yandex
robinhood
Страна
США
Зарплата
217 000 $ – 255 000 $
+500% приглашений

Откликайтесь
на вакансии с ИИ

Ускорим процесс поиска работы
ГибридПолная занятость

Staff Offensive Security Engineer

Оценка ИИ

Отличная вакансия в топовой финтех-компании с прозрачной вилкой зарплаты, сильным соцпакетом и возможностью работать над сложными задачами. Высокий балл за бренд работодателя и уровень компенсации.


Вакансия из Quick Offer Global, списка международных компаний
Пожаловаться

Сложность вакансии

ЛегкоСложно
Оценка ИИ

Высокая сложность обусловлена статусом 'Staff', требующим более 8 лет опыта, глубоких знаний облачной безопасности (K8s, AWS) и навыков менторства. Роль предполагает не только техническое исполнение, но и стратегическое влияние на безопасность всей компании.

Анализ зарплаты

Медиана235 000 $
Рынок210 000 $ – 270 000 $
Оценка ИИ

Предложенная зарплата ($217k - $255k) находится на верхнем уровне рыночных ожиданий для позиции Staff Engineer в США, особенно для таких хабов как Белвью или Нью-Йорк. Это соответствует уровню Tier-1 технологических компаний.

Сопроводительное письмо

I am writing to express my strong interest in the Staff Offensive Security Engineer position at Robinhood. With over 8 years of experience in red teaming and advanced penetration testing, I have developed a deep expertise in simulating complex adversary behaviors across cloud-native environments, specifically within AWS and Kubernetes ecosystems. My background in identifying critical vulnerabilities and partnering with engineering teams for remediation aligns perfectly with Robinhood’s mission to provide secure financial access for all.

Throughout my career, I have not only focused on identifying security gaps but also on evangelizing findings to stakeholders and mentoring junior engineers. I am particularly drawn to this role because of Robinhood's commitment to high standards and ethics in the fintech space. I am confident that my technical proficiency in Python and Go, combined with my strategic understanding of the MITRE ATT&CK framework, will allow me to make a significant contribution to your Offensive Security Team and help strengthen the resilience of your financial platforms.

+250% к просмотрам

Составьте идеальное письмо к вакансии с ИИ-агентом

Составьте идеальное письмо к вакансии с ИИ-агентом

Откликнитесь в robinhood уже сейчас

Присоединяйтесь к элитной команде Red Team в Robinhood и защищайте будущее финансов — подайте заявку сегодня!

Описание вакансии

Join us in building the future of finance.

Our mission is to democratize finance for all. An estimated $124 trillion of assets will be inherited by younger generations in the next two decades. The largest transfer of wealth in human history. If you’re ready to be at the epicenter of this historic cultural and financial shift, keep reading.

About the team + role

We are building an elite team, applying frontier technologies to the world’s biggest financial problems. We’re looking for thoughtful problem-solvers and builders who want to make a meaningful contribution. Robinhood is a place where people take ownership of their work and help improve financial access for all. We operate with high standards, clear accountability, and a strong focus on security and ethics in everything we build!

The Red Team’s mission is to identify and reduce real-world security risks across Robinhood by simulating adversary behavior and testing defenses. As a Staff Offensive Security Engineer, you will plan and execute security assessments across applications, infrastructure, and physical environments, and partner closely with engineering and security teams to strengthen detection and response capabilities. You will help prioritize risk, contribute to remediation efforts, and develop tools and techniques that improve how we test and secure our systems. Your work will directly support the safety and reliability of products used by millions of customers.

*This role is based in our Menlo Park, CA office, with in-person attendance expected at least 3 days per week.*

At Robinhood, we believe in the power of in-person work to accelerate progress, spark innovation, and strengthen community. Our office experience is intentional, energizing, and designed to fully support high-performing teams.

What you’ll do

  • Evangelize the Offensive Security Team’s Findings and Projects with stakeholders throughout the company and collaborate with other teams to create solutions that balance security with other priorities.
  • Mentor and provide guidance to the members of the Offensive Security team.
  • Plan and execute red team exercises, including long-term assessments that simulate real-world attack scenarios
  • Perform threat modeling and penetration testing across applications, infrastructure, and corporate environments
  • Develop scripts and tools to support and automate security testing activities
  • Partner with detection and response teams to run adversarial simulations and improve incident readiness
  • Communicate findings clearly and work with engineering teams to remediate identified risks
  • Lead Security Incidents when Pentest or Red Team findings require them.
  • Plan and participate in Adversarial Simulation exercises with various security teams.

What you bring

  • 8+ years of experience conducting red team operations or advanced penetration testing
  • Experience mentoring or supporting the development of other security engineers
  • Passion and demonstrated experience for challenging security assumptions.
  • Excellent written and verbal communication skills and ability to communicate your findings at many different levels of abstraction from Engineers to Executives.
  • Passion for fixing security issues and not just identifying security issues.
  • Familiarity with common network protocols and standards such as DNS and TCP/IP.
  • Experience with MacOS and Linux.
  • Experience with leveraging components of a modern software development stack to attack companies, including CI, container orchestration systems (Kubernetes/Docker), cloud providers (AWS, GCP), etc and be able to give hardening suggestions.
  • Experience/knowledge of defensive tools/techniques (IDS/IPS, Packet Capture, Network Analysis, AV, EDR, etc.) and how to evade them.
  • Deep understanding of Mitre’s ATT&CK Framework.
  • Strong understanding of the security fundamentals of access and identity.
  • Comfortable reading / writing python, go, and javascript.
  • Ability to research and execute a testing plan to access a new technology or process.
  • Demonstrated experience working with a distributed team.
  • Proficiency to communicate over a text-based medium (Slack, JIRA Issues, GitHub issues, & Email) and can succinctly document technical details.

