Greenlight Financial Technology

Staff Offensive Security Engineer

Greenlight Financial Technology$165K — $200K *
Information Technology
8 - 10 years of experience
Job Overview by Ladders

Qualifications

  • 8+ years of experience in offensive security, red teaming, or penetration testing with a strong track record.
  • Deep understanding of AWS security architecture, including IAM bypass techniques and container escapes.
  • Experience with manual code review for languages like Node.js, Python, or Go.
  • Scripting proficiency in Python, Bash, or Go for automation.
  • Ability to communicate complex technical risks to executive stakeholders.
  • Relevant certifications such as OSCP/OSCE or equivalent are valued.
  • Curiosity and persistence in uncovering vulnerabilities and thinking outside conventional security practices.

Responsibilities

  • Define the long-term vision for offensive security, focusing on continuous validation.
  • Design and execute complex multi-stage adversary simulations targeting diverse environments.
  • Conduct in-depth vulnerability research to identify overlooked risks.
  • Collaborate with DevOps to implement automated security guardrails.
  • Support incident response and enhance monitoring through purple team exercises.
  • Mentor engineers to foster a security-aware culture across R&D.

Benefits

  • Medical, dental, vision, and HSA match
  • Paid life insurance, AD&D, and disability benefits
  • Traditional 401k with company match
  • Unlimited PTO
  • Paid company holidays and pop-up bonus holidays
  • Professional development stipend
  • Mental health resources
  • 1:1 financial planners
  • Fertility healthcare
  • 100% paid parental and caregiving leave with additional support
  • Flexible WFH options
  • Fully stocked kitchen and catered lunches
  • Employee resource groups
Full Job Description
Greenlight is looking for a Staff Offensive Security Engineer for our Security team. This individual will be responsible for the continuous offensive security validation across our consumer digital platforms, mobile applications, cloud infrastructure, internal corporate environments, and emerging hardware device lines. The Staff Offensive Security Engineer will drive the long-term technical strategy for offensive security, lead complex red teaming and multi-stage adversary simulations, manage deep-dive vulnerability research into high-risk areas, champion a culture of security-minded development across the R&D organization, and establish automated security guardrails and self-healing infrastructure within a fintech environment.

Your day-to-day:

  • Lead Technical Strategy: Define the long-term vision for offensive security at Greenlight, moving beyond point-in-time testing to continuous security validation.
  • Red Teaming & Adversary Simulation: Design and execute complex, multi-stage adversary simulations targeting our cloud infrastructure (AWS), mobile applications (iOS/Android), and internal corporate environments.
  • Vulnerability Research: Conduct deep-dive research into high-risk areas of our ecosystem, identifying zero-day vulnerabilities or sophisticated logic flaws that automated tools miss.
  • Pave the "Golden Path": Partner with DevOps and Engineering to build automated security guardrails and "self-healing" infrastructure that prevents common attack vectors from being introduced.
  • Incident Response Support: Work closely with the Detection and Response team to improve our monitoring capabilities by performing "purple team" exercises to validate alert coverage.
  • Mentorship: Act as a force multiplier by mentoring senior and mid-level engineers, fostering a culture of security-minded development across the entire R&D organization.


What you'll bring to the team:

  • Expert-level Offensive Skills: 8+ years of experience in offensive security, red teaming, or penetration testing, with a proven track record of uncovering critical vulnerabilities in complex environments.
  • Cloud Native Expertise: Deep understanding of AWS security architecture, including IAM bypass techniques, container escapes (Kubernetes), and serverless security.
  • Application Security Depth: Experience with manual code review (Node.js, Python, or Go) and bypass techniques for modern web and mobile security controls.
  • Automation Mindset: Ability to script in Python, Bash, or Go to automate exploitation chains or integrate security testing into CI/CD pipelines.
  • Strategic Communication: The ability to translate complex technical risks into business impact for executive stakeholders while remaining a trusted peer to software engineers.
  • Relevant Certifications (Optional but valued): OSCP/OSCE, GXPN, or equivalent demonstration of deep technical skill.
  • An Ethical Hacker at Heart: You are curious, persistent, and think outside the box to find ways around traditional security controls.
  • A Collaborative Partner: You believe that "breaking things" is only half the job; the real value is in helping the team build them back stronger.
  • Owner Mindset: You take pride in your work and feel a deep sense of responsibility for the safety of our families and their finances.

Not sure this one's for you? Don't count yourself out. Show us what you've got and we'll reach out if there's a great fit.

Work perks at Greenlight:

  • Medical, dental, vision, and HSA match
  • Paid life insurance, AD&D, and disability benefits
  • Traditional 401k with company match
  • Unlimited PTO
  • Paid company holidays and pop-up bonus holidays
  • Professional development stipend
  • Mental health resources
  • 1:1 financial planners
  • Fertility healthcare
  • 100% paid parental and caregiving leave, plus cleaning service and meals during your leave
  • Flexible WFH, both remote and in-office opportunities
  • Fully stocked kitchen, catered lunches, and occasional in-office happy hours
  • Employee resource groups


Our stance on salaries:

Greenlight provides a competitive compensation package with a market-based approach to pay and will vary depending on your location, experience and skill set. The total compensation package for this position will also include a discretionary performance bonus, equity rewards, medical benefits, 401K match, and more. Greenlight conducts continuous compensation evaluations across departments and geographies to ensure we are keeping our pay current and competitive.

The estimated base pay range for this position in (NY, CA, WA): $165,000-200,000

The estimated base pay range for this position in (CO): $165,000-185,000

About Greenlight Financial Technology

Greenlight Financial Technology is a financial technology company that provides a debit card for kids and teens. The company was founded in 2014 by Tim Sheehan and Johnson Cook. Greenlight's debit card is designed to help parents teach their children financial responsibility and manage their children's spending. The card allows parents to set spending limits, approve or deny transactions, and monitor their children's spending. Greenlight also offers a mobile app that allows parents to manage their children's accounts and track their spending. The company is headquartered in Atlanta, Georgia.
Learn more about Greenlight Financial Technology
Size
300 employees
Industry
Founded
2014

Similar Jobs

More Jobs at Greenlight Financial Technology

More Information Technology Jobs

Find similar Staff Offensive Security Engineer jobs: