If you’re in the market for an AI-centric offensive security role, please see the below list. Given the positive feedback from last week, I’ll likely start doing this on a weekly basis:
🏛 Company + Role: UnitedHealth Group, AI Red Team Operator
👀 Quick Insights: Remote / Hybrid (Eden Prairie, MN; Washington, DC), Internal AI red team, Individual contributor, Travel: 10%
💰 Comp: $73k-$130k/yr + bonus + equity + benefits
🎯 Apply Here: https://t.co/EO7v98w3Fw
✏️ Notes: Standout w/ experience with blue team tools and methods
🏛 Company + Role: Amazon, Senior Manager of AI Red Team
👀 Quick Insights: Remote (United States), Internal AI red team / build and lead, People manager
💰 Comp: $209k-$282k/yr + bonus + equity + benefits
🎯 Apply Here: https://t.co/qi4UA6Uspq
✏️ Notes: This role is responsible for building and leading Amazon’s AI offensive security research program. Standout w/ a proven track record of building and scaling security capabilities in complex technology organizations
🏛 Company + Role: Amazon, Manager of Security Engineering, AGI AI Security
👀 Quick Insights: Remote (United States), Internal AI security / strategic, People manager
💰 Comp: $209k-$282k/yr + bonus + equity + benefits
🎯 Apply Here: https://t.co/AUVydb4K5P
✏️ Notes: Standout w/ master's degree in Computer Science and Computer experience managing remote workers
🏛 Company + Role: Leidos, Full Spectrum Cyber AI Researcher
👀 Quick Insights: Remote (United States), Internal AI security / research / automation, Individual contributor, Travel: 10%
💰 Comp: $108k-$196k/yr + benefits
🎯 Apply Here: https://t.co/T0sdOJXtuj
✏️ Notes: Standout w/ demonstrated applied research experience using modern AI techniques for automated or semi-automated penetration testing
Thread: How real adversaries are using C2 in 2026 (From building @scythe_io + watching nation-state/red team playbooks)
Spoiler: It's not just fancy Cobalt Strike beacons anymore. 🦄 1/10
Every week I share a curated list of red team-specific jobs (or similar/adjacent) that caught my attention. My goal is simple: help job hunters in the offensive security space find a red team-specific role.
Below is this week’s list:
🏛 Company + Role: Anthropic, Red Team Engineer (Safeguards)
👀 Quick Insights: Hybrid (San Francisco, CA; Washington, DC), Product abuse + AI safety red teaming, Individual contributor, Travel: yes
💰 Comp: $300k-$320k/yr + benefits
🎯 Apply Here: https://t.co/k9lzKbnulN
✏️ Notes: Stand out w/ ability to understand and build engagements around emerging threats outside of direct area of expertise
🏛 Company + Role: Booz Allen Hamilton, Offensive Cyber Operations Solutions Architect (Senior Manager)
👀 Quick Insights: Hybrid (Annapolis Junction, MD), Consulting, People manager
💰 Comp: $142k-$266k/yr + benefits
🎯 Apply Here: https://t.co/kQLoBwI4Kf
✏️ Notes: Requires active TS/SCI clearance + willingness to take poly
🏛 Company + Role: State Street, Cyber Emerging Threat & Purple Team (Managing Director)
👀 Quick Insights: Hybrid (Boston, MA; Clifton, NJ; Kilkenny, Ireland), Internal team, People manager
💰 Comp: $170k-$282k/yr + bonus + benefits
🎯 Apply Here: https://t.co/rZtTVcihQe
✏️ Notes: Stand out with past experience and strong understanding of financial services regulatory frameworks and threat-led testing requirements
🏛 Company + Role: Anthropic, Offensive Security Engineer
👀 Quick Insights: Hybrid (San Francisco, CA; Seattle, WA), Internal team, Individual contributor, Travel: yes
💰 Comp: $300k-$320k/yr + benefits
🎯 Apply Here: https://t.co/Wx13HhjFwW
✏️ Notes: Stand out w/ experience conducting adversarial simulations against well defended environments
🏛 Company + Role: Experian, Lead Offensive Security Engineer
👀 Quick Insights: Remote (United States), Internal offensive security / red team, Individual contributor (Lead)
💰 Comp: $133k-$239k/yr + bonus + benefits
🎯 Apply Here: https://t.co/RAfDOZssVe
✏️ Notes: Somewhat surprisingly, this role seems to include physical red teaming. This could be a really cool role
🏛 Company + Role: 1Password, Principal Security Researcher
👀 Quick Insights: Remote (United States; Canada), Security research leadership, Senior individual contributor
💰 Comp: $246k-$369k/yr + stock + benefits (US); $228k-$342k/yr + stock + benefits (CA)
🎯 Apply Here: https://t.co/LrPKRqur4A
✏️ Notes: The bar is high on this one, but the pay is commensurate
🏛 Company + Role: 1Password, Senior Security Researcher
👀 Quick Insights: Remote (United States; Canada), Product security research, Individual contributor
💰 Comp: $153k-$214k/yr + stock + benefits (US); $144k-$202k/yr + stock + benefits (CA)
🎯 Apply Here: https://t.co/C5J6Q4W8Q4
✏️ Notes: Stand out with proven track record of discovering and responsibly disclosing original vulnerabilities, ideally with published CVEs, advisories, or equivalent publicly-recognized findings
🏛 Company + Role: Invesco, Principal Red Team Operator
👀 Quick Insights: Onsite (Houston, TX; Atlanta, GA), Internal red team, Senior individual contributor
💰 Comp: Not listed + stock + benefits
🎯 Apply Here: https://t.co/C2VNRI0cm3—Red-Team-Operator_R-12989
✏️ Notes: Stand out w/ prior experience mentoring junior operators + elevating the maturity of the offsec program
Every week I share a curated list of red team-specific jobs (or similar/adjacent) that caught my attention. My goal is simple: help job hunters in the offensive security space find a red team-specific role.
