Source Job

$108,040–$140,600/yr
Canada

  • Plan and execute red team operations, adversary simulations, and targeted security assessments focused on cloud environments.
  • Evaluate the security of cloud infrastructure, identity architectures, CI/CD pipelines, and containerized workloads.
  • Identify and validate attack paths involving IAM misconfigurations, overprivileged roles, and secrets exposure.

Offensive Security Red Teaming Penetration Testing Cloud Security IAM

20 jobs similar to Red Team Security Engineer

Jobs ranked by similarity.

$165,000–$200,000/yr
US Unlimited PTO

  • Lead the long-term technical strategy for offensive security, including red teaming and adversary simulations.
  • Conduct deep-dive vulnerability research and partner with DevOps to build automated security guardrails.
  • Mentor senior and mid-level engineers to foster a security-minded development culture.

Greenlight is a family technology company that helps families raise financially smart kids through its suite of products including the Greenlight app, debit card, and safety features. With over 6.5 million family members, Greenlight fosters a culture of innovation and collaboration to make family life easier.

$105,100–$231,100/yr
US

  • Serve as the senior technical authority for penetration testing and red-team delivery across federal programs.
  • Define and improve assessment standards, rules of engagement, and technical methodologies.
  • Guide technical teams, mentor staff, and communicate findings to government customers.

The company provides offensive security assessments and red-team services for sensitive federal cyber environments. The team is remote and focuses on high-impact national cybersecurity missions.

LATAM

  • Plan and execute realistic attack scenarios simulating sophisticated threat actors' TTPs.
  • Perform penetration testing of networks, applications, and systems using tools like Burp Suite, Metasploit, Cobalt Strike.
  • Prepare detailed reports and collaborate with blue teams to improve incident detection and response.

Insight Assurance is a global audit firm delivering next-generation cybersecurity and compliance services across SOC 2, ISO 27001, PCI DSS, and more. With 170+ professionals, it is one of the fastest-growing global audit firms serving nearly 2,000 clients.

Canada 4w PTO

  • Lead complex offensive security projects and adversary simulation activities.
  • Develop stealthy tools and automation to continuously evolve offensive capabilities.
  • Collaborate with cyber defense and insider threat teams to improve detection and response.

The company operates at the forefront of offensive cybersecurity within a large, complex enterprise environment. They emphasize continuous learning, innovation, and collaboration across diverse teams.

$120,000–$150,000/yr
US Unlimited PTO

  • Plan and conduct offensive security engagements, effectively communicating findings to stakeholders.
  • Build scripts, tools, or methodologies to enhance services and stay current with adversary tradecraft.
  • Serve as a subject matter expert and mentor less experienced staff while contributing to training courses.

SpecterOps provides offensive security assessment services, including red team assessments and penetration tests, for large commercial enterprises. The company fosters a culture of passionate curiosity and continuous improvement, with a remote team that values empathy and transparency.

$128,369–$183,384/yr
Europe

  • Drive offensive security through pen tests, red-team engagements, and threat modeling across Docker products and infrastructure.
  • Partner with engineering to implement secure architecture, automated reviews, and vulnerability management.
  • Build offensive tooling, develop exploits, and support incident response and security education.

Docker builds tools for developers to build, share, and run applications, including Docker Desktop, Docker Hub, and Docker Scout. It is a globally distributed, remote-first team trusted by 20M+ monthly users, focused on secure container development.

US Unlimited PTO 12w maternity 12w paternity

  • Drive and conduct security testing and penetration tests across applications, infrastructure, and networks to identify exploitable vulnerabilities.
  • Manage and implement security testing tools and frameworks to simulate real-world attacks and validate security controls.
  • Design and implement AI-enabled workflows to scale security testing and threat related operations.

Valon is building the AI-native operating system for regulated finance, starting with mortgage servicing. They are a Series C company backed by a16z, managing over $110 billion in loans, with a culture that values security and innovation.

Canada

  • Act as a strategic security leader by defining and driving cloud security principles, standards, and reference architectures across the organization.
  • Partner with DevOps and CI/CD engineers to embed shift-left security practices throughout the software development lifecycle.
  • Assess, design, and implement security processes and controls to meet security, compliance, and audit requirements.

LastPass delivers Secure Access Essentials, helping individuals and organizations manage and protect access to AI, applications, and credentials straight from the browser. Trusted by more than 100,000 businesses and millions of users worldwide, they blend strong security with everyday simplicity in a remote-first, collaborative culture.

Germany

  • Lead threat modeling and security reviews across Wiz's products and cloud infrastructure, identifying attack surfaces and developing scalable mitigation strategies.
  • Build automation, policy-as-code, and security tooling to enable development teams to shift left and integrate security into workflows.
  • Design and implement secure baselines for cloud resources and Kubernetes-based infrastructure, and drive vulnerability management efforts.

Wiz is a cloud security company enabling teams to secure cloud and AI applications by connecting code, cloud, and runtime. As one of the fastest-growing startups, trusted by over 65% of the Fortune 100, Wiz values world-class talent and creativity.

$135,000–$155,000/yr
US

  • Design and enforce cloud security controls and IAM policies across multi-account AWS environments.
  • Embed automated security tools into CI/CD pipelines to catch vulnerabilities pre-deployment.
  • Develop automated detection and remediation workflows using Python, Bash, or Go and IaC tools.

