Founding Offensive Security Engineer

YES!Delft Students

Netherlands

Hybrid

EUR 45,000 - 78,000

Full time

45 hours ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Benefits offered by this job

Direct influence on library
Autonomy
AI tooling budget
Hybrid work
Office in Den Bosch

Job summary

Offensys is building a platform that enables enterprise security teams to continuously validate their defenses by simulating realistic adversary techniques. As Founding Offensive Security Engineer, you’ll own the design and execution of attack simulations and help grow our attack library.

You’ll translate real-world tradecraft into scalable capabilities, from quick scripts to low-level native code, balancing realism with reliability and development effort.

Qualifications

  • Experience in offensive security operations and threat emulation.
  • Ability to translate threat reports into executable simulations.
  • Strong programming capability for automation and tooling.

Responsibilities

  • Research emerging threats and adversary behavior.
  • Translate real-world TTPs into reliable attack simulations.
  • Reproduce and operationalize malware techniques.
  • Identify best ways to simulate procedures from scripts to low-level code.
  • Expand and maintain the attack library.
  • Improve realism and effectiveness of simulations.
  • Build tooling and automation to accelerate research.
  • Collaborate with platform engineers to integrate capabilities.
  • Incorporate customer feedback to guide development.

Skills

Offensive security
Red teaming
Threat emulation
Malware analysis
Security research
Security tooling development

Job description

Build and own our attack library: a collection of realistic, reproducible adversary techniques that allows organizations to continuously validate their security posture.

At Offensys, we're building the platform that enables enterprise security teams to continuously validate their own defenses. We simulate real-world attacker tradecraft, so organizations don't have to guess whether or not they are secure. With Offensys, they know.

Our mission is simple: to enable our clients to stay ahead of the threat.

At the heart of that mission sits our attack library: a growing collection of realistic, reproducible adversary techniques that allows organizations to continuously validate their security posture against real-world threats.

We're looking for someone who wants to help build and own that foundation.

The role

As Founding Offensive Security Engineer, you'll sit at the intersection of offensive security, threat intelligence, research, and engineering. You'll be responsible for turning real-world adversary behavior into high-quality attack simulations that help our customers understand their true resilience. You're comfortable implementing procedures ranging from simple scripts to complex, low-level native code that will be run in-memory, and can identify the best way to simulate a given technique while balancing realism, reliability, and development effort.

This is not a role for someone who wants to run the same assessments over and over again. You won't spend your days stitching together one-off exploits or writing reports that disappear into a drawer.

Instead, you'll build reusable offensive capabilities for a platform that can scale across hundreds of organizations. You'll help decide which techniques belong in our attack library, what we prioritize next, how we maintain quality, and how we stay aligned with an ever-evolving threat landscape.

Within a year, you'll be one of the key owners of the offensive knowledge and tradecraft that differentiates Offensys from everyone else.

What you'll do

Most offensive security roles focus on delivering engagements. This role focuses on building capability. Every technique you research, every simulation you create, and every improvement you make becomes part of a platform that helps organizations continuously validate their defenses. Rather than impacting a single assessment or client, your work will influence many security teams and thousands of security decisions.

Your responsibilities will be to:

  • Research emerging threats, adversary behavior, and threat intelligence reports.
  • Translate real-world TTPs into reliable, reproducible attack simulations.
  • Reproduce, analyze, and operationalize malware techniques and offensive tradecraft.
  • Identify the best way to simulate a procedure, ranging from PowerShell scripts to low-level, custom Beacon Object Files (BOFs).
  • Expand and maintain the Offensys attack library.
  • Continuously improve the quality, realism, and effectiveness of our simulations.
  • Build tooling and automation that accelerates research and content development.
  • Work closely with platform engineers to integrate offensive capabilities into the product.
  • Leverage customer feedback and real-world use cases to influence future development.
Who we're looking for

We're looking for someone with a genuine passion for offensive security and a deep curiosity about how attackers operate. Someone who can take a vague threat report, piece together the missing details, and transform it into a meaningful simulation that provides value to customers. You understand that offensive security is ultimately about helping defenders make better decisions. You are forward-thinking, embrace new technologies, and actively leverage AI and automation to increase your effectiveness while maintaining a high bar for quality and accuracy.

