Offensive Security Engineer (Red Team)

Salesforce, Inc.

Herndon, VA • On-site

$117K - $161K/yr

Full-time

Medical, Dental, Vision, Life, Retirement

Re-posted 5 days ago


Salesforce rating

8.1

Company rating: 8.1 out of 10

Based on 58 frontline employees who took The Breakroom Quiz

112th of 247 rated software companies


Job description

To get the best candidate experience, please consider applying for a maximum of 3 roles within 12 months to ensure you are not duplicating efforts.

Job Category

Product

Job Details

About Salesforce

Salesforce is the #1 AI CRM, where humans with agents drive customer success together. Here, ambition meets action. Tech meets trust. And innovation isn't a buzzword - it's a way of life. The world of work as we know it is changing and we're looking for Trailblazers who are passionate about bettering business and the world through AI, driving innovation, and keeping Salesforce's core values at the heart of it all.

Ready to level-up your career at the company leading workforce transformation in the agentic era? You're in the right place! Agentforce is the future of AI, and you are the future of Salesforce.

We are looking for a Senior Offensive Security Engineer (Red Team) with a strong, hands-on attacker mindset to execute advanced offensive security operations across our products, platforms, and enterprise environment. This role is highly execution-focused. You will work closely with the Red Team Director to design and carry out real-world adversary simulations, uncover high-impact attack paths, and validate how weaknesses can be chained to achieve meaningful attacker objectives. The emphasis is on real exploitation, depth and impact, not checklist-driven testing. You will play a key role in translating red team operations into actionable insights that improve prevention, detection, and response capabilities across the organization.
Key Responsibilities
  • Execute hands-on red team operations simulating real-world threat actors across applications, platforms, cloud infrastructure, and enterprise environments.
  • Identify, exploit, and chain high-impact vulnerabilities and weaknesses to achieve defined attacker goals.
  • Perform advanced offensive activities, including:
    • Manual exploitation and attack chaining
    • Abuse of identity, authorization, and trust relationships
    • Bypassing security controls and detections
  • Contribute to the design and execution of end-to-end attack campaigns under the guidance of the Red Team Director.
  • Develop a deep understanding of products and systems through the lens of adversary abuse and exploitation.
  • Collaborate closely with:
    • Detection & Response teams to test alerts, visibility, and response workflows
    • Incident Response teams during simulated incidents
    • Engineering and platform teams to explain exploitation paths and root causes
  • Produce clear, technically detailed findings that translate into actionable remediation guidance.
  • Contribute to tooling, automation, and tradecraft improvements, including collaboration with the AI-Automation team.
  • Share knowledge and mentor junior red team engineers, helping raise overall tradecraft quality.

Required Qualifications
  • Deep hands-on experience in offensive security, red teaming, or high-impact penetration testing.
  • Proven experience executing complex offensive engagements in production-like environments.
  • Strong understanding of:
    • Adversary tactics, techniques, and procedures (TTPs)
    • Identity and access abuse
    • Application and infrastructure attack chains
    • Cloud and hybrid enterprise attack surfaces
  • Hands-on experience with:
    • Manual exploitation and attack chaining
    • Writing custom scripts, tooling, or payloads
    • Bypassing security controls and detections
  • Ability to clearly articulate:
    • How attacks were performed
    • Why defenses failed
    • What mitigations will meaningfully reduce risk
  • Strong communication skills and experience collaborating with security and engineering teams.

Unleash Your Potential

When you join Salesforce, you'll be limitless in all areas of your life. Our benefits and resources support you to find balance andbe your best, and our AI agents accelerate your impact so you cando your best. Together, we'll bring the power of Agentforce to organizations of all sizes and deliver amazing experiences that customers love. Apply today to not only shape the future - but to redefine what's possible - for yourself, for AI, and the world.

Accommodations

If you need a reasonable accommodation during the application or the recruiting process, please submit a request via this Accommodations Request Form.

Please note that Salesforce uses artificial intelligence (AI) tools to help our recruiters assess and evaluate candidates' resumes and qualifications throughout the recruiting process. Humans will always make any candidate selection and hiring decisions. Please see our Candidate Privacy Statement for more information about how we use your personal data and your rights, including with regard to use of AI tools and opt out options.

Posting Statement

Salesforce is an equal opportunity employer and maintains a policy of non-discrimination with all employees and applicants for employment. What does that mean exactly? It means that at Salesforce, we believe in equality for all. And we believe we can lead the path to equality in part by creating a workplace that's inclusive, and free from discrimination. Know your rights: workplace discrimination is illegal. Any employee or potential employee will be assessed on the basis of merit, competence and qualifications - without regard to race, religion, color, national origin, sex, sexual orientation, gender expression or identity, transgender status, age, disability, veteran or marital status, political viewpoint, or other classifications protected by law. This policy applies to current and prospective employees, no matter where they are in their Salesforce employment journey. It also applies to recruiting, hiring, job assignment, compensation, promotion, benefits, training, assessment of job performance, discipline, termination, and everything in between. Recruiting, hiring, and promotion decisions at Salesforce are fair and based on merit. The same goes for compensation, benefits, promotions, transfers, reduction in workforce, recall, training, and education.

In the United States, compensation offered will be determined by factors such as location, job level, job-related knowledge, skills, and experience. Certain roles may be eligible for incentive compensation, equity, and benefits. Salesforce offers a variety of benefits to help you live well including: time off programs, medical, dental, vision, mental health support, paid parental leave, life and disability insurance, 401(k), and an employee stock purchasing program. More details about company benefits can be found at the following link: https://www.salesforcebenefits.com.Pursuant to the San Francisco Fair Chance Ordinance and the Los Angeles Fair Chance Initiative for Hiring, Salesforce will consider for employment qualified applicants with arrest and conviction records.At Salesforce, we believe in equitable compensation practices that reflect the dynamic nature of labor markets across various regions. The typical base salary range for this position is $148,500 - $223,900 annually. The range represents base salary only, and does not include company bonus, incentive for sales roles, equity or benefits, as applicable.

What Salesforce employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom