- Location
- Israel
- Level
- Mid level
- Posted
- 2 months ago
About this role
🔹 Title: Offensive Security Researcher
📍 Locations (Hybrid): Tel Aviv (Sky Tower)
👥 Reporting To: Threat Research Team Leader
🌟 Opportunity Highlights
We are looking for an Offensive Security Researcher to join our team; an enthusiastic, autodidact who is passionate about analyzing vulnerabilities and malware techniques. You will build offensive breach scenarios, with a particular emphasis on cloud environments (AWS, Azure, GCP) and adversarial techniques against AI systems and agents, integrating the latest security knowledge into the SafeBreach platform of threats and 1-day exploits. The role sits alongside our core threat research team and contributes to the full Hacker's Playbook™ across Windows, Linux, and AD red teaming as well.
👋 Who We Are
SafeBreach is on a mission to help organizations have certainty in their security. Long trusted as the global leader in adversarial exposure validation (AEV), SafeBreach empowers organizations to take command of risk by operationalizing the full CTEM lifecycle with the SafeBreach CTEM Platform. Powered by the SafeBreach Helm AI infrastructure layer and grounded in the award-winning SafeBreach Exposure Validation Platform, the SafeBreach CTEM Platform is the first enterprise-grade, closed-loop solution designed to move organizations beyond siloed security activities toward a continuous, intelligence-driven exposure management program. Backed by world-renowned threat researchers and an unrivaled customer success team, SafeBreach provides the capabilities enterprises need to holistically understand threat exposure, make data-driven decisions that reduce risk, and measurably improve cyber resilience - safely and at scale. We are a team of passionate security professionals and innovators. If you’re ready to tackle complex security challenges and make a tangible impact on enterprise defense, we’d love to meet you.
🚀 The Impact You Will Have
- Lead research in Cloud offensive techniques across AWS, Azure, and GCP: privilege escalation paths, identity abuse, metadata service attacks, lateral movement across cloud-native services.
- Drive offensive AI research: building adversarial techniques against AI systems and agents (prompt injection, model evasion, agent hijacking, supply-chain attacks on AI pipelines).
- Research in rich environments: Work across Windows, Linux, Mac, Docker, and advanced cloud environments (AWS, Azure, GCP).
- Research and implement a huge variety of cyber tactics (privilege escalation, defense evasion, lateral movement, OS persistence, credential access, etc)
- Exploit complex 1-days on apps & native OS.
- Innovate & Build: Work with a wide variety of technologies to simulate real-world adversarial behavior.
🧬 What Sets You Apart
- 5+ years of security research experience
- Ability to handle new technological concepts
- Self-driven, autonomous learning abilities
- Knowledge in developing with Python
- Knowledge in offensive or red-team approach
- Hands-on experience in Cloud offensive (AWS, Azure, and/or GCP)
- Hands-on experience in Offensive AI research: attacking AI systems, AI agents, or AI-driven security controls
💥 Even BETTER if you have
- Knowledge in exploitations and vulnerabilities - Advantage
- Knowledge in OS internals - Advantage
- knowledge in reverse engineering and development in C - Advantage
- Knowledge in Cloud offensive - Advantage
- Knowledge in AI offensive - Advantage
💰 What We Offer
- Competitive salary and equity grants
- Hybrid flexibility
- Quarterly recharge weekends
- Learning & development stipend
- Generous paid leave policies including flexible PTO and parental leave
🤝 HOW WE'LL GET TO KNOW EACH OTHER
We view interviewing as a two-way street. We want you to interview us just as much as we interview you! (Avg. timeline: 21 days)
Step 1: The Intro (15 min)
A casual meeting with the Talent team to break the ice.
Step 2: The Vision (45 min meeting)
Connect your future manager to discuss the role, the challenges, and how you can make an impact
Step 3: The Squad & The Big Picture (45-60 min meetings)
Meet some of your future teammates in our Tel Aviv office, as well as our HR Team and VP of R&D to ensure our values and long-term goals align with yours.
Step 4: The Offer
If the vibe is right, we make it official!
🌍 DEI&B Commitment (Diversity, Equity, Inclusion & Belonging)
At SafeBreach, we celebrate the rich diversity of our team, where every employee's unique perspective is a valued thread in our collective success. We are unwavering in our commitment to fostering an inclusive workplace that nurtures a sense of belonging and empowers each individual to unleash their full potential. We are dedicated to creating opportunities for collaboration, innovation, and meaningful career growth, ensuring that every voice is not just heard, but cherished.
As published by SafeBreach. Applications are handled on their site.
Skills this posting mentions
About SafeBreach
SafeBreach is the leader in enterprise-grade exposure validation, providing the world’s largest brands with safe and scalable capabilities to understand, measure and remediate threat exposure and associated cyber risk. The award-winning SafeBreach exposure validation platform combines pioneering breach and attack simulation and innovative attack path validation capabilities to help enterprise security teams measure and address security gaps at the perimeter and beyond. Backed by a world-renowned original threat research team and world-class support, SafeBreach helps enterprises transform their security strategy from reactive to proactive safely and at scale. To learn more about how SafeBreach helps enterprises with end-to-end exposure visibility, visit www.safebreach.com.
All 5 openings at SafeBreachOne click, then it is written
Apply to SafeBreach with a resume written for this role.
Queue Offensive Security Researcher and I read the posting, rewrite your resume against it, draft the cover letter, and score the fit. Then you press send, or press one button and I fill in SafeBreach’s form for you.
01Drop your resume
A PDF or a LinkedIn URL. About a minute, once.
02I rank the openings
Every weekday morning, the live catalog scored against your history. Up to 20 worth your time, not two hundred links.
03Each one is written up
Resume rewritten for the posting, a cover letter, a fit score. Press send, or let me fill in the form.
- 25 sent a week, free
- No card
- Nothing sent until you say so
More roles at SafeBreach
See all- 5 weeks ago
- 5 weeks ago
- 2 months ago
- 3 months ago
Similar roles elsewhere
See more- 4 days ago
Principal Product Manager (XDR & Exposure Management) - Security Solutions
ElasticIsrael
PrincipalEngineering - 4 days ago
Principal Product Manager (Strategic Account Interactions) - Security Solutions
ElasticIsrael
PrincipalEngineering
Put this to work
Paste your career in once. Every application after that is written for you.
Drop a resume or a LinkedIn URL. I rank the live openings against it, rewrite the resume and write a cover letter for the best of them, and fill in the employer's form when you press the button. You read, you decide what goes out.
01Drop your resume
A PDF or a LinkedIn URL. About a minute, once.
02I rank the openings
Every weekday morning, the live catalog scored against your history. Up to 20 worth your time, not two hundred links.
03Each one is written up
Resume rewritten for the posting, a cover letter, a fit score. Press send, or let me fill in the form.
- New matches ranked and written before you are up.
- Every bullet stays inside what your history supports. Nothing invented.
- Queued, submitted, interviewing, offer: one screen, not a spreadsheet.
500 free credits on sign-up. No card. Nothing is sent until you say so.
Listed from the job board SafeBreach publishes. Refolk is not the employer and does not handle their hiring. Applications go to SafeBreach directly.