1

Offensive Security Engineer Jobs in Washington (NOW HIRING)

Senior Security Engineer

Mclean, VA · On-site

$116K - $159K/yr

Required : • 6+ years of professional security engineering experience • Deep hands-on experience with offensive security: red teaming, penetration testing, or vulnerability research • ...

Security Engineer

Washington, DC · On-site

$140 - $190/hr

Role Overview As a Security Engineer at Method Security, you will be instrumental in expanding the ... Build and extend defensive and offensive security‑focused tools and workflows that enhance the ...

Senior Security Engineer

Mclean, VA · On-site

$115K - $158K/yr

Deep hands-on experience with offensive security: red teaming, penetration testing, or ... engineering teams * Bachelor's degree in Computer Science, Cybersecurity, or a related field, or ...

Senior Security Engineer

Mclean, VA · On-site

$130 - $180/hr

Deep hands-on experience with offensive security: red teaming, penetration testing, or ... engineering teams * Bachelor's degree in Computer Science, Cybersecurity, or a related field, or ...

Showing results 41-60

Offensive Security Engineer information

See Washington salary details

$69.7K

$173K

$232.7K

How much do offensive security engineer jobs pay per year?

As of Aug 11, 2026, the average yearly pay for offensive security engineer in Washington is $173,030.00, according to ZipRecruiter salary data. Most workers in this role earn between $162,000.00 and $179,500.00 per year, depending on experience, location, and employer.

What are some common challenges faced by offensive security engineers on the job?

Offensive Security Engineers often encounter challenges such as keeping up with rapidly evolving threats, maintaining deep technical knowledge across various technologies, and identifying vulnerabilities in large or complex systems. They must balance rigorous testing with minimal disruption to live systems, which requires careful planning and coordination with other teams. Additionally, translating technical findings into actionable recommendations that are understandable to both technical and non-technical stakeholders is a key part of the role. These challenges make adaptability, continuous learning, and strong communication skills especially important in this field.

What does an offensive security engineer do?

An Offensive Security Engineer is responsible for identifying and exploiting vulnerabilities in systems, networks, and applications to assess an organization's security posture. They conduct penetration testing, simulate real-world cyber attacks, and provide recommendations to strengthen defenses. Their work helps organizations proactively detect and mitigate security risks before malicious hackers can exploit them. They often use tools like Metasploit, Burp Suite, and custom scripts to test security controls.

What are the key skills and qualifications needed to thrive as an offensive security engineer?

Offensive Security Engineers need expertise in penetration testing, vulnerability assessment, networking, programming, and a solid understanding of security best practices, typically supported by a computer science degree or equivalent experience. Familiarity with tools like Metasploit, Burp Suite, Kali Linux, and certifications such as OSCP or CEH is highly valued. Strong problem-solving ability, effective communication, and a collaborative mindset help professionals excel in this dynamic field. These skills ensure the engineer can identify and exploit security weaknesses while clearly conveying findings to both technical teams and stakeholders, ultimately strengthening organizational security.

What are the most commonly searched types of Offensive Security Engineer jobs in Washington? The most popular types of Offensive Security Engineer jobs in Washington are:
What job categories do people searching Offensive Security Engineer jobs in Washington look for? The top searched job categories for Offensive Security Engineer jobs in Washington are:
What cities in Washington are hiring for Offensive Security Engineer jobs? Cities in Washington with the most Offensive Security Engineer job openings:
Infographic showing various Offensive Security Engineer job openings in Washington as of August 2026, with employment types broken down into 100% Full Time. Highlights an 71% In-person, 6% Hybrid, and 23% Remote job distribution, with an average salary of $173,030 per year, or $83.2 per hour.

Security Software Engineer - Red Team Penetra

Imagine One Technology & Management Ltd

Arlington, VA • On-site

Other

Medical, Dental, Vision, Retirement

Posted 6 days ago


Job description

This position requires U.S. citizenship and an active U.S. DoD clearance.

Candidates who are not U.S. citizens are not eligible for this role.

