← Back to job listings
HO
WebApp Offensive Security Software Engineer
Horizon3 · United States
About The Role
Join our team as a WebApp Offensive Security Engineer, where you'll leverage your extensive experience in web application penetration testing to enhance our autonomous testing capabilities. You'll be testing real customer web applications, identifying vulnerabilities and attack paths, and collaborating closely with our software engineers to improve our product. This role is perfect for those who are passionate about offensive security and want to make a significant impact in the field.
- Conduct hands-on, full-scope web application penetration tests against real customer applications, identifying vulnerabilities and attack paths.
- Review NodeZero results on live customer engagements to identify coverage gaps, blind spots, and missed opportunities, and manually reproduce and validate those edge cases.
- Partner closely with software engineers to translate findings into product improvements, defining detection logic, attack content, expected behavior, and remediation.
- If you love breaking real web apps by hand, get satisfaction from finding what scanners miss, and want your tradecraft to scale to thousands of customers through the product, this role is for you
- Extensive hands-on experience conducting full-scope web application penetration tests
- Track record of successful bug bounty contributions
- Ability to manage multiple priorities, work independently, and mentor teammates of varying experience levels
- A talent for finding and exploiting business-logic and edge-case flaws that automated scanners routinely miss
- Strong command of proxy tools like Burp Suite and browser developer tools
- Ability to clearly communicate attack steps, impact, and remediation guidance to both engineers and non-technical stakeholders
- Quick to learn and adopt new technologies, frameworks, and target stacks as needed
- Deep, practical knowledge of common and not-so-common web vulnerability classes — SQL injection, XSS (reflected, stored, and DOM-based), SSRF, SSTI/CSTI, IDOR/BOLA, authentication and authorization bypass, path traversal, LFI, and similar — including how to chain them to demonstrate impact
- Strong written and verbal communication, including technical documentation
- Curiosity about emerging AI technologies and comfort using AI-assisted tools in your testing and research workflow
- History of recognized security research, including documented CVE discoveries and responsible disclosure
- Comfort scripting to reproduce findings and build proof-of-concept exploits (e.g., Python or similar) — you don't need to be a professional software engineer, but you should be able to write and read code well enough to demonstrate an exploit and collaborate effectively with engineers
- Familiarity with relational and graph databases, particularly Postgres and Neo4j
- Experience with AI/LLM tools for building agentic workflows (e.g., LangChain, LangFlow) and integrating contextual data using protocols like Model Context Protocol (MCP)
- Experience writing detection or attack content (e.g., Nuclei templates, sqlmap tamper scripts, custom Burp extensions)
- Enough software development background to collaborate fluently with engineers on remediation and product coverage
- Familiarity with how autonomous, agentic, or AI-driven pentesting tools work — and a sharp instinct for where and why they fail
- Document findings, methodologies, and recommendations for both technical and non-technical stakeholders
- Strong technical documentation and communication skills
- Self-motivated and highly energetic, with the ability to operate effectively with limited supervision and guidance
- Outstanding problem-solving aptitude and a relentless curiosity for how things break
- Work with our engineers and security researchers to turn manual discoveries into reliable, production-safe product capabilities
- A portfolio of novel web application research, exploits, or edge-case findings you can walk us through
- OSCP, OSWE, or comparable offensive security certifications
- Demonstrated examples of using AI to enhance or accelerate your testing and exploit development
This is an external listing. JobSpring does not represent or verify the employer. Report this listing
JobSpring