Offensive Security Engineer


New York
Permanent
USD145000 - USD160000
Cloud and Infrastructure​
PR/550650_1751032243
Offensive Security Engineer

Glocomms has partnered with an innovative FinTech firm seeking an Offensive Security Engineer to play a critical role in proactively identifying and mitigating security risks across their cutting-edge platform operating in the cryptocurrency space. With a strong foundation in penetration testing and adversarial simulation, this engineer will assess the security posture of web applications, smart contracts, internal and external APIs, data lakes, and trading infrastructure.

Success in this role requires not only technical acumen but also strong soft skills-clear communication, collaboration across cross-functional teams, and the ability to translate complex findings into actionable insights. The engineer will work closely with developers, DevOps, and product teams to ensure security is embedded throughout the development lifecycle.

Primary Responsibilities:

  • Conduct red team exercises and penetration tests across diverse systems and environments.
  • Analyze and exploit vulnerabilities in smart contracts and blockchain-based applications.
  • Test and secure APIs, web applications, and backend services.
  • Collaborate with engineering teams to remediate findings and improve security posture.
  • Develop custom tools and scripts to automate testing and reporting.

Key Qualifications:

  • 3+ years of experience in offensive security or penetration testing.
  • Strong knowledge of web security, API security, and smart contract vulnerabilities.
  • Proficiency in Python, Java, C++, or similar languages.
  • Excellent communication, documentation, and interpersonal skills.
  • Experience in FinTech or crypto environments is a plus.

Additional Information: This is a hybrid role based in New York City (FiDi), requiring approximately 3 days per week in-office. Visa sponsorship is not available for this position

FAQs

Congratulations, we understand that taking the time to apply is a big step. When you apply, your details go directly to the consultant who is sourcing talent. Due to demand, we may not get back to all applicants that have applied. However, we always keep your resume and details on file so when we see similar roles or see skillsets that drive growth in organizations, we will always reach out to discuss opportunities.

Yes. Even if this role isn’t a perfect match, applying allows us to understand your expertise and ambitions, ensuring you're on our radar for the right opportunity when it arises.

We also work in several ways, firstly we advertise our roles available on our site, however, often due to confidentiality we may not post all. We also work with clients who are more focused on skills and understanding what is required to future-proof their business. 

That's why we recommend registering your resume so you can be considered for roles that have yet to be created. 

Yes, we help with resume and interview preparation. From customized support on how to optimize your resume to interview preparation and compensation negotiations, we advocate for you throughout your next career move.

Handpicked roles for you