Imagine One Technology & Management, Ltd. is seeking one (1) Security Software Engineer. This position is contingent upon award of the associated work and will be performed in Dahlgren, Virginia.

The Security Software Engineer will be expected to:

  • Debug and reverse engineer software.
  • Analyze Windows Events and Linux syslog's, boot logs and dmesg logs.
  • Program and debug Web 2.0, Java, Perl, Ada, C++, Tool Command Language (tcl/tk) scripts and graphical user interfaces (GUis) using Microsoft Visual tel and Rational ClearCase for software configuration management.
  • Recommend software modifications to systems to mitigate known vulnerabilities.
  • Operate and administrate computer systems running HP-UX, UNIX, Solaris, Linux and Microsoft Windows.
  • Identify security flaws in compiled and human readable source code.
  • Understand code utilizing real-time VxWorks and Lynx OS operating systems, Common Object Resource Broker Architecture (CORBA), firewalls and networking protocols.
  • Understand how to implement NSA approved encryption technologies and devices.
  • Apply DISA Security Technical Implementation Guides (STIGs).
  • Apply virtual hosting and server technology in system architectures.
  • Understand and apply the concept of deceptive technology such as honey pots in system architectures.
  • Participate in Code Reviews. Perform Static Source Code Analysis. Author recommendations for improving software and code design.
  • Contribute to a System Security Administrator and Operators Manual (SSAOM).

Desired Experience:

  • Five (5) years of experience in software engineering applied to program development; modeling and simulation applied to DoD or Information Technology systems.
  • Five (5) Years experience in:
    1. Linux – firm grasp/demonstrated knowledge
    2. Associated Training: COMPTIA Linux+ or FedVTE Linux+
  • Five (5) Years experience in:
    1. Windows – foundational knowledge with good understanding of enterprise networks
    2. Associated Training: Microsoft course (MCSA; Various)
  • Strong working knowledge of common Penetration Testing (PENTEST) tools:
    1. Kali, Metasploit, NMAP, Cobalt Strike
    2. Associated Training: Certified Ethical Hacker or Offensive Security Certified Professional and;
    3. Documented experience in at least one of the following:
      1. Penetration Testing (PENTEST) (government or contractor)
      2. Red Team Operations (government or contractor)
      3. Tool/Software Development (exploits/malware, C2, reverse engineering, bug bounties)
      4. Python, C, C Sharp, C++, Go, Perl, Powershell
      5. Web Dev/Web App Dev/Web Penetration testing
    4. PHP, ASP, SQL db's, Java, HTML, No SQL[VW1]

Educational Requirements:

  • Minimum certification as IAT Level II per DoD 8570.01, or successor.
  • Minimum certification as penetration tester and possess one of the following certificates:
    1. Offensive Security Certs: Offensive Security Certified Professional (OSCP), Offensive Security Certified Expert (OSCE), Offensive Security Exploitation Expert (OSEE), Offensive Security Wireless Professional (OSWP)
    2. SANS Certs: SEC560 - Network Penetration testing and Ethical Hacking (GPEN Certification), SEC542 - Web App Penetration Testing and Ethical Hacking (GWAPT Certification), SEC660 - Advance Penetration Testing. Exploit Writing, and Ethical Hacking (GXPN Certification), SEC642 - Advanced Web App Penetration Testing and Ethical Hacking, SEC564 - Red Team Operations and Threat Emulation
    3. OSD Sponsored Cyber Operation Academy Course (COAC) graduates.
  • Bachelor’s degree desired

Security Requirements:

  • Active DoD Top Secret clearance required

Imagine One Technology & Management, Ltd., offers a full package of benefits and competitive salary, excellent group medical, vision, and dental programs. 401K savings plan; $4K annual tuition reimbursement ($5K if pursuing master’s degree); employee training, development, and education programs; profit sharing; advancement opportunities; and much more!

ISO 9001:2015, ISO 20000-1:2018, ISO 27001:2013
CMMI Development and Services - Maturity Level 3
An Employee-Owned Business

EEO/Veterans/Disabled