Senior Offensive Security Engineer jobs in United States
cer-icon
Apply on Employer Site
company-logo

GitHub · 1 day ago

Senior Offensive Security Engineer

GitHub is the world’s leading platform for agentic software development, and they are seeking a Senior Offensive Security Engineer to expand their Red Team operations. In this role, you will execute offensive operations, collaborate with product teams for remediation, and provide an offensive perspective to various security initiatives.

Artificial Intelligence (AI)Cloud ComputingDeveloper ToolsInternetProject ManagementSaaSSoftware
check
Comp. & Benefits
check
H1B Sponsor Likelynote

Responsibilities

Conceptualize, plan, and execute offensive operations, with an understanding of operational security, developing novel offensive techniques, and leveraging threat intelligence reports
Digest application and service architectures to identify potential threats and avenues for exploitation
Identify weaknesses in product security controls - including vulnerabilities, misconfigurations, and gaps in processes and procedures
Be an advocate for best security practices
Partner with internal security and engineering teams on collaborative engagements that uncover vulnerability and detection opportunities across systems
Collaborate empathetically with engineering teams and leadership to communicate identified risks and expectations for remediation

Qualification

Offensive security experienceSecurity analysisVulnerability researchPythonCloud technologiesThreat modelingSecurity architecture reviewCommunicationCollaboration

Required

7+ years' experience in security analysis, security research, cyber security, security engineering, or relevant area
OR associate's degree AND 6+ years' experience in security analysis, security research, cyber security, security engineering, or relevant area
OR bachelor's degree AND 5+ years' experience in security analysis, security research, cyber security, security engineering, or relevant area
OR master's degree AND 3+ years' experience in security analysis, security research, cyber security, security engineering, or relevant area
OR doctorate AND 1+ year(s) experience in security analysis, security research, cyber security, security engineering, or relevant area
OR equivalent experience
3+ years of offensive experience including attack simulation, capability development, or vulnerability research
1+ years of experience creating tooling in Python, Go, Ruby, or Javascript
1+ years experience identifying common security vulnerabilities and mitigations within web applications and cloud infrastructure

Preferred

5+ years of offensive security experience, including conducting red team engagements targeting organizations that use macOS and cloud technologies (Azure, AWS, Containers, Kubernetes, etc.)
Strong familiarity with the GitHub platform and products
Contributed to open-source offensive security tooling or delivered novel research at industry conferences such as Black Hat or DEFCON
Knowledge of approaches to evade EDR and similar defensive controls - bonus points if you have experience developing tools to do that
Experience in security architecture review and threat modeling of software systems - bonus points if you have practical experience assessing the security posture of applications written using Ruby on Rails or Go

Benefits

Annual bonus
Stock
Competitive pay
Generous learning and growth opportunities
Excellent benefits

Company

GitHub is a software company that offers code hosting services that allow developers to build software for open-source and private projects. It is a sub-organization of Microsoft.

H1B Sponsorship

GitHub has a track record of offering H1B sponsorships. Please note that this does not guarantee sponsorship for this specific role. Below presents additional info for your reference. (Data Powered by US Department of Labor)
Distribution of Different Job Fields Receiving Sponsorship
Represents job field similar to this job
Trends of Total Sponsorships
2025 (26)
2024 (17)
2023 (14)
2022 (20)
2021 (20)
2020 (10)

Funding

Current Stage
Late Stage
Total Funding
$350M
Key Investors
Sequoia CapitalAndreessen Horowitz
2018-06-03Acquired
2015-07-29Series B· $250M
2015-06-19Secondary Market

Leadership Team

leader-logo
PJ Hyett
Co-Founder
leader-logo
Kyle Daigle
Chief Operating Officer
linkedin
Company data provided by crunchbase