1

Offensive Security Jobs in Oregon (NOW HIRING)

We're looking for an Offensive Security Engineer to think like an attacker and validate the security of Array's products through real-world exploitation. You're a paid hacker; you'll operate with ...

In addition to leading offensive security, you will provide oversight and strategic direction across Security Operations (blue team) and Application Security, ensuring a cohesive and effective ...

Conduct offensive security assessments against enterprise networks, applications, cloud platforms, infrastructure, and physical security controls. * Develop custom tools, payloads, exploits, and ...

Senior Product Security Engineer II

OR · On-site +1

$114K - $156K/yr

About the Job Design and conduct offensive security operations / engagements for product and internal tools across Instacart. Deploy and operationalize a variety of open-source and commercially ...

Today our diverse, fully remote team is committed to helping organizations of all sizes with seamless, effective and collaborative Offensive Security Testing that empower organizations to OPERATE ...

Security Engineer

OR · On-site +1

Offensive security a plus * Threat intelligence background a plus * Superb interpersonal and communication skills (No Assholes) * Bachelor's of Science degree in Computer Science, Engineering ...

For more than two decades, Bishop Fox has defined the forefront of offensive security. By combining elite human expertise with the power of its proprietary Cosmos AI engine, the firm delivers ...

Solutions Engineer

OR · On-site +1

As leaders in continuous offensive security and penetration testing, we deliver world-class customer experiences. Trusted by over a quarter of the Fortune 100, half of the Fortune 10, and top global ...

Vulnerability Management & Offensive Security: * Continuous vulnerability scanning, patch verification, and risk-prioritized remediation tracking across clinical, enterprise, and infrastructure ...

Penetration Tester

Portland, OR · On-site

$90 - $130/hr

In this role you will perform intermediate and advanced offensive security tasks that support the delivery of client security services, including vulnerability assessments, penetration testing, and ...

Senior Director of Sales, Enterprise

OR · On-site +1

$150K - $187K/yr

Today our diverse, fully remote team is committed to helping organizations of all sizes with seamless, effective and collaborative Offensive Security Testing that empower organizations to OPERATE ...

next page

Showing results 1-20

Offensive Security information

See Oregon salary details

$60.3K

$140.6K

$196.7K

How much do offensive security jobs pay per year?

As of Aug 28, 2026, the average yearly pay for offensive security in Oregon is $140,579.00, according to ZipRecruiter salary data. Most workers in this role earn between $117,400.00 and $158,600.00 per year, depending on experience, location, and employer.

What is offensive security?

An Offensive Security job involves proactively identifying and exploiting security vulnerabilities in systems, networks, and applications to help organizations strengthen their defenses. Professionals in this field, such as ethical hackers and penetration testers, simulate real-world cyberattacks to find weaknesses before malicious actors can exploit them. They use various tools, techniques, and frameworks to assess security risks, provide recommendations, and improve overall cybersecurity posture. Offensive security experts often work for security firms, enterprises, or government agencies to ensure robust digital protection.

What does a typical day look like for someone working in offensive security?

A typical day in Offensive Security involves conducting penetration tests, vulnerability assessments, and red teaming exercises to identify and exploit potential weaknesses in systems and networks. You may spend time analyzing findings, preparing detailed reports, and collaborating with IT teams to discuss remediation strategies. The role often requires staying current with emerging threats and tools, as well as participating in team meetings to review attack simulations or incident scenarios. Regular communication with clients or internal stakeholders is also common to explain technical concepts in an accessible way. The dynamic nature of the work keeps each day interesting and fosters continuous learning and problem-solving.

What are the key skills and qualifications needed to thrive in offensive security, and why are they important?

To thrive as an Offensive Security professional, you need a deep understanding of networks, operating systems, penetration testing methodologies, and typically hold a degree in computer science or a related field. Familiarity with tools such as Metasploit, Burp Suite, Nmap, as well as certifications like OSCP or CEH, is often required. Strong analytical thinking, attention to detail, effective communication, and ethical judgment are essential soft skills. These abilities are crucial for identifying vulnerabilities, communicating risks, and helping organizations improve their security posture.

What are popular job titles related to Offensive Security jobs in Oregon?

For Offensive Security jobs in Oregon, the most frequently searched job titles are:

What job categories do people searching Offensive Security jobs in Oregon look for?

The top searched job categories for Offensive Security jobs in Oregon are:

What cities in Oregon are hiring for Offensive Security jobs?

Cities in Oregon with the most Offensive Security job openings:

Infographic showing various Offensive Security job openings in Oregon as of August 2026, with employment types broken down into 83% Full Time, 15% Part Time, and 2% Contract. Highlights an 92% Physical, 3% Hybrid, and 5% Remote job distribution, with an average salary of $140,579 per year, or $67.6 per hour.

