Offensive Security Engineer

Staris AI·Washington·Posted 2h ago·via Talent.com

RegionUSA
Apply Now

Job description

Job Description: - Own the execution and quality of autonomous security assessments, ensuring results are accurate, validated, and actionable for customers.

  • Drive the continuous improvement of AI-driven attack simulations and automated exploitation workflows to expand coverage, reliability, and assessment depth.
  • Apply offensive security expertise to identify realistic attack paths, validate findings, and reduce false positives across modern application and cloud environments.
  • Partner with engineering and research teams to operationalize new attack techniques and strengthen the platform’s autonomous testing capabilities.
  • Use insights from diverse target environments and customer feedback to improve assessment logic, remediation quality, and overall platform effectiveness.

Requirements: - Minimum of 5 years of experience in application security assessment, source code auditing, bug hunting or similar areas

  • Knowledge of offensive application security fundamentals
  • Knowledge of relevant open-source technologies for attack automation (e.g. Tools, Libraries, Frameworks, etc.)
  • Experience working with relevant software assessment technologies (e.g. SAST, DAST, Fuzzing, etc.).
  • Prior emphasis on distributed systems and micro-service architectures
  • Familiarity with prompt engineering, generative AI models, and their APIs
  • Bachelor's degree in a related field (e.g. Computer Science, Information Technology, Cybersecurity, etc.)
  • Strong English language communication skills

Benefits: - Backed by a founding team with deep pedigree, including alumni of Amazon, Accenture, and Palo Alto Networks, who have solved this problem operationally before.

  • A genuine category-defining product. Most AppSec tools create noise while Staris eliminates it with AI-driven proof of exploitability and automated, code-level remediation.
  • Supporting a massive, underserved market. Enterprises invest heavily in AppSec but deeply test only a fraction of their software portfolio.
  • Competitive base, meaningful equity, full benefits, and a remote-first culture.

first seen 2026-07-27 20:48:01 · last verified 2026-07-27 20:48:01


pentestcareers.com // breach the job market