Security Engineer - Proactive Threat

Stripe

Ireland

On-site

EUR 120,000 - 180,000

Full time

14 days+
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Job summary

Stripe is seeking an Offensive Security Engineer to simulate adversary tactics, perform hands-on penetration testing, and lead red team engagements across Stripe's products and infrastructure. You will build custom tooling, leverage threat intelligence, and partner with detection and incident response teams to improve defenses.

The role emphasizes scalable, repeatable offensive operations and collaboration with security, engineering, and product stakeholders across Stripe and globally.

Qualifications

  • 5+ years of experience in offensive security, penetration testing, red teaming, or a related field.
  • Strong programming skills in Python or Go and demonstrated experience building tools or automation.
  • Deep knowledge of web application security and modern security testing methods.

Responsibilities

  • Conduct comprehensive penetration tests across web apps, APIs, cloud environments, and mobile apps.
  • Plan and execute red team engagements emulating real adversaries to test detections and responses.
  • Develop offensive tooling and automation to scale assessments and improve coverage.
  • Collaborate with defensive security teams to validate controls and strengthen Stripe's security posture.
  • Produce clear, actionable reports communicating findings and remediation guidance.

Skills

Offensive security
Penetration testing
Red teaming
Python
Go

Job description

Who we are
About Stripe

Stripe is a financial infrastructure platform for businesses. Millions of companies—from the world's largest enterprises to the most ambitious startups—use Stripe to accept payments, grow their revenue, and accelerate new business opportunities. Our mission is to increase the GDP of the internet, and we have a staggering amount of work ahead. That means you have an unprecedented opportunity to put the global economy within everyone's reach while doing the most important work of your career.

About the team

The Proactive Threat team is responsible for identifying vulnerabilities and security weaknesses across Stripe's systems, applications, networks, and cloud infrastructure — before adversaries do. We operate as a hybrid offensive function: conducting penetration testing, emulating real-world threat actors through red team operations, and partnering closely with our defensive security teams to validate detection capabilities and improve Stripe's overall security posture.

We are builders first. Our team develops custom tooling, automation frameworks, and internal platforms that scale our offensive capabilities and enable repeatable, high‑fidelity assessments. We believe the best offensive security engineers are equal parts hacker and engineer.

The team is distributed across the United States, primarily operating in Eastern and Pacific time zones, and collaborates regularly with security, engineering, and product stakeholders across Stripe — including teams in Europe and Asia.

What you'll do

As an Offensive Security Engineer on the Proactive Threat team, you will simulate the tactics, techniques, and procedures (TTPs) of real-world adversaries to uncover security risks across Stripe's products and infrastructure. You'll conduct hands‑on penetration testing, lead red team engagements, and collaborate with blue team counterparts to validate and improve detection and response capabilities. Your work will directly influence how Stripe builds, ships, and secures financial infrastructure used by millions of businesses worldwide.

Beyond assessments, you'll design and build offensive tooling and automation that amplifies the team's impact. You'll leverage threat intelligence to prioritize testing efforts, contribute to incident investigations when needed, and act as a subject‑matter expert for security initiatives across the company.

Responsibilities
  • Conduct comprehensive penetration tests across web applications, APIs, cloud environments (AWS/GCP/Azure), mobile applications, and internal infrastructure
  • Plan and execute red team engagements that emulate the TTPs of cyber and criminal threat actors targeting financial services, including initial access, lateral movement, persistence, and data exfiltration scenarios
  • Perform assumed‑breach and objective‑based assessments to test detection and response capabilities in coordination with defensive teams
  • Partner with detection engineering, threat intelligence, and incident response teams to validate security controls, identify coverage gaps, and improve detection fidelity
  • Contribute adversary tradecraft insights to inform detection rule development, threat hunting hypotheses, and incident response playbooks
  • Support incident investigations by providing offensive expertise, log analysis, and root cause analysis when required
  • Design, develop, and maintain custom offensive tools, scripts, and automation frameworks to enhance assessment efficiency and coverage
  • Build internal platforms and workflows that enable scalable, repeatable offensive operations
  • Contribute to internal security tooling repositories and champion engineering best practices within the team
  • Automate repetitive testing tasks, payload generation, and reporting workflows using modern development practices
  • Produce clear, actionable reports that communicate technical findings, business risk, and remediation guidance to both technical and non‑technical stakeholders
  • Act as a subject‑matter expert and primary point of contact for stakeholder teams engaged in offensive security programs and Stripe‑wide security initiatives
  • Lead offensive security projects end‑to‑end, mentor junior team members, and foster a culture of continuous learning and knowledge sharing
  • Stay current with emerging threats, vulnerabilities, and attack techniques; share research internally and contribute to the broader security community
Who you are

We're looking for someone who meets the minimum requirements to be considered for the role. If you meet these requirements, you are encouraged to apply. The preferred qualifications are a bonus, not a requirement.

Minimum requirements
  • 5+ years of experience in offensive security, penetration testing, red teaming, or a related field
  • Strong programming skills in Python, Go, or similar languages, with demonstrated experience building tools, automation, or custom exploits
  • Deep knowledge of web application security, …
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

S Security Engineer - Proactive Threat Stripe via Greenhouse Ireland 8611 security analytics View role
S Security Engineer - Proactive Threat Stripe via Greenhouse Ireland 8611 security analytics View role

Nubeero Limited • Ireland

Hybrid
EUR 90,000 - 150,000
Security Engineer - Proactive Threat
Security Engineer - Proactive Threat

Monograph • Dublin

On-site
EUR 112,000 - 168,000
Equity
Health benefits
Wellness stipend
+1
Security Engineer - Proactive Threat
Security Engineer - Proactive Threat

Stripe • Dublin

On-site
EUR 112,000 - 168,000
Equity
Health benefits
Wellness stipends
+1
Offensive Security Engineer: Red Team & Automation
Offensive Security Engineer: Red Team & Automation

Nubeero Limited • Ireland

Hybrid
EUR 90,000 - 150,000
Senior Offensive Security Engineer Red Team & Automation
Senior Offensive Security Engineer Red Team & Automation

Stripe • Ireland

On-site
EUR 120,000 - 180,000
Forward Deployed Security Engineer
Forward Deployed Security Engineer

Stripe • Dublin

On-site
EUR 120,000 - 180,000
S Forward Deployed Security Engineer Stripe via Greenhouse Dublin 8611 security analytics View role
S Forward Deployed Security Engineer Stripe via Greenhouse Dublin 8611 security analytics View role

Nubeero Limited • Dublin

On-site
EUR 120,000 - 180,000
Offensive Security Engineer — Red Team & Tooling
Offensive Security Engineer — Red Team & Tooling

Monograph • Dublin

On-site
EUR 112,000 - 168,000
Equity
Health benefits
Wellness stipend
+1
Security Incident Response Manager
Security Incident Response Manager

EngineersOfAI • Dublin

On-site
EUR 80,000 - 110,000
Incident Response Manager - Security
Incident Response Manager - Security

Stripe • Dublin

Hybrid
EUR 89,000 - 134,000
Equity
Bonuses / commissions
Retirement plans
+2