A complete application in a minute — tailored resume and cover letter, ready to send.
Valon Mortgage is seeking an experienced Senior Security Engineer, Threat & Offensive Security to join our growing team and help scale adversarial testing, threat hunting, and incident response across cloud and on-prem environments.
This role emphasizes AI-enabled automation, collaboration with engineering, and scalable playbooks designed to protect customer data and trust. A strong background in pen testing, risk management, and modern security tooling is required.
We are seeking an experienced and skilled Senior Security Engineer, Threat & Offensive Security to join our growing team!This position requires a deep understanding of adversarial techniques, security testing methodologies, threat intelligence, and incident response, along with the ability to collaborate with cross-functional teamsMinimum of 5 years in a security engineering, penetration testing, threat intelligence, or similar roles with relevant responsibilities and backgroundExperience with security testing, monitoring, and response technologies (threat intelligence platforms, vulnerability scanners, SIEM, EDR, or similar)Knowledge of cloud environmentsRelevant security certifications (e.g., CISSP, CEH, OSCP, GPEN, GCIH or similar)Bachelor’s degree in Computer Science, Information Security, Technology, or a related fieldImportantly, this role requires an AI and automation-first approach to security work, using modern tools to scale testing, threat management, and responseExperience or exposure to startup environments is a plusApplied knowledge of industry security and testing frameworks (OWASP, NIST, MITRE ATT&CK, CIS, SOC 2/ISO 27001 concepts)Ability to foster strong relationships and partner with stakeholders to drive remediation and resultsExcellent communication and collaboration skills, with the ability to explain technical findings and risk to both technical and non-technical stakeholdersExperience with cloud security and environments (GCP, AWS)Ability to work autonomously, lead projects, and navigate complex, ambiguous security investigationsExperience with SIEM, EDR, and other detection/monitoring platformsStrong understanding of common attack techniques, exploitation methods, and MITRE ATT&CK or relatedProficient in both manual and automated testing techniques, understanding when manual analysis is needed versus pure automated testingDemonstrated experience leveraging AI and automation to improve the efficiency and scalability of threat detection, testing, and response operationsHands-on experience with security testing tools and frameworks (e.g., Burp Suite, Metasploit, Nmap, Cobalt Strike, or similar)Proven experience in security engineering, red team, or threat management role, with a focus on penetration testing, security testing, threat intelligence, and/or incident response