1

Offensive Security Engineer Jobs in Seattle, WA (NOW HIRING)

Offensive Security Engineer

Seattle, WA · Remote

$150K - $200K/yr

As an Offensive Security Engineer at Staris AI, you'll be at the vanguard of the application security profession. This role goes beyond conventional application security and penetration testing; you ...

Security Engineer II

Seattle, WA · On-site

$168K - $210K/yr

We are looking for a Security Engineer specializing in Penetration Testing to help strengthen the ... This role is ideal for someone passionate about penetration testing, offensive security, secure ...

Security Engineer II

Seattle, WA · On-site

$168K - $210K/yr

We are looking for a Security Engineer specializing in Penetration Testing to help strengthen the ... This role is ideal for someone passionate about penetration testing, offensive security, secure ...

The Security Team Okta is The World's Identity Company. We free everyone to safely use any ... This is a hybrid research, offensive and software engineering role centered on leveraging AI to ...

You will work with partner teams across security engineering, privacy, and offensive security to keep Apple's services secure for our users. If you love diving into different complex technical ...

You will be working with partner teams in security engineering, privacy, and offensive security to keep Apple's services secure for our users. If you love diving into different complex technical ...

... or offensive security role • Direct experience with the Department of Defense (DoD) Risk ... engineering, key management, and secure boot chains • Experience shipping signed firmware/OS ...

Application Security Engineer

Seattle, WA · On-site

$195K - $244K/yr

As our Application Security Engineer, you'll own how we find, prioritize, and drive down ... Bonus Points • Offensive security experience including pentesting, API security, or mobile ...

next page

Showing results 1-20

Offensive Security Engineer information

See Seattle, WA salary details

$70K

$174K

$234K

How much do offensive security engineer jobs pay per year?

As of Jul 27, 2026, the average yearly pay for offensive security engineer in Seattle, WA is $173,958.00, according to ZipRecruiter salary data. Most workers in this role earn between $162,800.00 and $180,500.00 per year, depending on experience, location, and employer.

What are some common challenges faced by Offensive Security Engineers on the job?

Offensive Security Engineers often encounter challenges such as keeping up with rapidly evolving threats, maintaining deep technical knowledge across various technologies, and identifying vulnerabilities in large or complex systems. They must balance rigorous testing with minimal disruption to live systems, which requires careful planning and coordination with other teams. Additionally, translating technical findings into actionable recommendations that are understandable to both technical and non-technical stakeholders is a key part of the role. These challenges make adaptability, continuous learning, and strong communication skills especially important in this field.

How much do offensive security engineers make?

Offensive security engineers typically earn between $80,000 and $150,000 annually, depending on experience, certifications, and location. Senior roles or those with specialized skills in penetration testing and exploit development can earn higher salaries, often exceeding $150,000.

What does an Offensive Security Engineer do?

An Offensive Security Engineer is responsible for identifying and exploiting vulnerabilities in systems, networks, and applications to assess an organization's security posture. They conduct penetration testing, simulate real-world cyber attacks, and provide recommendations to strengthen defenses. Their work helps organizations proactively detect and mitigate security risks before malicious hackers can exploit them. They often use tools like Metasploit, Burp Suite, and custom scripts to test security controls.

What does an offensive security engineer do?

An offensive security engineer conducts simulated cyberattacks to identify vulnerabilities in computer systems, networks, and applications. They use tools like penetration testing and vulnerability assessment techniques to improve security defenses and often hold certifications such as OSCP or CEH. Their work involves ethical hacking, reporting security flaws, and helping organizations strengthen their cybersecurity posture.

Can you make $500,000 a year in cyber security?

Offensive Security Engineers with advanced skills, certifications like OSCP, and extensive experience can potentially earn $500,000 annually, especially in high-demand industries or senior roles. Achieving this level typically requires expertise in penetration testing, security tools, and often leadership responsibilities or consulting work.

What engineers make $500,000?

