bluedoor data·Job Postings API·bluedoor.sh ↗

HomeCompaniesHorizon3aiWebapp Offensive Security Software Engineer

Webapp Offensive Security Software Engineer

Horizon3ai · US, Remote · Remote · Active · $185,000–$240,000 / year · Ashby

Job facts

FieldValue
CompanyHorizon3ai
TitleWebapp Offensive Security Software Engineer
Normalized title-
Department / teamEngineering / Engineering
LocationUnited States
Work modelRemote / Remote
Employment typeFull Time
Salary$185,000–$240,000 / year
Statusactive
ATS providerAshby
Posted / first seen / 2026-05-29
Changed / last seen2026-05-29 / 2026-06-06

Related slices

PageWhat it containsOpen
Company jobsActive postings from Horizon3ai.Open
Company breakdownsRole, location, ATS, and work model facets for this company.Open
ATS provider jobsActive postings observed through Ashby.Open
Provider filtered searchThe same provider as a filtered job collection.Open
Department jobsActive postings in Engineering.Open
Work model jobsActive Remote postings.Open
Lifecycle eventsOpen, update, close, and reopen events for this posting.Open
Original postingCanonical source or apply URL captured from the ATS.Open

Linked records

CompanyHorizon3ai
Sourced984d164-61a5-4213-b9b1-c1011e1ca8dc
ATS providerAshby

Description

Get to Know Us Horizon3.ai is a fast-growing, remote cybersecurity company dedicated to the mission of enabling organizations to proactively find and fix and verify exploitable attack vectors before criminals exploit them. Our flagship product, the NodeZeroTM platform, delivers production-safe autonomous pentests and other key assessment operations that scale across the largest internal, external, cloud, and hybrid cloud environments. NodeZero has been adopted by organizations of all sizes, from small educational institutions to government agencies and Global 100 enterprises. It is used by ITOps/SecOps teams, consulting pentesters, and MSSPs and MSPs. We are a fusion of former U.S. Special Operations cyber operators, startup engineers, and formerly frustrated cybersecurity practitioners. We're committed to helping solve our common security problems: ineffective security tools, false positives resulting in alert fatigue, blind spots, "checkbox” security culture, cybersecurity skills shortage, and the long lead time and expense of hiring outside consultants. Collectively, we are a team of learn it alls, committed to a culture of respect, collaboration, ownership, and results. Summary We're looking for an Offensive Security Software Engineer with extensive web application penetration testing experience and a growing interest in AI-enhanced security techniques. You will have a significant impact on how we deliver value to our customers by designing, developing, and integrating web application penetration testing content into the NodeZero platform. This position requires practical expertise in full-scope web application testing, proven software development skills, and enthusiasm for leveraging emerging AI technologies to advance offensive security capabilities. Essential Functions Design, develop, and integrate web application offensive security content into the NodeZero platform Design, develop, and integrate novel attack capabilities into the NodeZero platform, including offensive security tooling and AI-enhanced techniques. Research and implement AI-driven methods for vulnerability detection, exploitation, and workflow automation. Extend and maintain platform architecture, data models, and system design to support new product features. Monitor production for issues or missed opportunities and create or resolve Jira tickets as needed. Integrate open-source and in-house tools, ensuring quality through testing, code reviews, and production monitoring. Investigate, own, and resolve bugs in developed content. Collaborate cross-functionally to address customer and prospect concerns related to attack content. Author technical blog posts showcasing new research, exploits, or attack methodologies. Mentor junior engineers and contribute to continuous improvement of team processes and standards Competencies/Requirements Experience conducting full scope web application pentests Experience with proxy tools like Burp and with browser developer tools Proficient in object-oriented programming and test-driven development, with strong analytical and problem-solving skills. Experience applying AI-assisted development tools to security research and automation tasks Curiosity about emerging AI technologies. Skilled in designing, evaluating, and communicating technical solutions across systems, APIs, algorithms, and data structures. Familiarity with relational and graph databases, particularly Postgres and