368,746open jobs
9,444companies
47,506added this week
Browse all
Salary
$94k – $213k per year (Estimated)
Location
Remote/Hybrid (New York, United States)
Seniority
Middle · 4+ years exp
Employment
Full-Time
Overview
Company
Impact
Profile match
Palantir Technologies is an American software company founded in 2003 that builds platforms for integrating, analysing and acting on large and fragmented datasets. Its Gotham platform serves defence, intelligence and law enforcement customers, Foundry brings the same data-operating model to commercial industries such as manufacturing, healthcare and energy, and the Artificial Intelligence Platform layers large language models over both. Headquartered in Denver, Colorado and listed on the New York Stock Exchange since 2020, the company is known for deploying forward engineers directly inside customer organisations.

The Role

Palantir's Offensive Security team probes our own products, infrastructure, and cloud environment the way a real attacker would. As an Offensive Security Engineer, you will test internal applications and infrastructure, chain findings into realistic attack paths, and work directly with the engineers responsible for the affected systems to get issues closed.

A growing part of the team’s work is also developing agentic offensive security tooling: LLM-driven systems that encode operator tradecraft and apply it continuously. You will help in the design of that tooling and prove it out on live assessments.

You will also help to coordinate third-party penetration testing engagements, scoping the work with specialized external firms, keeping assessments focused on the risks that matter, and turning their results into concrete remediation.

Core Responsibilities

  • Conduct hybrid web application penetration tests that combine source code review with runtime exploitation across our products and internal tooling.
  • Perform external network penetration tests against internet-facing infrastructure, identifying exposed services, misconfigurations, and paths to obtain an initial foothold.
  • Perform internal network and Active Directory security assessments, identifying privilege escalation paths, lateral movement opportunities, and misconfigurations.
  • Assess the security of cloud and containerized infrastructure, including identity, network, and workload configurations.
  • Collaborate with detection engineering to validate telemetry and detection coverage against real-world attack techniques uncovered during engagements.
  • Scope and manage third-party pentest engagements end-to-end, critically review results, and work cross-functionally to convert findings into prioritized, actionable remediation.
  • Partner with engineering to reproduce, prioritize, and verify fixes for the issues that are surfaced.
  • Design and build offensive security tooling and automation tailored to Palantir's stack.
  • Author clear, actionable write-ups and readouts for technical and non-technical stakeholders, translating findings into business risk and prioritized action.

What We Value

  • Demonstrated strength in web application penetration testing, with the ability to move fluidly between source code review and runtime testing.
  • Demonstrated strength in external and internal network penetration testing, from enumerating and exploiting internet-facing attack surface to establishing a foothold and expanding access once inside.
  • Hands-on experience with standard offensive security tooling, including Burp Suite, BloodHound/SharpHound, Certipy, Impacket, Responder, Pacu/ScoutSuite, Nuclei, etc.
  • A builder's instinct: comfortable writing code to automate testing, develop proof-of-concept exploits, or to fill gaps in existing tooling.
  • Working knowledge of how modern software is built and shipped, including CI/CD pipelines and infrastructure-as-code, and an eye for how those systems become attack paths of their own.
  • Working knowledge of cloud, container, and orchestration security principles, and an understanding of how common misconfigurations turn into real attack paths.
  • Working knowledge of chaining identity and cloud attack paths end to end, from Kerberos abuse, delegation misconfigurations, and ADCS/SCCM exploitation in large multi-domain Active Directory forests through to IMDS abuse, IAM privilege escalation, and SSRF-driven pivots into cloud control planes.
  • Offensive security certifications (e.g. OSCP, OSWE), or a track record in CTF competitions or bug bounty programs, are a plus but not required.

