Role in brief
Coinbase is seeking a Senior Offensive Security Engineer to perform penetration tests on networked devices and IoT systems. This role involves identifying vulnerabilities, reporting findings, and integrating security best practices. Candidates with a background in physical space security and an active security clearance are well-suited for this position.
About the role
This role focuses on assessing and securing digital aspects of physical environments, including IoT devices and prosumer networking equipment. The engineer will conduct thorough penetration tests on networked systems, pinpointing vulnerabilities and developing detailed reports with recommendations. This work is critical for maintaining the security posture of the company's infrastructure.
The position requires close collaboration with both security and development teams to ensure that security best practices are embedded throughout the development lifecycle. Staying informed about the latest security threats and industry trends is also a key part of the role, ensuring that defenses remain robust against evolving challenges. Success in this position involves effectively communicating complex security issues to both technical and non-technical audiences.
The team operates remotely but requires in-person participation for various events throughout the year, including team and company-wide offsites. This blend of remote work and in-person collaboration aims to foster strong team connections and alignment. The work directly contributes to securing the emerging onchain platform and the future global financial system.
The salary for this position ranges from $112,000 to $188,000 USD, plus equity and bonus eligibility.
Skills that matter here
- IOT: This role involves conducting penetration tests specifically on Internet of Things devices.
- network pentesting: A core responsibility is performing penetration tests on various networked devices and infrastructure.
- security clearance: An active, current, or recently expired security clearance is a prerequisite for this position.
- penetration testing: Expertise in penetration testing across the full threat spectrum is essential for identifying system vulnerabilities.
- networking protocols: A strong understanding of networking protocols is necessary for effective network security assessments.
- security frameworks: Knowledge of security frameworks is required to implement and integrate security best practices.
Who this role suits
- A person with a background in securing physical spaces and networked infrastructure.
- Someone who can effectively communicate complex technical findings to diverse audiences.
- An individual who is proactive in staying current with security threats and industry best practices.
- A candidate comfortable with occasional travel for in-person team and company events.
From the employer
- Assess the digital security of physical spaces, including IOT and prosumer networking gear.
- Conduct comprehensive penetration tests on networked devices.
- Identify and exploit vulnerabilities, providing detailed reports and recommendations.
- Collaborate with security and development teams to integrate security best practices.
- Stay current with security threats and industry best practices.
- Present findings to technical and non-technical stakeholders.
- Active, current, or recently expired security clearance.
- 2+ years of experience with C-Suite at S&P 500 organizations.
- Proven penetration testing expertise across the full threat spectrum.
- Expertise in securing physical spaces and networked security infrastructure.
- Strong understanding of networking protocols and security frameworks.
- Proficiency in penetration testing tools and methodologies.
- Excellent communication and report-writing skills.
- Ability to travel occasionally.
- Remote work with in-person participation required throughout the year.
- Team and company-wide offsites held multiple times annually.
- Salary range: $112K-$188K USD.
- Equity and bonus eligibility.
- Benefits including medical, dental, vision, and 401(k).
Questions about this role
What is the remote work policy for this role?
This is a remote position, but it requires in-person participation for team and company-wide offsites multiple times annually.
What level of seniority is expected for this position?
This is a senior-level role, requiring significant experience in offensive security.
What are the key technical skills required for this role?
Key skills include IOT and network pentesting, a security clearance, expertise in penetration testing, and a strong understanding of networking protocols and security frameworks.