Senior Vulnerable Machine Engineer

Deel

United States

Remote

USD 120,000 - 180,000

Full time

14 days+
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Job summary

OffSec is seeking a Senior Vulnerable Machine Engineer to design and build hands-on lab environments, creating Linux and Windows attack paths, Active Directory scenarios, and cloud vectors for learning content.

You will review labs for determinism, develop automation to make lab creation timely and repeatable, document steps in detail, and collaborate with the Lab team Manager and Content Architect to align with courses and exams.

Qualifications

  • OSCP minimum; OSCE3 preferred (or at least one OffSec 300-level cert)
  • Active Directory and Cloud attack-path experience
  • Scripting proficiency: Python, PowerShell, Bash
  • At least five or more years of experience as a Systems Engineer or related Info-Sec role, with experience reviewing content
  • Experience with Penetration Testing and Bug Bounty Hunting
  • Experience as Systems Administrator with Windows, Windows Server, POSIX, Linux, Mac

Responsibilities

  • Content design and build lab environments using Linux and Windows vectors
  • Design and build VMs and multi-host environments including AD and Cloud paths
  • Create realistic scenarios and environment narratives aligned with learning objectives
  • Ensure vectors cover the intended difficulty and learning objectives
  • Review labs for unintended solution paths and ensure determinism and reproducibility

Skills

OSCP
OSCE
Active Directory
Cloud
Python
PowerShell
Bash
Infrastructure as Code
Terraform
Ansible
Penetration Testing
Bug Bounty
Windows
Linux

Education

Bachelor’s Degree in Systems Engineering or related field

Tools

Git
Terraform
Ansible
PowerShell

Job description

Senior Vulnerable Machine EngineerJob detailsDepartment / LabsRemoteFull-time**About OffSec**Founded in 2006 by the creators of Kali Linux, OffSec (formerly known as Offensive Security) is the leading provider of continuous professional and workforce development, training, and education for cybersecurity practitioners. OffSec’s distinct pedagogy and practical, hands-on learning help organizations fill the infosec talent gap by training their teams on today’s most critical skills.**Become a part of our global presence and work from anywhere.** With team members in over 40 countries, we believe in inspiring people of all backgrounds and communities. The OffSec team is composed of diverse, internationally published authors, conference speakers, and seasoned information technology professionals from both the private sector and governments worldwide.Excited about our mission and what we do? Apply and join us!**About the Job**Have you earned your OSCP, OSEP/OSED/OSWE, and gained offensive experience before and/or since then? Are you excited at the opportunity to contribute to the growth and education for the current and next generation of cybersecurity professionals? If the idea of building lab environments, to provide hands-on experience for individuals to learn and upskill, then this might be the right role for you!**Duties and Responsibilities*** Content design and build + Researches and identifies topical, relevant attack vectors suitable for inclusion in OffSec labs, exams, and/or learning content + Design and build VMs and multi-host environments from vectors across Linux and Windows, including Active Directory and Cloud attack paths + Designs realistic scenarios and environment narratives that make each attack path plausible and discoverable through enumeration + Ensures the range of vectors in each environment is appropriate to its stated difficulty level and learning objectives + Maintains variety across the catalogue so that content remains distinct as it rotates through active use* Quality, integrity, and reproducibility + Review labs for unintended solution paths and confirms each is solvable by the intended route within its expected time frame + Validates that machines are deterministic and reproducible in an isolated environment, including reliable reset and revert behaviour + Deliberate selection and use of software and OS versions, monitoring deployed components so that content behaves consistently over its lifetime + Documents the steps required to complete each machine, with difficulty assessed at a level of detail that supports competency mapping and certification review* Collaboration + Coordinates with the relevant team(s) to deploy, update, and retire content + Coordinates with testing to ensure full coverage of both newly created and updated content + Coordinates with the Lab team Manager and Content Architect on vector selection and exploit implementation within courses and learning paths + Coordinates and make recommendations to keep content additions consistent across products + Regularly communicates content additions, changes, and retirements to relevant stakeholders* Senior scope + Acts as a technical reviewer for lab concepts and builds produced by other Vulnerable Machine Engineers and community contributors, providing structured, actionable feedback + Support and mentor other engineers on build standards, documentation quality, and content review practice + Contributes across OffSec's lab and exam portfolio as priorities require, rather than to a single product* Automation and tooling + Creates and maintains automation that makes lab creation timely, consistent, and repeatable + Evaluates new and emerging technologies to make recommendations on their introduction into the lab estate + Create and maintain documentation for every lab, to a standard that allows any team member to rebuild it from the documentation alone, without assistance**Qualifications*** OSCP minimum, OSCE3 preferred (or at least one OffSec 300-level cert required)* A Bachelor’s Degree in Systems Engineering, Computer Science, Information Systems, and / or Information Assurance from an accredited institution/related specialized field, or equivalent practical experience.* Demonstrable *Active Directory* and *Cloud* attack-path experience.* Proficiency with infrastructure-as-code and configuration management and version control* Scripting proficiency (Python, PowerShell, Bash).* At least five or more years of experience as a Systems Engineer or in a Info-Sec related position (examples), with experience reviewing or approving others' technical security content: + Experience with Penetration Testing + Experience with Bug Bounty Hunting* Experience as a Systems Administrator with a variety of Operating Systems: + MS Windows + MS Windows Based Server Systems + POSIX Server Systems + Linux and Mac Desktop Environments* Strong written and verbal communication skills with an ability to present technical ideas clearly to both technical and non-technical audiences**Work Location and Hours**This role is a full-time salaried position. It is a fully remote position. Work hours for this position are flexible and will be performed from a home office.**Direct Reports**This position has no direct reports. However, the expectations of this role are to provide technical leadership. **EEO**OffSec provides equal employment opportunities to all employees and applicants for employment and prohibits discrimination and harassment of any type without regard to race, color, religion, age, sex, national origin, disability status, genetics, protected veteran status, sexual orientation, gender identity or expression, or any other characteristic protected by federal, state or local laws.This policy applies to all terms and conditions of employment, including recruiting, hiring, placement, promotion, termination, layoff, recall, transfer, leaves of absence, compensation and training.
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Senior Vulnerable Machine Engineer
Senior Vulnerable Machine Engineer

