Engineering Manager, Rapid Response
Job description
Engineering Manager, Rapid Response at Horizon3.ai.
About the role
In this pivotal position, you will lead a dedicated team that specializes in uncovering and exploiting vulnerabilities within the NodeZero platform. This role demands a unique combination of technical expertise and leadership skills to drive the ongoing improvement of our offensive security capabilities. You will be responsible for guiding the creation of innovative attack methodologies and ensuring their swift integration into our product offerings.
Key facts
What you'll do
- Lead and mentor a team of engineers who focus on vulnerability research, reverse engineering, and exploit development, fostering a collaborative environment.
- Develop and implement strategic plans for identifying, analyzing, and weaponizing new vulnerabilities to enhance our security offerings.
- Ensure the rapid and secure creation of proof-of-concept exploits that can be integrated into the NodeZero platform effectively.
- Stay informed about global trends in emerging threats and vulnerabilities to ensure our product remains at the forefront of security technology.
- Cultivate a culture of continuous improvement and high standards in software development practices within the team.
- Spearhead the recruitment process to grow the vulnerability research team, ensuring the acquisition of top-tier talent.
- Collaborate with cross-functional teams to align security initiatives with broader organizational goals.
- Regularly review and refine team processes to optimize efficiency and effectiveness in vulnerability research and exploitation.
- Provide technical guidance and support to team members, helping them to develop their skills and advance their careers.
- Engage with the broader security community to share knowledge and stay updated on best practices and new methodologies.
- Prepare and present reports on team progress and findings to senior management, ensuring transparency and alignment with company objectives.
- Advocate for the adoption of new tools and technologies that can enhance the team's capabilities and improve overall security posture.
Requirements
- A minimum of 2-3 years of experience in managing engineering teams, demonstrating effective leadership and team-building skills.
- At least 3 years of experience in software development, showcasing a strong technical foundation.
- Over 5 years of experience in offensive security, vulnerability research, or red team operations, with a proven track record of success.
- Demonstrated ability to conduct interviews and hire engineering talent, ensuring the team is composed of skilled professionals.
- A balanced skill set that includes both hands-on technical work and strategic leadership responsibilities.
- Excellent technical writing and communication abilities, capable of conveying complex concepts to various audiences.
- Deep knowledge in vulnerability research, reverse engineering, and exploit development, with practical experience in these areas.
- Strong understanding of common exploitation techniques and their application in real-world scenarios.
- Proficiency in network protocols and virtualization technologies relevant to exploitation efforts.
- Familiarity with reverse engineering tools such as IDA or Ghidra, and a solid background in production software engineering, preferably in Python.
- Knowledge of secure software development methodologies and experience with Git version control systems.
- Ability to assess technical designs and ensure the delivery of high-quality, production-ready software solutions.
Nice to have
- Experience with vulnerability disclosure processes or participation in bug bounty programs, enhancing the team's outreach and effectiveness.
- Familiarity with programming languages such as C, C++, Rust, or Assembly, broadening the team's technical capabilities.
- Understanding of containerization technologies like Docker and Kubernetes, which can aid in deployment and scalability.
- Experience with cloud platforms like AWS, contributing to the team's ability to operate in diverse environments.
- Relevant security certifications such as OSCP, which can validate your expertise and commitment to the field.
Skills & tools
Python, IDA, Ghidra, Git, Postgres, Neo4j, AWS, Docker, Kubernetes
Practical notes
This position is fully remote, offering flexibility in your work environment. However, it may require occasional travel, estimated at up to 10%, to facilitate team collaboration and engagement with clients or stakeholders.
META
Company: Horizon3.ai
Title: Engineering Manager, Rapid Response
Listed
location: US, Remote
Job type: full_time