Robinhood Logo

Robinhood

Senior Offensive Security Engineer

Posted 2 Days Ago
Be an Early Applicant
In-Office
Denver, CO, USA
187K-220K Annually
Senior level
In-Office
Denver, CO, USA
187K-220K Annually
Senior level
Leads red team operations, penetration testing, threat modeling, and adversarial simulations across applications, infrastructure, corporate, and physical environments. Develops security-testing tools, partners with detection and response teams, communicates and remediates findings, leads related incidents, and mentors offensive security engineers. The role requires advanced knowledge of cloud, containers, defensive evasion, identity security, network protocols, and MITRE ATT&CK, along with Python, Go, and JavaScript proficiency.
The summary above was generated by AI
Join us in building the future of finance.

Our mission is to democratize finance for all. An estimated $124 trillion of assets will be inherited by younger generations in the next two decades. The largest transfer of wealth in human history. If you’re ready to be at the epicenter of this historic cultural and financial shift, keep reading.

About the team + role

We are building an elite team, applying frontier technologies to the world’s biggest financial problems. We’re looking for thoughtful problem-solvers and builders who want to make a meaningful contribution. Robinhood is a place where people take ownership of their work and help improve financial access for all. We operate with high standards, clear accountability, and a strong focus on security and ethics in everything we build!

The Red Team’s mission is to identify and reduce real-world security risks across Robinhood by simulating adversary behavior and testing defenses. As a Staff Offensive Security Engineer, you will plan and execute security assessments across applications, infrastructure, and physical environments, and partner closely with engineering and security teams to strengthen detection and response capabilities. You will help prioritize risk, contribute to remediation efforts, and develop tools and techniques that improve how we test and secure our systems. Your work will directly support the safety and reliability of products used by millions of customers.

This role is based in our Bellevue, WA, New York, NY, Denver, CO or Menlo Park, CA office(s), with in-person attendance expected at least 3 days per week.

At Robinhood, we believe in the power of in-person work to accelerate progress, spark innovation, and strengthen community. Our office experience is intentional, energizing, and designed to fully support high-performing teams.

What you’ll do
  • Evangelize the Offensive Security Team’s Findings and Projects with stakeholders throughout the company and collaborate with other teams to create solutions that balance security with other priorities.
  • Mentor and provide guidance to the members of the Offensive Security team.
  • Plan and execute red team exercises, including long-term assessments that simulate real-world attack scenarios
  • Perform threat modeling and penetration testing across applications, infrastructure, and corporate environments
  • Develop scripts and tools to support and automate security testing activities
  • Partner with detection and response teams to run adversarial simulations and improve incident readiness
  • Communicate findings clearly and work with engineering teams to remediate identified risks
  • Lead Security Incidents when Pentest or Red Team findings require them.
  • Plan and participate in Adversarial Simulation exercises with various security teams.
What you bring
  • 6+ years of experience conducting red team operations or advanced penetration testing
  • Experience mentoring or supporting the development of other security engineers
  • Passion and demonstrated experience for challenging security assumptions.
  • Excellent written and verbal communication skills and ability to communicate your findings at many different levels of abstraction from Engineers to Executives.
  • Passion for fixing security issues and not just identifying security issues.
  • Familiarity with common network protocols and standards such as DNS and TCP/IP.
  • Experience with MacOS and Linux.
  • Experience with leveraging components of a modern software development stack to attack companies, including CI, container orchestration systems (Kubernetes/Docker), cloud providers (AWS, GCP), etc and be able to give hardening suggestions.
  • Experience/knowledge of defensive tools/techniques (IDS/IPS, Packet Capture, Network Analysis, AV, EDR, etc.) and how to evade them.
  • Deep understanding of Mitre’s ATT&CK Framework.
  • Strong understanding of the security fundamentals of access and identity.
  • Comfortable reading / writing python, go, and javascript.
  • Ability to research and execute a testing plan to access a new technology or process.
  • Demonstrated experience working with a distributed team.
  • Proficiency to communicate over a text-based medium (Slack, JIRA Issues, GitHub issues, & Email) and can succinctly document technical details.
Bonus Points
  • Experience in the Financial Technology domain.
  • Experience being a technical lead at other organizations.
What we offer
  • Market competitive and pay equity-focused compensation structure
  • 100% paid health insurance for employees with 90% coverage for dependents
  • Annual lifestyle wallet for personal wellness, learning and development, and more!
  • Lifetime maximum benefit for family forming and fertility benefits
  • Dedicated mental health support for employees and eligible dependents
  • Generous time away including company holidays, paid time off, sick time, parental leave, and more!
  • Lively office environment with catered meals, fully stocked kitchens, and geo-specific commuter benefits

In addition to the base pay range listed below, this role is also eligible for bonus opportunities + equity + benefits.