OffSec • United States

On-site
USD 120,000 - 180,000
Senior Cybersecurity Content Engineer
Senior Cybersecurity Content Engineer

Offsec Services • Town of Montana (WI)

On-site
USD 140,000 - 190,000
DevOps Engineer (EMEA Region)
DevOps Engineer (EMEA Region)

OffSec • United States

On-site
USD 140,000 - 210,000
Home office
Social Media & Community Specialist
Social Media & Community Specialist

Deel • Northern (KY)

Hybrid
USD 85,000 - 120,000
Senior Vulnerable Lab Engineer — Remote
Senior Vulnerable Lab Engineer — Remote

Deel • United States

Remote
USD 120,000 - 180,000
Senior Lab Engineer - Vulnerable Machines (Remote)
Senior Lab Engineer - Vulnerable Machines (Remote)

OffSec • United States

Remote
USD 120,000 - 180,000
Offensive Security & Code Analysis Engineer
Offensive Security & Code Analysis Engineer

Districttechgroup • Washington

On-site
USD 80,000 - 120,000
Fully remote work environment
Competitive salary and performance bonuses
Health, dental, and vision insurance
+1
Product Marketing Manager
Product Marketing Manager

Deel • Northern (KY)

Hybrid
USD 90,000 - 130,000
Offensive Security Consultant
Offensive Security Consultant

NEPSE Trading • Northern (KY)

On-site
USD 120,000 - 150,000
Health insurance
Paid holidays
401(k) with company match
+2
Senior Cybersecurity Content Architect - Remote Labs
Senior Cybersecurity Content Architect - Remote Labs

Offsec Services • Town of Montana (WI)

On-site
USD 140,000 - 190,000