Source Job

Turkey

  • Perform web, mobile application, and internal penetration tests, source code reviews, and threat analysis.
  • Support blue teams, research new attack vectors, and stay current with cybersecurity news and trends.
  • Train QA and Development teams in standard security testing techniques and secure software development.

Penetration Testing SAST/DAST Python

20 jobs similar to Senior Security Engineer - Red Team

Jobs ranked by similarity.

US Unlimited PTO

  • Build and tune the application security scanning program (SAST, DAST, SCA, container and IaC) to surface real risk.
  • Triage scan, penetration test, and bug bounty findings, prioritizing by risk and tracking remediation to closure.
  • Partner with engineering on threat modeling, secure-coding standards, and hands-on fixes.

Turquoise Health is a Series C price transparency platform building a more open, efficient healthcare marketplace for finance leaders. They're a remote-first US team backed by top investors, powering transparency for 300+ enterprise organizations.

$128,369–$183,384/yr
Europe

  • Drive offensive security through pen tests, red-team engagements, and threat modeling across Docker products and infrastructure.
  • Partner with engineering to implement secure architecture, automated reviews, and vulnerability management.
  • Build offensive tooling, develop exploits, and support incident response and security education.

Docker builds tools for developers to build, share, and run applications, including Docker Desktop, Docker Hub, and Docker Scout. It is a globally distributed, remote-first team trusted by 20M+ monthly users, focused on secure container development.

Global 4w PTO

  • Perform weekly code reviews to catch security vulnerabilities before they ship.
  • Coordinate external security audits and penetration tests, and track remediation.
  • Manage GRC documentation, run phishing simulations, and oversee security monitoring with weekend coverage.

EverAI builds the world's largest AI companionship platform, redefining relationships with AI. With a team of approximately 100 people, we are fully remote, fast-moving, and led by founders with a track record of scaling companies from zero to IPO.

India

  • Execute penetration testing engagements across web applications, APIs, networks, and cloud environments.
  • Identify, validate, and document security vulnerabilities with clear proof-of-concepts and remediation guidance.
  • Collaborate with clients and internal teams through scoping calls, kickoffs, report reviews, and quality assurance.

A security consulting firm that provides penetration testing services for web applications, APIs, networks, and cloud environments. The company fosters a collaborative, remote-first culture with a focus on quality assurance and continuous improvement.

Global 5w PTO

  • Conduct hands-on application security reviews threat modeling and code audits across the entire stack (backend frontend APIs infrastructure).
  • Build and improve security automation for vulnerability management including SAST DAST container scanning and secrets detection.
  • Drive remediation of findings from bug bounty scanners and audits partnering with engineering teams to prioritize and fix.

Close builds a communication-first AI-powered CRM that helps sales teams sell more and faster. With a 120-person 100% remote team they are bootstrapped profitable and focused on eliminating manual data entry for scaling businesses.

US Unlimited PTO

  • Deliver Application Security services including assessments, threat modeling, and source code reviews for web, mobile, AI, and thick client applications.
  • Perform AI/LLM and agentic security assessments, including prompt injection, model bypass, and tool-calling exploitation, mapped to OWASP Top 10 for LLM and Agentic Applications.
  • Build and extend AI-driven tooling and automation harnesses to improve testing coverage, consistency, and efficiency.

GuidePoint Security provides trusted cybersecurity expertise, solutions, and services to help organizations make better decisions and minimize risk. With over 1,300 employees, it is a rapidly growing, profitable, privately-held value added reseller focused exclusively on information security.

$159,800–$235,000/yr
US Unlimited PTO 16w maternity 16w paternity

  • Plan and execute realistic adversary simulations using threat intelligence to assess security and detection capabilities.
  • Hunt for vulnerabilities across AI systems, payment infrastructure, autonomous delivery hardware, and emerging technologies.
  • Build custom tools, exploits, and payloads tailored to DoorDash's tech stack and partner with Blue Teams.

DoorDash is a technology and logistics company that empowers local economies by enabling door-to-door delivery for consumers, merchants, and Dashers. The company is growing rapidly and constantly changing, with a culture focused on empathy, diversity, and employee well-being.

$109,500–$142,500/yr
Canada

  • Plan and execute red team operations and adversary simulations focused on cloud environments.
  • Evaluate security of cloud infrastructure, identity architectures, CI/CD pipelines, and containerized workloads.
  • Assess detection and response coverage with blue team and detection engineering.

Motive empowers people who run physical operations with tools to make their work safer, more productive, and more profitable. We serve nearly 100,000 customers, from Fortune 500 enterprises to small businesses, and value diversity and inclusion.

Global

  • Apply your cybersecurity expertise to train next-generation AI systems with real-world input.
  • Analyze, debug, and resolve software bugs and vulnerabilities across diverse codebases.
  • Perform security audits, penetration testing, and contribute to backend development.

Our client is a venture-backed AI company developing intelligent systems via human expertise and machine learning. They are rapidly growing with over $40 million in funding and a global network of experts.

