Horizon3 AI

Staff Attack Engineer, OCI

Horizon3 AI
Apply
3 months ago
Remote, United StatesStaff+

Base Salary

$247k - $275k/yr

Responsibilities

  • Research Oracle Cloud Infrastructure services and identify offensive security opportunities.
  • Develop attack techniques, attack paths, and security assessments targeting OCI environments.
  • Build and maintain production-quality Python code for NodeZero attack capabilities.
  • Conduct offensive security research against OCI compute, networking, storage, databases, IAM, Kubernetes, and cloud-native services.
  • Analyze real-world OCI deployments to identify attack vectors and customer risk patterns.
  • Collaborate with software engineers, attack engineers, and offensive security subject matter experts to bring capabilities into production.
  • Document research findings, attack methodologies, and technical design decisions.
  • Prioritize future OCI attack coverage based on customer demand and emerging threats.
  • Contribute to the technical direction of NodeZero’s cloud attack capabilities.

Requirements

  • Hands-on offensive security experience targeting Oracle Cloud Infrastructure (OCI) is required.
  • Strong understanding of cloud attack paths and cloud-native security concepts is required.
  • Experience with web application testing, cloud penetration testing, external assessments, or red-team operations is required.
  • Experience writing Python code for automation, tooling, or offensive security workflows is required.
  • At least 10 years of professional software engineering and/or offensive security experience is required.
  • Ability to independently research unfamiliar technologies and become an expert quickly is required.
  • Strong written communication and technical documentation skills are required.
  • Passion for building products, not just finding vulnerabilities, is required.
  • Experience attacking OCI Kubernetes Engine (OKE) is preferred.
  • Experience with cloud privilege escalation, identity attacks, offensive security tooling, production security research integration, vulnerability management, and attack path analysis is preferred.
  • Familiarity with AWS, Azure, or GCP offensive security is preferred.

Benefits

  • Fully remote work arrangement with up to 10% travel required.
  • Equity package in the form of stock options for full-time roles.
  • Health, vision, and dental insurance for employees and families.
  • Flexible vacation policy and generous parental leave.
  • Growth opportunities and an inclusive, collaborative work culture.
Horizon3 AI

About Horizon3 AI

501-1,000 employees

Horizon3 AI builds NodeZero, a proactive security platform that autonomously performs penetration testing and validates attack paths across on‑prem, cloud, and hybrid environments. The company sells its software by subscription to security and IT teams at enterprises and government agencies, helping prioritize and verify fixes. Founded in 2019 and headquartered in San Francisco, it is privately held and serves customers across regulated industries and the public sector.

Contact me