Talent.com
Senior Staff Engineer, Offensive Security (REMOTE)

Senior Staff Engineer, Offensive Security (REMOTE)

GEICOChicago, IL, United States
30+ days ago
Job type
  • Full-time
  • Remote
Job description

Overview

Senior Staff Engineer, Offensive Security (REMOTE) at GEICO. This role focuses on penetration testing, adversary simulation, and building a secure, compliant security program across the organization.

Responsibilities

  • Strategic and tactical leadership for penetration testing (red teaming) and collaboration with defensive security teams (purple teaming).
  • Conduct practical security assessments of applications (web, mobile, APIs, AI products) against OWASP Top 10; work with the Application Security team to improve automated capabilities.
  • Design and execute advanced threat emulation scenarios, including physical, social, and digital attack vectors.
  • Ensure penetration testing activities meet security, business, and compliance objectives.
  • Guide risk assessment, prioritization, reporting, and remediation of vulnerabilities through automation.
  • Collaborate with Blue Teams, Threat Intelligence, and Risk Management to ensure comprehensive attack coverage.
  • Ensure operations align with industry regulations and standards (e.g., NIST, PCI DSS, NYDFS).
  • Champion continuous improvement in penetration testing, adversary simulation techniques, tools, and methodologies.
  • Represent Offensive Security in senior leadership and audit discussions as a subject matter expert.
  • Provide technical leadership for 3rd party penetration testing programs, overseeing vendor testing activities.

Required Qualifications

  • Mastery of vulnerability discovery and exploitation across applications, networks, and cloud using tools (e.g., Burp Suite, Metasploit) and custom scripts (Python, PowerShell).
  • Advanced understanding of OWASP, MITRE ATT&CK, SDLC, threat modeling, red / purple teaming, and attack path development.
  • Hands-on experience with tools like Cobalt Strike, Mythic, BloodHound, AutoSploit.
  • Relevant professional security certifications (e.g., GIAC or equivalent).
  • Proven ability to deliver results through automation and best practices.
  • Experience delivering business outcomes for regulatory and compliance obligations.
  • Ability to coach and mentor offensive security engineers across functions (penetration testing, red team, purple team).
  • Preferred Qualifications

  • OSCP, OSCE, CRTO, CISSP, or relevant Red Team / offensive security certifications.
  • GIAC Penetration Testing and Red Team certifications (GCTI, GPEN, GXPN) a plus.
  • Broad knowledge of security across OSI layers, networking, firewalls, databases, forensics, scripting, and programming.
  • Advanced knowledge of Linux / Mac / Windows, AWS / Azure, cloud-native resources (containers, Kubernetes, microservices, serverless).
  • Experience reversing mobile applications, including anti-emulation and obfuscation protections.
  • Required Experience

  • 10+ years in an engineering-focused role; 8+ years in offensive security (penetration testing, red team, purple team).
  • 5+ years hands-on experience in penetration testing, red teaming, and purple teaming activities.
  • 4+ years of experience with Azure, AWS, GCP or other clouds.
  • Senior-level influence on security direction; experience applying security controls to meet third-party attestations (PCI, NYDFS, SOX, etc.).
  • Education

  • Bachelor’s degree in Cybersecurity, Computer Science or a related field.
  • Annual Salary

    $120,000.00 - $260,000.00

    The above range is a general guideline. The final offer will consider experience, scope, location, and market factors. GEICO does not sponsor new employment authorization for this position at this time.

    The GEICO Pledge

    Great Company : GEICO helps customers through life’s twists and turns with a mission to protect people when they need it most, and we stay ahead through ongoing innovation.

    Great Careers : Opportunities for learning, growth, and development, with mentorship and coaching from leaders at all levels.

    Great Culture : An inclusive culture rooted in integrity, action, and a shared purpose, with recognition programs and a focus on belonging.

    Great Rewards : Comprehensive benefits and compensation designed to support well-being and financial security, with flexible work options.

  • Comprehensive Total Rewards tailored to you and your family.
  • Competitive compensation, 401K with 6% match, incentives, and tuition assistance.
  • Mental health support, fertility and adoption assistance.
  • GEICO Flex program allowing up to four weeks of remote work per year.
  • Equal Employment Opportunity

    GEICO provides fair and equal employment opportunity for all associates and applicants regardless of race, color, religious creed, national origin, age, gender, pregnancy, sexual orientation, gender identity, marital status, disability or genetic information, in compliance with law. We hire based on qualifications and provide reasonable accommodations where needed.

    Seniority level : Mid-Senior level

    Employment type : Full-time

    Job functions : Finance and Sales; Industries : Insurance

    #J-18808-Ljbffr

    Create a job alert for this search

    Staff Security Engineer • Chicago, IL, United States

    Related jobs
    • Promoted
    Senior Product Security Offensive Engineer

    Senior Product Security Offensive Engineer

    iManageChicago, IL, US
    Full-time
    We offer a flexible working policy that supports a healthy balance between personal and professional well-being.This role requires in-office presence on Tuesdays & Thursdays to collaborate, con...Show moreLast updated: 30+ days ago
    • Promoted
    FIPS 140 Security Engineer

    FIPS 140 Security Engineer

    VirtualVocationsLincolnwood, Illinois, United States
    Full-time
    A company is looking for a FIPS 140 Security Engineer to support national defense through IT security projects.Key Responsibilities Work on varied FIPS 140 validation projects including general s...Show moreLast updated: 13 days ago
    • Promoted
    Security Engineer

