Lead, Offensive Security
Boston, MA · Remote
This requires a production software engineering mindset, not proof-of-concept scripting. Your first ... Offensive Security identifies weaknesses so the business can fix them before adversaries exploit ...
Boston, MA · Remote
This requires a production software engineering mindset, not proof-of-concept scripting. Your first ... Offensive Security identifies weaknesses so the business can fix them before adversaries exploit ...
Boston, MA · Remote
This requires a production software engineering mindset, not proof-of-concept scripting. Your first ... Offensive Security identifies weaknesses so the business can fix them before adversaries exploit ...
Boston, MA · Remote
This requires a production software engineering mindset, not proof-of-concept scripting. Your first ... Offensive Security identifies weaknesses so the business can fix them before adversaries exploit ...
Boston, MA · Remote
This requires a production software engineering mindset, not proof-of-concept scripting. Your first ... Offensive Security identifies weaknesses so the business can fix them before adversaries exploit ...
Boston, MA · Remote
This requires a production software engineering mindset, not proof-of-concept scripting. Your first ... Offensive Security identifies weaknesses so the business can fix them before adversaries exploit ...
Boston, MA · Remote
This requires a production software engineering mindset, not proof-of-concept scripting. Your first ... Offensive Security identifies weaknesses so the business can fix them before adversaries exploit ...
Westford, MA · Remote
$100K - $150K/yr
Application Security Engineer - Remote Bright Vision Technologies is a technology consulting and ... The role blends hands-on offensive and defensive skills with strong communication and collaboration ...
Westford, MA · Remote
$100K - $150K/yr
Application Security Engineer - Remote Bright Vision Technologies is a technology consulting and ... The role blends hands-on offensive and defensive skills with strong communication and collaboration ...
Boston, MA · On-site
$124K - $170K/yr
Required : • 7+ years of hands on experience in cybersecurity, preferably Offensive Security or ... engineering, and model lifecycle management. • Experience with open-source AI frameworks (e.g ...
Boston, MA · On-site
$124K - $170K/yr
Required : • 7+ years of hands on experience in cybersecurity, preferably Offensive Security or ... engineering, and model lifecycle management. • Experience with open-source AI frameworks (e.g ...
$124K - $170K/yr
... and engineering teams to drive AI integration into cyber defense. This security focused subject ... The ideal candidate will have deep expertise in AI/ML, offensive and defensive security operations ...
$124K - $170K/yr
... and engineering teams to drive AI integration into cyber defense. This security focused subject ... The ideal candidate will have deep expertise in AI/ML, offensive and defensive security operations ...
Quincy, MA · On-site
$125K - $215K/yr
The engineer will execute activities in accordance with State Street's standards and procedures ... Strong proficiency in offensive security techniques, including infrastructure, application, and ...
Quincy, MA · On-site
$125K - $215K/yr
The engineer will execute activities in accordance with State Street's standards and procedures ... Strong proficiency in offensive security techniques, including infrastructure, application, and ...
$125K - $215K/yr
The engineer will execute activities in accordance with State Street's standards and procedures ... Strong proficiency in offensive security techniques, including infrastructure, application, and ...
$125K - $215K/yr
The engineer will execute activities in accordance with State Street's standards and procedures ... Strong proficiency in offensive security techniques, including infrastructure, application, and ...
Boston, MA · On-site
$120K - $202K/yr
The Lead Engineer is responsible for ensuring all testing activities align with organizational ... Advanced proficiency in offensive security techniques and threat-informed testing methodologies.
Boston, MA · On-site
$120K - $202K/yr
The Lead Engineer is responsible for ensuring all testing activities align with organizational ... Advanced proficiency in offensive security techniques and threat-informed testing methodologies.
Boston, MA · On-site
$120K - $202K/yr
The Lead Engineer is responsible for ensuring all testing activities align with organizational ... Advanced proficiency in offensive security techniques and threatinformed testing methodologies.
Boston, MA · On-site
$120K - $202K/yr
The Lead Engineer is responsible for ensuring all testing activities align with organizational ... Advanced proficiency in offensive security techniques and threatinformed testing methodologies.
Boston, MA · On-site
$145K - $192K/yr
Required Skills: * 8+ years of experience in a technical role in the areas of Security Operation, Incident Response, Detection Engineering, Offensive Security/Red Team, or Cyber Threat Intelligence.
Boston, MA · On-site
$145K - $192K/yr
Required Skills: * 8+ years of experience in a technical role in the areas of Security Operation, Incident Response, Detection Engineering, Offensive Security/Red Team, or Cyber Threat Intelligence.
Boston, MA · On-site
Required : • 8+ years of experience in a technical role in the areas of Security Operation, Incident Response, Detection Engineering, Offensive Security/Red Team, or Cyber Threat Intelligence. • ...
