Offensive Security Engineer (Red Team)
Jobgether
Tailor my CV for this job, freeView job and applyYour CV rewritten for this role, from your real experience. Sign in with Google, nothing to install.
Got this interview? Our apps help you get the job.
Skills named in this job
Read from the description itself, not inferred.
This role on the market
33 open offensive roles across 20 companies are on ApplySarthi right now, most of them in Bengaluru (1).
- Senior Offensive Security EngineerJFrog
- Offensive Security Engineer (Red Team)Motive
- Offensive Security EngineerStripe
- Manager, Offensive SecurityPfizer
- Senior Offensive Security ResearcherSentinelOne
What offensive roles keep asking for: Python (52%), Penetration testing (39%), AWS (30%), Azure (27%), GCP (24%), C++ (21%), SIEM (21%), CI/CD (18%) — counted across their open postings here.
CI/CD jobs · IAM jobs · Penetration testing jobs
Jobgether has 3,945 open roles listed here.
- AI Harness Engineer
- (Senior or Staff) Backend Engineer, AI tooling
- (Senior or Staff) Backend Engineer, AI tooling
- (Senior or Staff) Backend Engineer, AI tooling
- (Senior or Staff) Backend Engineer, AI tooling
Counted across 14 company job boards, updated as roles open and close.
Preparing for this interview
Interviews for offensive roles keep coming back to Python, Penetration testing, AWS, Azure. Practise those questions before you sit with Jobgether.
Questions you are likely to be asked
- Why do you want to join Jobgether?
- What is your experience with IAM? Tell me one thing you learned the hard way.
- How would you cut the cloud bill of a system without hurting it?
- How do you keep secrets and access safe in your infrastructure?
- Walk me through how code gets from a commit to production where you work.
Prep Sarthi gives you a free mock interview: an AI interviewer asks you questions like these out loud, from your own CV and this job, and shows your score and your weakest answer.
Practise the Offensive Security Engineer (Red Team) at Jobgether interview free →Accountabilities:: Plan and execute red team operations, adversary simulations, penetration tests, and targeted offensive security assessments across cloud environments. Evaluate the security posture of cloud infrastructure, identity architectures, CI/CD pipelines, containerized workloads, and cloud-native services. Identify and validate realistic attack paths involving IAM misconfigurations, excessive privileges, exposed secrets, metadata services, insecure automation, and cloud configuration weaknesses. Conduct security assessments designed to replicate relevant attacker behaviors and techniques in modern enterprise environments. Validate the effectiveness of security monitoring and detection capabilities by testing logging, alerting, monitoring, and incident-response processes. Partner with blue team and detection engineering functions to identify gaps in defensive coverage and improve detection and response capabilities. Document vulnerabilities, attack paths, and security weaknesses in concise, actionable reports. Work with software and engineering teams to communicate findings, support remediation efforts, and help reduce security risk. Track emerging attacker tactics, cloud exploitation techniques, and new abuse paths that could affect cloud-native environments. Map offensive security findings and adversary behaviors to established frameworks such as MITRE ATT&CK. Serve as a trusted security partner to engineering teams, helping strengthen security practices through practical offensive expertise. Requirements: 5+ years of professional experience in offensive security, red teaming, penetration testing, detection validation, or closely related security disciplines. Strong understanding of adversary tactics, techniques, and procedures, with the ability to apply them to realistic security assessments. Experience conducting offensive security assessments in cloud environments and evaluating modern cloud infrastructure and services. Practical understanding of cloud identity and access management, CI/CD security, containers, secrets management, and cloud-native architectures. Ability to identify and validate complex attack paths involving IAM weaknesses, overprivileged identities, exposed credentials or secrets, metadata services, insecure automation, and configuration issues. Experience evaluating security monitoring and detection capabilities through adversary simulation or detection-validation exercises. Ability to map findings and attacker behavior to frameworks such as MITRE ATT&CK. Strong written and verbal communication skills, including the ability to explain complex technical security issues to engineering teams and other stakeholders. Ability to produce concise, actionable security reports that clearly communicate technical findings, business relevance, and remediation considerations. Strong analytical and investigative mindset with a willingness to explore emerging attack techniques and unfamiliar technologies. Relevant industry certifications such as OSCP, OSEP, GXPN, GPEN, or recognized cloud security certifications are valued. Ability to work effectively in a remote environment and collaborate across technical and security teams. Authorization to work in Canada and meet applicable requirements for accessing controlled technologies and commodities. Benefits: Competitive annual compensation range of CAD $146,000–$190,000 , depending on location and factors such as education, professional experience, and certifications. Potential eligibility for restricted stock units as part of total compensation. Health and pharmacy benefits. Optical and dental coverage. Paid time off and sick time off. Short-term and long-term disability coverage. Life insurance. Employer-supported retirement contributions, subject to eligibility. Fully remote work arrangement within Canada. Opportunity to work on cloud security, adversary simulation, and modern offensive security challenges. Collaborative environment involving Product Security, engineering, blue team, and detection engineering professionals. Opportunities to develop expertise in emerging attacker techniques and cloud exploitation trends. Inclusive workplace committed to diverse backgrounds, experiences, abilities, and perspectives. Potential for occasional in-person interviews or new-hire training sessions at global offices.
Match this job to your CV
ApplySarthi scores your CV against this role, shows the skills you are missing, and writes a tailored version for the application.
Check my match →Similar open roles
- Account Executive, New District PartnershipsJobgether
- Account ManagerJobgether
- Accounts Payable AnalystJobgether
- Accounts Payable AnalystJobgether
- Administration Copay Assistants (Bilingual - Fluent in French))Jobgether
- Affiliate Manager (AI Product)Jobgether
- Affiliate Manager (AI Product)Jobgether
- Affiliate Manager (AI Product)Jobgether
Need answers during your interview? Try Live Sarthi.
Live Sarthi, an Interview Sarthi app, shows answer suggestions during the call.
- Hidden from supported screen sharingThe overlay stays out of supported Windows screen captures.
- Answers start in about 1.5 secondsResponse time varies with your connection and model.
- From your own CVYour projects and your experience, not a generic script.
- 30 minutes freeThen ₹99 for a 2-day pass with unlimited calls — you pay for the days you are interviewing, not a subscription.
A Windows app, from the same team as ApplySarthi.
Listed on lever · posted 2026-09-29. ApplySarthi collects openings and links to application pages; the role is advertised by Jobgether, not by us.