Neo4j. Strong written and verbal communication, including technical documentation. Ability to manage multiple priorities, work independently, and mentor teammates of varying experience levels. Quick to learn and adopt new technologies as needed. History of recognized security research, including documented CVE discoveries and responsible disclosure Track record of successful bug bounty contributions Desired/Nice to Have Experience developing software and automation to aid in web application pentesting Background in large-scale software development projects. Experience fine-tuning language models or implementing retrieval-augmented generation (RAG) for security-focused applications. Experience with AI/LLM tools for building agentic workflows (e.g., LangChain, LangFlow) and integrating contextual data using protocols like Model Context Protocol (MCP). Expectations: Outstanding problem-solving aptitude. Be self-motivated and highly energetic to have the ability to operate effectively with limited supervision and guidance. Work with our security researchers to understand the technical aspects of reverse engineered exploits and weaponizing these exploits into the product. Strong technical documentation and communication skills. Document findings, methodologies, and recommendations for both technical and non-technical stakeholders. Proficient in designing, presenting, and evaluating technical solutions. What makes you stand out: Demonstrated examples of using AI to enhance or automate exploit development OSCP (Offensive Security Certified Professional) Certification Travel Required We are a fully remote company, and this job may require up to 15% of travel to be successful. Job-related travel expenses are reviewed and must be approved by your manager. Perks of Horizon3.ai Inclusive Team: We value diversity and promote an inclusive culture where everyone can thrive. Growth Opportunities: Be part of a dynamic and growing team with numerous career development opportunities. Innovative Culture: Work in a collaborative environment that encourages creativity and out-of-the-box thinking. Remote Work: We are a 100% remote company. Enjoy the convenience and work-life balance that comes with remote work. Competitive Compensation: We offer competitive salary, equity and benefits. Our benefits include health, vision & dental insurance for you and your family, a flexible vacation policy, and generous parental leave. Compensation and Values At Horizon3, we believe that our people are our greatest asset, and our compensation philosophy reflects this core value. We are committed to fostering an environment where all employees feel valued, respected, and rewarded for their contributions. Our compensation structure is designed to be fair, competitive, and transparent, ensuring that every team member is recognized and compensated equitably across roles, levels, and locations. In accordance with various State’s transparency regulations, we provide the following salary range information for this position: Base salary range: $185,000 - $240,000 annually . The exact salary will be determined based on the selected candidate’s location, qualifications, experience, and relevant skills. Additional compensation: All full-time roles are eligible for an equity package in the form of stock options. You Belong Here Horizon3 is not just an equal opportunity employer - we are a community that values diversity, equity, and inclusion as fundamental principles of our culture and success. We are dedicated to fostering a workplace where everyone feels welcome and respected, regardless of race, color, religion, sex, national origin, age, disability, veteran status, sexual orientation, gender identity or expression, genetic information, marital status, or any other legally protected status by law. Our commitment to diversity and inclusion means we strive to attract, develop, and retain a workforce that reflects the varied communities we serve. We believe that diverse perspectives drive innovation and strengthen our ability to create cutting-edge cybersecurity solutions. At Horizon3, every team member is valued and supported in an environment that encourages personal and professional growth. We welcome candidates from all backgrounds and experiences, and we encourage all qualified individuals to apply. Come be a part of Horizon3, where your unique contributions are recognized, and your potential is limitless. Other Duties Please note this job description is not designed to cover or contain a comprehensive listing of activities, duties or responsibilities that are required of the employee. Duties, responsibilities, and activities may change at any time with or without notice.

