Senior Offensive Security Engineer
JFrog
Tailor my CV for this job, freeView job and applyYour CV rewritten for this role, from your real experience. Sign in with Google, nothing to install.
Got this interview? Our apps help you get the job.
Skills named in this job
Read from the description itself, not inferred.
This role on the market
33 open offensive roles across 20 companies are on ApplySarthi right now, most of them in Bengaluru (1).
- Offensive Security Engineer (Red Team)Motive
- Offensive Security EngineerStripe
- Manager, Offensive SecurityPfizer
- Senior Offensive Security ResearcherSentinelOne
- AI Security Engineer / Offensive Security Engineer - TechnologyJobgether
What offensive roles keep asking for: Python (52%), Penetration testing (36%), AWS (30%), Azure (27%), GCP (24%), C++ (21%), SIEM (21%), Kubernetes (18%) — counted across their open postings here.
AWS jobs · Azure jobs · Docker jobs · GCP jobs
JFrog has 64 open roles listed here.
- R&D Director of Engineering
- Senior Business Development Representative
- Finance Operations Billing Specialistbengaluru
- Developer Support Engineer (Atlanta)
- Accountant
Counted across 14 company job boards, updated as roles open and close.
Preparing for this interview
Interviews for offensive roles keep coming back to Python, Penetration testing, AWS, Azure. Practise those questions before you sit with JFrog.
Questions you are likely to be asked
- Why do you want to join JFrog?
- What is your experience with AWS? Tell me one thing you learned the hard way.
- How would you cut the cloud bill of a system without hurting it?
- How do you keep secrets and access safe in your infrastructure?
- Walk me through how code gets from a commit to production where you work.
Prep Sarthi gives you a free mock interview: an AI interviewer asks you questions like these out loud, from your own CV and this job, and shows your score and your weakest answer.
Practise the Senior Offensive Security Engineer at JFrog interview free →At JFrog, we’re reinventing DevSecOps to help the world’s greatest companies innovate. Our team of industry-leading software security experts is a true pioneer, constantly pushing the boundaries with original research and technological innovation. JFrog is a special place with a unique combination of brilliance, spirit, and just all-around great people. Thousands of customers, including the majority of the Fortune 100, trust JFrog to manage, accelerate, and secure their software delivery from code to production – a concept we call “liquid software”. Wouldn't it be amazing if you could join us on our journey?
As an Offensive Security Engineer, you will spearhead JFrog’s offensive security operations and lead advanced threat research initiatives, playing a pivotal role in safeguarding our organization and customers from evolving cyber threats. You will develop and execute Red Team exercises, simulate real-world attacks, and identify security weaknesses in JFrog’s systems and applications. We seek a highly skilled, proactive tech leader who thrives in challenging environments and is passionate about advancing security research and offensive strategies.
As an Offensive Security Engineer, you will…- Lead, plan, design, and execute Red Team operations, threat modeling, and adversarial simulations against JFrog’s infrastructure and cloud environments.
- Drive threat research and intelligence initiatives to stay ahead of emerging cyber threats, attack techniques, and vulnerabilities.
- Develop and execute advanced attack scenarios to assess security defenses and provide actionable recommendations for improving JFrog’s security posture.
- Collaborate closely with security engineering, DevOps, and software development teams to implement findings and enhance our defenses.
- Lead the development of tooling, frameworks, and methodologies to automate and optimize Red Team exercises.
- Mentor and guide a team of security professionals, fostering a culture of innovation, collaboration, and continuous learning.
- Participate in incident responses when Red Team exercises reveal vulnerabilities, providing expertise on attack techniques, forensics, and post-attack mitigation.
- Continuously assess and improve security processes, playbooks, and threat detection mechanisms.
- 7+ years of experience in offensive security operations, Red Teaming, threat hunting, or threat research
- Deep knowledge of attack techniques, TTPs (Tactics, Techniques, and Procedures), adversary simulations, and threat-hunting methodologies
- Hands-on experience with Red Team tools, frameworks (e.g., Metasploit, Cobalt Strike, Burp Suite), and custom exploit development
- Strong experience with cloud platforms (AWS, GCP, Azure) and containerized environments (Kubernetes, Docker)
- Familiarity with the MITRE ATT&CK Framework and its application in Red Team and threat-hunting scenarios
- Proficiency with scripting and automation languages for tool development, threat detection, and attack simulation
- Solid understanding of offensive security best practices, vulnerability management, threat detection, and advanced threat analysis
- Ability to effectively communicate and collaborate with cross-functional teams, translating complex security concepts into actionable insights
- A passion for continuous learning, research, and innovation in the fields of offensive security, threat hunting, and cyber threats
Match this job to your CV
ApplySarthi scores your CV against this role, shows the skills you are missing, and writes a tailored version for the application.
Check my match →Similar open roles
- Customer Retention Account Manager JFrog · bengaluru
- Professional Services DevOps EngineerJFrog
- Senior Product ManagerJFrog · bengaluru
- Senior Professional Services DevOps EngineerJFrog
- Senior Professional Services DevOps EngineerJFrog
- Senior Technical Success Manager (North America Region - EST Shift)JFrog · bengaluru
- Solution Engineer, Presales - Public Sector (US Remote)JFrog
- Strategic Account ExecutiveJFrog
Need answers during your interview? Try Live Sarthi.
Live Sarthi, an Interview Sarthi app, shows answer suggestions during the call.
- Hidden from supported screen sharingThe overlay stays out of supported Windows screen captures.
- Answers start in about 1.5 secondsResponse time varies with your connection and model.
- From your own CVYour projects and your experience, not a generic script.
- 30 minutes freeThen ₹99 for a 2-day pass with unlimited calls — you pay for the days you are interviewing, not a subscription.
A Windows app, from the same team as ApplySarthi.
Listed on greenhouse · posted 2026-09-28. ApplySarthi collects openings and links to application pages; the role is advertised by JFrog, not by us.