May support one or more focus areas based on business need, including Enterprise Technology Risk, Data Security Risk, Access Management Risk, Offensive Security Risk, Vulnerability Management Risk ...
May support one or more focus areas based on business need, including Enterprise Technology Risk, Data Security Risk, Access Management Risk, Offensive Security Risk, Vulnerability Management Risk ...
Understanding of offensive security to include common attack methods * Understanding of how to pivot across multiple datasets to correlate artifacts for a single security event * A diverse skill base ...
Understanding of offensive security to include common attack methods * Understanding of how to pivot across multiple datasets to correlate artifacts for a single security event * A diverse skill base ...
Understanding of offensive security to include common attack methods * Understanding of how to pivot across multiple datasets to correlate artifacts for a single security event * A diverse skill base ...
Understanding of offensive security to include common attack methods * Understanding of how to pivot across multiple datasets to correlate artifacts for a single security event * A diverse skill base ...
May support one or more focus areas based on business need, including Enterprise Technology Risk, Data Security Risk, Access Management Risk, Offensive Security Risk, Vulnerability Management Risk ...
May support one or more focus areas based on business need, including Enterprise Technology Risk, Data Security Risk, Access Management Risk, Offensive Security Risk, Vulnerability Management Risk ...
Sr Product Manager, Technical Leader
Phoenix, AZ · On-site
$165K - $191K/yr
Experience working inCloud Native security and SecOps workflows, including threat detection, incident response, vulnerability management, and offensive security (red/blue/purple teaming). * Prior ...
New
Sr Product Manager, Technical Leader
Phoenix, AZ · On-site
$165K - $191K/yr
Experience working inCloud Native security and SecOps workflows, including threat detection, incident response, vulnerability management, and offensive security (red/blue/purple teaming). * Prior ...
New
Principal Project Engineer: Offensive Systems Engineering (OSE) with Security Clearance
Tucson, AZ · On-site
... security. With over a century of engineering expertise, we solve the toughest challenges to create a safer, more secure world. Raytheon is seeking a highly motivated and experienced Offensive Systems ...
Principal Project Engineer: Offensive Systems Engineering (OSE) with Security Clearance
Tucson, AZ · On-site
... security. With over a century of engineering expertise, we solve the toughest challenges to create a safer, more secure world. Raytheon is seeking a highly motivated and experienced Offensive Systems ...
What You Bring * 7+ years in cyber threat intelligence, adversarial research, reverse engineering, or offensive security, with at least 2+ years in a leadership or team-building role. * Deep ...
What You Bring * 7+ years in cyber threat intelligence, adversarial research, reverse engineering, or offensive security, with at least 2+ years in a leadership or team-building role. * Deep ...
S. government issued security clearance is required prior to start date. U.S. citizenship is ... Raytheon is seeking a highly motivated and experienced Offensive Systems Engineering (OSE ...
S. government issued security clearance is required prior to start date. U.S. citizenship is ... Raytheon is seeking a highly motivated and experienced Offensive Systems Engineering (OSE ...
S. government issued security clearance is required prior to start date. U.S. citizenship is ... Raytheon is seeking a highly motivated and experienced Offensive Systems Engineering (OSE ...
S. government issued security clearance is required prior to start date. U.S. citizenship is ... Raytheon is seeking a highly motivated and experienced Offensive Systems Engineering (OSE ...
Principal Project Engineer: Offensive Systems Engineering (OSE) Portfolio Program Manager (Onsite)
Tucson, AZ · On-site
$107.50 - $204.50/hr
Security Clearance: Active and transferable U.S. government‑issued secret clearance is required prior to start date; U.S. citizenship is mandatory. Responsibilities * Oversee execution and delivery ...
New
Principal Project Engineer: Offensive Systems Engineering (OSE) Portfolio Program Manager (Onsite)
Tucson, AZ · On-site
$107.50 - $204.50/hr
Security Clearance: Active and transferable U.S. government‑issued secret clearance is required prior to start date; U.S. citizenship is mandatory. Responsibilities * Oversee execution and delivery ...
