1

Offensive Security Jobs in Boston, MA (NOW HIRING)

Sr. AI Red Team Engineer

Cambridge, MA ยท Hybrid

$145K - $234K/yr

Here's WhatYou'llNeed (Basic Qualifications) * 4+ yearsincybersecurity with deep experience in red teaming, offensive security, or adversary simulation. * Proven ability to conduct end-to-end attack ...

Senior Application Security Engineer

Boston, MA ยท On-site

$124K - $170K/yr

Offensive security experience and a drive to automate it: red-teaming, or threat hunting against your own products. * Threat modeling experience on distributed systems and data platforms, and a ...

Security Guardian -VP

Quincy, MA ยท On-site

$120K - $217K/yr

Bring strong technical depth across network security, product and platform security, data protection and cryptography, and offensive security techniques, using attacker-mindset analysis to ...

Sr. AI Red Team Engineer

Cambridge, MA ยท On-site

$145K - $234K/yr

Here's What You'll Need (Basic Qualifications) * 4+ years in cybersecurity with deep experience in red teaming, offensive security, or adversary simulation. * Proven ability to conduct end-to-end ...

Senior Application Security Engineer

Boston, MA ยท On-site

$124K - $170K/yr

Offensive security experience and a drive to automate it: red-teaming, or threat hunting against your own products. * Threat modeling experience on distributed systems and data platforms, and a ...

Senior Security Automation Engineer

Wilmington, MA ยท On-site

$125K - $171K/yr

Contribute to penetration-testing and red-team efforts as our offensive security program grows. * Measure and report outcomes such as time saved, error reduction, throughput improvement, and risk ...

Offensive Security Engineers are responsible for both identifying and defeating modern defensive security techniques in both hardware and software to deliver software that can withstand environmental ...

Offensive Security Engineers are responsible for both identifying and defeating modern defensive security techniques in both hardware and software to deliver software that can withstand environmental ...

Solutions Architect (Pentesting / Cyber)

Burlington, MA ยท On-site +1

$68.50 - $90.25/hr

This is a role that sits at the intersection of offensive security, customer impact, and product influence. Roles and Responsibilities: * Design deployment solutions for the Pentera platform in ...

Showing results 21-40

Offensive Security information

See Boston, MA salary details

$61.9K

$144.4K

$202.1K

How much do offensive security jobs pay per year?

As of Sep 2, 2026, the average yearly pay for offensive security in Boston, MA is $144,450.00, according to ZipRecruiter salary data. Most workers in this role earn between $120,600.00 and $163,000.00 per year, depending on experience, location, and employer.

What is offensive security?

An Offensive Security job involves proactively identifying and exploiting security vulnerabilities in systems, networks, and applications to help organizations strengthen their defenses. Professionals in this field, such as ethical hackers and penetration testers, simulate real-world cyberattacks to find weaknesses before malicious actors can exploit them. They use various tools, techniques, and frameworks to assess security risks, provide recommendations, and improve overall cybersecurity posture. Offensive security experts often work for security firms, enterprises, or government agencies to ensure robust digital protection.

What does a typical day look like for someone working in offensive security?

A typical day in Offensive Security involves conducting penetration tests, vulnerability assessments, and red teaming exercises to identify and exploit potential weaknesses in systems and networks. You may spend time analyzing findings, preparing detailed reports, and collaborating with IT teams to discuss remediation strategies. The role often requires staying current with emerging threats and tools, as well as participating in team meetings to review attack simulations or incident scenarios. Regular communication with clients or internal stakeholders is also common to explain technical concepts in an accessible way. The dynamic nature of the work keeps each day interesting and fosters continuous learning and problem-solving.

What are the key skills and qualifications needed to thrive in offensive security, and why are they important?

To thrive as an Offensive Security professional, you need a deep understanding of networks, operating systems, penetration testing methodologies, and typically hold a degree in computer science or a related field. Familiarity with tools such as Metasploit, Burp Suite, Nmap, as well as certifications like OSCP or CEH, is often required. Strong analytical thinking, attention to detail, effective communication, and ethical judgment are essential soft skills. These abilities are crucial for identifying vulnerabilities, communicating risks, and helping organizations improve their security posture.

What are popular job titles related to Offensive Security jobs in Boston, MA?

For Offensive Security jobs in Boston, MA, the most frequently searched job titles are:

What job categories do people searching Offensive Security jobs in Boston, MA look for?

The top searched job categories for Offensive Security jobs in Boston, MA are:

Infographic showing various Offensive Security job openings in Boston, MA as of August 2026, with employment types broken down into 68% Full Time, and 32% Part Time. Highlights an 84% In-person, and 16% Remote job distribution, with an average salary of $144,450 per year, or $69.4 per hour.

Principal Product Security Architect

Rivago infotech inc

Tewksbury, MA โ€ข On-site

Other

Posted 5 days ago


Job description

Role: Principal Product Security Architect & Engagement Lead

Work Location: Tewksbury, MA 01876 (100% Onsite)

 

Role Summary

Lead and govern the end-to-end product lifecycle cybersecurity assessment engagement for the customer product, including CRA-aligned security evaluation, architecture assessment, threat modeling, technical oversight, evidence traceability, and executive reporting. Serve as the primary customer interface and ensure all assessment activities are executed in compliance with export-control requirements.

Key Responsibilities

  • Lead overall engagement delivery, governance, and customer coordination

  • Conduct product security architecture assessments and threat modeling activities

  • Perform trust boundary analysis and review data flows across product components and external integrations

  • Oversee CRA-aligned assessment methodology, compliance traceability, and lifecycle security evaluation

  • Evaluate operational resilience, recovery considerations, and lifecycle security controls across deployed product environments

  • Review secure-by-design implementation and product security governance practices

  • Guide technical testing activities and validate risk prioritization and exploitability context

  • Review security findings and ensure consistency across technical and compliance outputs

  • Lead executive reporting, release readiness assessment, and remediation discussions

  • Ensure evidence collection and assessment outputs align to CRA requirements

  • Review lifecycle security considerations including secure decommissioning and data disposal practices

  • Enforce export-control compliant handling of personnel, systems, and data

  • Provide final quality assurance and assessment signoff oversight

Required Skills & Experience

Mandatory:

  • Strong experience in product cybersecurity and secure-by-design principles

  • Expertise in threat modelling, architecture review, and trust boundary analysis

  • Strong understanding of product lifecycle security and operational resilience concepts

  • Familiarity with secure SDLC, SBOM governance, and vulnerability management practices

  • Strong executive communication and stakeholder management capability

  • Experience across both offensive security and security architecture domains

 

Good to have:

  • Experience leading CRA, regulated product security, or compliance-driven cybersecurity assessments

  • Experience leading engagement in export-controlled environments

Preferred Certifications

  • CISSP, CSSLP, SABSA / TOGAF (preferred)

  • FedRAMP or regulated environment experience preferred

Years of Required Experience

  • 7-10 years in product application security

  • 5+ years in complex customer assessment and regulatory assessment engagements