{"id":1986770,"url":"https://alion.io/job/iunu-offensive-security-engineer","title":"Offensive Security Engineer","company":{"id":9250,"name":"IUNU","domain":"iunu.com","url":"https://alion.io/company/iunu","size_band":"51-200","is_staffing_agency":false,"employer_type":"direct","is_intermediary":false,"listed_via":null,"ats_vendor":"Ashby","truth_index":{"grade":"B","score":81,"open_postings":12,"ghost_share":0,"stale_share":0.75,"repost_share":0,"time_to_fill_p50_days":null,"computed_at":"2026-10-08T05:49:30Z"}},"role":"Security","role_family":"Security","seniority":"senior","employment_type":"full_time","work_mode":"on_site","remote_scope":null,"remote_scope_basis":null,"remote_working_hours":null,"hiring_geo_confidence":"structured","locations":["New York, United States"],"countries":["US"],"hiring_countries":[],"hiring_countries_total":0,"salary":{"min":180000,"max":220000,"currency":"USD","period":"year","gross":null,"usd_annual":220000},"salary_estimate":null,"experience_years_min":5,"visa_sponsorship":false,"relocation_package":false,"has_equity":true,"technologies":[{"name":"AWS","optional":false},{"name":"CI/CD","optional":false},{"name":"Git","optional":false},{"name":"Kubernetes","optional":false},{"name":"Least Privilege","optional":false},{"name":"LLM Evaluation","optional":false},{"name":"MITRE ATT&CK","optional":false},{"name":"Model Context Protocol","optional":false},{"name":"Python","optional":false},{"name":"RAG","optional":false},{"name":"Red Teaming","optional":false},{"name":"SentinelOne","optional":false},{"name":"SQL","optional":false},{"name":"Wiz","optional":false}],"status":"live","first_seen_at":"2026-10-07T01:59:55Z","employer_posted_date":"2026-10-07","last_verified_at":"2026-10-09T01:26:34Z","board_verified":true,"closed_at":null,"days_open":2,"trust":{"level":"ok","repost_count":null,"flags":[],"days_open":2},"description":"Artemis is building the future of AI-driven defense - helping companies detect and defend themselves effectively in an era where AI is fighting AI on the cyber battlefield.\nWe're backed by First Round Capital, Brightmind, and a group of the cybersecurity industry's most prominent Operators.\nOur founders, Shachar (ex-Palo Alto Networks, AWS, Demisto) and Dan (ex-Abnormal Security, Twitter) have previously built, launched, and scaled cybersecurity products loved and trusted by tens of thousands of customers, and have the customer, technology, and security know-hows to deliver this vision.\nOur exceptionally strong team includes software engineers, AI researchers, security engineers, and product designers hailing from Google, Abnormal AI, Wiz, Meta, AWS, CERN, SentinelOne, and more.\nWe are growing our team and looking for passionate builders to join us and support our expanding customer base.\nResponsibilities\nBuild scalable adversary emulation - Develop reusable scenarios and automation that reproduce attacker behaviors and multi-stage attack chains across cloud, identity, endpoint, SaaS, AI, and data environments. Prioritize work using threat intelligence, customer risk, and detection coverage gaps.\n\nValidate detections end to end - Trace emulated activity through collection, normalization, enrichment, detection, and investigation. Verify expected findings and evidence, identify missed detections and visibility gaps, and distinguish successful prevention from successful detection.\n\nResearch attacks against AI systems - Investigate prompt injection, MCP and tool abuse, retrieval poisoning, excessive agent privileges, and unauthorized actions. Chain weaknesses across applications, agents, and integrations to establish realistic impact and identify detection opportunities.\n\nResearch attacks against data planes - Explore abuse of service identities, integration tokens, permissions, and data access across databases, warehouses, object storage, and AI retrieval systems. Turn access, staging, export, and cross-platform attack paths into repeatable scenarios.\n\nReproduce emerging exploits - Assess relevant vulnerability disclosures and exploit research in isolated labs. Establish prerequisites, practical impact, and observable behavior, then translate findings into detection hypotheses and bounded emulations.\n\nEnable safe testing in customer environments - Build authorized emulations and control checks with clear scope, preflight checks, least-privilege access, execution limits, stop controls, and verified cleanup. Document prerequisites, expected effects, and which scenarios require an isolated lab.\n\nBuild continuous validation - Integrate scenarios with detector tests and engineering workflows. Develop AI evaluation harnesses with attack variations, multi-turn tests, and benign controls, measuring outcomes as models, tools, permissions, and detections change.\n\nTurn research into defensive improvements - Contribute detections, hunt logic, telemetry requirements, and regression tests. Partner with engineering and customer owners to drive findings through remediation and retesting, verifying fixes against malicious and benign behavior.\n\nPartner with the SOC and customers - Run purple-team exercises, explain findings and limitations, and give analysts the evidence and guidance needed to investigate emulated behaviors. Use AI to accelerate research and tooling while independently verifying generated actions and conclusions.\n\nQualifications\n5+ years of hands-on cybersecurity experience, with substantial offensive security, red teaming, adversary emulation, or security research work; equivalent demonstrated expertise is welcome.