Sr Offensive Security Engineer

LM Wind Power / GE

Indi

On-site

INR 4,000,000 - 7,000,000

Full time

14 days+
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Job summary

First Advantage is seeking a Senior Offensive Security Engineer to join our Threat Management & Security Operations organization. You will perform hands-on offensive assessments across web/mobile apps, APIs, and cloud infrastructure, while developing tooling and running adversary emulation exercises to strengthen detection and response capabilities.

The role requires 5+ years in offensive security, deep knowledge of MITRE ATT&CK mappings, and proficiency with Burp Suite, Metasploit, Nmap, and

Qualifications

  • 5+ years hands-on experience in offensive security, penetration testing, red teaming, or a closely related security engineering role.

Responsibilities

  • Penetration Testing: plan, scope, and execute internal and external tests across web/mobile apps, APIs, cloud, networks, and infrastructure.
  • Red & Purple Teaming: design and run adversary emulation and red team engagements to validate detection coverage.
  • Exploit Development & Chaining: identify and safely exploit vulnerabilities, chaining lower-severity issues into high-impact paths.
  • Adversary Emulation: model real-world TTPs mapped to MITRE ATT&CK to test resilience and response.
  • Findings & Remediation: validate findings, prioritize risk, create remediation tickets, and coordinate retests.
  • Tooling & Automation: build and maintain scripts and tooling to scale offensive testing.
  • Reporting & Communication: produce clear reports and executive summaries translating findings to risk.
  • Incident Response Support: support incident response and threat hunting with adversary context.
  • Continuous Improvement: mature offensive security program with repeatable playbooks and metrics.

Skills

Penetration testing
Red Teaming
Purple Teaming
Adversary Emulation
Report writing
Communication

Education

Bachelor's degree in CS/IS or related field

Tools

Burp Suite Pro
Nmap
Metasploit
Kali Linux
Python
Go
PowerShell
Ruby
Bash

Job description

What You'll DoWe are seeking a highly skilled and motivated Senior Offensive Security Engineer to join our Threat Management & Security Operations organization. In this hands-on role, you will think and operate like an adversary — continuously finding, exploiting, and helping remediate real-world weaknesses across First Advantage’s products, cloud infrastructure, networks, and people. You will design and execute penetration tests, red and purple team engagements, and adversary emulation exercises that validate our detection and response capabilities and measurably reduce enterprise risk at-scale.This role partners closely with Security Operations, Threat Intelligence & Hunt, Vulnerability Management, Application Security, DevOps, and Product teams to turn offensive findings into prioritized, business-aligned remediation. The ideal candidate is equally comfortable building custom tooling, chaining exploits across complex environments, and communicating impact clearly to both technical teams and executive leadership.ResponsibilitiesPenetration Testing: Plan, scope, and execute internal and external penetration tests across web and mobile applications, APIs, cloud (AWS/Azure), networks, and infrastructure using real-world attacker techniques.Red & Purple Teaming: Design and run adversary emulation and red team engagements that combine multiple attack paths to accomplish objective-based goals, and partner with the SOC, Threat Intel & Hunt, and Detection Engineering on purple team exercises to validate and improve detection coverage.Exploit Development & Chaining: Identify, validate, and safely exploit vulnerabilities — including chaining lower-severity issues into high-impact attack paths — and demonstrate tangible business impact in production-representative environments.Adversary Emulation: Model real-world threat actor tactics, techniques, and procedures (TTPs) mapped to the MITRE ATT&CK framework to test and strengthen organizational resilience, detection, and response.Findings & Remediation: Review and validate findings for accuracy, prioritize real-world exploitability and business risk, create remediation tickets, and partner with engineering teams to drive fixes and coordinate retests within policy SLAs.Tooling & Automation: Build and maintain custom scripts, tooling, and automation to scale offensive testing, and help operationalize continuous/autonomous testing platforms across the environment.Reporting & Communication: Produce clear, decision-ready reports and executive summaries that translate technical findings into risk and business impact for technical stakeholders, GRC/Audit, and executive leadership.Incident Response Support: Support incident response and threat hunting efforts by providing offensive expertise, attack-path context, and adversary insight.Continuous Improvement: Contribute to the maturity of the offensive security program — developing repeatable methodologies, playbooks, and metrics that demonstrate progress over time.What You Will Need to be Successful:5+ years of hands-on experience in offensive security, penetration testing, red teaming, or a closely related security engineering role.Demonstrated expertise across multiple domains: web/mobile application, API, network, infrastructure, and cloud (AWS and/or Azure) penetration testing.Strong understanding of exploitation and post-exploitation techniques, attack-path chaining, and objective-based adversary emulation.Proficiency with industry-standard offensive tooling such as Burp Suite Professional, Nmap, Metasploit, and Kali Linux, along with vulnerability scanners.Proficiency in at least one scripting or programming language (e.g., Python, Go, PowerShell, Ruby, or Bash) to build custom tools and automation.Working knowledge of the MITRE ATT&CK framework and hands-on experience mapping engagements to adversary TTPs.Excellent written and verbal communication skills, with the ability to present findings to both technical audiences and executive leadership.What You May Need to be Successful:Advanced offensive certifications (e.g., OSEP, OSCE³, CRTO, GXPN) and a track record of original security research, CVEs, or responsible disclosures.Experience with cloud-native attack techniques and container/Kubernetes (EKS/AKS) and serverless security testing.Experience operating or evaluating continuous/autonomous pen testing and breach-and-attack-simulation platforms.Familiarity with detection engineering, SIEM/EDR platforms, and building purple team feedback loops into SOC content.Knowledge of compliance and security frameworks relevant to our environment.Experience mentoring junior engineers and helping mature an offensive security program.Why Join Us at First Advantage?At First Advantage, team members are united around a noble purpose: helping organizations to safeguard their workplaces and manage risk. The company’s culture is shaped by its core values — Authenticity, Curiosity, Integrity, Teamwork, Customer-Inspired — empowering team members to bring their best ideas forward, collaborate across departments, and make a real impact.First Advantage offers a variety of culture programs and benefits designed to enhance employee experience and development.Employee Impact GroupsFA Cares volunteer opportunitiesMentorship Advantage ProgramSOAR, award-winning manager development programWe have great people here and are looking for more. Come join us!Follow us:FacebookInstagramLinkedInXYouTubeEqual Employment Opportunities at First AdvantageFirst Advantage is an equal opportunity employer. We are committed to providing a workplace and recruitment process that is free from unlawful discrimination, harassment, and retaliation. Employment decisions at First Advantage are based solely on qualifications, merit, and business needs. We do not discriminate in any aspect of employment on the basis of race, color, national origin, ancestry, citizenship, religion, creed, sex, gender identity, gender expression, sexual orientation, marital or family status, pregnancy, age, physical or mental disability, medical condition, genetic information, veteran or military status, or any other characteristic protected by applicable law.
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Sr Offensive Security Engineer
Sr Offensive Security Engineer