Boston, MA · On-site
Required : • 8+ years of experience in a technical role in the areas of Security Operation, Incident Response, Detection Engineering, Offensive Security/Red Team, or Cyber Threat Intelligence. • ...
$145K - $192K/yr
Required Skills: * 8+ years of experience in a technical role in the areas of Security Operation, Incident Response, Detection Engineering, Offensive Security/Red Team, or Cyber Threat Intelligence.
$145K - $192K/yr
Required Skills: * 8+ years of experience in a technical role in the areas of Security Operation, Incident Response, Detection Engineering, Offensive Security/Red Team, or Cyber Threat Intelligence.
Westwood, MA · On-site
... security concepts, including how AI enabled systems, inputs, and workflows can be manipulated or abused * Ability to collaborate with Blue Team and Detection Engineering to translate offensive ...
Westwood, MA · On-site
... security concepts, including how AI enabled systems, inputs, and workflows can be manipulated or abused * Ability to collaborate with Blue Team and Detection Engineering to translate offensive ...
... security concepts, including how AI enabled systems, inputs, and workflows can be manipulated or abused * Ability to collaborate with Blue Team and Detection Engineering to translate offensive ...
... security concepts, including how AI enabled systems, inputs, and workflows can be manipulated or abused * Ability to collaborate with Blue Team and Detection Engineering to translate offensive ...
... security concepts, including how AI enabled systems, inputs, and workflows can be manipulated or abused * Ability to collaborate with Blue Team and Detection Engineering to translate offensive ...
... security concepts, including how AI enabled systems, inputs, and workflows can be manipulated or abused * Ability to collaborate with Blue Team and Detection Engineering to translate offensive ...
Boston, MA · On-site
... security concepts, including how AI enabled systems, inputs, and workflows can be manipulated or abused * Ability to collaborate with Blue Team and Detection Engineering to translate offensive ...
Boston, MA · On-site
... security concepts, including how AI enabled systems, inputs, and workflows can be manipulated or abused * Ability to collaborate with Blue Team and Detection Engineering to translate offensive ...
... security concepts, including how AI enabled systems, inputs, and workflows can be manipulated or abused * Ability to collaborate with Blue Team and Detection Engineering to translate offensive ...
... security concepts, including how AI enabled systems, inputs, and workflows can be manipulated or abused * Ability to collaborate with Blue Team and Detection Engineering to translate offensive ...
... security concepts, including how AI enabled systems, inputs, and workflows can be manipulated or abused * Ability to collaborate with Blue Team and Detection Engineering to translate offensive ...
... security concepts, including how AI enabled systems, inputs, and workflows can be manipulated or abused * Ability to collaborate with Blue Team and Detection Engineering to translate offensive ...
... security concepts, including how AI enabled systems, inputs, and workflows can be manipulated or abused * Ability to collaborate with Blue Team and Detection Engineering to translate offensive ...
... security concepts, including how AI enabled systems, inputs, and workflows can be manipulated or abused * Ability to collaborate with Blue Team and Detection Engineering to translate offensive ...
$66.8K - $81K
0% of jobs
$81K - $95.3K
2% of jobs
$95.3K - $109.5K
3% of jobs
$109.5K - $123.7K
6% of jobs
$123.7K - $137.9K
5% of jobs
$137.9K - $152.1K
4% of jobs
$153.6K is the 25th percentile. Wages below this are outliers.
$152.1K - $166.4K
39% of jobs
$175.2K is the 75th percentile. Wages above this are outliers.
$166.4K - $180.6K
24% of jobs
$180.6K - $194.8K
2% of jobs
$194.8K - $209K
0% of jobs
$209K - $223.2K
14% of jobs
$66.8K
$166K
$223.2K
Offensive Security Engineers often encounter challenges such as keeping up with rapidly evolving threats, maintaining deep technical knowledge across various technologies, and identifying vulnerabilities in large or complex systems. They must balance rigorous testing with minimal disruption to live systems, which requires careful planning and coordination with other teams. Additionally, translating technical findings into actionable recommendations that are understandable to both technical and non-technical stakeholders is a key part of the role. These challenges make adaptability, continuous learning, and strong communication skills especially important in this field.
An Offensive Security Engineer is responsible for identifying and exploiting vulnerabilities in systems, networks, and applications to assess an organization's security posture. They conduct penetration testing, simulate real-world cyber attacks, and provide recommendations to strengthen defenses. Their work helps organizations proactively detect and mitigate security risks before malicious hackers can exploit them. They often use tools like Metasploit, Burp Suite, and custom scripts to test security controls.
