Principal Offensive Cyber Research Engineer

Twenty

Arlington (VA)

On-site

USD 180,000 - 260,000

Full time

14 days+
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Benefits offered by this job

Health insurance
Family benefits
Vacation and PTO
401(k) retirement plan

Job summary

Twenty Technologies in Arlington, VA seeks an experienced leader to serve as the technical authority for its offensive cyber research program. You will set long-term vision, elevate execution standards, and drive breakthroughs in adversary emulation and automation, partnering with engineering, product, and operations leaders while briefing executives.

You will mentor staff, recruit top-tier talent, and engage with government stakeholders to translate capabilities into strategic decisions. A U.S.

Qualifications

  • 8–12 years of distinguished experience across offensive cyber operations, advanced research, and software development.
  • Senior technical leadership experience in government/military or national security contexts.
  • Defined technical strategy and led large-scale initiatives delivering durable capabilities.
  • Expert understanding of adversary behaviors and MITRE ATT&CK.
  • Strong engineering standards and ability to guide multi-team efforts.

Responsibilities

  • Define and drive the long-term technical vision and roadmap for Twenty’s offensive cyber research and capabilities.
  • Serve as the principal technical advisor to executive leadership on strategy and risk.
  • Lead research into adversary behaviors and next-generation offensive techniques.
  • Establish company-wide standards and best practices for tooling and engineering quality.
  • Architect and guide development of adversary emulation and attack automation systems at scale.
  • Lead technical governance and mentor engineers; build growth plans.

Skills

Adversary emulation
Technical leadership
Offensive cyber operations
MITRE ATT&CK
Stakeholder communication

Tools

C/C++
Rust
Python

Job description

About the Company

America is under sustained cyber attack. Our adversaries infiltrate our networks, steal our IP, and degrade the digital infrastructure that modern life runs on. They’ve learned—correctly—that those attacks rarely produce consequences.

Twenty was founded to change that, by making our adversaries think twice before they attack us. Our vision is American and allied primacy in cyberspace—a future where they cannot contest us, deterrence is assured, and the free world remains secure.

Founded in 2024, Twenty Technologies (www.twenty.io) industrializes offensive cyber operations for the U.S. and its allies. Headquartered in Arlington, Virginia, Twenty has raised $168M from Khosla Ventures, Accel, Caffeinated Capital, Friends & Family Capital, Point72 Ventures, General Catalyst, and In-Q-Tel.

Mission | On Site | Full Time | Active TS/SCI with CI Polygraph

Role Summary

You will serve as the preeminent technical authority for Twenty’s offensive cyber research program—setting the long-term vision, raising the bar on technical execution, and driving breakthroughs in adversary emulation and attack automation. Your work will shape how we build and standardize offensive capabilities that support real-world national security outcomes. You’ll partner closely with engineering, product, and operations leaders, and you’ll regularly advise executive leadership and government stakeholders on strategy, technical risk, and capability evolution.

What You’ll Do
  • Define and drive the long-term technical vision and roadmap for Twenty’s offensive cyber research and capabilities.
  • Serve as the principal technical advisor to executive leadership on strategy, capability development, and technical risk.
  • Lead groundbreaking research into advanced adversary behaviors and next-generation offensive cyber techniques.
  • Establish company-wide standards, frameworks, and best practices for offensive tooling and engineering quality.
  • Architect and guide development of advanced adversary emulation and attack automation systems built for scale.
  • Lead technical governance (e.g., architecture reviews) and provide authoritative guidance on complex decisions.
  • Mentor Staff and Senior engineers, build growth plans, and strengthen the organization’s technical leadership bench.
  • Recruit, interview, and assess top-tier offensive cyber talent to build and sustain world-class teams.
  • Lead technical engagements with senior government stakeholders—translating complex capabilities into decision-grade clarity.
  • Build strategic research partnerships across government, academia, and industry to accelerate innovation and impact.
Who You Are
  • You’re motivated by mission-driven work that helps defend democracies in the cyber domain.
  • You set a high technical bar and raise it—through clear standards, strong reviews, and hands‑on mentorship.
  • You’re calm under pressure and comfortable making high-stakes decisions with incomplete information.
  • You think in systems: tradeoffs, second-order effects, operational constraints, and long-term maintainability.
  • You have the presence to influence executives and senior government stakeholders without overselling.
  • You balance innovation with operational discipline—prioritizing safety, rigor, and responsible stewardship.
  • You communicate with precision: crisp written artifacts, clear technical narratives, and direct feedback.
Must Have
  • You have 8–12 years of distinguished experience across offensive cyber operations, advanced research, and software development.
  • You have served in senior technical leadership roles in one or more of: government/military DNEA, Exploitation Analyst (EA) operations, elite red teams, or nation‑state threat research.
  • You have defined technical strategy and led large-scale initiatives that shipped durable, high-impact capabilities.
  • You have expert‑level understanding of adversary behaviors and TTPs, including deep familiarity with MITRE ATT&CK.
  • You have demonstrated technical judgment in designing complex, scalable systems and establishing engineering standards.
  • You have led and mentored senior engineers, including setting expectations, running technical reviews, and developing talent.
  • You have strong executive and customer communication skills, with experience briefing senior leaders and shaping decisions.
  • You are eligible to obtain a U.S. Government security clearance.
Nice to Have
  • You have deployed offensive cyber capabilities into operational use with measurable mission impact.
  • You have a track record of thought leadership through publications, conference talks, or widely respected technical writing.
  • You have deep background in malware development, vulnerability research, or exploit engineering with notable discoveries.
  • You hold advanced technical certifications (e.g., OSEE, GXPN, or equivalent government credentials).
  • You have experience with multi‑source intelligence fusion or cross‑domain operational environments.
  • You have familiarity with acquisition/requirements processes and guiding capability development across multiple teams.
Tech Environment (You Might Work With)
  • You might work with modern systems programming and scripting languages (e.g., C/C++, Rust, Python).
  • You might work with cloud environments and cloud security across major providers (AWS, Azure, GCP).
  • You might work with graph-based analysis and large‑scale data processing systems.
  • You might work with AI/ML workflows applied to adversary emulation and automation.
  • You might work with containerized infrastructure, CI/CD, and production‑grade observability.
Security / Work Environment

