374,221open jobs
9,681companies
51,330added this week
Browse all
Salary
$83k – $187k per year (Estimated)
Location
Remote/Hybrid (Washington, United States)
Seniority
Middle · 4+ years exp
Employment
Full-Time
Overview
Company
Impact
Profile match
Palantir Technologies is an American software company founded in 2003 that builds platforms for integrating, analysing and acting on large and fragmented datasets. Its Gotham platform serves defence, intelligence and law enforcement customers, Foundry brings the same data-operating model to commercial industries such as manufacturing, healthcare and energy, and the Artificial Intelligence Platform layers large language models over both. Headquartered in Denver, Colorado and listed on the New York Stock Exchange since 2020, the company is known for deploying forward engineers directly inside customer organisations.

The Role

Palantir's Offensive Security team probes our own products, infrastructure, and cloud environment the way a real attacker would. As an Offensive Security Engineer, you will test internal applications and infrastructure, chain findings into realistic attack paths, and work directly with the engineers responsible for the affected systems to get issues closed.

A growing part of the team’s work is also developing agentic offensive security tooling: LLM-driven systems that encode operator tradecraft and apply it continuously. You will help in the design of that tooling and prove it out on live assessments.

You will also help to coordinate third-party penetration testing engagements, scoping the work with specialized external firms, keeping assessments focused on the risks that matter, and turning their results into concrete remediation.

Core Responsibilities

  • Conduct hybrid web application penetration tests that combine source code review with runtime exploitation across our products and internal tooling.
  • Perform external network penetration tests against internet-facing infrastructure, identifying exposed services, misconfigurations, and paths to obtain an initial foothold.
  • Perform internal network and Active Directory security assessments, identifying privilege escalation paths, lateral movement opportunities, and misconfigurations.
  • Assess the security of cloud and containerized infrastructure, including identity, network, and workload configurations.
  • Collaborate with detection engineering to validate telemetry and detection coverage against real-world attack techniques uncovered during engagements.
  • Scope and manage third-party pentest engagements end-to-end, critically review results, and work cross-functionally to convert findings into prioritized, actionable remediation.
  • Partner with engineering to reproduce, prioritize, and verify fixes for the issues that are surfaced.
  • Design and build offensive security tooling and automation tailored to Palantir's stack.
  • Author clear, actionable write-ups and readouts for technical and non-technical stakeholders, translating findings into business risk and prioritized action.

What We Value

  • Demonstrated strength in web application penetration testing, with the ability to move fluidly between source code review and runtime testing.
  • Demonstrated strength in external and internal network penetration testing, from enumerating and exploiting internet-facing attack surface to establishing a foothold and expanding access once inside.
  • Hands-on experience with standard offensive security tooling, including Burp Suite, BloodHound/SharpHound, Certipy, Impacket, Responder, Pacu/ScoutSuite, Nuclei, etc.
  • A builder's instinct: comfortable writing code to automate testing, develop proof-of-concept exploits, or to fill gaps in existing tooling.
  • Working knowledge of how modern software is built and shipped, including CI/CD pipelines and infrastructure-as-code, and an eye for how those systems become attack paths of their own.
  • Working knowledge of cloud, container, and orchestration security principles, and an understanding of how common misconfigurations turn into real attack paths.
  • Working knowledge of chaining identity and cloud attack paths end to end, from Kerberos abuse, delegation misconfigurations, and ADCS/SCCM exploitation in large multi-domain Active Directory forests through to IMDS abuse, IAM privilege escalation, and SSRF-driven pivots into cloud control planes.
  • Offensive security certifications (e.g. OSCP, OSWE), or a track record in CTF competitions or bug bounty programs, are a plus but not required.

