- Location
- Bengaluru, Karnataka
- Employment
- Full time
- Level
- Staff
- Posted
- 4 months ago
About this role
Greenlight is a family technology company on a mission to help families raise financially smart kids and navigate life together. Its suite of products - including the Greenlight app, debit card, Safe Family GPS trackers, and Family Hub - brings together financial tools, safety features, and everyday family management in one connected experience. Designed for busy families who want convenience without compromise, Greenlight continues to innovate alongside the evolving needs of modern life. Today, more than 6.5 million family members trust Greenlight to stay in sync.
At Greenlight, we're here to make the day-to-day easier and futures brighter, so families can spend less time managing life, and more time living it. That's why we get out of bed every morning.
The Security team at Greenlight is a group of mission-driven engineers dedicated to building a world-class security program. We don’t just find bugs; we partner with engineering teams to design resilient systems. As a Staff Offensive Security Engineer, you will be a technical leader within the organization, driving the strategy for how we identify, simulate, and mitigate advanced threats.
What you will be doing:
- Lead Technical Strategy: Define the long-term vision for offensive security at Greenlight, moving beyond point-in-time testing to continuous security validation.
- Red Teaming & Adversary Simulation: Design and execute complex, multi-stage adversary simulations targeting our cloud infrastructure (AWS), mobile applications (iOS/Android), and internal corporate environments.
- Vulnerability Research: Conduct deep-dive research into high-risk areas of our ecosystem, identifying zero-day vulnerabilities or sophisticated logic flaws that automated tools miss.
- Pave the "Golden Path": Partner with DevOps and Engineering to build automated security guardrails and "self-healing" infrastructure that prevents common attack vectors from being introduced.
- Incident Response Support: Work closely with the Detection and Response team to improve our monitoring capabilities by performing "purple team" exercises to validate alert coverage.
- Mentorship: Act as a force multiplier by mentoring senior and mid-level engineers, fostering a culture of security-minded development across the entire R&D organization.
What you should bring:
- Expert-level Offensive Skills: 8+ years of experience in offensive security, red teaming, or penetration testing, with a proven track record of uncovering critical vulnerabilities in complex environments.
- Cloud Native Expertise: Deep understanding of AWS security architecture, including IAM bypass techniques, container escapes (Kubernetes), and serverless security.
- Application Security Depth: Experience with manual code review (Node.js, Python, or Go) and bypass techniques for modern web and mobile security controls.
- Automation Mindset: Ability to script in Python, Bash, or Go to automate exploitation chains or integrate security testing into CI/CD pipelines.
- Strategic Communication: The ability to translate complex technical risks into business impact for executive stakeholders while remaining a trusted peer to software engineers.
- Relevant Certifications (Optional but valued): OSCP/OSCE, GXPN, or equivalent demonstration of deep technical skill.
Who you are:
- An Ethical Hacker at Heart: You are curious, persistent, and think outside the box to find ways around traditional security controls.
- A Collaborative Partner: You believe that "breaking things" is only half the job; the real value is in helping the team build them back stronger.
- Owner Mindset: You take pride in your work and feel a deep sense of responsibility for the safety of our families and their finances.
Who we are: It takes a talented team to aim for a mission like ours. We're looking for people who ask "is it bold enough?" People who bring their real selves to the table and push the people around them to do the same. We win by never hesitating to jump in, offer a hand, or share the credit, because we know we're stronger together than apart. And through all of it, the mission stays the thing we measure ourselves against: are we doing right by the families counting on us? If that sounds like your kind of team, we'd love for you to apply. Greenlight is an equal opportunity employer and will not discriminate against any employee or applicant based on age, race, color, national origin, gender, gender identity or expression, sexual orientation, religion, physical or mental disability, medical condition (including pregnancy, childbirth, or a medical condition related to pregnancy or childbirth), genetic information, marital status, veteran status, or any other characteristic protected by federal, state or local law. Greenlight is committed to an inclusive work environment and interview experience. If you require reasonable accommodations to participate in our hiring process, please reach out to your recruiter directly or email accomodations@greenlight.me.
As published by Greenlight. Applications are handled on their site.
Skills this posting mentions
About Greenlight
Greenlight makes a debit card for kids and a mobile app that empowers parents with convenient controls to safely manage family finances and create teachable moments around earning, spending, saving and giving. Greenlight is easier and more flexible than cash, with parental controls that allow families to manage exactly where, and how much their kids can spend.
All 16 openings at GreenlightOne click, then it is written
Apply to Greenlight with a resume written for this role.
Queue Staff Offensive Security Engineer and I read the posting, rewrite your resume against it, draft the cover letter, and score the fit. Then you press send, or press one button and I fill in Greenlight’s form for you.
01Drop your resume
A PDF or a LinkedIn URL. About a minute, once.
02I rank the openings
Every weekday morning, the live catalog scored against your history. Up to 20 worth your time, not two hundred links.
03Each one is written up
Resume rewritten for the posting, a cover letter, a fit score. Press send, or let me fill in the form.
- 25 sent a week, free
- No card
- Nothing sent until you say so
More roles at Greenlight
See all- 5 weeks ago
- 6 weeks ago
- 8 weeks ago
- 8 weeks ago
Senior Software Engineer, Full-Stack (Web Core)
Atlanta (Remote Friendly)Remote
$142k - $210k/yrSeniorEngineering - 2 months ago
- 2 months ago
Similar roles elsewhere
See more- Today
Put this to work
Paste your career in once. Every application after that is written for you.
Drop a resume or a LinkedIn URL. I rank the live openings against it, rewrite the resume and write a cover letter for the best of them, and fill in the employer's form when you press the button. You read, you decide what goes out.
01Drop your resume
A PDF or a LinkedIn URL. About a minute, once.
02I rank the openings
Every weekday morning, the live catalog scored against your history. Up to 20 worth your time, not two hundred links.
03Each one is written up
Resume rewritten for the posting, a cover letter, a fit score. Press send, or let me fill in the form.
- New matches ranked and written before you are up.
- Every bullet stays inside what your history supports. Nothing invented.
- Queued, submitted, interviewing, offer: one screen, not a spreadsheet.
500 free credits on sign-up. No card. Nothing is sent until you say so.
Listed from the job board Greenlight publishes. Refolk is not the employer and does not handle their hiring. Applications go to Greenlight directly.