Horizon3.ai

Senior Attack Engineer, Offensive Tooling

Horizon3.ai

full-time

Posted on:

Location Type: Remote

Location: United States

Visit company website

Explore more

AI Apply
Apply

Salary

💰 $180,000 - $240,000 per year

Job Level

About the role

  • Develop and maintain a multi-platform implant written in Rust (Windows, Linux, macOS; x86/x64/ARM)
  • Build and extend C2 server infrastructure, task dispatch, and communications protocols
  • Implement post-exploitation modules: credential access, process injection, privilege escalation, lateral movement
  • Research and implement AV/EDR evasion techniques to keep tooling operational against modern defenses
  • Design and build network pivoting and tunneling capabilities
  • Write integration tests that exercise tooling against real targets across multiple OS and architecture combinations

Requirements

  • Strong proficiency in Rust, including unsafe code, FFI, async runtimes (tokio), and cross-compilation
  • Deep knowledge of Windows internals: Win32 API, process injection, memory manipulation, DLL loading, PE format
  • Experience with credential access techniques (DPAPI, LSASS, browser credential stores)
  • Familiarity with Linux internals: libc, process enumeration
  • Understanding of networking at the packet level (TCP/IP, ICMP, custom binary protocols)
  • Demonstrated experience building or maintaining C2 / implant software (custom or open-source)
  • Background in red team operations or offensive tool development
  • Proficiency in Python for developing and maintaining attack automation and integration
  • Experience developing production safe, high quality code deployed to end user machines
Benefits
  • Health, vision & dental insurance for you and your family
  • Flexible vacation policy
  • Generous parental leave
  • Competitive salary
  • Equity package in the form of stock options
Applicant Tracking System Keywords

Tip: use these terms in your resume and cover letter to boost ATS matches.

Hard Skills & Tools
Rustunsafe codeFFIasync runtimescross-compilationWindows internalsWin32 APIprocess injectionmemory manipulationcredential access techniques
Soft Skills
researchproblem-solvingcommunicationteam collaborationattention to detail