The Tripadvisor Group connects people to experiences worth sharing, aiming to be the world's most trusted source for travel and experiences. It is a publicly traded company with a global portfolio of travel brands, fostering a culture of collaboration, agility, and traveler-first mindset.

Global Unlimited PTO

  • Help shape technical direction of security tooling and AppSec practices. - Lead secure design across major engineering projects, from threat modeling through architecture. - Perform advanced offensive security work, chaining vulnerabilities and proving business impact.

Super.com is a fast-paced, high-growth tech company that maximizes lives for customers and employees. It offers a remote-first culture, invests in career progression, and provides generous benefits including unlimited PTO and parental leave.

Canada Unlimited PTO

  • Secure cloud infrastructure, applications, APIs, and AI-driven workflows.
  • Partner with engineering to embed security controls into production.
  • Lead vulnerability management and incident response activities.

Jobgether is an AI-powered job matching platform that connects candidates with hiring companies. The company is a high-growth startup with a remote-first culture, emphasizing transparency, autonomy, and technical craftsmanship.

$170,000–$200,000/yr
US

  • Own security of the software build and release pipeline, cloud environments, and AWS identity and access.
  • Operationalize a 15-domain cloud security framework and CrowdStrike CSPM across all AWS estates.
  • Mentor a junior cloud security engineer and build paved-road patterns for engineering teams.

Vermont Information Processing is a leading beverage industry technology provider trusted by over 1,600 suppliers for 50+ years. Backed by Warburg Pincus, VIP is investing in security with executive sponsorship and a funded roadmap.

US Unlimited PTO

  • Lead identity-focused security engagements including Entra ID, Active Directory, and IAM assessments.
  • Advise on modern identity platforms, PKI, and SecOps initiatives like SIEM and threat hunting.
  • Mentor junior consultants and support presales activities as a trusted advisor.

GuidePoint Security provides trusted cybersecurity expertise, solutions, and services to help organizations minimize risk and improve security posture. With over 1,300 employees, the company values collaboration, mentorship, and a strong core-value-driven culture.

US

  • Design, implement, and maintain security controls across AWS environments, including IAM, VPC, encryption, and logging.
  • Integrate security checks into CI/CD pipelines and harden Kubernetes/EKS workloads using Terraform and policy-as-code.
  • Automate vulnerability management, security monitoring, and incident response to reduce cloud and application risk.

Electric Power Engineers provides consulting expertise and energy intelligence software solutions for power and energy clients, focusing on modern, secure, and resilient grid challenges. They are leaders in the renewables space and emphasize collaboration, innovation, and making an impact on communities and the environment.

Global

  • Own production security across a multi-cloud footprint (AWS, GCP, Azure, Vercel) and secure multi-tenant SaaS, dedicated VPC, and air-gapped deployments.
  • Secure the Hermes Agent platform with sandboxing, kernel-level isolation, and agent identity controls, and lead SOC 2 compliance.
  • Harden identity management, vulnerability management, incident response, and secure software development lifecycle practices.

Nous Research builds open-source AI language models and agents, including Hermes Agent, used by consumers and Fortune 500 enterprises across various deployment environments. The company is a fast-growing startup with a high-velocity, open-source-native engineering culture that values security and pragmatism.

US

  • Lead the development and implementation of security strategies, policies, and procedures.
  • Architect secure systems and collaborate with engineering teams to integrate security throughout the software development lifecycle.
  • Conduct risk assessments, incident response, and mentor junior engineers to promote security awareness.

Gemini is a global crypto and Web3 platform founded in 2014, offering secure crypto products and services to individuals and institutions in over 70 countries. The company is publicly traded with a mission to bridge traditional finance with the emerging cryptoeconomy, fostering a diverse team that prioritizes trust and security.

Canada

  • Lead a team of Security Engineers, providing decision-making support and enabling them to deliver security consulting to the wider business.
  • Work directly with Product & Technology teams to assist in how our platform is built and how applications behave, supporting everything from user security to internet connectivity.
  • Have significant impact on security of systems used by thousands of firefighters, paramedics, and hospitals worldwide.

ESO is a data, technology, and research company passionate about improving community health and safety through the power of data. We serve thousands of customers out of our offices across the US, Canada and Northern Ireland, and we are small enough to be nimble and fun but big enough to be a great place to work.

$179,451–$187,900/yr
US

  • Improve security design and controls within GCP and Kubernetes.
  • Champion secure development by integrating security best practices early into the software development lifecycle.
  • Build and automate security tooling for vulnerability detection, remediation, and compliance verification.

Virta Health is a healthcare company that reverses type 2 diabetes and obesity through individualized nutrition and clinical support. They have raised over $350 million from top-tier investors and partner with major health plans, employers, and government organizations.

US Canada Unlimited PTO 16w maternity 16w paternity

  • Set and execute the technical vision for the Security Engineering Platform team, spanning AWS and GCP hardening and tier-0 services.
  • Own the hardening roadmap for tier-0 cloud infrastructure and access services, backed by rigorous, follow-the-sun on-call.
  • Coach and mentor highly skilled tech leads and engineers as a player-coach, leaning in on cloud hardening, identity, and secrets management problems.

DoorDash is a technology and logistics company that started by enabling door-to-door delivery and now builds the industry's most scalable and reliable delivery network. The company is growing rapidly with a global team committed to empowering local economies and supporting employees' well-being through comprehensive benefits.