Compare your current skills to what this opportunity needs—we'll show you what you already have and what could strengthen your application.
Job Description
Job Description An Insight Global client is currently looking for an offensive security engineer to join their team. This person will be responsible for:
Conduct hands-on penetration testing across web applications, APIs, cloud infrastructure, and SaaS platforms
Review, reproduce, validate, and triage customer‑submitted penetration test findings
Perform black box, grey box, and white box assessments based on scope and rules of engagement
Execute cloud penetration testing in AWS & Azure, including: ○ Identity & access misconfigurations ○ Privilege escalation and lateral movement ○ Exposed services, data stores (e.g., S3), secrets, and key management ○ Serverless (Lambda), managed databases, and Kubernetes (EKS)
Perform architecture reviews and threat modeling for SaaS and cloud services
Review Infrastructure as Code (Terraform) and security pipelines for weaknesses
Test AI/LLM-powered systems, including: ○ Jailbreaking and prompt injection ○ Instruction and privilege escalation testing ○ Data access and sensitive information disclosure ○ Validation of guardrails and safety controls
Use tools such as Burp Suite, Kali Linux, and AI-enabled testing tools (Promptfoo, PyRIT, MCP-based tools)
Author detailed penetration test reports, including: ○ Executive summaries ○ Technical findings ○ Risk scoring and remediation guidance
Lead scoping conversations with internal teams, customers, and vendors (ROE, credentials, scope)
Perform retesting and validation of remediated findings
Support purple-team style testing, validating detective controls and providing feedback
Complete multiple assigned penetration tests per sprint while handling ad-hoc customer requests and incident validation We are a company committed to creating diverse and inclusive environments where people can bring their full, authentic selves to work every day.
We are an equal opportunity/affirmative action employer that believes everyone matters. Qualified candidates will receive consideration for employment regardless of their race, color, ethnicity, religion, sex (including pregnancy), sexual orientation, gender identity and expression, marital status, national origin, ancestry, genetic factors, age, disability, protected veteran status, military or uniformed service member status, or any other status or characteristic protected by applicable laws, regulations, and ordinances. If you need assistance and/or a reasonable accommodation due to a disability during the application or recruiting process, please send a request to HR@insightglobal.com.
To learn more about how we collect, keep, and process your private information, please review
Insight Global's Workforce Privacy Policy:
https://insightglobal.com/workforce-privacy-policy/. Skills and Requirements
5+ years of experience in offensive security / penetration testing
Strong experience with web application and API security testing
Hands-on cloud security testing experience in AWS and Azure
Deep understanding of: ○ OWASP Top 10 (web) ○ API security risks ○ SaaS integration risks