Educate 360 logo
Educate 360

Professional Training Partners

Senior Offensive Security Engineer

Security EngineerSecurity EngineerOtherRemoteSeniorTeam 201-500H1B No SponsorCompany SiteLinkedIn

Location

California

Posted

73 days ago

Salary

0

Seniority

Senior

Bachelor Degree3 yrs expEnglish

Job Description

Senior Offensive Security Engineer

Educate 360

• Reports to Offensive Security Manager • Grow penetration testing practice • Propose and take ownership of internal project initiatives • Conduct debrief reviews with clients • Lead client debrief calls for standard engagements

Job Requirements

  • Have at least 3-5 years of offensive security, including but not limited to:
  • o Web application and API penetration testing (required)
  • o Mobile application penetration testing (required)
  • o External penetration testing (required)
  • o Internal penetration and wireless testing (required)
  • o Social engineering
  • o Cloud penetration testing and assessments
  • o AI penetration testing
  • o Red team engagements
  • Hold industry-standard penetration testing certifications such as PNPT, PWPP, PWPE, PMPA, OSCP, OSWE, BSCP, or other related certifications.
  • Demonstrate deep expertise in web application and API testing, and be able to perform code review assessments.
  • Lead client debrief calls for standard engagements, presenting findings and answering technical questions with confidence.
  • Serve as a primary point of contact for clients during active engagements, managing day-to-day communication and access coordination.
  • Participate in pre-sales calls, helping scope engagements and serve as a technical SME for prospective clients.
  • Contribute to report quality - providing input, review, and feedback on deliverables.
  • Conduct debrief reviews with clients, and serve as a senior on debrief calls for junior members and contractors.
  • Propose and take ownership of internal project initiatives.
  • Participate in the hiring process, including interviewing candidates.
  • Serve as a mentor to junior members on the team, as well as improve team documents, standard operating procedures, and methodologies.
  • Stay current on emerging attack vectors and share knowledge across the team.

Benefits

  • Competitive Paid Time Off (PTO)
  • Medical, Dental, and Vision plans
  • 100% company-paid Life and Disability insurance
  • Generous 401(k) matching program

Related Categories

Related Job Pages

More Security Engineer Jobs

Omilia - Conversational Intelligence logo

Business Information Security Officer

Omilia - Conversational Intelligence

Omilia is the leading provider of Natural Language Understanding enabled IVR & natural dialogue interaction solutions.

OtherRemoteTeam 201-500Since 2002H1B No Sponsor

• Serve as the primary security contact for Sales, Customer Success, Legal/Contracts, Product, and Professional Services — acting as a security advisor embedded in commercial and delivery workflows. • Attend key deal reviews, QBRs, and customer onboarding sessions to provide security context and remove blockers caused by security uncertainty. • Translate cyber security standards and policies into actionable guidance for non-security teams; bridge the gap between the CISO’s policy layer and day-to-day business operations. • Own the security governance framework for Omilia’s AI product features: generative AI tools (Pathfinder, miniApps), LLM integrations, agentic execution pipelines, and voice biometric systems. • Lead the security review process for new AI feature releases, including threat modelling, data handling assessment, and compliance gap analysis (EU AI Act, NIST AI RMF). • Establish and maintain an AI risk register covering model input/output risks, training data provenance, inference security, and human-in-the-loop control adequacy. • Represent Omilia in AI security discussions with enterprise customers and prospects who are subject to AI governance mandates (DORA, EU AI Act, internal AI ethics boards). • Own the security questionnaire process end-to-end: triage, response, evidence pack assembly, and customer sign-off. Target: sub-5-day turnaround for standard RFPs. • Maintain and continuously improve the master security response library, aligned to current certifications (FedRAMP, SOC 2 Type II, ISO 27001, PCI-DSS, HIPAA, GDPR). • Participate in contract security exhibit negotiations, advising Legal on what Omilia can operationally commit to vs. what requires escalation or commercial pushback. • Support customer audits, penetration test disclosure requirements, and on-site/virtual security review sessions. • Drive adherence to Omilia’s internal security policies across business units: data classification, acceptable use, third-party risk, incident reporting obligations. • Run targeted security awareness programmes for non-technical staff, with specific focus on data handling, phishing resilience, and AI tool usage policies. • Identify and escalate systemic non-compliance patterns to the CISO; propose pragmatic remediation plans that do not block business operations. • Maintain the internal security risk register for business-unit-owned risks (as distinct from technical/platform risks owned by Cloud Security). • Manage the security assessment lifecycle for new vendors, subprocessors, and integration partners, ensuring DPA and Security Exhibit obligations flow down appropriately. • Monitor existing subprocessor security posture and flag material changes (e.g., a CCaaS partner changing their cloud provider or incident disclosures). • Support the OEM and reseller channel on security onboarding: ensure partner-side obligations are understood and operationalised.

United States
Job Closed
MBL Technologies Inc. logo

Cybersecurity Consultant

MBL Technologies Inc.

Digital Solutions, Risk Management, Compliance & Advisory, and Management Consulting

OtherRemoteTeam 11-50H1B No Sponsor

• Provides cybersecurity guidance for systems development, analysis and design, network design, and security engineering. • Conducts cybersecurity risk assessments of networks and systems. • Conducts cyber threat assessment activities to include research of persistent threats. • Uses classified and unclassified information to create cybersecurity intelligence products and threat assessments for senior leaders. • Develops information security/privacy documentation. • Researches and participates in the selection and management of security support systems. • Supports the development of cybersecurity policies and standard operating procedures. • Participates in compliance and vulnerability assessments for various systems.

Washington
Job Closed
cubic solutions GmbH logo

Consultant for Microsoft Azure, M365 Security

cubic solutions GmbH

securing businesses and ideas in a digital word

Full TimeRemoteTeam 1-10Since 2022H1B No Sponsor

• Advising companies on planning, selecting, and implementing secure Microsoft Azure and M365 solutions — tailored to individual requirements • Carrying out Azure migrations, security assessments, and implementing protective measures to secure cloud infrastructures and corporate data • Developing and integrating security policies, technologies, and best practices to strengthen IT security architecture in Azure and M365 environments • Planning and delivering training and workshops for the secure and efficient use of Microsoft cloud services • Continuously optimizing existing Azure and M365 solutions with respect to security, performance, and usability • Designing and implementing secure and efficient Microsoft Azure solutions for businesses

Germany
€20K - €80K / year
MSM Inc. logo

Cybersecurity Subject Matter Expert

MSM Inc.

Brand Experiences that Inspire Action - In-person + Online

OtherRemoteTeam 51-200Since 1993H1B No Sponsor

• The Cybersecurity Subject Matter Expert (SME) will be responsible for leading and executing the comprehensive cybersecurity program to protect the Agency’s Enterprise Infrastructure. • The SME will manage all aspects of security compliance, Risk Management Framework (RMF) activities, and vulnerability management to ensure systems maintain their Authority to Operate (ATO) and are compliant with all DoD and Agency policies. • Lead all activities required to maintain current and achieve new ATOs and Authorities to Connect (ATCs) for all Agency systems. • Perform as the System-Level Information System Security Officer (S-ISSO), managing day-to-day security operations. • Direct the vulnerability management program by ensuring all vulnerabilities identified by tools such as ACAS and SCAP are remediated. • Oversee and perform IAVM compliance patching, STIG compliance, and remediation for all IT assets. • Support all internal and external security reviews, including CSSP vulnerability assessments, CORA, IG audits, and penetration testing. • Collaborate with government and development teams on the 'System Security Package.'

Virginia
Job Closed