Senior Offensive Security Engineer (AppSec)

webAI Inc

$120K — $150K *
Technical Services
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • 7+ years of experience in cybersecurity, application security, or secure systems engineering.
  • Strong proficiency in securing diverse modern software systems.
  • Deep understanding of secure software development practices and SDLC controls.
  • Experience with distributed systems and decentralized platforms.
  • Demonstrated offensive security skills to identify real-world attack paths.
  • Strong knowledge of cryptography and secure communications protocols.
  • Ability to communicate complex security concepts effectively.

Responsibilities

  • Lead security efforts throughout the software development lifecycle with a focus on secure-by-design principles.
  • Conduct threat modeling and security architecture reviews for distributed AI systems.
  • Identify vulnerabilities through offensive testing and hands-on security research.
  • Collaborate closely with software engineers to ensure secure Rust application development.
  • Define and implement secure coding standards and testing frameworks.
  • Evaluate and design cryptographic protocols and key management systems.
  • Build security tooling that scales with engineering needs.

Benefits

  • Comprehensive health, dental, and vision benefits package
  • 401(k) match
  • Equity options
  • $200/month Health & Wellness stipend
  • Continuing Education support
  • $500/year Function Health subscription
  • Free parking for in-office employees
  • Flexible Time Off (FTO)
  • Parental leave for eligible employees
  • Supplemental life insurance
Full Job Description
About the Role:

We are building the next generation of decentralized, on-edge AI infrastructure. Our platform enables intelligent systems to operate securely across distributed environments without relying on centralized cloud architectures.

We are seeking a highly technical, hands-on Cybersecurity Engineer who combines an offensive security mindset with deep expertise in secure software development. This individual will play a critical role in securing our Rust-based software stack, peer-to-peer networking architecture, and distributed AI systems from design through deployment.

The ideal candidate is a hacker who understands how modern systems fail and can proactively embed security into every layer of the product lifecycle.

Responsibilities:
  • Lead security efforts across the entire software development lifecycle (SDLC), with a strong focus on secure-by-design principles.
  • Perform threat modeling and security architecture reviews for distributed, peer-to-peer, and edge AI systems.
  • Identify vulnerabilities through offensive testing, adversarial simulations, and hands-on security research.
  • Partner closely with software engineers to build secure Rust applications and libraries.
  • Define and implement secure coding standards, security testing frameworks, and security automation.
  • Assess and improve the security posture of decentralized networking protocols and distributed computing architectures.
  • Evaluate, design, and implement cryptographic protocols, key management systems, and trust frameworks.
  • Conduct code reviews focused on security, resilience, and exploitability.
  • Lead incident response, root cause analysis, and remediation efforts when security issues arise.
  • Build security tooling and detection capabilities that scale with a rapidly evolving engineering organization.
  • Stay current on emerging threats targeting AI systems, distributed infrastructure, cryptography, and software supply chains.


Qualifications:
  • 7+ years of experience in cybersecurity, application security, product security, or secure systems engineering.
  • Strong proficiency securing modern software systems written in various languages.
  • Deep understanding of secure software development practices and SDLC security controls.
  • Experience securing distributed systems, peer-to-peer architectures, or decentralized platforms.
  • Demonstrated offensive security skills focused on identifying real-world attack paths.
  • Strong understanding of cryptography, authentication / authorization systems, secure communications protocols, public key infrastructure and secure key management.
  • Experience conducting threat modeling, penetration testing, security architecture reviews and secure code reviews
  • Strong knowledge of common software vulnerabilities and exploitation techniques.
  • Ability to communicate complex security concepts to engineers and leadership.
  • Industry leading, offensive security certifications are a plus: CSSLP, GWAPT, OSWE, etc


We at webAI are committed to living out the core values we have put in place as the foundation on which we operate as a team. We seek individuals who exemplify the following:

  • Truth - Emphasizing transparency and honesty in every interaction and decision.
  • Ownership - Taking full responsibility for one's actions and decisions, demonstrating commitment to the success of our clients.
  • Tenacity - Persisting in the face of challenges and setbacks, continually striving for excellence and improvement.
  • Humility - Maintaining a respectful and learning-oriented mindset, acknowledging the strengths and contributions of others.


Benefits:

We strive to provide competitive benefits to all employees. The benefits listed in this posting generally apply to U.S.-based employees. For employees hired outside the United States, benefits may vary based on local law, country-specific requirements, and the employment platform or entity through which the employee is hired.
  • Competitive salary
  • Comprehensive health, dental, and vision benefits package
  • 401(k) match
  • Equity options
  • $200/month Health & Wellness stipend
  • Continuing Education support
  • $500/year Function Health subscription
  • Free parking for in-office employees
  • Flexible Time Off (FTO)
  • Parental leave for eligible employees
  • Supplemental life insurance


Similar Jobs

More Jobs at webAI Inc

More Technical Services Jobs

Find similar Senior Offensive Security Engineer (AppSec) jobs: