What You'll Do
- Deliver on the most technically complex application, network, and adversary services engagements.
- Architect and build AI-powered platforms — including agentic systems — that automate reconnaissance, attack path discovery, exploitation, and reporting across the offensive lifecycle.
- Maintain a relentless focus on outputs that move the P&L: tooling that compounds across engagements and improves over time.
- Act as a hands-on senior leader in secure software development, model integration, and the engineering discipline required to build durable internal platforms.
- Act as a trusted advisor to our clients’ senior leadership on security matters, providing insights and recommendations to inform strategic decision-making.
- Collaborate with our sales and marketing teams to drive opportunity identification and rapidly grow the practice.
What You'll Bring
- 10+ years of experience in cybersecurity, with a focus on deeply technical application pentesting, network pentesting, and adversary services/red team engagements
- Deep understanding of application penetration testing and assessment tradecraft and methodologies (including browser-based, API, etc.)
- Deep understanding of on-prem and cloud AD/identity misconfigurations, attack paths, and approaches to exploit them
- Significant experience creating and delivering specialized testing and training for internal stakeholers and customers on the latest threat actor TTPs and capabilities, including advanced persistent threats (APTs), ransomware, and insider threats.
- Extensive experience conducting offensive services engagements across a variety of platforms and environments, including on-premise, cloud, and hybrid environments.
- Excellent communication and collaboration skills, with the ability to effectively convey complex technical concepts to both technical and non-technical audiences, including C-suite and board-level executives of Fortune 500 organizations.
- Has excellent technical capabilities in terms of performing complex penetration test / adversary services
- Has significant experience developing toolkits used for engagements in a way that both scale yet return ROI quickly
- Has significant experience with integrating agents or parts of the ML pipeline into offensive security work
- Has a strong ROI-centric focus approach, where the outputs of your projects directly impact the efficiency of humans doing the work to materially improve P&L outputs
- Ability to thrive in a fast-paced, dynamic environment, and adapt quickly to changing priorities and requirements.
- Extensive experience with golang and python, with the ability to work across different languages to integrate with ML pipelines for training, tuning, and inference of language models.
Coalfire Compensation & Benefits Highlights
The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about Coalfire and has not been reviewed or approved by Coalfire.
-
Leave & Time Off Breadth — Flexible paid time off and paid parental leave are prominently offered, with remote/WFH support enabling time away when workload allows.
-
Healthcare Strength — Comprehensive medical, dental, vision, wellness resources, and an EAP are part of the core package. Carrier coverage and plan options are regularly highlighted across employer materials.
-
Retirement Support — A company‑matched 401(k) is included alongside other financial and development perks. This retirement benefit is consistently featured across benefits overviews.
Coalfire Insights
Similar Jobs
What We Do
Coalfire is the cybersecurity advisor that helps private and public sector organizations avert threats, close gaps, and effectively manage risk. By providing independent and tailored advice, assessments, technical testing, and cyber engineering services, we help clients develop scalable programs that improve their security posture, achieve their business objectives, and fuel their continued success. Coalfire has been a cybersecurity thought leader for more than 20 years and has offices throughout the United States and Europe.






