Webapp Offensive Security Engineer
Job Description:Hit Apply below to send your application for consideration Ensure that your CV is up to date, and that you have read the job specs first.Design, develop, and integrate web application offensive security content into the NodeZero platformDesign, develop, and integrate novel attack capabilities into the NodeZero platform, including offensive security tooling and AI-enhanced techniques.Research and implement AI-driven methods for vulnerability detection, exploitation, and workflow automation.Extend and maintain platform architecture, data models, and system design to support new product features.Monitor production for issues or missed opportunities and create or resolve Jira tickets as needed.Investigate, own, and resolve bugs in developed content.Collaborate cross-functionally to address customer and prospect concerns related to attack content.Author technical blog posts showcasing new research, exploits, or attack methodologies.Mentor junior engineers and contribute to continuous improvement of team processes and standardsRequirements:Experience conducting full scope web application pentestsExperience with proxy tools like Burp and with browser developer toolsProficient in object-oriented programming and test-driven development, with strong analytical and problem-solving skills.Experience applying AI-assisted development tools to security research and automation tasksCuriosity about emerging AI technologies.Familiarity with relational and graph databases, particularly Postgres and Neo4j.Strong written and verbal communication, including technical documentation.Ability to manage multiple priorities, work independently, and mentor teammates of varying experience levels.Quick to learn and adopt new technologies as needed.Track record of successful bug bounty contributions. xevrcycBenefits:Health, vision & dental insurance for you and your familyFlexible vacation policyGenerous parental leave