Offensive Security Engineer

Lever, Inc.

Deutschland

Remote

EUR 90.000 - 140.000

Vollzeit

Vor 2 Tagen
Sei unter den ersten Bewerbenden
Bewerbungsgenerator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Schaffe es an den ATS-Filtern vorbei

Benefits dieser Stelle

Equity upside
Remote-first work environment
Career growth opportunities
Support for professional development

Zusammenfassung

Lever, Inc. in Germany seeks an experienced Offensive Security Engineer to join a hands-on security team focused on cloud infrastructure and AI. You will simulate complex attacks across cloud compute, storage, and AI platform services to identify weaknesses before they can be exploited.

You will lead red team engagements, develop tooling in Python/Go, and deliver actionable leadership-facing reports. Remote-first role with equity upside.

Qualifikationen

  • 6+ years in offensive security or related field.
  • Hands-on cloud security experience.

Aufgaben

  • Plan and execute full-scope red team engagements across cloud compute, storage, networking, and orchestration layers.
  • Identify attack paths that could impact operations or tenant environments.
  • Produce clear, actionable reports for technical teams and leadership.

Jobbeschreibung

This position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for an Offensive Security Engineer based in Germany.

Join a hands-on offensive security team working at the frontier of cloud infrastructure and AI. In this role, you’ll simulate sophisticated attacks against the same systems customers rely on, helping uncover weaknesses before they can become real threats. You’ll contribute across cloud compute, storage, networking, inference, orchestration, and internal tooling while helping establish a scalable penetration testing and red team program. The role combines practical adversarial operations with security research into emerging GPU and AI infrastructure attack surfaces. You’ll work closely with detection and security engineering teams to validate defenses and turn findings into measurable improvements. With substantial technical ownership, you’ll have the opportunity to influence security practices across a rapidly evolving, large-scale AI platform.


Accountabilities:
  • Validate and extend Secure SDLC threat models through continuous penetration testing, assessing threat severity, mitigation status, and underlying security assumptions.
  • Automate routine security validations to keep pace with a rapidly evolving platform while reserving manual analysis for complex and high-impact scenarios.
  • Plan and execute full-scope red team engagements across cloud compute, storage, inference, networking, orchestration layers, and internal tooling.
  • Identify attack paths capable of impacting organizational operations, customer environments, or critical platform assets.
  • Collaborate with detection and response and other security engineering teams on purple team exercises, validating detection coverage and closing defensive gaps.
  • Research novel attacks against GPU infrastructure, including firmware, vendor drivers, device passthrough, SR-IOV/IOMMU configurations, and RDMA/InfiniBand environments.
  • Investigate vulnerabilities within inference technologies and AI platform services, including model-serving infrastructure and managed orchestration platforms.
  • Assess tenant-isolation boundaries and explore potential low-level attack paths that could compromise isolation.
  • Conduct targeted offensive security assessments of new products and significant infrastructure changes before they reach production.
  • Develop custom offensive tooling and post-exploitation capabilities to improve the effectiveness and scalability of security testing.
  • Produce clear, actionable reports for both technical teams and senior leadership, prioritizing findings and providing practical remediation guidance.
  • Establish and continuously improve red team processes, tooling, methodologies, and operating practices as the platform scales.
Requirements:
  • 6+ years of experience in offensive security, penetration testing, red teaming, adversary simulation, or a closely related discipline.
  • Deep hands-on experience attacking cloud-native environments, including Kubernetes privilege escalation, cloud IAM abuse, virtualization, and container escape techniques.
  • Strong understanding of the broader attack lifecycle, including initial access, persistence, lateral movement, and data exfiltration.
  • Proven ability to develop custom security tooling and post-exploitation capabilities using Python, Go, or similar programming languages.
  • Experience conducting purple team exercises and collaborating constructively with blue teams and defensive security functions.
  • Ability to communicate complex technical findings through clear, senior-level reports that contextualize business risk and provide actionable guidance to engineers.
  • Experience with ML infrastructure, model-serving pipelines, or GPU clusters is a strong advantage.
  • Reverse engineering and exploit development experience is a plus.
  • Application security experience is advantageous.
  • Familiarity with eBPF bypass techniques, kernel-level exploitation, vulnerability research, or CVE discovery is beneficial.
  • Understanding of cloud provider internals, including hypervisor and networking layers, is a plus.
  • Experience presenting security research at industry conferences such as Black Hat or DEF CON is advantageous.
  • Strong problem-solving skills, curiosity, technical depth, and the ability to work independently in a rapidly evolving environment.
Benefits:
  • Competitive compensation with equity upside.
  • Flexible, remote-first working environment.
  • Opportunities for career growth, continuous learning, and professional development.
  • Significant ownership and flexibility in how security challenges are approached.
  • Opportunity to work on novel attack surfaces spanning GPU infrastructure, AI platforms, and large-scale multi-tenant cloud environments.
  • Collaboration with highly experienced engineers working on advanced AI infrastructure.
  • Opportunity to contribute directly to impactful AI and cloud security initiatives.
  • International environment with talented teams across multiple regions.
  • Inclusive and collaborative culture focused on innovation, trust, meaningful impact, and continuous growth.

