Twenty

Principal Offensive Cyber Research Engineer

Twenty
Apply
11 months ago
Arlington, VA, USAStaff+

Base Salary

$192k - $455k/yr

Responsibilities

  • Define and drive the long-term technical vision and roadmap for offensive cyber research and capabilities.
  • Lead advanced research into adversary behaviors and next-generation offensive cyber techniques.
  • Architect and guide scalable adversary emulation and attack automation systems.
  • Establish company-wide standards, frameworks, and best practices for offensive tooling and engineering quality.
  • Lead technical governance, including architecture reviews, and guide complex technical decisions.
  • Mentor Staff and Senior engineers, create growth plans, and strengthen technical leadership.
  • Recruit, interview, and assess offensive cyber talent.
  • Advise executive leadership and senior government stakeholders on strategy, technical risk, and capability evolution.
  • Build strategic research partnerships across government, academia, and industry.

Requirements

  • 8–12 years of distinguished experience across offensive cyber operations, advanced research, and software development.
  • Senior technical leadership experience in government or military DNEA, Exploitation Analyst operations, elite red teams, or nation-state threat research.
  • Experience defining technical strategy and leading large-scale initiatives that delivered durable, high-impact capabilities.
  • Expert-level understanding of adversary behaviors and tactics, techniques, and procedures, including deep familiarity with MITRE ATT&CK.
  • Demonstrated judgment designing complex, scalable systems and establishing engineering standards.
  • Experience leading and mentoring senior engineers, setting expectations, conducting technical reviews, and developing talent.
  • Strong executive and customer communication skills, including briefing senior leaders and shaping decisions.
  • Eligibility to obtain a U.S. Government security clearance.
  • Preferred experience deploying offensive cyber capabilities into operational use with measurable mission impact.
  • Preferred thought leadership through publications, conference talks, or respected technical writing.
  • Preferred background in malware development, vulnerability research, or exploit engineering.
  • Advanced technical certifications such as OSEE, GXPN, or equivalent government credentials are preferred.
  • Preferred experience with multi-source intelligence fusion, cross-domain operational environments, acquisition and requirements processes, and capability development across multiple teams.

Benefits

  • Medical, dental, vision, life, AD&D, and disability plan options.
  • Paid parental leave for eligible full-time employees, including 12 weeks for birthing parents, 4 weeks for non-birthing parents, and 6 weeks for adoptive, foster, or intended parents through surrogacy.
  • Paid holidays and flexible PTO.
  • 401(k) with pre-tax and Roth options, plus HSA/FSA and dependent care FSA options.
  • Full-time, onsite role; some work may take place in a controlled environment.
  • The role is limited to U.S. citizens and requires eligibility to obtain a U.S. Government security clearance.
Twenty

About Twenty

51-200 employees
Contact me