$160,000–$180,000/yr
US Unlimited PTO

  • Own and mature Cleo's SSDLC, including threat modeling, design reviews, and automated security scanning.
  • Run risk-based triage for product vulnerabilities, penetration testing, and the CVE lifecycle.
  • Own product security posture, customer-facing advisories, and secure-by-default configurations.

Cleo provides secure data integration and managed file transfer solutions for enterprise businesses. With over 4,000 clients and a 99% retention rate, the company promotes a supportive, life-work balanced culture.

$150,000–$155,000/yr
US

  • Conduct application and cloud security assessments to identify risks and vulnerabilities.
  • Collaborate with development teams to integrate security best practices into the SDLC.
  • Support vulnerability management, incident response, and security awareness education.

Business Wire is a leading global news release distribution service. The company is a large organization with a remote-first culture and offers competitive benefits.

LATAM

  • Design and lead adversarial security testing of the deterministic decision path.
  • Test multi-tenant isolation, audit-chain integrity, and authentication across roles.
  • Rank findings by severity and ensure freeze-audit CI gate is upheld.

Ubiminds is a people-first company that partners with American software product companies to scale their development footprint. They curate Brazilian top 5% talent for LATAM strategy, offering staff augmentation and employer-of-record services with a culture focused on people, challenge, and teamwork.

Global

  • Perform security reviews of source code, smart contracts, and protocol changes across RootstockLabs projects.
  • Triage and validate bug bounty reports, assess severity, and coordinate remediation with engineering.
  • Build and operate security automation including AI-assisted code review, scanning, and findings-triage pipelines.

RootstockLabs builds Bitcoin-secured DeFi infrastructure enabling companies and financial institutions to offer borrowing, lending, investment, and payment solutions at global scale. They operate at the intersection of crypto and institutional finance with a global, diverse team.

US 4w PTO 16w maternity 16w paternity

  • Perform security design reviews and threat modeling for new products and features, including AI-enabled services.
  • Conduct manual penetration testing of web, API, mobile, and cloud-native applications, and validate third-party findings.
  • Drive adoption of secure coding practices and improve security automation in CI/CD pipelines.

Iru is an AI-powered security & IT platform that unifies identity and access, endpoint security, and compliance automation for fast-growing companies. Backed by top investors and valued at $850 million, it serves customers like Cursor and Vercel, and is recognized for employee engagement.

$150,000–$230,000/yr
US Canada

  • Contribute production-quality code to the application (Node.js and Python), shipping security fixes end-to-end.
  • Build AI-powered automation and manage a bug bounty program, evaluating and reproducing submissions.
  • Define secure-by-design patterns and drive security standards across the architecture, including AI-integrated features.

Fast-growing B2B SaaS company serving the life sciences and pharma space. A small, high-impact security team with an engineering-first mindset, building AI-native features.

US 18w maternity 16w paternity

  • Contribute to secure-by-design practices and maturing SAST, SCA, and DAST programs.
  • Develop Secure AI Development Lifecycle and AI-assisted threat modeling framework.
  • Mentor engineers on secure coding and foster cross-functional collaboration.

Spring Health is a global mental health company using an AI-native platform to deliver personalized mental health support. The company reaches over 170 million people worldwide and fosters a culture of innovation, collaboration, and commitment to eliminating barriers to mental health.

$182,800–$215,000/yr
US

  • Own and improve the organization's SIEM, including threat detection, alert tuning, and incident response.
  • Conduct security architecture reviews, code reviews, and infrastructure assessments to identify and remediate risks.
  • Build scalable security processes and integrate security practices into development workflows across cloud and container environments.

This company is a fast-moving technology organization focused on building secure and scalable software systems. It fosters a high-ownership, remote-first culture where experienced professionals collaborate with high-caliber engineering teams.

EMEA

  • Lead the Application Security program across all products, embedding security throughout the SDLC.
  • Integrate AppSec findings into centralized vulnerability workflows, correlating them with asset and exploit intelligence.
  • Automate security testing pipelines and mentor engineers on secure coding and threat modeling.

ServiceNow is the AI control tower for business reinvention, helping 85% of the Fortune 500 work smarter with its AI platform. The company is building an AI-native culture where technology and talent are unstoppable together.

$232,000–$379,000/yr
US 4w PTO 12w maternity 12w paternity

  • Partner with product portfolios to manage product security, emphasizing AI/ML security and cross-functional collaboration.
  • Lead security design reviews, threat modeling, and secure code reviews across web, backend, and API stacks.
  • Integrate AppSec tooling into CI/CD, support secure development practices, and participate in incident response.

Quanata is an insurance technology company building advanced risk prediction and prevention solutions and a full-stack, AI-native insurance platform for State Farm and HiRoad. It is wholly owned by State Farm and fosters an inclusive, positive culture focused on hiring talented people across disciplines.

Europe

  • Design and strengthen security features across Pigment's product and infrastructure, threat modeling new services and making architectural decisions.
  • Lead security investigations and incident response, manage vulnerability detection and remediation, and build detection engineering capabilities.
  • Drive the security roadmap end-to-end, working hands-on with code and infrastructure to balance risk and business benefit.

Pigment is an AI-powered business planning and performance management platform. Founded in 2019, the company has over 600 employees and has raised nearly $400M, recognized as a Gartner Visionary.