Ideally, you bring experience in one or more of the following areas:

  • Offensive security
  • Red teaming
  • Threat emulation
  • Malware analysis
  • Security research
  • Security tooling development

You're comfortable writing (low-level) code and building automations. You enjoy investigating how things work, breaking them apart, and turning that knowledge into reusable capabilities.

Experience with endpoint tradecraft, adversary emulation, platform development, or certifications such as OSCP, OSED, OSCE3, CRTO, or CRTL is valuable, but not required.

Open-source contributions, research projects, blog posts, conference talks, or publicly visible work tell us more than a CV full of buzzwords.

What we offer
  • Direct influence on and ownership of the content, quality, and direction of our attack library.
  • Close collaboration with the founders from day one.
  • A high degree of autonomy.
  • Time and freedom for research, experimentation, and innovation.
  • Access to and budget for modern development tooling, including the latest and greatest AI-assisted coding tools.
  • A competitive salary between €4,000 and €7,000 gross per month, depending on experience and profile.
  • Hybrid working, with approximately two days per week at our office in Den Bosch (near Central Station).

You'll be one of the first offensive security hires at Offensys. That means you'll help shape not only the library, but also the engineering culture, technical standards, and ways of working that will define the company as it grows. If you're excited about building a category-defining security product and want to have an impact on its future, we'd love to hear from you.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Founding Engineer
Founding Engineer

YES!Delft Students • Netherlands

Hybrid
EUR 56,000 - 89,000
Direct influence on product
Autonomy
Budget for dev tools
+2
Founding Offensive Security Engineer (Platform & Tooling)
Founding Offensive Security Engineer (Platform & Tooling)

YES!Delft Students • Netherlands

Hybrid
EUR 45,000 - 78,000
Direct influence on library
Autonomy
AI tooling budget
+2
Founding Platform Engineer – Offensive Security
Founding Platform Engineer – Offensive Security

YES!Delft Students • Netherlands

Hybrid
EUR 56,000 - 89,000
Direct influence on product
Autonomy
Budget for dev tools
+2
Security Engineer
Security Engineer

Software Search • Netherlands

Hybrid
EUR 100,000 - 123,000
Permanent contract
Training budget and security community
Security Lead
Security Lead

Hamlyn Williams • Amsterdam

On-site
EUR 55,800 - 72,540
8% holiday allowance
Pension
Training Budget
Senior Security Specialist
Senior Security Specialist

DEFION • Netherlands

Hybrid
EUR 70,000 - 110,000
Permanent contract after probation
Mobility budget or lease car
High-end laptop and phone
+1
Offensive Security Engineer (Red Team)
Offensive Security Engineer (Red Team)

Limina Hacking Company B.V. • Rotterdam

Hybrid
EUR 50,000 - 80,000
Holiday allowance 8%
25 vacation days
Performance bonus
+8
Offensive Security Specialist — Lead, Train, or Build Tools
Offensive Security Specialist — Lead, Train, or Build Tools

DEFION • Netherlands

Hybrid
EUR 70,000 - 110,000
Permanent contract after probation
Mobility budget or lease car
High-end laptop and phone
+1
Senior Backend Engineer (Offensive Security Platforms)
Senior Backend Engineer (Offensive Security Platforms)

Hadrian • Amsterdam

On-site
EUR 90,000 - 140,000
Unlimited paid holiday
Stock options package
Mobile phone stipend
+4
Security Consultant
Security Consultant

Software Search • Netherlands

Hybrid
EUR 102,000 - 122,000
Permanent contract
Project variety and autonomy
Competitive compensation
+4