New
Principal Project Engineer: Offensive Systems Engineering (OSE) Portfolio Program Manager (Onsite)
Tucson, AZ · On-site
S. government issued security clearance is required prior to start date. U.S. citizenship is ... Raytheon is seeking a highly motivated and experienced Offensive Systems Engineering (OSE ...
Principal Project Engineer: Offensive Systems Engineering (OSE) Portfolio Program Manager (Onsite)
Tucson, AZ · On-site
S. government issued security clearance is required prior to start date. U.S. citizenship is ... Raytheon is seeking a highly motivated and experienced Offensive Systems Engineering (OSE ...
S. government issued security clearance is required prior to start date. U.S. citizenship is ... Raytheon is seeking a highly motivated and experienced Offensive Systems Engineering (OSE ...
S. government issued security clearance is required prior to start date. U.S. citizenship is ... Raytheon is seeking a highly motivated and experienced Offensive Systems Engineering (OSE ...
... offensive, defensive, stability, and defense support of civil authorities' operations. • Concepts and participants in the OE. • Fundamentals of the IPB process as an UAS operator will support the ...
... offensive, defensive, stability, and defense support of civil authorities' operations. • Concepts and participants in the OE. • Fundamentals of the IPB process as an UAS operator will support the ...
INTELLIGENCE SPECIALIST
Scottsdale, AZ · On-site
$94K - $119K/yr
... security, taking your passion for science and engineering to the next level. CRYPTOLOGIC TECHNICIAN NETWORKS Use state-of-the-art technology to perform offensive and defensive cyber operations ...
INTELLIGENCE SPECIALIST
Scottsdale, AZ · On-site
$94K - $119K/yr
... security, taking your passion for science and engineering to the next level. CRYPTOLOGIC TECHNICIAN NETWORKS Use state-of-the-art technology to perform offensive and defensive cyber operations ...
INTELLIGENCE SPECIALIST
$87K - $110K/yr
... security, taking your passion for science and engineering to the next level. CRYPTOLOGIC TECHNICIAN NETWORKS Use state-of-the-art technology to perform offensive and defensive cyber operations ...
INTELLIGENCE SPECIALIST
$87K - $110K/yr
... security, taking your passion for science and engineering to the next level. CRYPTOLOGIC TECHNICIAN NETWORKS Use state-of-the-art technology to perform offensive and defensive cyber operations ...
INTELLIGENCE SPECIALIST
$93K - $117K/yr
... security, taking your passion for science and engineering to the next level. CRYPTOLOGIC TECHNICIAN NETWORKS Use state-of-the-art technology to perform offensive and defensive cyber operations ...
INTELLIGENCE SPECIALIST
$93K - $117K/yr
... security, taking your passion for science and engineering to the next level. CRYPTOLOGIC TECHNICIAN NETWORKS Use state-of-the-art technology to perform offensive and defensive cyber operations ...
INTELLIGENCE SPECIALIST
$93K - $117K/yr
... security, taking your passion for science and engineering to the next level. CRYPTOLOGIC TECHNICIAN NETWORKS Use state-of-the-art technology to perform offensive and defensive cyber operations ...
INTELLIGENCE SPECIALIST
$93K - $117K/yr
... security, taking your passion for science and engineering to the next level. CRYPTOLOGIC TECHNICIAN NETWORKS Use state-of-the-art technology to perform offensive and defensive cyber operations ...
INTELLIGENCE SPECIALIST
Glendale, AZ · On-site
$93K - $117K/yr
... security, taking your passion for science and engineering to the next level. CRYPTOLOGIC TECHNICIAN NETWORKS Use state-of-the-art technology to perform offensive and defensive cyber operations ...
INTELLIGENCE SPECIALIST
Glendale, AZ · On-site
$93K - $117K/yr
... security, taking your passion for science and engineering to the next level. CRYPTOLOGIC TECHNICIAN NETWORKS Use state-of-the-art technology to perform offensive and defensive cyber operations ...