What We Require

  • 4+ years of professional experience in offensive security, penetration testing, red teaming, or a closely related field.
  • Willingness and eligibility to obtain a U.S. security clearance preferred.
  • Proficiency in at least one scripting or programming language (e.g. Python, Go) sufficient to build and adapt your own testing tooling.
  • Demonstrated experience assessing the security of cloud (AWS, Azure, or GCP) and containerized (Docker, Kubernetes) environments.
  • Excellent organizational instincts, with the ability to keep multiple streams of work moving in parallel and to track each through to verified completion.
  • Clear written and verbal communication, including the ability to explain a vulnerability, its impact, and its fix to the engineers who need to act on it.
Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
368,746 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Similar stack
Same company
New York
$20k – $49k per year (Estimated) • Remote • Full-Time • Bachelor's Degree
Python
Ruby
SQL
Databases
Amazon Neptune
Neo4j
AI/ML
Hallucination
LangChain
LangGraph
LLM
Model Context Protocol
Spark
AI Agents
LLM Guardrails
DevOps
Ansible
AWS
Azure
CI/CD
Docker
GCP
GitHub Actions
GitLab CI
Jenkins
Kubernetes
Rest API
Terraform
GitHub
GitLab
QA
Playwright
Postman
Selenium
Swagger
Apply
$94k – $115k per year • Remote • Full-Time • 5+ years exp
JavaScript
TypeScript
Frontend
GraphQL
React.js
Mobile
React Native
State Management
DevOps
CI/CD
Apply
$21k – $118k per year (Estimated) • Remote • Full-Time
Dart
Dart
Dio
Mobile
Clean Architecture
Crashlytics
Firebase
State Management
DevOps
Bitbucket
CI/CD
Jenkins
GitHub
Cybersecurity
SonarQube
Management
Jira
Apply
$80k – $169k per year (Estimated) • Equity • Remote • Full-Time • 5+ years exp
Go
Python
Databases
PostgreSQL
RabbitMQ
DevOps
Alertmanager
Ansible
Atlantis
Backstage
Chef
CI/CD
containerd
Docker
GCP
GitOps
Google GKE
Grafana
Helm
Incident Management
Kubernetes
Loki
Platform Engineering
Prometheus
Puppet
Terraform
Thanos
IAM
Cybersecurity
Checkov
SOC 2
Least Privilege
Apply
$112k – $217k per year (Estimated) • Equity • Remote • Full-Time • 5+ years exp
Go
Python
Databases
PostgreSQL
RabbitMQ
DevOps
Alertmanager
Ansible
Atlantis
Backstage
Chef
CI/CD
containerd
Docker
GCP
GitOps
Google GKE
Grafana
Helm
Incident Management
Kubernetes
Loki
Platform Engineering
Prometheus
Puppet
Terraform
Thanos
IAM
Cybersecurity
Checkov
SOC 2
Least Privilege
Apply
$83k – $187k per year (Estimated) • Remote/Hybrid • Full-Time • 4+ years exp • Washington
Python
AI/ML
LLM
AI Agents
Red Teaming
DevOps
AWS
Azure
CI/CD
Docker
GCP
Kubernetes
IAM
Cybersecurity
BloodHound
Burp Suite
Certipy
Impacket
Nuclei
Pacu
ScoutSuite
Apply
$145k – $200k per year • Equity • Remote/Hybrid • Full-Time • 4+ years exp • Washington
Python
AI/ML
LLM
AI Agents
Red Teaming
DevOps
AWS
Azure
CI/CD
Docker
GCP
Kubernetes
IAM
Cybersecurity
BloodHound
Burp Suite
Certipy
Impacket
Nuclei
Pacu
ScoutSuite
Apply
$85k – $172k per year (Estimated) • Remote/Hybrid • Full-Time • 2+ years exp • Huntsville
Apply
$83k – $169k per year (Estimated) • In office • Full-Time • 2+ years exp • Washington
Apply
$95k – $191k per year (Estimated) • In office • Full-Time • 2+ years exp • New York
Apply
$197k – $374k per year (Estimated) • In office • Full-Time • 8+ years exp • PhD • New York
AI/ML
AI Agents
Claude
LangChain
OpenAI
Vertex AI
Management
n8n
Zapier
Apply
Senior Data Analyst 2 hours ago
$86k – $171k per year (Estimated) • Equity • Remote • Full-Time • 5+ years exp • Bachelor's Degree • New York
Python
SQL
Databases
Snowflake
AI/ML
Anomaly Detection
Claude
Copilot
Cursor
dbt
Edge AI
DevOps
AWS
Analytics
Tableau
Marketing
Salesforce
Apply
$96k – $134k per year • Remote/Hybrid • Full-Time • Bachelor's Degree • New York
JavaScript
Swift
TypeScript
Java
Java
Spring Framework
Databases
Apache Kafka
PostgreSQL
AI/ML
AI Agents
Claude
Copilot
Fine-tuning
Flink
LangChain
LangGraph
Llama
LlamaIndex
Prompt Engineering
PyTorch
RAG
TensorFlow
Transformers
Devin
Hugging Face
OpenAI
Frontend
Angular
React.js
Mobile
MVC
DevOps
AWS
CI/CD
Docker
Kubernetes
OpenShift
Splunk
Vector
GitHub
Analytics
Tableau
Apply
$150k – $180k per year • In office • Full-Time • PhD • New York
Python
AI/ML
Anthropic
Anthropic SDK
Computer Vision
Fine-tuning
LangChain
LlamaIndex
LLM
OpenAI
OpenAI SDK
RAG
DevOps
AWS
Azure
GCP
Apply
Senior AI Architect 3 hours ago
$131k – $136k per year • In office • Full-Time • 4+ years exp • Master's Degree • New York
Python
Databases
Databricks
AI/ML
Anthropic
Computer Vision
EU AI Act
LLMOps
OpenAI
DevOps
AWS
Azure
GCP
Terraform
Cybersecurity
GDPR
Apply
See all jobs
This is one of many
368,746 more open roles from verified company boards, updated every day.