Senior offensive security engineers with extensive experience, specialized skills in penetration testing, and relevant certifications such as OSCP or CISSP can reach or exceed a $500,000 annual salary, especially in high-demand industries or senior leadership roles. Compensation often includes base salary, bonuses, and stock options, reflecting their expertise in cybersecurity and offensive security techniques.

What are the key skills and qualifications needed to thrive in the Offensive Security Engineer position, and why are they important?

Offensive Security Engineers need expertise in penetration testing, vulnerability assessment, networking, programming, and a solid understanding of security best practices, typically supported by a computer science degree or equivalent experience. Familiarity with tools like Metasploit, Burp Suite, Kali Linux, and certifications such as OSCP or CEH is highly valued. Strong problem-solving ability, effective communication, and a collaborative mindset help professionals excel in this dynamic field. These skills ensure the engineer can identify and exploit security weaknesses while clearly conveying findings to both technical teams and stakeholders, ultimately strengthening organizational security.

What are the most commonly searched types of Offensive Security Engineer jobs in Seattle, WA? The most popular types of Offensive Security Engineer jobs in Seattle, WA are:
What job categories do people searching Offensive Security Engineer jobs in Seattle, WA look for? The top searched job categories for Offensive Security Engineer jobs in Seattle, WA are:
Infographic showing various Offensive Security Engineer job openings in Seattle, WA as of July 2026, with employment types broken down into 100% Full Time. Highlights an 74% In-person, and 26% Remote job distribution, with an average salary of $173,860 per year, or $83.6 per hour.

Offensive Security Engineer

Staris AI

Seattle, WA • Remote

$150K - $200K/yr

Full-time

Posted 20 days ago


Job description

Description
At Staris AI we believe human-based cyber defense is dead and the dream of security automation is finally within reach. Staris AI is a Series A ventured-backed firm that is reinventing application security with its innovative AI-powered penetration testing that continuously validates and remediates real attack paths in running applications. The Staris Total Context Security platform proves exploitable vulnerabilities in hours, not weeks, with zero false positives and 40:1 efficiency gains over traditional methods.
We're on a mission to transform the indefensible into the impenetrable, advancing applications into a new era of security.
As an Offensive Security Engineer at Staris AI, you'll be at the vanguard of the application security profession. This role goes beyond conventional application security and penetration testing; you'll be instrumental in advancing the field of automated software attack and simulation with your expertise in threat simulation and attack automation.

What You'll Do
  • Own the execution and quality of autonomous security assessments, ensuring results are accurate, validated, and actionable for customers.
  • Drive the continuous improvement of AI-driven attack simulations and automated exploitation workflows to expand coverage, reliability, and assessment depth.
  • Apply offensive security expertise to identify realistic attack paths, validate findings, and reduce false positives across modern application and cloud environments.
  • Partner with engineering and research teams to operationalize new attack techniques and strengthen the platform’s autonomous testing capabilities.
  • Use insights from diverse target environments and customer feedback to improve assessment logic, remediation quality, and overall platform effectiveness.

What You Bring
  • Minimum of 5 years of experience in application security assessment, source code auditing, bug hunting or similar areas
  • Knowledge of offensive application security fundamentals
  • Knowledge of relevant open-source technologies for attack automation (e.g. Tools, Libraries, Frameworks, etc.)
  • Experience working with relevant software assessment technologies (e.g. SAST, DAST, Fuzzing, etc.).
  • Prior emphasis on distributed systems and micro-service architectures
  • Familiarity with prompt engineering, generative AI models, and their APIs
  • Bachelor's degree in a related field (e.g. Computer Science, Information Technology, Cybersecurity, etc.) 
  • Strong English language communication skills

Why Staris
  • Backed by a founding team with deep pedigree, including alumni of Amazon, Accenture, and Palo Alto Networks, who have solved this problem operationally before.
  • A genuine category-defining product. Most AppSec tools create noise while Staris eliminates it with AI-driven proof of exploitability and automated, code-level remediation.
  • Supporting a massive, underserved market. Enterprises invest heavily in AppSec but deeply test only a fraction of their software portfolio.
  • Competitive base, meaningful equity, full benefits, and a remote-first culture.