Member of Technical Staff (Offensive Security Engineer)

Perplexity

Greater London

On-site

GBP 164,000 - 302,000

Full time

47 hours ago
Be an early applicant
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Job summary

Perplexity is seeking a highly skilled Offensive Security Engineer to join our security team. You will plan and execute red team operations, penetration tests, and attack simulations across our cloud infrastructure, web and mobile applications, AI/ML pipelines, and corporate environment—identifying real vulnerabilities and guiding remediation with engineering teams.

The role requires hands-on expertise and a track record of defeating modern defenses, plus strong scripting skills and experience

Qualifications

  • 5+ years of hands‑on experience in offensive security, red teaming, or penetration testing.
  • Deep technical expertise in at least two of: cloud security (AWS/GCP/Azure), web/API application security, Kubernetes and container security, macOS/Linux endpoint security, network penetration testing, or CI/CD pipeline security.
  • Track record of discovering impactful vulnerabilities or developing novel attack techniques in production environments.
  • Strong programming and scripting skills in Python, Go, or similar languages; comfortable writing custom tooling and exploits.
  • Experience with industry‑standard offensive tools (Burp Suite, Cobalt Strike / Sliver / Mythic, Metasploit, BloodHound, nuclei, etc.) and ability to operate beyond them.
  • Excellent written and verbal communication; able to translate complex technical findings into clear risk narratives.
  • Experience assessing AI/ML systems, LLM applications, or agentic workflows for security vulnerabilities.
  • Bonus: Published security research, conference talks (DEF CON, Black Hat, BSides), CVE credits, or meaningful bug bounty contributions

Responsibilities

  • Plan and execute red team and purple team engagements simulating advanced threat actors across cloud infrastructure (AWS, Kubernetes), endpoints, and application surfaces
  • Conduct continuous penetration testing of web applications, APIs, mobile clients, browser extensions, cloud infrastructure, and internal services
  • Assess AI/ML-specific attack surfaces including prompt injection, model exfiltration, agent abuse, tool‑use exploitation, and MCP security boundaries
  • Develop and maintain custom offensive tooling, exploits, and automation to improve the efficiency and coverage of security testing
  • Perform open‑scope adversary simulations that test detection and response capabilities end to end, collaborating closely with the defensive security team
  • Drive threat modeling sessions with engineering teams to identify and prioritize attack vectors in new features and architectures
  • Deliver clear, actionable findings to both technical and executive audiences; partner with engineering to validate remediations
  • Contribute to the security of CI/CD pipelines, supply chain integrity, and secrets management through offensive assessment
  • Stay current on emerging attack techniques, vulnerability research, and adversary tradecraft; bring external perspective into Perplexity's security strategy

Skills

Offensive security
Red teaming
Penetration testing
Cloud security
Web security
Kubernetes security
CI/CD security
Python
Go
Scripting
Security tooling
Communication skills
AI/ML security

Tools

Burp Suite
Cobalt Strike
Sliver
Mythic
Metasploit
BloodHound
nuclei

Job description

Perplexity is seeking a highly skilled, experienced and hands‑on Offensive Security Engineer to join our dynamic security team, taking an adversarial approach to hardening Perplexity's infrastructure, applications, and AI systems. You’ll plan and execute red team operations, penetration tests, and attack simulations across our cloud infrastructure, web and mobile applications, AI/ML pipeline, and corporate environment—finding real vulnerabilities before adversaries do and working directly with engineering teams to drive remediation.


Responsibilities


  • Plan and execute red team and purple team engagements simulating advanced threat actors across cloud infrastructure (AWS, Kubernetes), endpoints, and application surfaces

  • Conduct continuous penetration testing of web applications, APIs, mobile clients, browser extensions, cloud infrastructure, and internal services

  • Assess AI/ML-specific attack surfaces including prompt injection, model exfiltration, agent abuse, tool‑use exploitation, and MCP security boundaries

  • Develop and maintain custom offensive tooling, exploits, and automation to improve the efficiency and coverage of security testing

  • Perform open‑scope adversary simulations that test detection and response capabilities end to end, collaborating closely with the defensive security team

  • Drive threat modeling sessions with engineering teams to identify and prioritize attack vectors in new features and architectures

  • Deliver clear, actionable findings to both technical and executive audiences; partner with engineering to validate remediations

  • Contribute to the security of CI/CD pipelines, supply chain integrity, and secrets management through offensive assessment

  • Stay current on emerging attack techniques, vulnerability research, and adversary tradecraft; bring external perspective into Perplexity's security strategy


Qualifications


  • 5+ years of hands‑on experience in offensive security, red teaming, or penetration testing

  • Deep technical expertise in at least two of: cloud security (AWS/GCP/Azure), web/API application security, Kubernetes and container security, macOS/Linux endpoint security, network penetration testing, or CI/CD pipeline security

  • Track record of discovering impactful vulnerabilities or developing novel attack techniques in production environments

  • Strong programming and scripting skills in Python, Go, or similar languages; comfortable writing custom tooling and exploits

  • Experience with industry‑standard offensive tools (Burp Suite, Cobalt Strike / Sliver / Mythic, Metasploit, BloodHound, nuclei, etc.) and ability to operate beyond them

  • Excellent written and verbal communication; able to translate complex technical findings into clear risk narratives

  • Experience assessing AI/ML systems, LLM applications, or agentic workflows for security vulnerabilities

  • Bonus: Published security research, conference talks (DEF CON, Black Hat, BSides), CVE credits, or meaningful bug bounty contributions


Compensation Range: $220K - $405K

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Member of Technical Staff (Software Engineer, Security)
Member of Technical Staff (Software Engineer, Security)

Perplexity • Greater London

On-site
GBP 164,000 - 302,000
Senior Offensive Security Engineer — Red Team & Cloud
Senior Offensive Security Engineer — Red Team & Cloud

Perplexity • Greater London

On-site
GBP 164,000 - 302,000
Member of Technical Staff (Software Engineer, Cloud Infrastructure)
Member of Technical Staff (Software Engineer, Cloud Infrastructure)

Perplexity • Greater London

On-site
GBP 164,000 - 302,000
Penetration Tester (OSCP Certified)
Penetration Tester (OSCP Certified)

Solutions & Innovations Company • Greater London

Hybrid
GBP 38,000 - 45,000
Senior Security Consultant
Senior Security Consultant

Prism Infosec • Cheltenham

Hybrid
GBP 60,000 - 80,000
Continuous learning opportunities
Flexible working conditions
Collaborative team environment
Senior Offensive Security Engineer
Senior Offensive Security Engineer

United States Digital Space LLC • Newcastle upon Tyne

On-site
GBP 70,000 - 110,000
Security Automation Engineer — AI-Driven Detection
Security Automation Engineer — AI-Driven Detection

Perplexity • Greater London

On-site
GBP 164,000 - 302,000
Director, Security Engineering
Director, Security Engineering

Optimizely • Greater London

On-site
GBP 150,000 - 210,000
Senior Security Engineer
Senior Security Engineer

Intropic • Greater London

On-site
GBP 110,000 - 150,000
Security Engineer
Security Engineer

Portage Ventures GP Inc. • Greater London

On-site
GBP 120,000 - 180,000