INTELLIGENCE SPECIALIST
Phoenix, AZ · On-site
$93K - $117K/yr
... security, taking your passion for science and engineering to the next level. CRYPTOLOGIC TECHNICIAN NETWORKS Use state-of-the-art technology to perform offensive and defensive cyber operations ...
INTELLIGENCE SPECIALIST
Phoenix, AZ · On-site
$93K - $117K/yr
... security, taking your passion for science and engineering to the next level. CRYPTOLOGIC TECHNICIAN NETWORKS Use state-of-the-art technology to perform offensive and defensive cyber operations ...
INTELLIGENCE SPECIALIST
$93K - $117K/yr
... security, taking your passion for science and engineering to the next level. CRYPTOLOGIC TECHNICIAN NETWORKS Use state-of-the-art technology to perform offensive and defensive cyber operations ...
INTELLIGENCE SPECIALIST
$93K - $117K/yr
... security, taking your passion for science and engineering to the next level. CRYPTOLOGIC TECHNICIAN NETWORKS Use state-of-the-art technology to perform offensive and defensive cyber operations ...
Offensive Security information
See Arizona salary details
$53.1K - $64K
1% of jobs
$64K - $75K
4% of jobs
$75K - $85.9K
5% of jobs
$85.9K - $96.8K
9% of jobs
$102.8K is the 25th percentile. Wages below this are outliers.
$96.8K - $107.8K
11% of jobs
$107.8K - $118.7K
10% of jobs
The median wage is $122.9K / yr.
$118.7K - $129.6K
28% of jobs
$135.9K is the 75th percentile. Wages above this are outliers.
$129.6K - $140.5K
14% of jobs
$140.5K - $151.5K
11% of jobs
$151.5K - $162.4K
4% of jobs
$162.4K - $173.3K
4% of jobs
$53.1K
$123.9K
$173.3K
How much do offensive security jobs pay per year?
What is offensive security?
An Offensive Security job involves proactively identifying and exploiting security vulnerabilities in systems, networks, and applications to help organizations strengthen their defenses. Professionals in this field, such as ethical hackers and penetration testers, simulate real-world cyberattacks to find weaknesses before malicious actors can exploit them. They use various tools, techniques, and frameworks to assess security risks, provide recommendations, and improve overall cybersecurity posture. Offensive security experts often work for security firms, enterprises, or government agencies to ensure robust digital protection.
How much do offensive security engineers make?
What does a typical day look like for someone working in offensive security?
A typical day in Offensive Security involves conducting penetration tests, vulnerability assessments, and red teaming exercises to identify and exploit potential weaknesses in systems and networks. You may spend time analyzing findings, preparing detailed reports, and collaborating with IT teams to discuss remediation strategies. The role often requires staying current with emerging threats and tools, as well as participating in team meetings to review attack simulations or incident scenarios. Regular communication with clients or internal stakeholders is also common to explain technical concepts in an accessible way. The dynamic nature of the work keeps each day interesting and fosters continuous learning and problem-solving.
What is the salary of offensive security?
What are the key skills and qualifications needed to thrive in offensive security, and why are they important?
To thrive as an Offensive Security professional, you need a deep understanding of networks, operating systems, penetration testing methodologies, and typically hold a degree in computer science or a related field. Familiarity with tools such as Metasploit, Burp Suite, Nmap, as well as certifications like OSCP or CEH, is often required. Strong analytical thinking, attention to detail, effective communication, and ethical judgment are essential soft skills. These abilities are crucial for identifying vulnerabilities, communicating risks, and helping organizations improve their security posture.

Full-time
Medical, Dental, Vision, Retirement, PTO
Re-posted 22 days ago
Job description
At Early Warning, we've powered and protected the U.S. financial system for over thirty years with cutting-edge solutions like Zelle, Paze, and so much more. As a trusted name in payments, we partner with thousands of institutions to increase access to financial services and protect transactions for hundreds of millions of consumers and small businesses.
Positions located in Scottsdale, San Francisco, Chicago, or New York follow a hybrid work model to allow for a more collaborative working environment.
