Apply

Ready to go for it?

AI Apply speeds things up—apply directly if you prefer.

FREE ACCESS
5,000–10,000 jobs/day
JobTailor Logo

See all jobs on JobTailor

Search thousands of fresh jobs every day.

Discover
  • Fresh listings
  • Fast filters
  • No subscription required
Create a free account and start exploring right away.
TryHackMe

Offensive Security Engineer

TryHackMe

Offensive Security Engineer developing AI-powered pentesting solutions for NoScope team at TryHackMe. Collaborating with global team members and contributing to effective public security research.

Posted 5/8/2026full-timeRemote • 🌎 Anywhere in the WorldMid-LevelSeniorWebsite

Tech Stack

Tools & technologies
JavaScriptPython

About the role

Key responsibilities & impact
  • Work directly with the AI agent system, run it against targets, understand where it performs well and where it falls short, and provide structured feedback to improve coverage and accuracy
  • Validate, reproduce, and escalate findings, writing clear and reliable proof-of-concepts that demonstrate real-world exploitability
  • Coordinate disclosures across OSS projects and bug bounty platforms, managing timelines and communication effectively
  • Contribute to public security research and technical content that is relevant and valuable to the security community
  • Research emerging vulnerability classes and attack techniques, and translate those insights into improvements in how the system tests
  • Build and maintain custom tooling where needed, including automation scripts, payload lists, and testing harnesses tailored to specific targets

Requirements

What you’ll need
  • 3-5+ years of professional offensive security experience in penetration testing, bug bounty, or red teaming
  • Strong understanding of web application vulnerabilities such as SQLi, XSS, SSRF, IDOR, SSTI, business logic flaws, authentication bypasses, and their real-world nuances
  • Comfortable reading and writing code in Python, Bash, and JavaScript, with the ability to build custom tooling when needed
  • Experience with public disclosures or CVEs
  • Clear and effective written communication, with the ability to explain complex findings to both engineers and security teams
  • Experience working with bug bounty platforms and responsible disclosure processes
  • Ability to go beyond automated tools and reason about systems, attack paths, and edge cases

Benefits

Comp & perks
  • Competitive salary
  • Fully remote - work from anywhere with a global team
  • High trust and autonomy from day one

ATS Keywords

✓ Tailor your resume
Applicant Tracking System Keywords

Tip: use these terms in your resume and cover letter to boost ATS matches.

Hard Skills & Tools
penetration testingbug bountyred teamingweb application vulnerabilitiesSQLiXSSSSRFIDORSSTIPython
Soft Skills
clear communicationeffective communicationexplain complex findingscoordinationtimelines management