Perplexity
Member of Technical Staff (Offensive Security Engineer)
Part remote, part office, you need to live within commuting distance of a named location.
Hybrid · San Francisco
Employer listed it 6 months ago · Added 2 days ago
Been open since 6 months ago. Long-running listings are sometimes left up after the role is filled.
Salary
$220,000 to $405,000
Location
Hybrid · San Francisco
Timezone
Not stated
Contract
Full-time
Experience
Lead
Category
Software
Published by the employer
Remote flexibility
Hybrid
This role is only partly remote, the employer expects time in the office around San Francisco, Remote (United States), London, Belgrade, New York City, Hybrid, so you need to live within commuting distance.
What the employer says
- Source listing states candidate location: "San Francisco, Remote (United States), London, Belgrade, New York City, Hybrid"
- Listing mentions "Hybrid"
What Nomaders makes of it
- Not suitable if you plan to move between countries
The quotes above are the employer's own words; the reading is ours. Always check the original listing and employment terms before working from another country.
About the role
Perplexity is seeking a highly skilled, experienced and hands-on Offensive Security Engineer to join our dynamic security team, taking an adversarial approach to hardening Perplexity's infrastructure, applications, and AI systems. You'll plan and execute red team operations, penetration tests, and attack simulations across our cloud infrastructure, web and mobile applications, AI/ML pipeline, and corporate environment—finding real vulnerabilities before adversaries do and working directly with engineering teams to drive remediation.
Responsibilities
Plan and execute red team and purple team engagements simulating advanced threat actors across cloud infrastructure (AWS, Kubernetes), endpoints, and application surfaces
Conduct continuous penetration testing of web applications, APIs, mobile clients, browser extensions, cloud infrastructure, and internal services
Assess AI/ML-specific attack surfaces including prompt injection, model exfiltration, agent abuse, tool-use exploitation, and MCP security boundaries
Develop and maintain custom offensive tooling, exploits, and automation to improve the efficiency and coverage of security testing
Perform open-scope adversary simulations that test detection and response capabilities end to end, collaborating closely with the defensive security team
Drive threat modeling sessions with engineering teams to identify and prioritize attack vectors in new features and architectures
Deliver clear, actionable findings to both technical and executive audiences; partner with engineering to validate remediations
Contribute to the security of CI/CD pipelines, supply chain integrity, and secrets management through offensive assessment
Stay current on emerging attack techniques, vulnerability research, and adversary tradecraft; bring external perspective into Perplexity's security strategy
Qualifications
5+ years of hands-on experience in offensive security, red teaming, or penetration testing
Deep technical expertise in at least two of: cloud security (AWS/GCP/Azure), web/API application security, Kubernetes and container security, macOS/Linux endpoint security, network penetration testing, or CI/CD pipeline security
Track record of discovering impactful vulnerabilities or developing novel attack techniques in production environments
Strong programming and scripting skills in Python, Go, or similar languages; comfortable writing custom tooling and exploits
Experience with industry-standard offensive tools (Burp Suite, Cobalt Strike / Sliver / Mythic, Metasploit, BloodHound, nuclei, etc.) and ability to operate beyond them
Excellent written and verbal communication; able to translate complex technical findings into clear risk narratives
Experience assessing AI/ML systems, LLM applications, or agentic workflows for security vulnerabilities
Bonus: Published security research, conference talks (DEF CON, Black Hat, BSides), CVE credits, or meaningful bug bounty contributions
Requirements
- ·5+ years of hands-on experience in offensive security, red teaming, or penetration testing
- ·Track record of discovering impactful vulnerabilities or developing novel attack techniques in production environments
- ·Strong programming and scripting skills in Python, Go, or similar languages; comfortable writing custom tooling and exploits
- ·Experience with industry-standard offensive tools (Burp Suite, Cobalt Strike / Sliver / Mythic, Metasploit, BloodHound, nuclei, etc.) and ability to operate beyond them
- ·Excellent written and verbal communication; able to translate complex technical findings into clear risk narratives
Benefits
No benefits package published with this listing. Ask about it at first interview.
How to apply
- 1Check the flexibility label above, hybrid, matches where you plan to live and work.
- 2Tailor your CV to the role at Perplexity, mentioning your remote working experience.
- 3Apply directly on the employer's careers page using the button below. Nomaders never handles your application.
Found 3d ago. Last checked 23 Sept. Always confirm the details on the original posting, salary and location can change after publication.
Listing sourced from Company boards.
Similar roles
Other open software roles with comparable remote rules.
Free to apply, no account needed.
$220,000 to $405,000 · You'll be taken to the employer's careers page.