This role requires eligibility to obtain a U.S. Government security clearance. Some work may involve operating in a controlled environment.

Benefits
What's on the table:

  • Health. Medical, dental, and vision plan options. Life / AD&D, disability coverage options.
  • Family. Paid parental leave for eligible full‑time employees. 12 weeks for birthing parents, 4 for non‑birthing parents, 6 weeks for adoptive, foster, or intended parents through surrogacy.
  • Vacation. Paid holidays and flexible PTO. Take what you need.
  • Retirement. 401(k) with pre‑tax and Roth options. HSA/FSA options, dependent care FSA.

Benefits vary by location, role, and eligibility. Full plan details provided during the interview and offer process.

Due to U.S. government contract and security requirements, this role is limited to U.S. citizens. Some positions may also require eligibility to obtain and maintain a U.S. Government security clearance. Any active clearance requirement will be listed in the role description.

Twenty is an equal opportunity employer. We consider all qualified applicants without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, veteran status, disability, or any other protected status, consistent with applicable law.

If you need a reasonable accommodation during the hiring process, let us know and we will work with you.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Principal Offensive Cyber Research Engineer
Principal Offensive Cyber Research Engineer

Twenty Technologies • Virginia (MN)

On-site
USD 180,000 - 240,000
Health insurance
Parental leave
Paid holidays
Offensive Cyber Research Engineer
Offensive Cyber Research Engineer

Twenty Technologies • Virginia (MN)

On-site
USD 170,000 - 250,000
Health plan
Parental leave
Flexible PTO
+1
Offensive Cyber Research Engineer
Offensive Cyber Research Engineer

Twenty • Arlington (VA)

On-site
USD 170,000 - 260,000
Health, dental, vision plans
Paid parental leave
Paid holidays and flexible PTO
+1
Director, Software Engineering
Director, Software Engineering

Twenty Technologies • Virginia (MN)

On-site
USD 230,000 - 350,000
Health benefits
Family leave
Paid holidays & flexible PTO
+1
Senior Forward Deployed Analyst
Senior Forward Deployed Analyst

Twenty Technologies • San Antonio (TX)

On-site
Mission Architect
Mission Architect

Twenty Technologies • Arlington (TX)

On-site
USD 150,000 - 190,000
Health insurance
Parental leave
Paid time off
+3
Senior Forward-Deployed Cyber Ops & Intelligence Lead
Senior Forward-Deployed Cyber Ops & Intelligence Lead

Twenty Technologies • San Antonio (TX)

On-site
Mission Architect: Cyber Ops Product Leader
Mission Architect: Cyber Ops Product Leader

Twenty Technologies • Arlington (TX)

On-site
USD 150,000 - 190,000
Director, Software Engineering
Director, Software Engineering

Twenty • Arlington (VA), Northern (KY)

Hybrid
USD 220,000 - 300,000
Health benefits
Paid parental leave
Paid holidays & PTO
+1
IT Security Engineer
IT Security Engineer

Twenty • Arlington (VA)

On-site
USD 120,000 - 180,000
Health plan
Parental leave
Vacation
+1