Senior Offensive Security Engineer

4 weeks ago


ireland Tree Trust Full time

Global IT, Security, & Business Systems, Amsterdam, Netherlands / Dublin, Ireland

SurveyMonkey is the world’s most popular platform for surveys and forms, built for business—loved by users. We combine powerful capabilities with intuitive design, effectively serving every use case, from customer experience to employee engagement, market research to payment and registration forms. With built-in research expertise and AI-powered technology, it’s like having a team of expert researchers right at your fingertips.

What we’re looking for

The offensive security engineer is responsible for planning and executing tactical penetration testing and offensive security assessments against corporate assets and SurveyMonkey products. You will work with numerous company partners to plan and execute penetration tests, perform red/blue team activities, and prioritize remediations with engineering teams. You will also work with external partners including penetration testers, security auditors and bug bounty researchers to prioritize and assess findings. As an offensive security engineer, you will oversee end-to-end execution including planning, reconnaissance, vulnerability identification and exploitation, detailed technical and executive reporting, technical remediation and tracking for closure.

What you’ll be working on

  • Perform adversarial simulations on both internet and internal assets, including wireless, web application, API, cloud and containers.
  • Evaluate the efficacy of existing detection and mitigation mechanisms and identify gaps in visibility, data, tools, and processes.
  • Perform penetration testing against SurveyMonkey assets and implement tools that help complete security assessments and red/blue teaming engagement.
  • Engage and educate engineering teams on penetration testing findings and application security best practices to help improve application security posture.
  • Review design proposals and threat models to ensure security is 'built in'.
  • Exploit vulnerabilities, document and track findings and work with various teams to improve the security of both our products and us.

We’d love to hear from people with

  • 5+ years of experience conducting application security assessments and penetration tests.
  • Experience planning & performing web application, cloud and network penetration testing assessments.
  • Knowledge of server (Linux, Windows) and client (Windows, OS X, Linux) operating systems.
  • Knowledge of attack surfaces for applications, enterprise systems and services.
  • Experience in at least one of PHP, Python, Ruby, or Java.
  • Experience with bug bounty programs.
  • Experience gaining the trust of others through honesty, integrity, and authenticity.

Work Arrangement

SurveyMonkey believes in-person collaboration is valuable for building relationships, fostering community, and enhancing our speed and execution in problem-solving and decision-making. As such, you will be required to work from a SurveyMonkey office for up to 1 day per week.

Our Commitment to an Inclusive Workplace

SurveyMonkey is an equal opportunity employer committed to providing a workplace free from harassment and discrimination. We celebrate the unique differences of our employees because that is what drives curiosity, innovation, and the success of our business.

#J-18808-Ljbffr

  • ireland HubSpot Full time

    POS-26030The HubSpot Threats and Vulnerabilities team protects our customers by systematically reducing HubSpot's attack surface and improving the maturity of HubSpot's Product Security. We create this path forward by mapping out HubSpot's defences, identifying and prioritizing improvements based on threat intelligence, and testing our applications and...

  • IT Security Engineer

    3 weeks ago


    Ireland Reperio Human Capital Full time

    IT Security Engineer 101056 Desired skills: Security Engineer, Cloud Security, Penetration Testing, Threat Intelligence, Vulnerability Scanning Remote (Munster, Ireland) / 6-month contract My client is seeking a highly skilled and motivated IT Security Engineer to join their dynamic team in the financial services sector. The role will be for an...

  • Security Engineer

    4 weeks ago


    ireland PFH Technology Group Full time

    PFH Technology are currently looking for an experienced Security Engineer to join our team.Location: CorkContract: PermanentRoles & ResponsibilitiesManaging Security Incidents in ServiceNow and other platformsInvestigating all informational and minor level security incidentsSupporting ISMS programme (SOA, SOPs, Procedures)Engaging with end users flagged by...

  • Security Engineer

    4 weeks ago


    ireland State Street Corporation Full time

    Job DescriptionWho we are looking forThe Red Team Engineer will perform as a member of the Offensive Security team within the Global Cyber Security group and will serve as a technical resource for penetration testing as well as an advisor on technical matters involving the security of information systems.The Red Team Engineer will conduct comprehensive...


  • ireland Reperio Human Capital Full time

    Location: Cork City, Cork, Republic of IrelandType: PermanentStart: ASAPSenior Security EngineerJob ID: 106825Desired Skills:Cyber, Security, Network Security, Firewalls, CorkWe are looking for a talented Senior Security Engineer to join a multinational company in the communications space, focusing on their IT Security Team. This role will involve working on...


  • ireland GemPool Recruitment Full time

    Get AI-powered advice on this job and more exclusive features.Senior Application Security Engineer at GemPool RecruitmentGemPool is a specialised IT recruitment agency that provides top IT jobs.We are currently hiring for one of our clients for the position of Senior Application Security Engineer. This is a full-time opportunity to play a pivotal role in...


