The AI & Offensive Security Analyst is a hands-on practitioner role within Citi's Advanced Pentesting & Research team. This position is responsible for driving offensive security research ...
The AI & Offensive Security Analyst is a hands-on practitioner role within Citi's Advanced Pentesting & Research team. This position is responsible for driving offensive security research ...
Senior Security Engineer
Plano, TX · On-site
$109K - $150K/yr
Minimum 12+ years of hands-on offensive security experience, preferably within Red Team or penetration testing roles. * Strong familiarity with attack frameworks (e.g., MITRE ATT&CK) and ...
Quick apply
Senior Security Engineer
Plano, TX · On-site
$109K - $150K/yr
Minimum 12+ years of hands-on offensive security experience, preferably within Red Team or penetration testing roles. * Strong familiarity with attack frameworks (e.g., MITRE ATT&CK) and ...
Red Team / SOC Engineer
Austin, TX · On-site
This role will execute offensive security activities, support security tooling, and contribute to detection and remediation efforts. The team is shifting toward an offensive security focus, while ...
Quick apply
Red Team / SOC Engineer
Austin, TX · On-site
This role will execute offensive security activities, support security tooling, and contribute to detection and remediation efforts. The team is shifting toward an offensive security focus, while ...
Conduct offensive security assessments against enterprise networks, applications, cloud platforms, infrastructure, and physical security controls. * Develop custom tools, payloads, exploits, and ...
Conduct offensive security assessments against enterprise networks, applications, cloud platforms, infrastructure, and physical security controls. * Develop custom tools, payloads, exploits, and ...
Security Analyst III
Dallas, TX · On-site
JOB SUMMARY Job Profile Summary This role serves as a senior offensive security analyst focused on internal red teaming, attack simulation, and threat and detection engineering within the Security ...
Security Analyst III
Dallas, TX · On-site
JOB SUMMARY Job Profile Summary This role serves as a senior offensive security analyst focused on internal red teaming, attack simulation, and threat and detection engineering within the Security ...
As an Offensive Security Analyst II , you'll provide consultative and hands on services by performing technical planning and testing of Digital assets, systems, processes, and employees. Location
As an Offensive Security Analyst II , you'll provide consultative and hands on services by performing technical planning and testing of Digital assets, systems, processes, and employees. Location
As an Offensive Security Analyst II , you'll provide consultative and hands on services by performing technical planning and testing of Digital assets, systems, processes, and employees. Location
As an Offensive Security Analyst II , you'll provide consultative and hands on services by performing technical planning and testing of Digital assets, systems, processes, and employees. Location
Staff Security Engineer
Dallas, TX · On-site
Required : • 7+ years of experience in security engineering, with a mix of infrastructure, corporate IT, and offensive security. • Deep hands-on experience with cloud security and compliance (AWS ...
Staff Security Engineer
Dallas, TX · On-site
Required : • 7+ years of experience in security engineering, with a mix of infrastructure, corporate IT, and offensive security. • Deep hands-on experience with cloud security and compliance (AWS ...
Staff Security Engineer - Red Team (AI)
$110K - $260K/yr
You'llexecute at the intersection of offensive security and AI, developing novel Red Team capabilities and running operations against AI-powered systems. This roleis responsible forworking with other ...
Staff Security Engineer - Red Team (AI)
$110K - $260K/yr
You'llexecute at the intersection of offensive security and AI, developing novel Red Team capabilities and running operations against AI-powered systems. This roleis responsible forworking with other ...
Unlike offensive security operations that primarily assess security readiness through covert adversary emulation, the Purple Team function focuses on collaborative validation of controls, detections ...
New
Unlike offensive security operations that primarily assess security readiness through covert adversary emulation, the Purple Team function focuses on collaborative validation of controls, detections ...
New
Develop custom offensive security tooling and reusable attack capabilities rather than relying exclusively on commercial testing platforms. * Build AI-assisted and agentic workflows for ...
Develop custom offensive security tooling and reusable attack capabilities rather than relying exclusively on commercial testing platforms. * Build AI-assisted and agentic workflows for ...
Develop custom offensive security tooling and reusable attack capabilities rather than relying exclusively on commercial testing platforms. * Build AI-assisted and agentic workflows for ...
