Red Team Security Engineer evaluating Motive's fleet-management platform and cloud environments. Executing adversary simulations, validating detection coverage, and driving remediation of security issues.
Responsibilities
Serve as the primary Security partner for software and engineering teams
Evaluate security posture across the organization
Plan and execute red team operations, adversary simulations, and targeted security assessments focused on cloud environments
Identify and validate attack paths involving IAM misconfigurations, overprivileged roles, secrets exposure, metadata abuse, insecure automation, and cloud service configuration weaknesses
Assess detection and response coverage by exercising logging, alerting, monitoring, and incident response processes with blue team and detection engineering functions
Track emerging attacker techniques, cloud exploitation trends, and new abuse paths relevant to modern enterprise environments
Drive remediation efforts for identified issues
Requirements
5+ years of experience in offensive security, red teaming, penetration testing, and detection validation
Familiarity with attacker tactics, techniques, and procedures
Ability to map findings to frameworks such as MITRE ATT&CK
Ability to write concise, actionable reports
Ability to communicate complex technical issues to diverse stakeholders
Relevant industry certifications such as OSCP, OSEP, GXPN, GPEN, or cloud security certifications
Must be authorized to receive and access commodities and technologies controlled under U.S. Export Administration Regulations
Employees must be authorized to receive access to Motive products and technology
Benefits
Health, pharmacy, optical, and dental care benefits
Paid time off
Sick time off
Short-term and long-term disability coverage
Life insurance
401(k) contribution
Potential restricted stock units for certain roles
Some interviews or new-hire training sessions may be held in person at one of Motive's global offices
Head of Information Security leading OpenZeppelin’s enterprise security, privacy, IT, and AI governance programs. Securing open - source infrastructure used across onchain finance and digital assets.
Information Systems Security Manager securing RideCo’s cloud - based on - demand transit platform. Leading compliance, risk management, incident response, and security operations.
Senior Security Specialist securing RBC’s cloud banking environments across AWS, Azure, and Google Cloud. Executing red/purple team exercises and refining offensive security tooling.
Senior Security Specialist operating BloodHound Enterprise for RBC, a Canadian bank. Mapping identity attack paths and prioritizing remediation across cloud, AD, DevOps, and PAM environments.
Staff Security Researcher conducting vulnerability research and penetration testing for GitLab’s AI - powered DevSecOps platform. Developing attack methodologies, tooling, and security improvements.
Principal Security Researcher securing GitLab’s AI - powered DevSecOps platform. Leading vulnerability research, AI attack analysis, penetration testing, and remediation across GitLab’s codebase.
Senior security advisor strengthening Desjardins's security posture across governance, data protection, and fraud prevention. Leading complex strategic initiatives for the Desjardins financial services organization.