Skip to main content
Horizon3

Staff Attack Engineer, OCI

RemoteUnited States only
Published
Role
Security
Experience
Lead
Employment
Full-time
Company size
Startup
$247k–$275k/yr
Check eligibility

Open to US only. Set where you work from to check your eligibility.

No BS summary

Attack Engineer with deep OCI expertise needed to build cloud attack capabilities. Requires 10+ years of offensive security or software engineering experience, strong Python coding skills, and hands-on OCI offensive security experience. Role involves researching OCI services, developing attack techniques, and contributing to offensive security strategy.

Core skills

PythonOCIoffensive security

Required skills

Oracle Cloud Infrastructure (OCI)web application testingcloud penetration testingexternal assessmentsred team operationsautomationtoolingoffensive security workflows

Optional skills

Oracle Cloud Infrastructure (OCI) Kubernetes Engine (OKE)cloud privilege escalationidentity attacksoffensive security toolingAWS offensive securityAzure offensive securityGCP offensive securityvulnerability management

What you'll do

  • Research Oracle Cloud Infrastructure services and identify offensive security opportunities across the platform.
  • Develop new attack techniques, attack paths, and security assessments targeting OCI environments.
  • Build and maintain production-quality Python code that powers NodeZero attack capabilities.
  • Conduct offensive security research against OCI compute, networking, storage, databases, IAM, Kubernetes, and cloud-native services.
  • Analyze real-world OCI deployments to identify common attack vectors and customer risk patterns.
  • Collaborate closely with software engineers, attack engineers, and offensive security SMEs to bring new capabilities into production.
  • Document research findings, attack methodologies, and technical design decisions.
  • Help prioritize future OCI attack coverage based on customer demand and emerging threats.
  • Contribute to the technical direction of NodeZero's cloud attack capabilities.

What they require

  • Hands-on offensive security experience targeting Oracle Cloud Infrastructure (OCI).
  • Strong understanding of cloud attack paths and cloud-native security concepts.
  • Experience with web application testing, cloud penetration testing, external assessments, or red team operations.
  • Experience writing Python code for automation, tooling, or offensive security workflows.
  • Ability to independently research unfamiliar technologies and rapidly become an expert.
  • Strong written communication and technical documentation skills.
  • Passion for building products, not just finding vulnerabilities.
  • 10+ years of professional software engineering and or/ offensive security experience

Benefits

  • equity package in the form of stock options
  • health, vision & dental insurance for you and your family
  • a flexible vacation policy
  • generous parental leave

Horizon3 is a fast-growing, remote cybersecurity company dedicated to enabling organizations to proactively find, fix, and verify exploitable attack vectors before criminals exploit them. Its flagship product, NodeZero, delivers production-safe autonomous pentests and assessment operations across internal, external, cloud, and hybrid cloud environments.

🇺🇸 United StatesCybersecurityStartup
$247k–$275k/yr