





Mid-level, metro role at recognizable fintech but niche security specialization limits applicant density.
Skills transferable across industries, but detection engineering and financial domain needs increase specialization.
Explicit 5+ years, specific offensive security skills and certification requirements create high shortlisting rigidity.
Login to See Your Match Score
Create a free account or log in to unlock your CV match score across:
Lead full-stack offensive security assessments and penetration testing across web, mobile, API, on-prem and cloud infrastructure.
Collaborate with detection engineers to improve detection coverage via purple team exercises, attack simulations, and threat emulation.
Develop custom security testing tools, frameworks, and metrics to enable repeatable and measurable security improvements.
5+ years professional experience in offensive security with red and purple team exercises experience.
Proficiency in Python or similar programming language for security tooling and automation.
Deep knowledge of attack techniques, exploit development, detection technologies (EDR, SIEM, XDR), and security assessment frameworks (MITRE ATT&CK, PTES).
Certifications like OSCP, OSCE, GXPN or equivalent practical experience.
Experienced in both offensive security operations and detection engineering collaboration, indicating strategic defensive impact.
Technical expertise spanning full technology stack assessments including cloud (AWS/Azure), container, CI/CD, and API security domains.
Capability to design and implement quantifiable security metrics and testing methodologies to drive continuous security posture improvement.