Staff Security Engineer, Offensive Security

Intuit is the global financial technology platform that powers prosperity for the people and communities we serve. With approximately 100 million customers worldwide using products such as TurboTax, Credit Karma, QuickBooks, and Mailchimp, we believe that everyone should have the opportunity to prosper.
$177,000 - $256,500
Security
Staff Software Engineer
Hybrid
5,000+ Employees
5+ years of experience
Cybersecurity · Finance

Description For Staff Security Engineer, Offensive Security

Join one of the most dynamic cybersecurity teams in the industry to develop offensive cyber security tooling and help secure Intuit's attack surface! You will leverage your considerable security research and offensive security skills to perform web-based exploit development, automated security tool onboarding, and vulnerability research. Come showcase your security expertise at one of the largest SaaS cloud deployments in the world, keeping our millions of customers safe from adversaries, and performing the best work of your life!

Responsibilities: • Serve as a core security engineer and subject matter expert for exploit development • Collaborate with our other offensive security teams to drive the end-to-end support for deployed automated exploits to include tracking and maintenance • Capture exploit and tool requirements and use cases, stay abreast of industry best practices, share knowledge and experience, and apply cutting edge technologies and approaches • Assess vulnerabilities on attack surface and develop proof-of-concept for exploits novel offensive security TTPs • Assist with the analysis of operational analytics • Be comfortable with hands-on troubleshooting, coding, and talking with stakeholders

Qualifications: • 5+ years of experience in cybersecurity • 3+ years of offensive security related experience • Expertise in the development of OWASP Top 10 related exploits, recon methods, and tools • Deep understanding of web, cloud, and product vulnerability research • Deep understanding of bug bounty methodologies and CVE research (submissions a huge plus!) • Understanding of MITRE ATT&CK and related adversary frameworks • Experience with containerization technologies, such as Docker and Kubernetes • Experience with coding and scripting languages (Python, Bash, Javascript) • Experience with security automation techniques and solutions • Experience with AWS, such as EC2, S3, Lambdas, CloudFormation, and Athena • Understanding of Agile and Scrum SDLC • Motivation to deeply understand security issues and collaborate on solutions

Intuit provides a competitive compensation package with a strong pay for performance rewards approach. The expected base pay range for this position is Bay Area California $189,500 - 256,500, Southern California $177,000 - 239,500. This position will be eligible for a cash bonus, equity rewards and benefits, in accordance with our applicable plans and programs.

Last updated 2 months ago

Responsibilities For Staff Security Engineer, Offensive Security

  • Serve as a core security engineer and subject matter expert for exploit development
  • Collaborate with offensive security teams to support deployed automated exploits
  • Capture exploit and tool requirements, stay updated on industry best practices
  • Assess vulnerabilities and develop proof-of-concept exploits
  • Assist with operational analytics
  • Perform hands-on troubleshooting, coding, and stakeholder communication

Requirements For Staff Security Engineer, Offensive Security

Python
JavaScript
Kubernetes
  • 5+ years of experience in cybersecurity
  • 3+ years of offensive security related experience
  • Expertise in OWASP Top 10 related exploits, recon methods, and tools
  • Deep understanding of web, cloud, and product vulnerability research
  • Understanding of bug bounty methodologies and CVE research
  • Knowledge of MITRE ATT&CK and related adversary frameworks
  • Experience with containerization technologies (Docker, Kubernetes)
  • Experience with coding and scripting languages (Python, Bash, JavaScript)
  • Experience with security automation techniques and solutions
  • Experience with AWS (EC2, S3, Lambdas, CloudFormation, Athena)
  • Understanding of Agile and Scrum SDLC

Benefits For Staff Security Engineer, Offensive Security

Equity
Medical Insurance
Dental Insurance
Vision Insurance
401k
Parental Leave
  • Equity
  • Medical Insurance
  • Dental Insurance
  • Vision Insurance
  • 401k
  • Parental Leave

Interested in this job?

Jobs Related To Intuit Staff Security Engineer, Offensive Security

Staff Security Researcher/Engineer

Senior security role focused on identifying and preventing fraud vulnerabilities across Intuit's product ecosystem through manual and automated testing.

Manager 3, Threat Detection Engineering

Lead Threat Detection Engineering team at Intuit, focusing on security operations, detection engineering, and incident response for global financial technology platform.

Red Team Security Engineer- Staff

Staff-level Red Team Security Engineer role at Intuit focusing on offensive security, exploit development, and cloud security.

Staff Security Engineer

Senior security engineering role at Intuit focusing on application security, threat modeling, and secure development practices for financial technology products.

Staff Software Engineer

Staff Software Engineer role at Intuit focusing on security engineering and fraud prevention for global financial technology platform.