A global technology leader is seeking a highly accomplished Security Engineer specializing in offensive security and penetration testing. This full-time, permanent remote position requires expertise in cloud security, scripting, and advanced security certifications. The role involves simulating real-world attacks and improving our security posture. Ideal candidates have over 5 years of experience and a passion for building stronger defenses.
Qualifications
5+ years in cybersecurity focusing on offensive security or penetration testing.
Advanced penetration testing certifications (OSCP, OSCE, GPEN, GXPN, or equivalent).
Deep expertise in cloud security testing, particularly AWS.
Responsabilités
Simulate real-world adversarial attacks on our cloud architecture and AI model endpoints.
Conduct red team exercises and penetration tests to validate defensive controls.
Develop automated tools to enhance offensive security operations.
Connaissances
Offensive security
Penetration testing
Cloud security testing
Scripting and automation (Python, Go)
Threat modeling
Vulnerability research
Formation
Bachelor's degree in Computer Science, Cybersecurity, or a related field
Outils
Metasploit
Burp Suite
Cobalt Strike
Description du poste
Overview
Our client is a global leader in enterprise orchestration, helping over 400,000 businesses worldwide streamline their operations with its AI-powered platform. They are looking for a highly accomplished Security Engineer, Red Team. This is a full-time, permanent, remote position ideally based in Spain or Portugal.
Requirements
Bachelor's degree in Computer Science, Cybersecurity, or a related technical field.
5+ years in cybersecurity with a focus on offensive security, penetration testing, or red team operations.
Advanced penetration testing certifications (OSCP, OSCE, GPEN, GXPN, or equivalent).
Deep expertise in cloud security testing, particularly AWS environments.
Proficiency in exploitation frameworks and tools (Nuclei, Metasploit, Burp, Cobalt Strike, custom tooling).
Scripting and automation skills (Python, Go, Bash, or similar).
Hands-on experience in vulnerability research and exploit development.
Knowledge of threat modeling methodologies and attack path analysis.
Advantage: AI/ML security testing experience.
Experience with social engineering and phishing campaigns.
Experience with threat intelligence and adversary emulation frameworks (MITRE ATT&CK).
Active participation in the security research community and CVE discoveries.
Knowledge of compliance frameworks and vendor relationship management.
Responsibilities
You'll simulate real-world adversarial attacks against our cloud architecture, AI model endpoints, and complex multi-tenant SaaS platform while playing a key role in strengthening our defenses during our Agentic AI Transformation.
You will play a pivotal role in identifying security weaknesses, validating defensive capabilities, and improving our security posture through adversarial testing. Your findings will directly influence the product security architecture and drive security improvements across a diverse set of customer deployments.
Adversarial Exercises and Penetration Testing: Conduct red team exercises and penetration tests to simulate real-world attacks and validate defensive controls
Exploitation and Vulnerability Research: Perform vulnerability research and exploitation to validate attack paths and contribute to the security community
Threat Modeling and Attack Simulation: Collaborate on threat modeling to anticipate attacker techniques and strengthen defensive strategies
SecOps and Bug Bounty Collaboration: Partner with Security Operations and Bug Bounty teams to enhance detection, response, and organizational resilience
External Testing Coordination: Coordinate external red team and penetration testing engagements and third-party security assessments
Security Automation and Tooling: Develop automated tools and frameworks to scale offensive security operations across systems and applications
This role offers the opportunity to conduct offensive security research against mission-critical systems deployed globally while working with AI and cloud technologies. If you're passionate about thinking like an attacker to build stronger defenses, this role could be perfect for you.
* Le salaire de référence se base sur les salaires cibles des leaders du marché dans leurs secteurs correspondants. Il vise à servir de guide pour aider les membres Premium à évaluer les postes vacants et contribuer aux négociations salariales. Le salaire de référence n’est pas fourni directement par l’entreprise et peut pourrait être beaucoup plus élevé ou plus bas.