Bonus Points

  • Experience in the Financial Technology domain.
  • Experience being a technical lead at other organizations.

What we offer

  • Market competitive and pay equity-focused compensation structure
  • 100% paid health insurance for employees with 90% coverage for dependents
  • Annual lifestyle wallet for personal wellness, learning and development, and more!
  • Lifetime maximum benefit for family forming and fertility benefits
  • Dedicated mental health support for employees and eligible dependents
  • Generous time away including company holidays, paid time off, sick time, parental leave, and more!
  • Lively office environment with catered meals, fully stocked kitchens, and geo-specific commuter benefits

In addition to the base pay range listed below, this role is also eligible for bonus opportunities + equity + benefits.

Base pay for the successful applicant will depend on a variety of job-related factors, which may include education, training, experience, location, business needs, or market demands. The expected base pay range for this role is based on the location where the work will be performed and is aligned to one of 3 compensation zones. For other locations not listed, compensation can be discussed with your recruiter during the interview process.

Base Pay Range:

Zone 1 (Menlo Park, CA; New York, NY; Bellevue, WA; Washington, DC)

$217,000—$255,000 USD

Zone 2 (Denver, CO; Westlake, TX; Chicago, IL)

$190,000—$224,000 USD

Zone 3 (Lake Mary, FL; Clearwater, FL; Gainesville, FL)

$169,000—$199,000 USD

Click here to learn more about our Total Rewards, which vary by region and entity.

If our mission energizes you and you’re ready to build the future of finance, we look forward to seeing your application.

Robinhood provides equal opportunity for all applicants, offers reasonable accommodations upon request, and complies with applicable equal employment and privacy laws. Inclusion is built into how we hire and work—welcoming different backgrounds, perspectives, and experiences so everyone can do their best. Please review the Privacy Policy for your country of application.

+400% к собеседованиям

Создайте идеальное резюме с помощью ИИ-агента

Создайте идеальное резюме с помощью ИИ-агента

Навыки

  • Red Teaming
  • Penetration Testing
  • Python
  • Go
  • JavaScript
  • AWS
  • Google Cloud Platform
  • Kubernetes
  • Docker
  • Linux
  • macOS
  • MITRE ATT&CK
  • Threat Modeling
  • Network Security
  • EDR

Возможные вопросы на собеседовании

Проверка способности мыслить как реальный злоумышленник в контексте финтеха.

Опишите, как бы вы спланировали многоэтапную атаку на инфраструктуру Robinhood, учитывая использование Kubernetes и AWS?

Важно уметь не только находить баги, но и объяснять их бизнесу.

Как вы будете аргументировать необходимость немедленного исправления критической уязвимости перед топ-менеджментом, если это задержит выпуск важного продукта?

Оценка навыков обхода современных систем защиты.

Какие техники вы используете для обхода современных EDR-решений при проведении Red Team операций в macOS-среде?

Проверка лидерских качеств и способности развивать команду.

Расскажите о случае, когда вы менторили младшего инженера: с какими трудностями вы столкнулись и как оценивали его прогресс?

Проверка навыков автоматизации и разработки инструментов.

Какой инструмент для автоматизации наступательной безопасности вы разработали самостоятельно? Какие задачи он решал и на каком языке был написан?

Похожие вакансии

Атом Безопасность
200 000 ₽ – 400 000 ₽

Application Security Еngineer (AppSec)

УдалённоРоссия
C++ · Rust · JavaScript · Python · TypeScript · SAST · DAST · SCA · ASOC · CI/CD · GitLab CI · Docker · Fuzzing · Threat Modeling
+14 навыков
NDA
Не указана

Head of SOC (Центр мониторинга кибербезопасности)

HeadВ офисеКыргызстан
SoC · SIEM · Incident Response · Cybersecurity Strategy · Security Architecture · Team Management
+6 навыков
HaaS Platform
от 400 000 ₽

Pentester (Offensive Security)

SeniorУдалённоРоссия
Pentesting · Linux · Python · Bash · Burp Suite · NMAP · OWASP Top 10 · Network Security · Red Team · Vulnerability Assessment · Go · JavaScript · C++
+13 навыков
СберАвто
200 000 ₽ – 350 000 ₽

Специалист по информационной безопасности

SeniorУдалённоРоссия
Fortinet · Palo Alto Networks · Check Point · ELK stack · Splunk · Cisco Prime · MaxPatrol · ArcSight · SolarWinds · VPN · PKI · OSPF · EIGRP · BGP · Kaspersky Security Center · Cortex XDR · Solar Dozor · Ansible · Terraform · Vulnerability Management · Patch Management
+21 навыков
Крупная международная ИТ компания
Не указана

Solution Sales Consultant (Cybersecurity)

В офисеУзбекистан
Cybersecurity · Solution Sales · Discovery Sessions · Business Analysis · English · Russian · Uzbek
+7 навыков
СберАвто
Не указана

Application security specialist

SeniorУдалённоРоссия
SAST · DAST · IAST · RASP · SCA · WAF · SSDLC · DevSecOps · OWASP · Linux · Python · Go · Threat Modeling
+13 навыков
более 1000 офферов получено
4.9

1000+ офферов получено

Устали искать работу? Мы найдём её за вас

Quick Offer улучшит ваше резюме, подберёт лучшие вакансии и откликнется за вас. Результат — в 3 раза больше приглашений на собеседования и никакой рутины!

robinhood
Страна
США
Зарплата
217 000 $ – 255 000 $