Specialist, Offensive Security Engineer
Listed on 2026-01-12
-
IT/Tech
Cybersecurity, IT Consultant
Job Classification:
Technology - Information Security.
As a Specialist, Offensive Security Engineer on the Attack Surface Management team, you will be at the forefront of our efforts to identify and mitigate security risks. Your responsibilities will include conducting a combination of automated and manual offensive testing, communicating complex concepts, and influencing others to adopt an attacker mindset. You will work on difficult problems that require in-depth evaluation of security controls.
In addition to your hands‑on experience in offensive security, you demonstrate a strong ability to solve complex problems and communicate effectively within your team and across the organization. You consistently collaborate with others, showing a commitment to teamwork and agile work practices. Your deep understanding of the business environment informs your technical decisions, ensuring solutions align with organizational goals. Finally, your dedication to continuous learning ensures that you stay current with industry developments and maintain a forward‑thinking approach in all your professional endeavors.
Day Responsibilities
- Conduct control and system security analysis utilizing modern continuous penetration testing solutions.
- Use security system expertise to enhance processes, spot improvements, and maintain proper documentation.
- Perform automated and manual offensive tests to spot risks and support remediation throughout the organization.
- Drive project work independently with minimal assistance from senior team members.
- Proactively engage with IT peers and business stakeholders to ensure an appropriate information security mindset is in place with our technology and business partners.
- Bachelor of Computer Science or Engineering, or related experience.
- Experience with agile development methodologies.
- Knowledge of business concepts and information security tools and processes necessary for making sound decisions in the context of the company's business.
- Ability to learn new skills and knowledge on an ongoing basis through self‑initiative and tackling challenges.
- Strong written and verbal communication skills, specifically in the infosec domain. Bridging the gap and communicating effectively to diverse audiences will be invaluable and ultimately lead to decreased cyber risk.
- Reviewing infrastructure, application, and control security and identifying vulnerabilities.
- Experienced in using various security tools and services, including penetration testing tools and continuous attack surface management solutions.
- Understanding of frameworks such as OWASP WSTG, MITRE ATT&CK, software development lifecycle (SDLC).
- Comprehensive knowledge of different network and web protocols (such as TCP/IP, DNS, HTTP(S), web sockets, LDAP) and web technology stacks.
- Demonstrates a thorough understanding of adversarial tactics, techniques, and procedures (TTPs). This includes the ability to identify and analyze the strategies employed by threat actors to enhance the organization’s defensive posture.
- Able to read, understand, and work with code in one or more programming languages.
- Proficient in scripting languages such as Power Shell, Bash, and Ruby.
- Familiarity with Exploit Development, Cloud, or Mobile Security is a plus.
- Experience with developing and using C2 frameworks such as Cobalt Strike, Empire, SCYTHE, and Metasploit.
- In-depth knowledge of evasion techniques, including experience with developing custom payloads and bypassing security controls.
- Participation in and/or managing bug bounty/responsible disclosure programs.
- Relevant offensive security certifications such as GPEN, GWAPT, GXPN, OSCP, OSWE, OSEP.
Prudential is required by state specific laws to include the salary range for this role when hiring a resident in applicable locations. The salary range for this role is from $99,700.00 to $. Specific pricing for the role may vary within the above range based on geographic location, candidate experience, and skills.
Benefits- Market competitive base salaries, with a yearly bonus potential at every level.
- Medical, dental,…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).