Degreed is an upskilling platform that promotes lifelong learning and innovation.
The Offensive Security Engineer will help Degreed stay ahead of evolving threats by leading red team engagements, penetration tests, and threat simulations.
This role involves uncovering and validating vulnerabilities across cloud, application, and infrastructure environments.
The engineer will collaborate with security operations, detection, and engineering teams to translate findings into improvements that strengthen defenses.
Key responsibilities include planning and executing offensive assessments, validating vulnerabilities, and advising on security hardening.
Requirements:
Candidates must have 3–5 years of experience in offensive security, penetration testing, or red teaming roles.
A demonstrated ability to ethically exploit systems and communicate technical risks to engineering and business teams is required.
Hands-on experience with offensive tools such as Cobalt Strike, Metasploit, Burp Suite, or custom-built tools is necessary.
A solid understanding of attack chains across cloud (Azure/AWS), infrastructure, endpoints, and APIs is essential.
Familiarity with MITRE ATT&CK, OWASP Top 10, and post-exploitation techniques is required.
Nice to have certifications include OSCP, CRTO, GPEN, or similar red team/pentest credentials.
Experience with scripting and automation (e.g., PowerShell, Python) is preferred.
Exposure to threat detection engineering and EDR/XDR technologies (e.g., Defender, SentinelOne, Splunk) is a plus.
Participation in bug bounty programs, CTF competitions, or community red teaming engagements is desirable.
Knowledge of secure software development practices and DevSecOps concepts is beneficial.
Benefits:
Degreed offers a comprehensive benefits package designed to support employee well-being, growth, and success.
The total pay range for this role is $150,000 - $185,000, with actual compensation based on factors unique to each candidate.
Employees can expect flexible work arrangements, including fully remote or hybrid models.
The company fosters a culture of diversity and inclusion, encouraging collaboration and continuous skill development.