Offensive Security Engineer
C
ClickHouseCloud Data Analytics
Netherlands (remote)Full-TimeSenior
Salary not disclosed
Apply NowOpens the employer's application page
Job Details
- Experience
- 7+ years
- Required Skills
- Kubernetes
Requirements
- 7+ years of experience in pentesting, red teaming, and product security.
- Hands-on experience with offensive security engagements across cloud, network, and application environments.
- Strong knowledge of at least one major cloud provider (AWS, GCP, or Azure).
- Expertise in Kubernetes and Cilium.
- Familiarity with AI/LLM-specific vulnerability classes and testing methodology.
- Experience building or adapting agentic and LLM-assisted tooling for security use cases.
- Experience implementing security tools such as static/dynamic code analysis, SBOM, and fuzzing tools.
- Strong communication skills with the ability to translate technical findings for engineering teams.
- Security-as-code mindset with a focus on automation and scale.
Responsibilities
- Identify security gaps and vulnerabilities across all ClickHouse offerings including web, API, and client-server assets.
- Triage vulnerabilities reported through bug bounty, responsible disclosure, and GitHub.
- Plan and execute internal red team assessments and penetration tests against infrastructure and cloud environments.
- Assess AI/LLM-specific attack surfaces including prompt injection and model/data exfiltration.
- Build and operate agentic tooling for reconnaissance, exploit-chaining, and attack-path discovery.
- Partner with detection engineering to improve coverage and validate control effectiveness.
- Handle security events and incidents across product and service offerings.
- Develop processes, tooling, and automation to scale security operations.
View Full Description & ApplyYou'll be redirected to the employer's site