\n\nStrong Python skills and a track record building reusable security tools with APIs, SDKs, Git, code review, and automated testing.\n\nDeep practical expertise in at least one cloud or identity ecosystem, with an understanding of permissions, service identities, sessions, and data access.\n\nPractical web/API security knowledge and experience chaining weaknesses across authorization boundaries into meaningful attack paths.\n\nExperience reproducing attacks in controlled environments and connecting the resulting behavior to audit logs, detection logic, and investigation evidence.\n\nExperience assessing AI applications or agent workflows, or demonstrated offensive research into these systems.\n\nSound judgment in sensitive environments: define scope, anticipate side effects, limit impact, protect data, and verify cleanup.\n\nClear communication and the ability to own work from research through implementation, operational use, and verified outcomes.\n\nBonus\nExperience with Atomic Red Team, MITRE ATT&CK and ATLAS, purple teaming, or continuous security validation.\n\nExperience with SQL, detection-as-code, and cloud, identity, SaaS, or endpoint telemetry.\n\nHands-on work with MCP servers, RAG systems, model gateways, or repeatable AI evaluations.\n\nExperience assessing data warehouses, object storage, Kubernetes, CI/CD systems, or software supply chains.\n\nContributions to offensive tooling, emulation frameworks, detection content, or published security research.\n\nExperience building isolated labs and enabling customers to operate security tooling.\n\nWhy Work at Artemis?\nMake a real-world impact. Your tools and research will directly improve how real companies detect and defend against emerging threats.\n\nBuild at the intersection of AI and security. Work with security and AI engineers to test emerging attack surfaces and turn discoveries into practical defenses.\n\nOwn what you build. Take ideas from research to working capabilities used across the platform and customer environments.\n\nWork closely with practitioners. Partner with detection engineers, researchers, and analysts who can put your work into use and help measure its impact.\n\nCompensation\nWe offer a competitive compensation of $180,000 - $220,000 per year, and a top-of-market equity component. A variety of factors are considered when determining the compensation, including a candidate’s professional experience. Final offer amounts may vary from the amounts listed.","description_format":"text","description_chars":6123,"description_truncated":false,"requirements":{"experience_years_min":5,"management_years_min":null,"team_size_min":null,"manages_managers":false,"education":null,"security_clearance":false,"languages":[]},"benefits":["Equity"],"hiring_locations":[],"hiring_excludes":[],"relocation_offered":false,"industries":["Penetration Testing","Artificial Intelligence","Horticulture","Agriculture AI"],"lifecycle":[{"event":"open","at":"2026-10-07T02:53:12Z"}],"visa":[],"liveness":{"score":63,"band":"ok","label":"Likely open","p_open":1,"p_active":0.632,"p_room":1,"age_days":1,"expected_fill_days":40,"reasons":["conf:0","stale_co","velocity","win:early"],"computed_at":"2026-10-08T05:49:30Z"},"pay":{"stated_usd_annual":220000,"is_top_pay":true},"html_url":"https://alion.io/job/iunu-offensive-security-engineer","json_url":"https://alion.io/job/iunu-offensive-security-engineer.json","meta":{"generated_at":"2026-10-09T03:28:09Z","cache_seconds":300,"methodology":"https://alion.io/methodology","terms":"https://alion.io/terms","contact":"https://alion.io/contact","api":"https://alion.io/developers","about":"Alion is a live layer of people, companies and AI agents: who they are, whether they are real and active right now, what they do and how to work with them, readable by people and by agents and paid per call.","catalog":"https://alion.io/catalog.json","usage":{"tier":"crawler","counted_by":"address","units_charged":1,"used_today":2152,"day_limit":5000,"remaining_today":2848,"minute_limit":60,"resets_at":"2026-10-10T00:00:00Z"}},"offers":[{"id":"company.slices","title":"One company in depth, by slice","status":"live","price":{"credits":0.02,"usd":0.002,"plus_per_slice":{"credits":0.05,"usd":0.005}},"unit":"per company, plus each slice with data","note":"the employer in depth","call":{"mcp_tool":"get_company","arguments":{"id":9250},"rest":"https://alion.io/mcp/rest/get_company?id=9250"},"human":"https://alion.io/catalog?offer=company.slices&for=job%2Fiunu-offensive-security-engineer"},{"id":"market.stats","title":"A market slice: pay, demand and time to fill","status":"live","price":{"credits":1,"usd":0.1},"unit":"per slice","note":"pay, demand and time to fill for this role and place","call":{"mcp_tool":"market_stats"},"human":"https://alion.io/catalog?offer=market.stats&for=job%2Fiunu-offensive-security-engineer"},{"id":"job.search","title":"Open jobs by role, technology, place, pay and visa","status":"live","price":{"credits":0.02,"usd":0.002},"unit":"per posting in a list","note":"similar open postings","call":{"mcp_tool":"search_jobs"},"human":"https://alion.io/catalog?offer=job.search&for=job%2Fiunu-offensive-security-engineer"},{"id":"company.verify","title":"Is this company real and active right now","status":"pilot","price":null,"unit":"per company","request":{"url":"https://alion.io/catalog/request","method":"POST","body":"{\"offer\": \"company.verify\", \"for\": \"job/iunu-offensive-security-engineer\", \"note\": \"what you need it for\"}"},"human":"https://alion.io/catalog?offer=company.verify&for=job%2Fiunu-offensive-security-engineer"}]}