Job Closed

This listing is no longer active.

Twilio logo
Twilio

Build the future of communications.

Senior Manager – Offensive Security

Security EngineerSecurity EngineerOtherRemoteSeniorTeam 5,001-10,000H1B SponsorCompany SiteLinkedIn

Location

California + 5 moreAll locations: California | Connecticut | New Jersey | New York | Pennsylvania | Washington

Posted

102 days ago

Salary

$188.2K - $276.7K / year

Seniority

Senior

Bachelor Degree10 yrs expEnglishAWSAzureGCPKubernetesPythonSDLC

Job Description

Senior Manager – Offensive Security

Twilio

• Develop and execute a multi-year roadmap for offensive security, including red teaming, penetration testing, bug bounty, and vulnerability research. • Design and lead full-scope red team engagements that simulate Advanced Persistent Threats (APTs) to test detection and response capabilities. • Oversee the end-to-end lifecycle of offensive engagements, from initial scoping and Rules of Engagement (RoE) to final reporting. • Facilitate collaborative "Purple Team" exercises with Detection and Response (TDR) to improve detection logic and incident response playbooks. • Translate complex technical findings into actionable business risk assessments for C-suite executives and Board members. • Recruit, retain, and develop a high-performing team of offensive security engineers, providing technical guidance and career coaching. • Partner with vulnerability management, product, and engineering to ensure that findings from offensive tests are prioritized and remediated effectively. • Oversee the development of custom scripts, payloads, and C2 (Command and Control) frameworks to enhance the team’s stealth and efficiency. • Conduct specialized threat modeling for AI-native applications, focusing on the OWASP Top 10 for LLMs and MITRE ATLAS (Adversarial Threat Landscape for AI Systems). • Design and execute manual and automated Prompt Injection & Jailbreaking to bypass model guardrails, system prompts, and safety filters. • Ensure all offensive activities align with legal, ethical, and regulatory standards (e.g., GDPR, SOC2, PCI-DSS). • Incorporate current Cyber Threat Intelligence (CTI) into attack scenarios to ensure they reflect the latest real-world TTPs (Tactics, Techniques, and Procedures). • Manage relationships and quality control for external security consultancy firms performing third-party penetration tests. • Encourage and lead research into emerging technologies to identify future attack vectors. • Work closely with Product and Engineering teams to bake security into the Software Development Life Cycle (SDLC) through testing and assessments.

Job Requirements

  • Minimum of 10+ years in cybersecurity, with at least 5 years specifically in offensive security roles and 2+ years in a leadership or management capacity.
  • Deep knowledge of security frameworks like the MITRE ATT&CK framework, Cyber Kill Chain, and advanced exploitation techniques (e.g., AD, cloud, and applications attacks).
  • Possession of advanced industry certifications such as OSCP, OSEP, OSWE, GXPN or similar
  • Proficient in attacking and defending diverse environments including AWS/Azure/GCP, Kubernetes, and hybrid-cloud architectures.
  • Proven experience in automating red teaming for GenAI and proficiency in using AI offensive tools like PyRIT, Prompfoo, Xbow or Counterfit to build and stage AI powered attacks
  • Advanced experience with red team and penetration testing tools such as Cobalt Strike, Burp Suite Pro, Metasploit, BloodHound, and Sliver.
  • Strong ability to code or script in Python, PowerShell, Go, or C++ for exploit development and task automation.
  • Proven ability to connect individual vulnerabilities into complex attack chains that demonstrate significant business impact.
  • A flawless record of ethical conduct and the ability to handle extremely sensitive access and information with total discretion.

Benefits

  • Competitive pay
  • Generous time off
  • Ample parental and wellness leave
  • Healthcare
  • A retirement savings program
  • This role may be eligible to participate in Twilio’s equity plan and corporate bonus plan.
  • All roles are generally eligible for the following benefits: health care insurance, 401(k) retirement account, paid sick time, paid personal time off, paid parental leave.