Candidates responding to this posting must independently possess the eligibility to work in the United States, for any employer, at the date of hire. This position is ineligible for employment Visa sponsorship.
Overall Purpose:
Provides independent second-line oversight, assessment, and crediblechallengeof first-line technology risk management activities across the company specific to Technology Asset Management. Partners across Technology, Security, Product, Data, and other business functions to evaluate risk and control practices, including risk assessments, issues management, control validation, key risk indicators, governance reporting, and escalation. Helps ensure technology-related risks are managedconsistentwith enterprise risk appetite, regulatory expectations, and sound industry practice. May support one or more focus areas based on business need, including Enterprise Technology Risk, Data Security Risk, Access Management Risk, Offensive Security Risk, Vulnerability Management Risk, AI SecurityRisk, andAsset and Inventory Management Risk.
Essential Functions:
- Provide independent review, oversight, and credible challenge of first-line Technology Asset management activities, controls, and decisions.
- Evaluate the design and execution of risk management practices to ensure alignment with enterprise frameworks, policies, regulatory expectations, and relevant industry standards.
- Facilitate risk identification and assessment activities related to technology processes, new initiatives, significant changes, and cross-functional dependencies.
- Review and challenge risk and control self-assessments, issues management, remediation plans, control validation outcomes, and key risk indicators.
- Assess the adequacy of severity ratings, root cause analyses, action plans, and closure evidence for technology-related issues and risk events.
- Identify risk trends, concentrations, and emerging themes through analysis of risk data, governance materials, and business changes; develop an independent view of risk exposure and control effectiveness.
- Prepare and support reporting, escalation, and discussion materials for senior leaders, governance forums, and risk committees.
- Partner with first-line leaders, subject matter experts, and independent testing or validation teams to improve clarity of control expectations, testing scope, and evidence requirements.
- Provide ongoing risk advisory support while maintaining second-line independence and accountability for effective challenge.
- Identifyopportunities to strengthen risk awareness, governance routines, and training that improve technology risk management maturity.
- Support the company's commitment to risk management and protecting the integrity and confidentiality of systems and data.
Focus: Enterprise TechnologyAsset Management
- Assess the effectiveness of controls across the technology asset lifecycle, including planning, procurement, deployment, maintenance, software licensing, cloud asset management, and secure disposal.
- Monitor compliance with Technology Asset Management policies, standards, regulatory obligations, and internal governance requirements.
- Provide independent oversight of software license compliance, asset inventory accuracy, lifecycle management, configuration management, and asset governance controls.
- Review Technology Asset Management-specific risk assessments, control testing outcomes, audit findings, and remediation activities to assess the effectiveness of the control environment.
- Contribute to the ongoing enhancement of Technology Asset Management governance frameworks, risk methodologies, and assurance practices.
- Assess risk trends and systemic themes across the technology environment and provide independent reporting and escalation as needed.
Minimum Qualifications:
- Education and/or experience typically obtained through completion of aBachelor'sdegree or equivalent.
- Typically has 12 years of experience ordemonstratedportfolio consistent with experience required of the role in technology risk, information security, operational risk, or related disciplines within a regulatedorotherwisecomplexoperating environment.
- Strong understanding of risk management practices, control frameworks, and second-line oversight withinathree lines of defense model.
- Demonstrated experience providing independent review, challenge, or governance of first-line technology, security, data, or operational risk activities.
- Strong ability to assess control design and effectiveness, synthesize risk data,identifythemes, and translate technical issues into business risk.
- Excellent written, verbal, presentation, and stakeholder management skills, including experience interacting with senior leaders and cross-functional partners.
- Strong critical thinking, judgment, and problem-solving skills, with the ability to provide practical, risk-based recommendations in a complex environment.
- Ability tooperateindependently, manage competing priorities, andmaintaineffective working relationships while preserving second-line objectivity.
- Background and drug screen.
The above job description is not intended to be an all-inclusive list of duties and standards of the position. Incumbents will follow instructions and perform other related duties as assigned by their supervisor.