Senior Offensive Security Engineer

OR • On-site, Remote

$170K/yr

Full-time

Medical, Dental, Vision, Retirement, PTO

Posted 25 days ago


Job description

Array is a financial innovation platform that helps digital brands, financial institutions, and fintechs get compelling consumer products to market faster. We deliver a suite of credit and identity monitoring tools, privacy protection, and a financial ads marketplace via embeddable widgets or a clean, modern API.  Our private label offerings help drive revenue and increase engagement for our customers while empowering millions of consumers to achieve their financial goals.

As a remote-first company, we're focused on providing opportunities for high performing individuals to have deep impact in the fast growing fintech space. A clear mission, a commitment to continuous improvement and a willingness to experiment empower us individually and together deliver the best products for our clients and users.

We're looking for an Offensive Security Engineer to think like an attacker and validate the security of Array's products through real-world exploitation. You're a paid hacker; you'll operate with full access to our applications, source code, and infrastructure to identify vulnerabilities that create meaningful business risk-not theoretical findings. AI should be one of your primary tools, enabling you to analyze large codebases, accelerate hypothesis generation, and increase testing coverage while relying on your own judgment to validate results.

You Have:

  • 5+ years of offensive security, application security, penetration testing, or red team experience with a track record of finding real application vulnerabilities.
  • Deep expertise in modern web applications, APIs, authentication, authorization, distributed systems, and the OWASP Top 10.
  • Experience developing proof-of-concept exploits that demonstrate real business impact, not just theoretical risk.
  • Proficiency using AI to accelerate vulnerability discovery, exploit development, code analysis, and security research while validating AI-generated output.
  • Strong communication skills with the ability to explain complex vulnerabilities, attack paths, and remediation guidance to engineering teams.
  • A belief that AI is reshaping work, you instinctively use it to accelerate everything you do.

You Will:

  • Identify, validate, and demonstrate realistic attack paths against Array's products, infrastructure, and internal systems with a focus on business impact.
  • Analyze large, multi-language codebases using AI and manual techniques to uncover vulnerabilities, generate exploit hypotheses, and perform variant analysis.
  • Build safe proof-of-concept exploits that demonstrate unauthorized access, privilege escalation, data exposure, business logic flaws, or other meaningful security risks.
  • Partner with engineering to validate remediations, confirm exploit paths are fully eliminated, and identify similar patterns elsewhere in the environment.
  • Document findings with clear evidence, technical root cause, business impact, and practical remediation guidance while continuously improving Array's offensive security capabilities.
  • Maintain a habit of using AI tools to think, build, and ship faster-it's your default, not an afterthought.

Success Looks Like:

  • Demonstrated exploit paths to sensitive data, unauthorized access, or privilege escalation.
  • Security gaps identified that were not detected by existing tools or processes.
  • High-confidence validation that engineering fixes eliminate vulnerabilities and related attack paths.
  • Meaningful system coverage supported by documented testing methodology, whether vulnerabilities are found or not.

Pay transparency: $170,000 + for base salary, depending on experience. Full time employee compensation includes an Incentive Stock Option (ISO) grant, subject to Board approval.

Expected interview process: Recruiter Conversation - Hiring Manager Interview - Loop round: How We Work, Engineering leadership. 

Array Offers All Full Time Employees the following Benefits and Perks: 

  • Full medical, dental, and vision, premiums covered at 100% for full-time employees and 70% for dependents
  • Unlimited PTO and sick leave + 14 company holidays to encourage a healthy work-life blend
  • 100% 401k match up to 4% with immediate vesting 
  • Generous and competitive parental leave for all parents
  • $1,000 desk setup subsidy to set-up your unique remote office 
  • $100/month to subsidize wifi/cell phone expenses
  • Summer Fridays (half-day Fridays) typically from late May to the end of August
  • Commuter benefits for those who choose to go into our New York City or San Francisco office spaces

Not sure if you meet the Qualifications? We know that folks tend to only apply if they check every box. If you think you have the appropriate qualifications, but don't meet every single one, we encourage you to still apply. We'd love to hear from you.

We are proud to be an equal opportunity workplace; we are committed to equal employment opportunity regardless of race, color, ancestry, religion, sex, national origin, sexual orientation, age, citizenship, marital status, disability, gender identity or Veteran status. Array will provide reasonable accommodations to qualified applicants-if you need an accommodation to participate in the application or interview process, please email talent@array.com to make your request.

Array uses CLEAR to conduct identity verification as part of the application process. We encourage you to review CLEAR's Privacy Notice and Terms of Use to understand how your personal data will be processed.