Notifications

Loading notifications...
Horizon3.ai Cover

Senior Manager, Attack Engineering

Horizon3.ai
Remote Full Time USD 235,000 - 280,000 10 days ago

About the Job

We are a fusion of former U.S. Special Operations cyber operators, startup engineers, and formerly frustrated cybersecurity practitioners. We're committed to helping solve our common security problems: ineffective security tools, false positives resulting in alert fatigue, blind spots, "checkbox” security culture, c...

We’re seeking an experienced Engineering Manager to lead our External Attack Engineering organization. In this role, you’ll oversee a team responsible for designing, validating, and scaling offensive capabilities within the NodeZero platform targeting the modern external attack surface, including public-facing infra...

You’ll operate at the intersection of offensive security, engineering, and product, driving both hands-on technical direction and strategic execution. This leader will ensure our external attack capabilities reflect real-world attacker tradecraft while remaining production-safe, high-signal, and impactful for custom...

Key Responsibilities

Please note this job description is not designed to cover or contain a comprehensive listing of activities, duties or responsibilities that are required of the employee. Duties, responsibilities, and activities may change at any time with or without notice. 
In any materials you submit, you may redact or remove age-identifying information such as age, date of birth, or dates of school attendance or graduation. You will not be penalized for redacting or removing this information.

Required Skills & Abilities

5+ years leading offensive security, red team, or attack engineering teams.
Experience managing teams of 6–10+ engineers and scaling organizations.
Proven ability to balance hands-on technical depth with strategic leadership.
Strong expertise in one or more:
External/Public-facing infrastructure attack surfaces
Enterprise SaaS platforms and externally-facing enterprise commercial software
Identity and access abuse across diverse ecosystems
Deep understanding of:
Common misconfigurations and exploitation paths in external platforms
System-level compromise and lateral movement in externally-facing enterprise commercial software
Complex multi-platform attack scenarios
Ability to chain attack paths end-to-end and clearly explain impact.
Strong background in software engineering (Python preferred). Experience with APIs, cloud automation, and infrastructure tooling.
Familiarity with CI/CD and infrastructure-as-code (Terraform, CloudFormation, etc.).
Comfortable working with Git, MR workflows, and product development cycles.
Experience translating offensive findings into product capabilities.
Strong communication skills across technical and non-technical audiences.
Customer-first mindset with focus on real-world impact.
Experience across diverse environments, including cloud infrastructure, enterprise SaaS, and externally-facing enterprise commercial software.
Familiarity with AI/LLM systems and associated attack surfaces.
Experience in security tooling, red teaming, or offensive engineering products.
Relevant security certifications (e.g., OSCP, cloud or SaaS security) are a plus.
Public research, blogs, or open-source contributions related to external attack surfaces.
Highly self-directed and effective in ambiguous environments.
Able to operate at both strategic and hands-on technical levels.
Maintains high standards for quality, safety, and customer trust.
Strong cross-functional partner across Engineering, Product, and GTM.
Manage an on-call rotation for the team, ensuring appropriate coverage and response to critical incidents.
 
This job may require up to 10% travel.
 

Apply now

Please let Horizon3.ai know you found this job on Job Vista. This helps us grow!