Preferred Qualifications:
- Advanced degree oradditionalrelated education and/or experience preferred.
- Experience in financial services, payments, fintech, oranotherhighly regulated industry.
- Familiarity with relevant regulatory expectations and industry standardsandframeworksapplicableto technology and security risk managementsuchas;ISO 27002, PCI DSS, NIST,FFIEC,andSOC2.
- Experience supporting governance committees, audits, examinations, or regulatory interactions.
- Relevant risk, security, audit, or control certifications preferredsuch as CISA, CISM, CISSP, CCSP, CRISC, GSNA, CGIH, or equivalent preferred.
- Project or process management experience supporting cross-functional risk, control, or governance initiatives preferred.
Working conditions consist of a normal office environment. Work is primarily sedentary and requires extensive use of a computer and involves sitting for periods of approximately four hours. Work may require occasional standing, walking, kneeling, and reaching. Must be able to lift 10 pounds occasionally and/or negligible amount of force frequently. Requires visual acuity and dexterity to view, prepare, and manipulate documents and office equipment including personal computers. Requires the ability to communicate with internal and/or external customers.
Employee must be able to perform essential functions and physical requirements of position with or without reasonable accommodation.
The base pay scale for this position in:
Phoenix, AZ/ Chicago, IL / Washington, DC in USD per year is: $184,000 - $230,000.
New York, NY/ San Francisco, CA in USD per year is: $221,000 - $276,000.
Additionally, candidates are eligible for a discretionary incentive plan and benefits.
This pay scale is subject to change and is not necessarily reflective of actual compensation that may be earned, nor a promise of any specific pay for any specific candidate, which is always dependent on legitimate factors considered at the time of job offer. Early Warning Services takes into consideration a variety of factors when determining a competitive salary offer, including, but not limited to, the job scope, market rates and geographic location of a position, candidate's education, experience, training, and specialized skills or certification(s) in relation to the job requirements and compared with internal equity (peers). The business actively supports and reviews wage equity to ensure that pay decisions are not based on gender, race, national origin, or any other protected classes.
Some of the Ways We Prioritize Your Health and Happiness
Healthcare Coverage-Competitive medical (PPO/HDHP), dental, and vision plans as well as company contributions to your Health Savings Account (HSA) or pre-tax savings through flexible spending accounts (FSA) for commuting, health & dependent care expenses.
401(k) Retirement Plan-Featuring a 100% Company Safe Harbor Match on your first 6% deferral immediately upon eligibility.
Paid Time Off -Flexible Time Off for Exempt (salaried) employees, as well as generous PTO for Non-Exempt (hourly) employees, plus 11 paid company holidays and a paid volunteer day.
12 weeks of Paid Parental Leave
Maven Family Planning - provides support through your Parenting journey including egg freezing, fertility, adoption, surrogacy, pregnancy, postpartum, early pediatrics, and returning to work.
AndSOmuch more! We continue to enhance our program, so be sure tocheck our Benefits page herefor the latest. Ourteamcan share more during the interview process!
Early Warning Services, LLC ("Early Warning") considers for employment, hires, retains and promotes qualified candidates on the basis of ability, potential, and valid qualifications without regard to race, religious creed, religion, color, sex, sexual orientation, genetic information, gender, gender identity, gender expression, age, national origin, ancestry, citizenship, protected veteran or disability status or any factor prohibited by law, and as such affirms in policy and practice to support and promote equal employment opportunity and affirmative action, in accordance with all applicable federal, state, and municipal laws. The company also prohibits discrimination on other bases such as medical condition, marital status or any other factor that is irrelevant to the performance of our employees.
Early Warning Services LLC is a proud participant in E-Verify, a federal program to help ensure a legal and authorized workforce. As part of our hiring process, we electronically verify the employment eligibility of all new hires through E-Verify. For more information on your rights and responsibilities under E-Verify please visit Home | E-Verify.
About Early Warning
Sourced by ZipRecruiter
Industry
Finance and insurance
Company size
201 - 500 Employees
Headquarters location
Scottsdale, AZ, US
Year founded
1990