Related Categories

Related Job Pages

More Security Engineer Jobs

Bird logo

Senior Manager of IT and Security

Bird

On a mission to provide eco-friendly transportation for everyone. Safety and compliance first in 450+ cities. NYSE: BRDS

Security Engineer102 days ago
OtherRemoteTeam 201-500Since 2017H1B Sponsor

This description is a summary of our understanding of the job description. Click on 'Apply' button to find out more. Role Description As a Senior Manager of IT and Security at Bird, you will lead and build out world-class cross-disciplinary staff to manage, conceive, and design innovative IT systems. You will manage budgets, personnel, and guide architectural decisions. You will be working in a cross-functional setting across the organization. - Lead high-performing IT team through recruitment, training, mentoring, and leadership. - Develop and execute a comprehensive IT strategy aligned with business objectives. - Provide visionary leadership, fostering innovation and continuous improvement. - Support and manage vendors through security audits required for PCI, SOC2, and/or ISO27001, and SOX. - Collaborate with cross-functional teams to identify business needs and opportunities. - Establish and enforce infosec policies, procedures, and best practices. - Assess, manage, and mitigate security risks; swiftly resolve incidents. - Conduct security audits to ensure compliance with regulations and standards. - Oversee IT infrastructure, ensuring scalability, availability, and performance. - Manage vendor relationships, negotiate tech contracts. - Support team growth and development; promote collaborative and inclusive culture. Qualifications - 7+ years of relevant experience in managing IT related teams. - Excellent understanding of IT systems, Okta, Gsuite, JAMF, and related tools. - A high learning agility and an interest in working in a start-up development environment. Requirements - Project management experience. - Proficiency in designing, implementing, and managing physical security systems, including access control, surveillance, intrusion detection, and alarm systems. - Ability to integrate physical security systems with IT networks, ensuring seamless communication and data sharing. - Understanding of crisis operations, risk management, and crisis communication best practices. - Experience in conducting basic investigations / fact finding. - Experience with the collection and analysis of threat intelligence. Benefits - Plenty of time off to relax and recharge, plus a wellness resource to help you wind down. - A work-from-home stipend. - An employer-paid healthcare package. - Bird ride credits to get you where you need to be! Company Description Bird is a global leader in micromobility, dedicated to shaping the future of urban movement. Our cleaner, affordable, and on-demand mobility solutions are available in over 200 cities worldwide. - We take a collaborative, community-first approach to micromobility. - Bird partners closely with the cities in which it operates, leveraging our experience and safety-first technology. - Our award-winning electric vehicles have empowered more than eighty-seven million rides in cities around the world.

United States
$74.1K - $88.1K / year
Job Closed
OtherRemoteTeam 10,001+Since 1921H1B Sponsor

• Provides engineering leadership in support of Copeland’s Global IT Enterprise networks and infrastructure technologies. • Plan, designs, and implements network infrastructure technologies specific to Cloud Networking Infrastructure and Network Security services. • Supports Cloud and infrastructure operations as a Level II/III technical resource and provides technical leadership and mentoring to the operations group. • Researches and evaluates emerging network and communication technology. • Functions as a trusted advisor to the leadership of the various Copeland Business units globally. • Provides leadership and technical guidance as an SME for the Enterprise IT communications. • Works with Security and Cloud Infrastructure groups as an SME for Enterprise IT Communications.

United States
Job Closed
Twelve Labs logo

Staff Security Engineer

Twelve Labs

Help developers build programs that can see, listen, and understand the world as we do.

Security Engineer102 days ago
OtherRemoteTeam 11-50H1B Sponsor

• Partner with the lead security engineer to identify risk, build controls, and drive security initiatives across the organization • Perform security assessments, penetration testing, and code reviews to find and remediate vulnerabilities across our applications and infrastructure • Integrate security tooling and controls into CI/CD pipelines and software development workflows, shifting security left without slowing teams down • Help design and enforce cloud security architecture across our AWS environment, including IAM, WAF, network segmentation, encryption, and runtime threat detection • Develop and continuously improve security monitoring, logging, and alerting capabilities to support incident detection and response • Participate in the security on-call rotation and assist with incident response and investigation as needed • Contribute to compliance efforts across SOC 2, GDPR, CMMC/NIST, etc., including audit support and policy development • Help secure AI/ML pipelines, model training infrastructure, and model artifacts including weights and deployment code • Build and maintain internal security tooling and automation to scale our program without scaling headcount • Partner with engineering, infrastructure, and IT to embed security practices directly into development and delivery workflows

California + 2 moreAll locations: California | Oregon | Washington
$160K - $200K / year
Job Closed
OtherRemoteTeam 201-500H1B No Sponsor

• Lead Cloud Security Posture Management CSPM across AWS • Architect and harden AWS infrastructure including IAM, VPC, S3, WAF, encryption, and segmentation • Monitor and respond to security events using AWS security services • Administer and optimize security tooling • Develop and maintain incident response processes and lead forensic investigations • Own the vulnerability management lifecycle • Drive PCI DSS implementation and support HIPAA and SOC 2 audit readiness • Conduct risk assessments and implement mitigation controls

United States
$140K - $160K / year
Job Closed