Offensive Security Engineers need expertise in penetration testing, vulnerability assessment, networking, programming, and a solid understanding of security best practices, typically supported by a computer science degree or equivalent experience. Familiarity with tools like Metasploit, Burp Suite, Kali Linux, and certifications such as OSCP or CEH is highly valued. Strong problem-solving ability, effective communication, and a collaborative mindset help professionals excel in this dynamic field. These skills ensure the engineer can identify and exploit security weaknesses while clearly conveying findings to both technical teams and stakeholders, ultimately strengthening organizational security.

Full-time
Medical, Dental, Vision, Life, Retirement, PTO
Posted 28 days ago
8.0
Based on 263 frontline employees who took The Breakroom Quiz
160th of 299 rated insurance
The Bigger Picture
Join a 100% remote, highly specialized offensive security team where you will have access to Hack The Box Pro Labs, all HTB role-based training paths and certifications, discretionary certification funding, and conference/training budgets. These resources will enable you to continuously advance your expertise while working on industry-leading Offensive Security challenges at scale. You will be part of the Offensive Security organization, collaborating with Red Team, Penetration Testing, and Breach and Attack Simulation (BAS) professionals, highly specialized experts who identify vulnerabilities so the business can address them proactively. Fridays are dedicated to research and development, allowing the team to pursue training in emerging offensive security methodologies, tools, agents, large language models (LLMs), artificial intelligence, and other bleeding edge topics.
Mission & Impact
AI that attacks traditional systems. Build autonomous and semi-autonomous agents that perform real offensive operations against networks, web applications, and infrastructure, LLM-driven planning loops that reason through reconnaissance, exploitation, privilege escalation, and lateral movement, multi-agent orchestration for breadth, and tool/function-calling that drives real offensive tooling. This is the emerging class of LLM-driven penetration-testing agents, built for production use by a professional red team.
Offense applied to AI itself. Red-team the enterprise's own AI-LLM-powered products, agents, RAG pipelines, and ML applications, against prompt injection, jailbreaks, model extraction and inversion, membership inference, data and supply-chain poisoning, evasion, and agent tool/sandbox abuse, and validate that guardrails and classifiers actually hold.
You'll operate this as a production, event-driven cloud platform at real scale, dozens of serverless functions, change-stream data pipelines, hundreds of operational alarms, and integrated LLM inference. This requires a production software engineering mindset, not proof-of-concept scripting.
Your first 6-12 monthsWe're hiring for a genuinely hybrid skill set, deep offensive security and real AI engineering. You do not need to check every box below. If you're a strong offensive engineer who has built real AI agents, or a strong AI/agent builder with serious hands-on offensive experience, we want to hear from you.
Required Qualifications:
Preferred Qualifications:
You'll embed with each service line rather than build in isolation; ship production-grade software with engineering rigor (reproducibility, evaluation, safety guardrails, human-in-the-loop where offensive operations demand it); deliver findings and tooling with reproduction steps, severity, business impact, and remediation; track risk in the enterprise risk platform; and operate within the organization's acceptable-use-of-AI policies and offensive security rules of engagement.
Remote/WAH requirements:
Scheduled Weekly Hours
40Pay Range
The compensation range below reflects a good faith estimate of starting base pay for full time (40 hours per week) employment at the time of posting. The pay range may be higher or lower based on geographic location and individual pay will vary based on demonstrated job related skills, knowledge, experience, education, certifications, etc.Description of Benefits
Humana, Inc. and its affiliated subsidiaries (collectively, "Humana") offers competitive benefits that support whole-person well-being. Associate benefits are designed to encourage personal wellness and smart healthcare decisions for you and your family while also knowing your life extends outside of work. Among our benefits, Humana provides medical, dental and vision benefits, 401(k) retirement savings plan, time off (including paid time off, company and personal holidays, paid parental and caregiver leave), short-term and long-term disability, life insurance and many other opportunities.
Equal Opportunity Employer
It is the policy of Humana not to discriminate against any employee or applicant for employment because of race, color, religion, sex, sexual orientation, gender identity, national origin, age, marital status, genetic information, disability or protected veteran status. It is also the policy of Humana to take affirmative action, in compliance with Section 503 of the Rehabilitation Act and VEVRAA, to employ and to advance in employment individuals with disability or protected veteran status, and to base all employment decisions only on valid job requirements. This policy shall apply to all employment actions, including but not limited to recruitment, hiring, upgrading, promotion, transfer, demotion, layoff, recall, termination, rates of pay or other forms of compensation and selection for training, including apprenticeship, at all levels of employment.
Sourced by ZipRecruiter
Humana Inc., headquartered in Louisville, KY., is a leading health care company that offers a wide range of insurance products and health and wellness services that incorporate an integrated approach to lifelong well-being. By leveraging the strengths of its core businesses, Humana believes it can better explore opportunities for existing and emerging adjacencies in health care that can further enhance wellness opportunities for the millions of people across the nation with whom the company has relationships.
Health care and social assistance
10,000+ Employees
Louisville, KY, US
1961