  • ireland MACOM Technology Solutions Holdings Full time

    Company Overview:MACOM designs and manufactures semiconductor products for Data Center, Telecommunication and Industrial and Defense applications. Headquartered in Lowell, Massachusetts, MACOM has design centers and sales offices throughout North America, Europe and Asia. MACOM is certified to the ISO9001 international quality standard and ISO14001...


  • ireland Amazon Full time

    Come and build innovative services that protect our cloud from advanced security threats!As a Senior Security Engineer on our team, you'll help build and manage services that detect and automate the mitigation of cybersecurity threats across Amazon's infrastructure, including advanced persistent threats. You'll work with data scientists, software development...


  • ireland Sumitomo Mitsui Financial Group, Inc. Full time

    SMBC Group is a top-tier global financial group. Headquartered in Tokyo and with a 400-year history, SMBC Group offers a diverse range of financial services, including banking, leasing, securities, credit cards, and consumer finance. The Group has more than 130 offices and 80,000 employees worldwide in nearly 40 countries. Sumitomo Mitsui Financial Group,...


  • ireland Poppulo Full time

    Are you searching for an opportunity to play a key role in driving the dramatic growth of a highly successful software company?At Poppulo, we’re working on what’s next in communications and workplace technology. As a pioneer in this industry, we understand that meaningfully reaching every employee is hard. And so is managing office space in a hybrid...


  • ireland LastPass Full time

    About LastPassLastPass is a leader in password and identity management, making it easier to log into life and work. Trusted by 100,000 businesses and millions of users, LastPass combines advanced security with effortless access for individuals, families, small business owners, and enterprise professionals. With LastPass, important credentials are protected...


  • ireland Notion Full time

    About Us:We're on a mission to make it possible for every person, team, and company to be able to tailor their software to solve any problem and take on any challenge. Computers may be our most powerful tools, but most of us can't build or modify the software we use on them every day. At Notion, we want to change this with focus, design, and craft.We've been...


  • ireland Brightflag Full time

    The OpportunityAs an Application Security Engineer at Brightflag, you will play an integral role in the success of our engineering team and help ensure that features are delivered securely. We have a number of high-profile customers across Europe, the US, and Australia, and we are growing quickly. Our engineers take ownership of their work, solve complex...


  • ireland airbnb, Inc. Full time

    Senior Security Engineer, Threat Detection and ResponseAirbnb was born in 2007 when two Hosts welcomed three guests to their San Francisco home, and has since grown to over 4 million Hosts who have welcomed more than 1 billion guest arrivals in almost every country across the globe. Every day, Hosts offer unique stays and experiences that make it possible...


  • ireland Konnectway Full time

    Senior Physical Security System Design EngineerJob DescriptionAt KonnectWay, we are seeking a seasoned Senior Physical Security System Design Engineer. This role is critical for designing and conceptualizing advanced physical security measures for large-scale infrastructures, focusing on data centers. If you have a deep passion for security technology...


  • ireland Tbwa ChiatDay Inc Full time

    Senior Application Security Engineer (PHP)Remote - IrelandAbout LastPassLastPass is a leader in password and identity management, making it easier to log into life and work. Trusted by 100,000 businesses and millions of users, LastPass combines advanced security with effortless access for individuals, families, small business owners, and enterprise...


  • remote, republic of ireland CompuStaff Full time

    Senior Security Engineer  - Primarily remote with 2 days per month in the Galway office Join a leading data platform company that empowers organizations to move and connect data securely. They drive data connectivity by offering a proprietary platform and network that delivers critical solutions across a number of ecosystems, currently enabling the...


  • remote, republic of ireland CompuStaff Full time

    Senior Security Engineer  - Primarily remote with 2 days per month in the Galway office Join a leading data platform company that empowers organizations to move and connect data securely. They drive data connectivity by offering a proprietary platform and network that delivers critical solutions across a number of ecosystems, currently enabling the...


  • ireland Airbnb Full time

    Airbnb was born in 2007 when two Hosts welcomed three guests to their San Francisco home, and has since grown to over 4 million Hosts who have welcomed more than 1 billion guest arrivals in almost every country across the globe. Every day, Hosts offer unique stays and experiences that make it possible for guests to connect with communities in a more...


  • ireland Malwarebytes Full time

    DescriptionMalwarebytes believes that when people and organizations are free from threats, they are free to thrive. Founded in 2008, CEO Marcin Kleczynski had one mission: to rid the world of malware. Today, Malwarebytes has grown beyond malware remediation to ensuring cyberprotection for everyone, providing device protection, privacy, and prevention...