Senior Offensive Security Engineer
ChimeSan Francisco, CAUp to $250kPosted 24 February 2026
Tech Stack
Job Description
<h3><strong>About the role</strong></h3>
<p>We are seeking a Senior Security Engineer to build and lead our Offensive Security program. In this role, you will attack Chime’s services, applications, and infrastructure to discover security issues and report them to our internal technology teams. This position will offer you the opportunity to grow your technical and leadership skills while being part of a collaborative and dynamic team that finds joy in problem-solving and innovating together at Chime.</p>
<p>The ideal candidate will be an offensive cybersecurity professional with a passion for analyzing codebases, testing hypotheses, and designing tools to impact web applications and their infrastructure. This Engineer will work closely with teams throughout Information Security, as well as provide technical leadership and advice to teams and leaders throughout Chime. You will be in direct contact with teams in a variety of business verticals, giving you first hand knowledge about how Chime is built and how it operates at a deep, technical level. Additionally, you will leverage the knowledge you gain about Chime to find new ways to break services, processes, and infrastructure throughout the company.</p>
<p>We're a small, dedicated team that’s always thinking of innovative ways to tackle challenging security problems. We take on ambitious projects that have a significant impact on our members and help build a strong security culture within our company. The team encourages discussing the problems we are solving, the methods we use, and celebrating our accomplishments through public blogs and at conferences. If these resonate with the way you work, we'd love to hear from you.</p>
<p>The base salary offered for this role and level of experience will begin at $181,000 and up to $250,000. Full-time employees are also eligible for a bonus, competitive equity package, and benefits. The actual base salary offered may be higher, depending on your location, skills, qualifications, and experience.</p>
<h3><strong>In this role, you can expect to </strong></h3>
<ul>
<li>Independently manage complete red team exercises.</li>
<li>Partner with Engineering, Product, IT, and other business functions to drive security improvement across the organization</li>
<li>Research emerging attack vectors, vulnerabilities and techniques</li>
<li>Utilize your offensive skills to identify weaknesses and build defenses against those who may point their attacks at Chime</li>
<li>Develop custom payloads and exploits</li>
<li>Emulate adversaries like cybercriminals and insider threats by attacking web applications, cloud platforms and supporting services(Kubernetes / Container Orchestration platforms etc.) </li>
<li>Collaborate closely with detection engineers to build high fidelity alerting based on emerging attack vectors and tactics, techniques and procedures</li>
<li>Participate in purple-team exercises to mature the security program</li>
</ul>
<h3><strong>What are we looking for</strong></h3>
<ul>
<li>4+ years of combined experience in either an offensive security, red teaming, or application security role.</li>
<li>Experience in conducting surreptitious cloud based attacks</li>
<li>Experience with developing custom tools and payloads which bypass defensive products, and remain undetected in a mature network environment</li>
<li>Ability to perform unsupervised red team engagements and experience with performing adversarial simulation</li>
<li>Ability to explain vulnerabilities and weaknesses to non-technical stakeholders</li>
<li>(Nice to have) Relevant certifications: OSCP (Offensive Security Certified Professional), OSCE (Offensive Security Certified Expert) and OSEE (Offensive Security Exploitation Expert), Certified Red Team Operator (CRTO), GIAC Red Team Professional certification (GRTP)</li>
</ul>
<p>#LI-Hybrid #LI-JC1</p><div class="content-conclusion"><h2><strong>A little about us</strong></h2>
<p>At Chime, we believe that everyone can achieve financ ... (truncated, view full listing at source)
Apply Now
Direct link to company career page
More jobs at Chime
See all →More AWS jobs
See all →Associate Manager, New Verticals - Consumer Financials Strategy & Operations
DoorDash · New York, NY; San Francisco, CA; Chicago, IL; Seattle, WA; Los Angeles, CA; Washington DC
Associate, Quality Strategy & Operations
DoorDash · United States - Remote
Creative Project Manager
DoorDash · Los Angeles,CA; San Francisco, CA; New York, NY
Manager, New Verticals - Gift Card Strategy & Operations
DoorDash · New York, NY; San Francisco, CA; Los Angeles, CA; Seattle, WA; Washington, DC