Offensive Security Engineer
Compensation estimateAI
See base, equity, bonus, and total comp estimates for this role — free, no credit card.
Sign up to see compensation estimate### Who you are
- Proficiency in using at least one programming or scripting language (e.g. GoLang, Python, C/++) to solve automatable tasks and perform code reviews
- At least five years of experience in the offensive information security industry
- Penetration Testing experience
- Strong technical background and experience writing and using offensive security tooling
- Experience using Kubernetes and Kubernetes-related security measures
- Extensive experience with Linux OS environments
- Ability to navigate ambiguity and determine solutions to underlying problems
- Excellent interpersonal, verbal, and written communication skills with strong attention to detail
- Ability to work with minimal supervision while handling multiple tasks in a fast-paced environment
- A strong desire to learn new technologies and skills
- Experience with firmware reverse engineering; analyzing systems firmware, binaries, and bootloaders to uncover security flaws
- Certifications like Sec+, Net+, OSCP, or other relevant industry certifications
- An understanding of best practices and how to implement them at a business-wide level
- 5+ years' experience in the information security industry or related role
- Experience with EDR tuning, detections-as-code, and threat hunting as a Blue Team member
- This position requires access to export controlled information. To conform to U.S. Government export regulations applicable to that information, applicant must either be (A) a U.S. person, defined as a (i) U.S. citizen or national, (ii) U.S. lawful permanent resident (green card holder), (iii) refugee under 8 U.S.C. § 1157, or (iv) asylee under 8 U.S.C. § 1158, (B) eligible to access the export controlled information without a required export authorization, or (C) eligible and reasonably likely to obtain the required export authorization from the applicable U.S. government agency. CoreWeave may, for legitimate business reasons, decline to pursue any export licensing process
### What the job involves
- CoreWeave’s Information Security team is seeking an experienced and talented offensive security engineer to join our team
- As part of the Information Security Organization at CoreWeave, security engineers work to measure and improve the security of internal and external infrastructure and application offerings that provide high-power compute to customers
- CoreWeave Security engineers integrate within engineering to act as a security liaison between product, engineering, and security
- They provide assurance to business & network partners that CoreWeave’s capabilities and technologies have been adequately hardened
- Perform penetration testing as well as purple and red team exercises
- Conduct threat modeling, code reviews, and design reviews for development teams within the business
- Research/stay abreast of new hacking techniques and find ways to counter them
- Find effective solutions to information security related problems
- Develop best practices and improve security standards for the organization to adhere to while maintaining our internal compliance stance and security posture
- Ability to provide solutions to complex issues; handle multiple tasks in a fast-paced environment; set priorities; meet deadlines per project scope
- Demonstrated ability to present complex, technical information to both technical and non-technical audiences
- Strong time management, good technical writing, presentation, and documentation skills
- Ability to work with minimal supervision, attention to detail, and follow-through
- Other work-related duties as assigned
- The Security Engineer works standard business hours. CoreWeave is a fast growth startup, and the selected candidate must be willing to be flexible when they are needed. There will be times when the Security Engineer needs to be available outside of regular business hours to support critical issues or meetings
### Benefits
- Medical, dental, and vision insurance - 100% paid for by CoreWeave
- Company-paid Life Insurance
- Voluntary supplemental life insurance
- Short and long-term disability insurance
- Flexible Spending Account
- Health Savings Account
- Tuition Reimbursement
- Ability to Participate in Employee Stock Purchase Program (ESPP)
- Mental Wellness Benefits through Spring Health
- Family-Forming support provided by Carrot
- Paid Parental Leave
- Flexible, full-service childcare support with Kinside
- 401(k) with a generous employer match
- Flexible PTO
- Catered lunch each day in our office and data center locations
- A casual work environment
- A work culture focused on innovative disruption
Similar roles
- Offensive Security EngineerElectronic Arts (EA) · California, United States · Onsite
- Lead Offensive Security EngineerMSH · Florida, United States · Onsite
- Offensive Security EngineerJPMorganChase · New York, United States · Hybrid
- Senior Offensive Security EngineerCoStar Group · Arrington, Virginia, United States · Hybrid
- Senior Offensive Security EngineerAstranis Space Technologies · San Francisco, California, United States · Hybrid