LM Wind Power / GE • Bengaluru

Hybrid
INR 3,500,000 - 7,000,000
Generous Paid Time Off
Volunteer Time Off (VTO)
Competitive benefits
+1
Senior Staff Security Architect
Senior Staff Security Architect

LM Wind Power / GE • Bengaluru

Hybrid
INR 3,500,000 - 6,000,000
SOAR program
Paid time off (PTO)
Volunteer time off (VTO)
+2
Lead Software Engineer
Lead Software Engineer

LM Wind Power / GE • Indi

Hybrid
INR 4,000,000 - 7,000,000
Software Engineer
Software Engineer

LM Wind Power / GE • Indi

On-site
INR 1,200,000 - 2,800,000
Software Engineer
Software Engineer

LM Wind Power / GE • Bengaluru

Hybrid
INR 1,500,000 - 2,300,000
Award-winning SOAR program
Generous Paid Time Off
Volunteer Time Off (VTO)
+2
Solutions Engineer
Solutions Engineer

LM Wind Power / GE • Bengaluru

Hybrid
INR 1,500,000 - 1,900,000
Generous Paid Time Off
Volunteer Time Off
Global Employee Assistance Program
+1
Lead Cloud Engineer
Lead Cloud Engineer

LM Wind Power / GE • Bengaluru

On-site
INR 3,200,000 - 6,400,000
Professional development opportunities
Generous Paid Time Off
Volunteer Time Off (VTO)
+3
Lead Software Engineer
Lead Software Engineer

First Advantage • India

On-site
INR 4,000,000 - 7,000,000
Associate Customer Experience Specialist (Batch Start - 06 Jul 2026)
Associate Customer Experience Specialist (Batch Start - 06 Jul 2026)

LM Wind Power / GE • Bengaluru

On-site
INR 350,000 - 550,000
Professional development
Generous PTO
Volunteer Time Off
+3
Cloud Engineer- Remote
Cloud Engineer- Remote

First Advantage • Bengaluru

On-site
INR 1,000,000 - 2,000,000
Comprehensive employee leave policy
Career progression and development opportunities
Medical insurance coverage
+1