What We Require

  • 4+ years of professional experience in offensive security, penetration testing, red teaming, or a closely related field.
  • Willingness and eligibility to obtain a U.S. security clearance preferred.
  • Proficiency in at least one scripting or programming language (e.g. Python, Go) sufficient to build and adapt your own testing tooling.
  • Demonstrated experience assessing the security of cloud (AWS, Azure, or GCP) and containerized (Docker, Kubernetes) environments.
  • Excellent organizational instincts, with the ability to keep multiple streams of work moving in parallel and to track each through to verified completion.
  • Clear written and verbal communication, including the ability to explain a vulnerability, its impact, and its fix to the engineers who need to act on it.
Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
374,221 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Similar stack
Same company
Washington
$131k – $237k per year • In office • Full-Time • 4+ years exp • Bachelor's Degree • Chantilly • Columbia
Bash
Python
TypeScript
JavaScript
Databases
PostgreSQL
Frontend
Angular
DevOps
Ansible
ArgoCD
AWS
Azure
buildah
CI/CD
Docker
Docker Swarm
FluxCD
GitLab
GitLab CI
Grafana
Helm
Kubernetes
Loki
Prometheus
Terraform
Twelve-Factor App
Podman
Apply
$108k – $195k per year • In office • Full-Time • 8+ years exp • Orlando
Bash
Python
DevOps
Ansible
AWS
Azure
CI/CD
Configuration Management
Docker
Git
GitLab
Kubernetes
OpenShift
Red Hat
Apply
$70k – $126k per year • In office • Full-Time • 3+ years exp • United States
Python
DevOps
Azure
Azure DevOps
Bitbucket
CI/CD
Docker
GitHub
GitLab
GitLab CI
Jenkins
Kubernetes
Cybersecurity
SonarQube
QA
Postman
Robot Framework
Selenium
Apply
$58k – $105k per year • In office • Full-Time • United States
JavaScript
Python
DevOps
Bitbucket
CI/CD
GitHub
GitLab
GitLab CI
Jenkins
Cybersecurity
SonarQube
QA
Robot Framework
Apply
$108k – $195k per year • In office • Full-Time • 8+ years exp • Bachelor's Degree • United States
Python
AI/ML
AI Agents
Amazon SageMaker
AWS Bedrock
AWS Bedrock AgentCore
LLM
DevOps
AWS
CI/CD
CloudFormation
Docker
IAM
Kubernetes
Platform Engineering
Terraform
Cybersecurity
FedRAMP
Apply
$70k – $212k per year (Estimated) • In office • Full-Time • Amsterdam
C++
JavaScript
Python
TypeScript
Apply
$30k – $106k per year (Estimated) • In office • Full-Time • 1+ year exp • Stockholm
C++
JavaScript
Python
TypeScript
Apply
$45k – $102k per year (Estimated) • In office • Full-Time • Vilnius
C++
JavaScript
Python
TypeScript
Apply
In office • Abu Dhabi
C++
JavaScript
Python
TypeScript
Apply
$147k – $264k per year (Estimated) • Remote/Hybrid • Full-Time • 4+ years exp • Bachelor's Degree • New York
C++
Go
Java
DevOps
AWS
Azure
Docker
Kubernetes
Self-Healing
Terraform
Apply
$149k – $224k per year • In office • Full-Time • 5+ years exp • Master's Degree • Washington
Go
Java
Node JS
Python
Scala
SQL
Apex
JavaScript
Apex
MuleSoft
Databases
Apache Kafka
PostgreSQL
AI/ML
Agentforce
AI Agents
Frontend
GraphQL
DevOps
API Gateway
AWS
Azure
CI/CD
Docker
GCP
Git
Kubernetes
Platform Engineering
Marketing
Salesforce
Apply
$173k – $260k per year • In office • Full-Time • PhD • San Francisco • Atlanta • Washington
Go
Java
Python
Databases
ElasticSearch
AI/ML
Agentforce
AI Agents
DevOps
AWS
Kibana
Logstash
Prometheus
Management
Slack
Marketing
Salesforce
Apply
$104k – $202k per year (Estimated) • Equity • In office • 10+ years exp • Washington
C#
Go
JavaScript
Node JS
Python
Ruby
SQL
Databases
MS SQL
PostgreSQL
DevOps
AWS
Azure
GCP
Apply
$98k – $163k per year • In office • Full-Time • 2+ years exp • Bachelor's Degree • Washington
Python
SQL
Databases
Databricks
DevOps
AWS
Azure
Analytics
Power BI
Tableau
Management
Power Apps
Power Automate
Apply
$172k – $237k per year • Remote • Full-Time • 10+ years exp • PhD • Charlotte • Louisville • Tampa • Fort Lauderdale • Washington
Databases
Databricks
Snowflake
AI/ML
Claude
Claude Code
Copilot
AI Agents
DevOps
AWS
Azure
GCP
Cybersecurity
HIPAA
Apply
See all jobs
This is one of many
374,221 more open roles from verified company boards, updated every day.