Senior Offensive Security Engineer

Array
United States, Canada
Workplace: RemoteFull timeUSD 170,000+ annuallyFunction: CybersecurityExperience: 5+ yearsSkills: ["Communication"]

Think like an attacker to validate the security of products, infrastructure, and internal systems through real-world exploitation. Operate with full access to applications, source code, and infrastructure to identify vulnerabilities with meaningful business risk. Use AI alongside manual techniques to analyze large multi-language codebases, generate exploit hypotheses, and build safe proof-of-concept exploits. Partner with engineering to confirm remediations eliminate attack paths and document findings with clear evidence and remediation guidance.

Loading

Loading job details...

Preparing the role view and application actions.

FursaFursa
Array
Array
1 day ago

Senior Offensive Security Engineer

✓ Verified Job

Canonical indexed version, validated from employer's careers page.

Source: Company careers pageValidated by: Fursa AI
Last checked: 11 hours agoStatus: Live

Job Summary

Think like an attacker to validate the security of products, infrastructure, and internal systems through real-world exploitation. Operate with full access to applications, source code, and infrastructure to identify vulnerabilities with meaningful business risk. Use AI alongside manual techniques to analyze large multi-language codebases, generate exploit hypotheses, and build safe proof-of-concept exploits. Partner with engineering to confirm remediations eliminate attack paths and document findings with clear evidence and remediation guidance.
Location: United States, Canada
Workplace: Remote
Employment Type: Full time
Job Function: Cybersecurity
Seniority: Mid level

Key Responsibilities

  • •Identify, validate, and demonstrate realistic attack paths against products, infrastructure, and internal systems with a focus on business impact.
  • •Analyze large, multi-language codebases using AI and manual techniques to uncover vulnerabilities, generate exploit hypotheses, and perform variant analysis.
  • •Build safe proof-of-concept exploits demonstrating unauthorized access, privilege escalation, data exposure, business logic flaws, or other meaningful security risks.
  • •Partner with engineering to validate remediations, confirm exploit paths are fully eliminated, and identify similar patterns elsewhere in the environment.
  • •Document findings with clear evidence, technical root cause, business impact, and practical remediation guidance while continuously improving offensive security capabilities.

Pay and Benefits

Salary: USD 170,000 annually
Equity and Bonus:Equity
Perks:Health InsuranceDentalVision401kPaid LeaveParental Leave

Key Requirements

  • •5+ years of offensive security, application security, penetration testing, or red team experience with a track record of finding real application vulnerabilities.
  • •Deep expertise in modern web applications, APIs, authentication, authorization, distributed systems, and the OWASP Top 10.
  • •Experience developing proof-of-concept exploits that demonstrate real business impact, not just theoretical risk.
  • •Proficiency using AI to accelerate vulnerability discovery, exploit development, code analysis, and security research while validating AI-generated output.
  • •Strong communication skills to explain complex vulnerabilities, attack paths, and remediation guidance to engineering teams.
Experience:5+ yearsFintech
Skills:Communication
Languages:English
Tech Stack:AIOWASP Top 10

Company Brief

Array
Array operates as a technology company under the brand 'Array'. Publicly available details about its specific products, company size, funding, headquarters, and revenue for the domain array.com were not confirmed; contact the company via its website for details.
Industry: Fintech Infrastructure
Website