Base pay for the successful applicant will depend on a variety of job-related factors, which may include education, training, experience, location, business needs, or market demands. The expected base pay range for this role is based on the location where the work will be performed and is aligned to one of 3 compensation zones. For other locations not listed, compensation can be discussed with your recruiter during the interview process.

Base Pay Range:

Zone 1 (Menlo Park, CA; New York, NY; Bellevue, WA; Washington, DC)
$187,000$220,000 USD
Zone 2 (Denver, CO; Westlake, TX; Chicago, IL)
$165,000$194,000 USD
Zone 3 (Lake Mary, FL; Clearwater, FL; Gainesville, FL)
$146,000$172,000 USD

Click here to learn more about our Total Rewards, which vary by region and entity.

If our mission energizes you and you’re ready to build the future of finance, we look forward to seeing your application.

Robinhood provides equal opportunity for all applicants, offers reasonable accommodations upon request, and complies with applicable equal employment and privacy laws. Inclusion is built into how we hire and work—welcoming different backgrounds, perspectives, and experiences so everyone can do their best. Please review the Privacy Policy for your country of application.

Robinhood Denver, Colorado, USA Office

Located in Denver's historic and lively Highland neighborhood featuring chic cocktail bars and trendsetting restaurants.

Similar Jobs

Yesterday
In-Office or Remote
United States
96K-181K Annually
Senior level
96K-181K Annually
Senior level
Fintech
Leads KeyBank’s Red Team and offensive security program, including adversary emulation, penetration testing, physical and application assessments, cloud security testing, AI security evaluations, and purple team exercises. Develops testing strategy, methodologies, tooling, metrics, and maturity roadmaps; mentors engineers; coordinates internal and third-party engagements; validates remediation and attack paths; and presents findings and strategic recommendations to executives and cybersecurity stakeholders.
Top Skills: Artificial IntelligenceAutonomous AgentsAWSBashCommand-And-Control (C2) FrameworksEdr/XdrGenerative AiGoGoogle Cloud PlatformIsecomIssafJavaScriptKali LinuxLarge Language ModelsLinuxMachine LearningmacOSAzureMitre Att&CkOsstmmPowershellPtesPythonSIEMWindows
One Month Ago
In-Office
Boulder, CO, USA
175K-250K Annually
Senior level
175K-250K Annually
Senior level
Information Technology • Software • Cybersecurity • Defense
Conduct offensive security assessments and red team operations to identify network and system vulnerabilities; perform malware and packet analysis; develop scripts and tools; deliver written and oral briefings to clients and management; and train and mentor junior operators.
Top Skills: Exploit DevelopmentMalware AnalysisNetwork ProtocolsPacket AnalysisPenetration TestingRed TeamingReverse EngineeringUnix/LinuxWindows
A Minute Ago
In-Office
Aurora, CO, USA
124K-168K Annually
Senior level
124K-168K Annually
Senior level
Aerospace • Information Technology • Software • Cybersecurity • Design • Defense • Manufacturing
The Product Security Analyst at Boeing ensures program cybersecurity throughout lifecycle phases, implements RMF processes, evaluates security risks, and collaborates with technical teams.
Top Skills: Ci/CdCybersecurityDod 8570Rmf

What you need to know about the Colorado Tech Scene

With a business-friendly climate and research universities like CU Boulder and Colorado State, Colorado has made a name for itself as a startup ecosystem. The state boasts a skilled workforce and high quality of life thanks to its affordable housing, vibrant cultural scene and unparalleled opportunities for outdoor recreation. Colorado is also home to the National Renewable Energy Laboratory, helping cement its status as a hub for renewable energy innovation.

Key Facts About Colorado Tech

  • Number of Tech Workers: 260,000; 8.5% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Lockheed Martin, Century Link, Comcast, BAE Systems, Level 3
  • Key Industries: Software, artificial intelligence, aerospace, e-commerce, fintech, healthtech
  • Funding Landscape: $4.9 billion in VC funding in 2024 (Pitchbook)
  • Notable Investors: Access Venture Partners, Ridgeline Ventures, Techstars, Blackhorn Ventures
  • Research Centers and Universities: Colorado School of Mines, University of Colorado Boulder, University of Denver, Colorado State University, Mesa Laboratory, Space Science Institute, National Center for Atmospheric Research, National Renewable Energy Laboratory, Gottlieb Institute

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account