Below is this week’s list:
🏛 Company + Role: Walmart, Principal Incident Response Engineer (Red Team)
👀 Quick Insights: Onsite (Herndon, VA; Bentonville, AR), Comp: $110k-$264k/yr + stock options + benefits, Internal team, Individual contributor
🎯 Apply Here: https://t.co/qjZUamFHY4
✏️ Notes: There are some really great people on this team who I would vouch for and highly recommend. Overall, this is an excellent opportunity to do red teaming with a Fortune 1; however, the one downside is that it’s not remote.
🏛 Company + Role: MUFG, Red Team Operator
👀 Quick Insights: Hybrid (Tempe, AZ; Jersey City, NJ), Comp: $110k-$135k/yr + bonus + incentives + benefits, Internal team, Individual contributor
🎯 Apply Here: https://t.co/gemKihFuHW
✏️ Notes: This is another excellent opportunity and great team run by fantastic people. Also, I think there are actually 2 of this same position available.
🏛 Company + Role: Knox Systems, Red Team Operator
👀 Quick Insights: Hybrid (New York, NY; Boston, MA; Charlotte, NC; Washington, DC), Comp: $145k-$180k/yr + bonus + equity + benefits, Internal team, Individual contributor
🎯 Apply Here: https://t.co/RUYXACURxj
✏️ Notes: This is a senior hands on role, intended for operators who prefer active offensive work over admin responsibilities. Public Trust, Secret, or TS/SCI preferred.
🏛 Company + Role: Cloudflare, Red Team Manager
👀 Quick Insights: Hybrid (San Francisco, CA), Comp: not specified, Internal team, People and program manager
🎯 Apply Here: https://t.co/ONsbIPtCYt
✏️ Notes: This is a leadership role overseeing Cloudflare’s red team operations.
🏛 Company + Role: Apple, Senior Security Engineer Red Team
👀 Quick Insights: Onsite (Seattle, WA), Comp: $171k-$302k/yr + RSUs + bonus + relocation + benefits, Internal team, Individual contributor
🎯 Apply Here: https://t.co/eMF6B82ZaJ
✏️ Notes: This is not your typical red team role; however, if you enjoy vuln research, breaking things, and exploit chains, this could be a good gig. Stand out w/ community contributions like public CVEs, bug bounty recognition, open source tools, blogs, talks etc.
🏛 Company + Role: Little Caesars, Red Team Engineer
👀 Quick Insights: Onsite (Detroit, MI), Comp: not specified, Internal team, Individual contributor
🎯 Apply Here: https://t.co/2EIkludcfG
✏️ Notes: Their pizza sucks and no comp details are available; however, if the pay is right, this could be with considering
🏛 Company + Role: FTI Consulting, Senior Consultant Offensive Security
👀 Quick Insights: Onsite (Sydney, NSW, AU), Comp: $115k-$150k/yr + bonus + excellent benefits, Consulting, Individual contributor
🎯 Apply Here: https://t.co/zcKKIpIczf
✏️ Notes: I was asked to try to find/include offsec roles in Australia, and is what I found. I don’t know if this is a good comp for Australia; however, it sounds like a solid role.
🏛 Company + Role: Cyber Advisors, Red Team Lead
👀 Quick Insights: Remote (United States), Comp: $160k-$220k/yr + performance-based incentives + benefits, Consulting, Individual contributor
🎯 Apply Here: https://t.co/2MC1h8doTl
✏️ Notes: This role is with an MSP and sounds like there would be billable hour expectations.
#SpyNews - week 2 (January 4-10):
A summary of 65 espionage-related stories from week 2 coming from 🇷🇺🇳🇴🇮🇷🇮🇱🇺🇸🇫🇷🇧🇫🇻🇪🇱🇻🇺🇦🇸🇪🇩🇪🇨🇳🇹🇼🇨🇦🇹🇷🇸🇾🇬🇧🇿🇦🇲🇽🇮🇹🇾🇪🇸🇦🇯🇵🇰🇵🇬🇷🇸🇩🇦🇿🇨🇭🇦🇺🇵🇭🇲🇰🇺🇿🇰🇷 https://t.co/Q1t2zt6OLo
New video! I sat down with Skylar (@SecurityWard) to dig into the Honeyman Project, a research experiment where devices are intentionally exposed at cons, coffee shops, and more to see who tries to hack them and how.
Watch now! https://t.co/BGm4dyv0yp
This quarter we announced two new platforms for Canary: Oracle Cloud Infra. (OCI) & Nutanix.
Our v1 was a hardware device, but today, Canary also runs on
- GCP,
- AWS,
- VMware,
- Azure,
- Docker,
- Tailscale,
- OCI,
- Nutanix.
Still dead simple. Still "just works!"
Level up your #cyber deception game by learning and practicing advanced techniques like Whaley's "Double Back" and "Double Exchange" to actively mislead attackers at #BSidesNoVA!
Workshop: https://t.co/NGEoukVI6P
Tickets: https://t.co/m4J2bIgQzM