1

Offensive Security Engineer Jobs (NOW HIRING)

They are seeking an Offensive Security Manager who will lead a team of engineers, ensuring high-quality delivery and client satisfaction while driving performance and adopting AI tools to enhance ...

The Mission Praetorian is an expert-driven offensive security company. Our mission is to prevent ... You're in the work - raising the bar on delivery, developing the engineers around you, and holding ...

Senior Engineer, Offensive Security

$117K - $160K/yr

As Senior Offensive Security Engineer, AI-Driven Red Team & Tooling, you'll build the AI and agentic tooling that makes our offensive operations faster and broader, then prove it where it counts, on ...

Security Engineer

San Francisco, CA · On-site

$200K - $230K/yr

Security Engineer LiteLLM is the world's most popular AI Gateway, trusted by top companies like ... You'll oversee application-level security, maintain secure CI/CD processes, and focus on offensive ...

The Security Research and Response team in Arm's Architecture and Technology Group is seeking a highly skilled SoC Offensive Security Staff Engineer to apply an attacker's mindset to Arm's next ...

This role will ensure offensive security services evolve from point-in-time testing toward a ... Partner with vulnerability management, product security, engineering, and infrastructure teams to ...

Showing results 41-60

Offensive Security Engineer information

See salary details

$61.5K

$152.8K

$205.5K

How much do offensive security engineer jobs pay per year?

As of Aug 8, 2026, the average yearly pay for offensive security engineer in the United States is $152,773.00, according to ZipRecruiter salary data. Most workers in this role earn between $143,000.00 and $158,500.00 per year, depending on experience, location, and employer.

What are some common challenges faced by offensive security engineers on the job?

Offensive Security Engineers often encounter challenges such as keeping up with rapidly evolving threats, maintaining deep technical knowledge across various technologies, and identifying vulnerabilities in large or complex systems. They must balance rigorous testing with minimal disruption to live systems, which requires careful planning and coordination with other teams. Additionally, translating technical findings into actionable recommendations that are understandable to both technical and non-technical stakeholders is a key part of the role. These challenges make adaptability, continuous learning, and strong communication skills especially important in this field.

What does an offensive security engineer do?

An Offensive Security Engineer is responsible for identifying and exploiting vulnerabilities in systems, networks, and applications to assess an organization's security posture. They conduct penetration testing, simulate real-world cyber attacks, and provide recommendations to strengthen defenses. Their work helps organizations proactively detect and mitigate security risks before malicious hackers can exploit them. They often use tools like Metasploit, Burp Suite, and custom scripts to test security controls.

What are the key skills and qualifications needed to thrive as an offensive security engineer?

Offensive Security Engineers need expertise in penetration testing, vulnerability assessment, networking, programming, and a solid understanding of security best practices, typically supported by a computer science degree or equivalent experience. Familiarity with tools like Metasploit, Burp Suite, Kali Linux, and certifications such as OSCP or CEH is highly valued. Strong problem-solving ability, effective communication, and a collaborative mindset help professionals excel in this dynamic field. These skills ensure the engineer can identify and exploit security weaknesses while clearly conveying findings to both technical teams and stakeholders, ultimately strengthening organizational security.

More about Offensive Security Engineer jobs
What cities are hiring for Offensive Security Engineer jobs? Cities with the most Offensive Security Engineer job openings:
What are the most commonly searched types of Offensive Security Engineer jobs? The most popular types of Offensive Security Engineer jobs are:
What states have the most Offensive Security Engineer jobs? States with the most job openings for Offensive Security Engineer jobs include:
Infographic showing various Offensive Security Engineer job openings in the United States as of August 2026, with employment types broken down into 84% Full Time, 13% Part Time, and 3% Contract. Highlights an 93% Physical, 2% Hybrid, and 5% Remote job distribution, with an average salary of $152,773 per year, or $73.4 per hour.

Member of Technical Staff (Offensive Security Engineer)

Perplexity

New York, NY • On-site, Remote

$220K - $405K/yr

Full-time

Re-posted 8 days ago


Job description

Perplexity is seeking a highly skilled, experienced and hands-on Offensive Security Engineer to join our dynamic security team, taking an adversarial approach to hardening Perplexity's infrastructure, applications, and AI systems. You'll plan and execute red team operations, penetration tests, and attack simulations across our cloud infrastructure, web and mobile applications, AI/ML pipeline, and corporate environment-finding real vulnerabilities before adversaries do and working directly with engineering teams to drive remediation.
Responsibilities
  • Plan and execute red team and purple team engagements simulating advanced threat actors across cloud infrastructure (AWS, Kubernetes), endpoints, and application surfaces
  • Conduct continuous penetration testing of web applications, APIs, mobile clients, browser extensions, cloud infrastructure, and internal services
  • Assess AI/ML-specific attack surfaces including prompt injection, model exfiltration, agent abuse, tool-use exploitation, and MCP security boundaries
  • Develop and maintain custom offensive tooling, exploits, and automation to improve the efficiency and coverage of security testing
  • Perform open-scope adversary simulations that test detection and response capabilities end to end, collaborating closely with the defensive security team
  • Drive threat modeling sessions with engineering teams to identify and prioritize attack vectors in new features and architectures
  • Deliver clear, actionable findings to both technical and executive audiences; partner with engineering to validate remediations
  • Contribute to the security of CI/CD pipelines, supply chain integrity, and secrets management through offensive assessment
  • Stay current on emerging attack techniques, vulnerability research, and adversary tradecraft; bring external perspective into Perplexity's security strategy

Qualifications
  • 5+ years of hands-on experience in offensive security, red teaming, or penetration testing
  • Deep technical expertise in at least two of: cloud security (AWS/GCP/Azure), web/API application security, Kubernetes and container security, macOS/Linux endpoint security, network penetration testing, or CI/CD pipeline security
  • Track record of discovering impactful vulnerabilities or developing novel attack techniques in production environments
  • Strong programming and scripting skills in Python, Go, or similar languages; comfortable writing custom tooling and exploits
  • Experience with industry-standard offensive tools (Burp Suite, Cobalt Strike / Sliver / Mythic, Metasploit, BloodHound, nuclei, etc.) and ability to operate beyond them
  • Excellent written and verbal communication; able to translate complex technical findings into clear risk narratives
  • Experience assessing AI/ML systems, LLM applications, or agentic workflows for security vulnerabilities
  • Bonus: Published security research, conference talks (DEF CON, Black Hat, BSides), CVE credits, or meaningful bug bounty contributions