> Markdown version of [/jobs/ext/1932258-senior-offensive-security-engineer](https://www.wearedevelopers.com/jobs/ext/1932258-senior-offensive-security-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Senior Offensive Security Engineer - **Company:** Ivanti - **Location:** Charlotte, NC, United States - **Experience:** Expert - **Contract:** Permanent contract - **Skills:** Software System Penetration Testing, Burp Suite, Cyber Security, Information Technology Operations, Network Protocols, Nmap, Software Vulnerability Management, Web Applications, Cyber Threat Analysis, Metasploit, Webforms, Vulnerability Analysis - **Published:** August 5, 2026 - **Apply:** https://www.jofdav.com/jobs/59097183-senior-offensive-security-engineer ## About the Role * 5 years of experience in cybersecurity, with a focus on penetration testing and vulnerability assessment. * Responsible Disclosure Program (VDP) and Bugbounty program management * CEH, Offensive Security Certified Professional (OSCP), or other relevant certifications. * Strong understanding of networking protocols, operating systems, and web applications. * Proficiency in using penetration testing tools such as Metasploit, Nmap, Burp Suite, etc. * Knowledge of common cybersecurity threats and attack vectors. ## Description Are you an experienced Senior Offensive Security Engineer that wants to work with cutting-edge cybersecurity technologies and contribute to enhancing our overall security posture? At Ivanti, we work passionately and authentically, striving to win together and make a real impact for our customers and each other. Join us to elevate your career and help deliver innovative solutions in a dynamic, empowering environment. Why this role matters As a Senior Offensive Security Engineer, you will play a crucial role in assessing the security of applications, networks, and systems by simulating cyberattacks. Ivanti's Security Department is responsible for implementing and maintaining organization-wide information security policies, standards, guidelines, and procedures. The teams ultimate goal is to keep Ivanti, our data, our customers and employees safe, and the Senior Offensive Security Engineer, is responsible for evaluating the security of applications, networks, and systems by simulating cyberattacks. What you'll do: * Assess security of applications, networks, and systems by simulating cyberattacks. * Manage disclosure programs and collaborate with internal teams to prioritize and resolve vulnerabilities, and conduct penetration tests. * Establish and maintain communication channels with the security research community to promote awareness of the responsible disclosure program and encourage participation. * Receive and triage vulnerability reports submitted by external researchers through various channels, such as email, web form, or bug bounty platform. * Collaborate with internal security teams to assess the severity and impact of reported vulnerabilities and prioritize them for resolution based on risk. * Facilitate communication and collaboration between researchers and relevant stakeholders, including development teams, IT operations, and product managers, to ensure timely resolution of identified security issues. * Track the progress of vulnerability remediation efforts and ensure that issues are addressed within agreed-upon timelines. ## Related Videos - [How to Cause (or Prevent) a Massive Data Breach- Secure Coding and IDOR](https://www.wearedevelopers.com/videos/39-how-to-cause-or-prevent-a-massive-data-breach-secure-coding-and-idor) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) - [Securing Your Web Application Pipeline From Intruders](https://www.wearedevelopers.com/videos/53-securing-your-web-application-pipeline-from-intruders) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [The Overflow: Security and Privacy](https://www.wearedevelopers.com/magazine/715-the-overflow-security-and-privacy)