New
Develop custom offensive security tooling and reusable attack capabilities rather than relying exclusively on commercial testing platforms. * Build AI-assisted and agentic workflows for ...
New
Engineering Manager, Application Security
Austin, TX · On-site
$58.25 - $77.75/hr
Stand up pipelines that run continuous, AI-assisted offensive testing against our services, APIs ... Lead incident response from the application security side, and be the person engineering trusts to ...
Engineering Manager, Application Security
Austin, TX · On-site
$58.25 - $77.75/hr
Stand up pipelines that run continuous, AI-assisted offensive testing against our services, APIs ... Lead incident response from the application security side, and be the person engineering trusts to ...
Senior Manager Purple Team
Dallas, TX · On-site
Unlike offensive security operations that primarily assess security readiness through covert adversary emulation, the Purple Team function focuses on collaborative validation of controls, detections ...
New
Senior Manager Purple Team
Dallas, TX · On-site
Unlike offensive security operations that primarily assess security readiness through covert adversary emulation, the Purple Team function focuses on collaborative validation of controls, detections ...
New
Manager, Red Team: Product Security Engineering
Austin, TX · On-site
$163K - $169K/yr
About the Team This is a greenfield offensive security unit within Product Security Engineering, reporting to the Director of Engineering Product Security. The team exists to challenge and secure our ...
Manager, Red Team: Product Security Engineering
Austin, TX · On-site
$163K - $169K/yr
About the Team This is a greenfield offensive security unit within Product Security Engineering, reporting to the Director of Engineering Product Security. The team exists to challenge and secure our ...
The Adversarial AI & Research Team is a specialized group of cross-functional security engineers working at the intersection of offensive security and artificial intelligence. As a strategic partner ...
The Adversarial AI & Research Team is a specialized group of cross-functional security engineers working at the intersection of offensive security and artificial intelligence. As a strategic partner ...
Lead Penetration Test Engineer
Houston, TX · Hybrid
$135K/yr
This role requires strong offensive security skills combined with cloud and application securityexpertisetoidentifyvulnerabilities and develop effective mitigation strategies. A successful candidate ...
Lead Penetration Test Engineer
Houston, TX · Hybrid
$135K/yr
This role requires strong offensive security skills combined with cloud and application securityexpertisetoidentifyvulnerabilities and develop effective mitigation strategies. A successful candidate ...
Lead Penetration Test Engineer
Houston, TX · Hybrid
$135K/yr
This role requires strong offensive security skills combined with cloud and application securityexpertisetoidentifyvulnerabilities and develop effective mitigation strategies. A successful candidate ...
Lead Penetration Test Engineer
Houston, TX · Hybrid
$135K/yr
This role requires strong offensive security skills combined with cloud and application securityexpertisetoidentifyvulnerabilities and develop effective mitigation strategies. A successful candidate ...
Software Engineer
Austin, TX · On-site
Praetorian is an expert-driven offensive security company focused on preventing breaches before they occur. They are seeking a Software Engineer who will take ownership of building and shipping ...
Software Engineer
Austin, TX · On-site
Praetorian is an expert-driven offensive security company focused on preventing breaches before they occur. They are seeking a Software Engineer who will take ownership of building and shipping ...
Lead Penetration Test Engineer
Dallas, TX · Hybrid
$135K/yr
This role requires strong offensive security skills combined with cloud and application securityexpertisetoidentifyvulnerabilities and develop effective mitigation strategies. A successful candidate ...
Lead Penetration Test Engineer
Dallas, TX · Hybrid
$135K/yr
This role requires strong offensive security skills combined with cloud and application securityexpertisetoidentifyvulnerabilities and develop effective mitigation strategies. A successful candidate ...
Offensive Security information
See Texas salary details
$53.1K - $64K
1% of jobs
$64K - $75K
4% of jobs
$75K - $85.9K
5% of jobs
$85.9K - $96.8K
9% of jobs
$102.8K is the 25th percentile. Wages below this are outliers.
$96.8K - $107.7K
11% of jobs
$107.7K - $118.7K
10% of jobs
The median wage is $122.9K / yr.
$118.7K - $129.6K
28% of jobs
$135.9K is the 75th percentile. Wages above this are outliers.
