CronJobs

security jobs

Offensive Security Lead

SoFi · CA - San Francisco; WA - Seattle; NY - New York City; UT - Cottonwood Heights; TX - Frisco; MT - Helena

hybridseniorPosted Sep 3, 2026AWSGCPAzureMITRE ATT&CKC2 toolingAI/MLPenetration TestingRed Team

Apply on the employer site

About this role

**Offensive Security Lead** **About SoFi:** Shape a brighter financial future with us. We're a next-generation financial services company and national bank using innovative, mobile-first technology to help millions of members reach their goals. **The Role:** SoFi's Cyber Defense organization is seeking an Offensive Security Lead to mature and grow our Penetration Testing and Red Team functions. This is a hands-on leadership role for someone equally comfortable running red team engagements against critical banking platforms and designing operating models that let small teams scale with a fast-growing fintech. **Key Responsibilities:** • Lead and unify Penetration Testing and Red Team into a cohesive Offensive Security function • Set and execute the offensive security roadmap aligned to risk profile and regulatory obligations • Build and scale AI-augmented offensive security capabilities with modern tooling and workflows • Personally lead engagements (network, application, cloud, and AI pentests; adversary emulation) • Manage and develop the team: hire, coach, mentor, and build career paths • Own program metrics and maturity; report to senior leadership and risk committees • Partner cross-functionally with Vulnerability Management, SOC, AppSec, and engineering teams • Manage external partnerships and vendor relationships • Represent Offensive Security in audits, regulatory exams, and executive briefings **What You'll Need:** • 8+ years in offensive security with hands-on experience in both penetration testing and red team/adversary emulation • 2+ years directly managing or leading offensive security teams (ideally in regulated industry) • Proven experience designing and implementing AI-led or AI-assisted offensive security programs • Deep technical fluency across network, web/application, cloud (AWS/GCP/Azure), and mobile attack surfaces • Track record of building or maturing programs from the ground up • Strong written and verbal communication skills • Experience in regulated environments and working with auditors/examiners (strong plus) • Relevant certifications preferred (OSCP, OSCE, OSEP, GPEN, GXPN, CRTO or equivalent) **Benefits:** Comprehensive and competitive benefits package available. Visit the Benefits at SoFi page for details. SoFi is an Equal Opportunity Employer committed to an inclusive culture.

Listing freshness

CronJobs last confirmed this listing 11h ago. If its source stops confirming the opening for seven days, this page is removed from active inventory.

Browse all software engineering jobs →

Follow fresh jobs in Discord