Offensive Security Engineer

2 Months ago • 4-4 Years • Cyber Security

About the job

Job Description

SentinelOne seeks an Offensive Security Engineer to research and develop content for their security engine. Must-haves include 4+ years of experience, proficiency in Python, Ruby, or C/C++, strong knowledge of vulnerability exploitation techniques, and experience with security tools like Metasploit and Burp Suite.
Must have:
  • Offensive Security
  • Exploit Development
  • Python/Ruby/C/C++
  • Vulnerability Exploitation
Good to have:
  • Security Content
  • Threat Intelligence
  • Bug Bounty
  • CI/CD Practices
Perks:
  • Flexible Working
  • Employee Stock Plan
Not hearing back from companies?
Unlock the secrets to a successful job application and accelerate your journey to your next opportunity.

About the job

About Us:

SentinelOne is defining the future of cybersecurity through our XDR platform that automatically prevents, detects, and responds to threats in real-time. Singularity XDR ingests data and leverages our patented AI models to deliver autonomous protection. With SentinelOne, organizations gain full transparency into everything happening across the network at machine speed – to defeat every attack, at every stage of the threat lifecycle.

We are a values-driven team where names are known, results are rewarded, and friendships are formed. Trust, accountability, relentlessness, ingenuity, and OneSentinel define the pillars of our collaborative and unified global culture. We're looking for people that will drive team success and collaboration across SentinelOne. If you’re enthusiastic about innovative approaches to problem-solving, we would love to speak with you about joining our team!

What are we looking for?

We are seeking a dedicated Offensive Security Engineer to join our team. In this role, you will be responsible for the research and creation of content for our Offensive Security Engine, which automates the exploitation and testing of known vulnerabilities. Your work will involve conducting research into the latest known vulnerabilities, reproducing / testing exploits, and ensuring our security engine remains effective and up-to-date with the latest vulnerabilities. If you have a deep understanding of cybersecurity, a knack for research, and experience with exploit development, cloud security, pentesting webapps, or offensive security research, we want to hear from you.

What will you do?

  • Research and Analysis: Conduct thorough research on emerging vulnerabilities and attack vectors, leveraging resources such as CVE databases, security advisories, and threat intelligence feeds.
  • Content Creation:Develop detailed, accurate, and effective content for the Offensive Security Engine, including exploit code / modules, test cases, and attack scenarios.
  • Exploit Development Create and refine exploits and payloads to ensure comprehensive coverage of known vulnerabilities, and integrate them into the Offensive Security Engine.
  • Testing and ValidationTest and validate newly created content to ensure functionality, effectiveness, and compatibility with the security engine. Address any issues or bugs discovered during testing.
  • Documentation: Write clear and detailed documentation for all created content, including usage instructions, technical details, and integration guidelines.
  • Collaboration: Work closely with security researchers, developers, and other stakeholders to ensure content aligns with security goals and meets the needs of the Offensive Security Engine.
  • Continuous Improvement: Stay updated on the latest trends in cybersecurity, including new attack techniques and vulnerabilities, and continuously improve content and methodologies based on evolving threats.
  • Tool Integration: Assist in the integration of new content into existing automation tools and framework to enhance the overall capability of Offensive Security Engineer.

What experience or knowledge should you bring?

  • Minimum of 4+ years of experience in offensive security, exploit development, cloud security research or a related field, with a focus on creating and integrating security content.
  • Technical Skills:
  • Proficiency in programming and scripting languages such as Python, Ruby, or C/C++.
  • Strong knowledge of vulnerability exploitation techniques, security research methodologies, cloud security, and containerization technologies (e.g., AWS, Azure, Docker.
  • Experience with security tools and frameworks (e.g., Metasploit, Burp Suite, custom exploit tools).
  • Analytical Skills: Excellent problem-solving skills with the ability to research, develop, and validate new attack vectors and exploit techniques.
  • Communication Skills: Strong written and verbal communication skills, with the ability to create clear documentation and effectively convey technical concepts.
  • Team Player Ability to collaborate effectively with cross-functional teams and contribute to a shared security mission.

Preferred Qualifications:

  • Experience with security content development for automation platforms or vulnerability assessment tools.
  • Familiarity with threat intelligence platforms and security advisories.
  • Good to have Bug Bounty experience.
  • Experience with continuous integration/continuous deployment (CI/CD) practices and DevSecOps methodologies.

Why us?