$129.6K - $140.5K
14% of jobs
$140.5K - $151.4K
11% of jobs
$151.4K - $162.4K
4% of jobs
$162.4K - $173.3K
4% of jobs
$53.1K
$123.9K
$173.3K
How much do offensive security jobs pay per year?
What is offensive security?
An Offensive Security job involves proactively identifying and exploiting security vulnerabilities in systems, networks, and applications to help organizations strengthen their defenses. Professionals in this field, such as ethical hackers and penetration testers, simulate real-world cyberattacks to find weaknesses before malicious actors can exploit them. They use various tools, techniques, and frameworks to assess security risks, provide recommendations, and improve overall cybersecurity posture. Offensive security experts often work for security firms, enterprises, or government agencies to ensure robust digital protection.
How much do offensive security engineers make?
What does a typical day look like for someone working in offensive security?
A typical day in Offensive Security involves conducting penetration tests, vulnerability assessments, and red teaming exercises to identify and exploit potential weaknesses in systems and networks. You may spend time analyzing findings, preparing detailed reports, and collaborating with IT teams to discuss remediation strategies. The role often requires staying current with emerging threats and tools, as well as participating in team meetings to review attack simulations or incident scenarios. Regular communication with clients or internal stakeholders is also common to explain technical concepts in an accessible way. The dynamic nature of the work keeps each day interesting and fosters continuous learning and problem-solving.
What is the salary of offensive security?
What are the key skills and qualifications needed to thrive in offensive security, and why are they important?
To thrive as an Offensive Security professional, you need a deep understanding of networks, operating systems, penetration testing methodologies, and typically hold a degree in computer science or a related field. Familiarity with tools such as Metasploit, Burp Suite, Nmap, as well as certifications like OSCP or CEH, is often required. Strong analytical thinking, attention to detail, effective communication, and ethical judgment are essential soft skills. These abilities are crucial for identifying vulnerabilities, communicating risks, and helping organizations improve their security posture.

Full-time
Medical, Dental, Vision, Life, Retirement, PTO
Re-posted 16 days ago
Citibank rating
8.3
Based on 177 frontline employees who took The Breakroom Quiz
39th of 170 rated banks
Job description
Citi, the leading global bank, has approximately 200 million customer accounts and does business in more than 160 countries and jurisdictions. Citi provides consumers, corporations, governments, and institutions with a broad range of financial products and services, including consumer banking and credit, corporate and investment banking, securities brokerage, transaction services, and wealth management.
As a bank with a brain and a soul, Citi creates economic value that is systemically responsible and in our clients' best interests. As a financial institution that touches every region of the world and every sector that shapes your daily life, our Enterprise Operations & Technology teams are charged with a mission that rivals any large tech company. Our technology solutions are the foundations of everything we do from keeping the bank safe, managing global resources, and providing the technical tools our workers need to be successful to designing our digital architecture and ensuring our platforms provide a first-class customer experience. We reimagine client and partner experiences to deliver excellence through secure, reliable, and efficient services.
Our commitment to diversity includes a workforce that represents the clients we serve from all walks of life, backgrounds, and origins. We foster an environment where the best people want to work. We value and demand respect for others, promote individuals based on merit, and ensure opportunities for personal development are widely available to all. Ideal candidates are innovators with well-rounded backgrounds who bring their authentic selves to work and complement our culture of delivering results with pride. If you are a problem solver who seeks passion in your work, come join us. We'll enable growth and progress together.
CISO:
About the Chief Information Security Office (CISO): The Chief Information Security Office (CISO) is home to deeply talented colleagues that work to ensure the safety of Citi's clients', our revenue, our employees and our proprietary data. We manage information security as one end-to end program - one with a clear mandate and accountability. Our mission is a program that is fully anchored to modern control and architectural frameworks, is fully aligned with the enterprise architecture of the firm and is deeply integrated into the sectors and functions.
AI & Offensive Security Analyst:
The AI & Offensive Security Analyst is a hands-on practitioner role within Citi's Advanced Pentesting & Research team. This position is responsible for driving offensive security research, vulnerability discovery, and the development of AI-powered security tooling and automation. The ideal candidate combines deep adversarial security expertise with hands-on AI engineering capability - someone who can identify and exploit weaknesses in complex systems, then build intelligent solutions to defend against them at scale.
mindset
The successful candidate will bring a strong R&D, with a natural curiosity and discipline to stay at the forefront of the security and AI research landscape - actively identifying new research opportunities.