Data Privacy Notice: By submitting your application, you acknowledge that Jobgether will process your personal data to evaluate your candidacy and share relevant information with the hiring employer. This processing is based on legitimate interest and pre-contractual measures under applicable data protection laws (including GDPR). You may exercise your rights (access, rectification, erasure, objection) at any time.

#LI-CL1

Hol dir deinen kostenlosen, vertraulichen Lebenslauf-Check.

oder ziehe deine Datei hierhin.

Similar jobs

Ähnliche Jobs, die dir auch gefallen könnten

Senior Security Engineer, Offensive Security
Senior Security Engineer, Offensive Security

Jobgether • Deutschland

Vor Ort
EUR 119.000 - 170.000
Fully remote
Equity
Learning stipend
+3
Secure Data Infrastructure for AI
Secure Data Infrastructure for AI

Inceptive • Berlin

Hybrid
EUR 130.000 - 190.000
Lead Vulnerability Intelligence Analyst
Lead Vulnerability Intelligence Analyst

Jobgether SRL • Deutschland

Hybrid
EUR 100.000 - 150.000
Remote-friendly culture
Wellness programs
Professional development
+5
Senior Security Engineer
Senior Security Engineer

United States Digital Space LLC • Berlin, München

Vor Ort
EUR 90.000 - 125.000
Relocation support
Learning allowance
Health & wellness
+3
Senior Platform Engineer (d/f/m)
Senior Platform Engineer (d/f/m)

United States Digital Space LLC • Berlin

Vor Ort
EUR 110.000 - 140.000
Stock options
30 days vacation
Flexible hours
+2
Cyber Security Engineer (f/m/d) Infrastructure & AI Platform Security
Cyber Security Engineer (f/m/d) Infrastructure & AI Platform Security

1&1 IONOS SE • Karlsruhe

Vor Ort
EUR 90.000 - 130.000
Hybrid working model
Flexible working hours
Canteen subsidy at some locations
+6
Cyber Security Engineer — Infrastructure & AI Platform Security (f/m/d)
Cyber Security Engineer — Infrastructure & AI Platform Security (f/m/d)

IONOS Group • Karlsruhe

Hybrid
EUR 90.000 - 130.000
Hybrid working model
Flexible working hours
Canteen subsidy at some locations
+1
Cyber Security Engineer — Infrastructure & AI Platform Security (f/m/d)
Cyber Security Engineer — Infrastructure & AI Platform Security (f/m/d)

1&1 IONOS SE • Karlsruhe

Hybrid
EUR 90.000 - 120.000
Cyber Security Engineer (f/m/d) Infrastructure & AI Platform Security
Cyber Security Engineer (f/m/d) Infrastructure & AI Platform Security

1&1 IONOS SE • Berlin

Hybrid
EUR 90.000 - 130.000
Hybrid working model
Flexible working hours
Canteen subsidy at some locations
+1
Cyber Security Engineer — Infrastructure & AI Platform Security (f/m/d)
Cyber Security Engineer — Infrastructure & AI Platform Security (f/m/d)

1&1 IONOS SE • Berlin

Hybrid
EUR 90.000 - 150.000
Hybrid working model
Flexible hours
Subsidized canteen
+5