You will be joining a cutting-edge company, where you will tackle extraordinary challenges and work with the very best in the industry along with competitive compensation.

  • Flexible working hours and hybrid/remote work model.
  • Flexible Time Off.
  • Flexible Paid Sick Days.
  • Global gender-neutral Parental Leave (16 weeks, beyond the leave provided by the local laws)
  • Generous employee stock plan in the form of RSUs (restricted stock units)
  • On top of RSUs, you can benefit from our attractive ESPP (employee stock purchase plan)
  • Gym membership/sports gears by Cultfit.
  • Wellness Coach app, with 3,000+ on-demand sessions, daily interactive classes, audiobooks, and unlimited private coaching.
  • Private medical insurance plan for you and your family.
  • Life Insurance covered by S1 (for employees)
  • Telemedical app consultation (Practo)
  • Global Employee Assistance Program (confidential counseling related to both personal and work life matters)
  • High-end MacBook or Windows laptop.
  • Home-office-setup allowances (one time) and maintenance allowance.
  • Internet allowances.
  • Provident Fund and Gratuity (as per govt clause)
  • NPS contribution (Employee contribution)
  • Half yearly bonus program depending on the individual and company performance.
  • Above standard referral bonus as per policy.
  • Udemy Business platform for Hard/Soft skills Training & Support for your further educational activities/trainings
  • Sodexo food coupons.

SentinelOne is proud to be an Equal Employment Opportunity and Affirmative Action employer. We do not discriminate based upon race, religion, color, national origin, gender (including pregnancy, childbirth, or related medical conditions), sexual orientation, gender identity, gender expression, age, status as a protected veteran, status as an individual with a disability, or other applicable legally protected characteristics.

SentinelOne participates in the E-Verify Program for all U.S. based roles.
View Full Job Description

Add your resume

80%

Upload your resume, increase your shortlisting chances by 80%

About The Company

Bengaluru, Karnataka, India (Remote)

Karnataka, India (Remote)

View All Jobs

Get notified when new jobs are added by SentinelOne

Similar Jobs

OpenGov - Director, Infrastructure Engineering

OpenGov, United States (Hybrid)

Head Digital Works - AWS Lead

Head Digital Works, India (On-Site)

Apolloio - Senior Backend Engineer

Apolloio, India (Remote)

Barbaricum - Intelligence Operations Integrator

Barbaricum, United States (On-Site)

Maersk Careers - Elixir Software Engineer

Maersk Careers, India (On-Site)

Morning Star - Senior Application Security Architect

Morning Star, United States (Hybrid)

ION - Network Security Engineer

ION, Italy (Hybrid)

Allvue Systems - Tech Risk Security Operations Engineer I

Allvue Systems, India (On-Site)

Rackspace Technology - Security Risk and Compliance Management Specialist III

Rackspace Technology, Mexico (Remote)

Get notifed when new similar jobs are uploaded

Similar Skill Jobs

Meta - Software Engineer, Pathways Program

Meta, United States (On-Site)

Wargaming - Infrastructure DevOps Engineer

Wargaming, Cyprus (Hybrid)

Aristocrat Gaming - Infrastructure Engineer

Aristocrat Gaming, United Kingdom (Hybrid)

Playtech - Software Engineer

Playtech, (On-Site)

GoTo Group - Software Engineer - Foundation Security

GoTo Group, India (On-Site)

Exotel - Senior Architect

Exotel, India (On-Site)

 Sagecor Solutions - Cloud Software Engineer 1 (FST - 005)

Sagecor Solutions, United States (On-Site)

Warner Bros Discovery - Software Engineer II - Kafka (AMS Team),Bangalore

Warner Bros Discovery, India (On-Site)

Rockstar Games - Build & Release Engineer

Rockstar Games, United States (On-Site)

Get notifed when new similar jobs are uploaded

Jobs in Bengaluru, Karnataka, India

Get notifed when new similar jobs are uploaded

Cyber Security Jobs

ION - Platform Security Analyst

ION, Italy (On-Site)

Mattel  Inc  - Manager GRC

Mattel Inc , United States (On-Site)

Condé Nast Technology Lab - Application Security - Engineer IV

Condé Nast Technology Lab, India (Hybrid)

Zuora - Sr Security Engineer

Zuora, India (Hybrid)

Tencent - Security Operation Engineer II

Tencent, Malaysia (On-Site)

Rackspace Technology - GRC Governance Specialist

Rackspace Technology, Mexico (Remote)

Get notifed when new similar jobs are uploaded