You will work closely with engineering, architecture, and risk teams to embed security intelligence across the firm's technology landscape.
Responsibilities:
- Perform deep vulnerability research on emerging attack surfaces including LLM-based systems, AI pipelines, model inference endpoints, and prompt injection vectors.
- Design, build, and maintain AI harnesses capable of performing security-related tasks, including autonomous vulnerability scanning agents, AI-driven exploit classification systems, intelligent threat detection models, and LLM-assisted code analysis engines.
- Research and prototype novel attack techniques and defensive countermeasures, contributing findings to internal knowledge bases, threat models, and security engineering standards - driven by a **proactive R&D mindset and continuous lookout for new research opportunities**.
- Analyze source code using both manual review and AI-augmented static analysis to identify and mitigate security weaknesses, logic flaws, and injection vulnerabilities across polyglot codebases.
- Conduct offensive security assessments and penetration testing against applications, infrastructure, and AI/ML systems to identify exploitable vulnerabilities before adversaries do.
- Identify opportunities to automate and standardize information security controls using AI-driven pipelines, reducing manual effort and improving detection fidelity across supported groups.
Required Qualifications:
- 6+ years of experience in Cyber Security or related field.
- Master's degree in computer science, Cyber Security or related field with a minimum of 3 years of experience in a penetration testing or application development role OR
- Bachelor's degree in computer science, Cyber Security or related field with a minimum of 5 years of experience in a penetration testing or application development role
- Hands-on experience with security & Software engineering tooling : Burp Suite, SAST/DAST scanners, Claude Code, GH copilot & custom exploit development from CVE advisories
- Demonstrated proficiency in penetration testing across web, network, and binary domains
- Strong R&D mindset - demonstrated ability to independently identify new research opportunities, follow emerging academic and industry security research, and translate findings into actionable tooling or defensive improvements
- Good proficiency in reading, understanding, and working with code and its features - including the ability to navigate unfamiliar codebases, reason about code behaviour, identify logic flaws, and leverage language-specific constructs in security analysis and tool development
Education:
- Bachelor's degree/University degree or equivalent experience
Job Family Group:
Technology
Job Family:
Information Security
Time Type:
Full time
Primary Location:
Irving Texas United States
Primary Location Full Time Salary Range:
$125 760,00 - $188 640,00
In addition to salary, Citi's offerings may also include, for eligible employees, discretionary and formulaic incentive and retention awards. Citi offers competitive employee benefits, including: medical, dental & vision coverage; 401(k); life, accident, and disability insurance; and wellness programs. Citi also offers paid time off packages, including planned time off (vacation), unplanned time off (sick leave), and paid holidays. For additional information regarding Citi employee benefits, please visit citibenefits.com. Available offerings may vary by jurisdiction, job level, and date of hire.
Most Relevant Skills
Please see the requirements listed above.
Other Relevant Skills
For complementary skills, please see above and/or contact the recruiter.
Anticipated Posting Close Date:
jun 30, 2026
Citi is an equal opportunity employer, and qualified candidates will receive consideration without regard to their race, color, religion, sex, sexual orientation, gender identity, national origin, disability, status as a protected veteran, or any other characteristic protected by law.
If you are a person with a disability and need a reasonable accommodation to use our search tools and/or apply for a career opportunity review Accessibility at Citi.
View Citi's EEO Policy Statement and the Know Your Rights poster.
About Citigroup Inc
Sourced by ZipRecruiter
We live in an increasingly complex world. Companies these days are either born global or are going global at record speed. Business and geopolitics are forging an entirely new dynamic and consumers now expect financial services to be a seamless part of their digital lives. Citi is a bank that’s uniquely positioned for this moment. Through our vast global network and our on-the-ground expertise, we can connect the dots, anticipate change and empathize the needs of our clients and customers in ways that other banks simply cannot. Citi's mission is to serve as a trusted partner to our clients by responsibly providing financial services that enable growth and economic progress. We have set expectations for how we must act to bring our mission to life. These expectations are at the heart of our Leadership Principles – we take ownership, we deliver with pride and we succeed together.
Industry
Banking and credit intermediation
Company size
5,001 - 10,000 Employees
Headquarters location
New York City, NY, US