    Security Engineer

    RAPPChicago, IL, United States
    Full-time
    RAPP Chicago is looking for a Security Engineer to join our award-winning Technology team.We are RAPP - world leaders in activating growth with precision and empathy at scale.As a global, next-gene...Show moreLast updated: 9 days ago
    • Promoted
    Senior Application Security Engineer

    Senior Application Security Engineer

    VirtualVocationsLincolnwood, Illinois, United States
    Full-time
    A company is looking for a Senior Application Security Engineer.Key Responsibilities Develop and implement technical security policies and procedures, and perform security measures Scan and test...Show moreLast updated: 30+ days ago
    • Promoted
    Senior Security Engineer (Remote)

    Senior Security Engineer (Remote)

    AbbVieNorth Chicago, IL, US
    Remote
    Full-time
    AbbVie's mission is to discover and deliver innovative medicines and solutions that solve serious health issues today and address the medical challenges of tomorrow. We strive to have a remarkab...Show moreLast updated: 30+ days ago
    Senior Information Security Engineer 2

    Senior Information Security Engineer 2

    Frontline EducationNaperville, IL, US
    Full-time
    Senior Information Security Engineer 2 .Remote or Hybrid to Wayne, PA; Naperville, IL.We are seeking a Senior Information Security Engineer 2 for an exciting opportunity to be part of a small secur...Show moreLast updated: 30+ days ago
    • Promoted
    Advanced Security Engineer - Cyber Security

    Advanced Security Engineer - Cyber Security

    RelativityChicago, IL, United States
    Full-time
    As an Advanced Cyber Security Engineer, you will ensure the security of Relativity's network and infrastructure.In this role, the main responsibilities will be to investigate and analyze emerging t...Show moreLast updated: 30+ days ago
    • Promoted
    Sr. Security Engineer - Hybrid Opportunity (Based in West Des Moines, IA)

    Sr. Security Engineer - Hybrid Opportunity (Based in West Des Moines, IA)

    The Mutual GroupChicago, IL, US
    Full-time
    We’re looking for a seasoned Senior Security Engineer with 5–10 years of hands-on experience in cybersecurity, with a strong focus on AWS cloud environments. This role demands a deep com...Show moreLast updated: 8 days ago
    • Promoted
    Senior Tanium Security Engineer

    Senior Tanium Security Engineer

    VirtualVocationsGary, Indiana, United States
    Full-time
    A company is looking for a Senior Tanium Security & Asset Visibility Engineer.Key Responsibilities Implement cybersecurity and IT asset lifecycle management strategies Protect digital networks, ...Show moreLast updated: 2 days ago
    • Promoted
    Senior Staff Engineer, Risk

    Senior Staff Engineer, Risk

    WEX Inc.Chicago, IL, United States
    Full-time
    WEX is a global commerce platform and payments technology leader that helps businesses solve operational complexities such as employee benefits, fleet management, mobilization, and streamlined paym...Show moreLast updated: 30+ days ago
    • Promoted
    Senior Enterprise Security Engineer

    Senior Enterprise Security Engineer

    FlexportChicago, IL, US
    Full-time
    At Flexport, we believe global trade can move the human race forward.That's why it's our mission to make global commerce so easy there will be more of it. We're shaping the future of a $...Show moreLast updated: 30+ days ago
    • Promoted
    Security Engineer

    Security Engineer

    VirtualVocationsNaperville, Illinois, United States
    Full-time
    A company is looking for a Security Engineer to join their cybersecurity team.Key Responsibilities Administer and maintain identity providers and manage endpoint protection platforms Monitor and...Show moreLast updated: 30+ days ago
    • Promoted
    Security Engineer (Remote)

    Security Engineer (Remote)

    AbbVieNorth Chicago, IL, US
    Remote
    Full-time
    AbbVie's mission is to discover and deliver innovative medicines and solutions that solve serious health issues today and address the medical challenges of tomorrow. We strive to have a remarkab...Show moreLast updated: 30+ days ago
    • Promoted
    Senior Security Engineer

    Senior Security Engineer

    VirtualVocationsGary, Indiana, United States
    Full-time
    A company is looking for a Senior / Staff Security Engineer to enhance and secure its corporate infrastructure.Key Responsibilities Design, implement, and manage security for corporate endpoints an...Show moreLast updated: 30+ days ago
    • Promoted
    Senior Cyber Security Engineer

    Senior Cyber Security Engineer

    VirtualVocationsGary, Indiana, United States
    Full-time
    A company is looking for a Senior Cloud Security Engineer to join their team.Key Responsibilities Manage enterprise-wide security tools and platforms, including SIEM, DLP, and vulnerability manag...Show moreLast updated: 30+ days ago
    • Promoted
    Senior Cloud Security Engineer

    Senior Cloud Security Engineer

    VirtualVocationsGary, Indiana, United States
    Full-time
    A company is looking for a Senior Cloud Security Engineer.Key Responsibilities Implement and automate security controls using AWS native tools and third-party solutions Monitor AWS environments ...Show moreLast updated: 30+ days ago
    • Promoted
    Senior Security Engineer (Chicago)

    Senior Security Engineer (Chicago)

    Solution Partners, Inc.Chicago, IL, US
    Part-time
    We're seeking a seasoned Senior Security Engineer to help lead our security architecture and engineering efforts.This role will drive strategic and operational leadership in security architecture, ...Show moreLast updated: 2 days ago
    • Promoted
    Senior Principal Security Engineer

    Senior Principal Security Engineer

    VirtualVocationsLincolnwood, Illinois, United States
    Full-time
    A company is looking for a Senior Principal Security Engineer.Key Responsibilities Collaborate to define and document the long-term security technology strategy Promote alignment on the security...Show moreLast updated: 2 days ago