Full job record

Job ID0fca4fe31bbb455906bf5bfcf0a07a48cb56cbf8
Org IDd0ea1478-eca1-4320-a9dc-542cf59c828b
Source IDd984d164-61a5-4213-b9b1-c1011e1ca8dc
Board IDd984d164-61a5-4213-b9b1-c1011e1ca8dc
Providerashby
Provider Job Key3a664c46-88f2-4367-8aa1-4413d29acd19
TitleWebapp Offensive Security Software Engineer
Normalized Title
Statusactive
Activeyes
Location TextUS, Remote
DepartmentEngineering
TeamEngineering
Employment Typefull_time
Workplace Typeremote
Remote Policyremote
CountryUnited States
Region
City
Salary Rawsalary range information for this position: Base salary range: $185,000 - $240,000 annually
Salary Min185,000
Salary Max240,000
Salary CurrencyUSD
Salary Periodyear
Source URLhttps://jobs.ashbyhq.com/horizon3ai/3a664c46-88f2-4367-8aa1-4413d29acd19
Apply URLhttps://jobs.ashbyhq.com/horizon3ai/3a664c46-88f2-4367-8aa1-4413d29acd19/application
First Seen At2026-05-29 06:48:56Z
Last Seen At2026-06-06 09:28:47Z
Last Checked At2026-06-06 09:28:47Z
Last Changed At2026-05-29 06:48:56Z
Inactive At
Source Posted At
Source Updated At
Raw Payload Uris3://job-postings-prod-raw-590183727216/raw/provider=ashby/board=horizon3ai/date=2026-06-06/2026-06-06T09-28-05-085Z-fc783f2c097db49d382e4d319bf05d636a69978052b61c912edc62b0074dab8c.json
Event Fields
{
  "content_hash": "04064fe07dbded385ea6ececc02a07511d066fd519fdc57eec401ef6d05352ff",
  "source_hash": "527d6692b7353fc03d5a99214cedcbcbd57b362b490f4e2e21a4022e6cf3697a",
  "last_changed_at": "2026-05-29T06:48:56.660Z",
  "active_status": "active"
}
Parsed Structured
{
  "language": "en",
  "location": {
    "raw": "US, Remote",
    "city": null,
    "region": null,
    "country": "United States",
    "is_remote": true,
    "confidence": 0.95
  },
  "salary_max": 240000,
  "salary_min": 185000,
  "inferred_at": "2026-06-06T09:28:47.025Z",
  "launch_scope": {
    "reason": "english_us_canada",
    "included": true,
    "language": "en",
    "location": {
      "raw": "US, Remote",
      "city": null,
      "region": null,
      "country": "United States",
      "is_remote": true,
      "confidence": 0.95
    },
    "countries": [
      "United States"
    ]
  },
  "remote_policy": "remote",
  "salary_period": "year",
  "workplace_type": "remote",
  "salary_currency": "USD"
}
Extensions
{}
Native Structured
{
  "id": "3a664c46-88f2-4367-8aa1-4413d29acd19",
  "team": "Engineering",
  "title": "Webapp Offensive Security Software Engineer",
  "jobUrl": "https://jobs.ashbyhq.com/horizon3ai/3a664c46-88f2-4367-8aa1-4413d29acd19",
  "address": null,
  "applyUrl": "https://jobs.ashbyhq.com/horizon3ai/3a664c46-88f2-4367-8aa1-4413d29acd19/application",
  "isListed": true,
  "isRemote": true,
  "location": "US, Remote",
  "updatedAt": null,
  "apiVersion": "ashby-non-user-graphql-v1",
  "department": "Engineering",
  "publishedAt": null,
  "workplaceType": "Remote",
  "employmentType": "FullTime",
  "secondaryLocations": []
}
Get this page with API

Rendered from the bluedoor Job Postings API. Reproduce it:

GET https://api.bluedoor.sh/job-postings/v1/jobs/0fca4fe31bbb455906bf5bfcf0a07a48cb56cbf8?include=descriptionJSON
GET https://api.bluedoor.sh/job-postings/v1/orgs/d0ea1478-eca1-4320-a9dc-542cf59c828bJSON
GET https://api.bluedoor.sh/job-postings/v1/sources/d984d164-61a5-4213-b9b1-c1011e1ca8dcJSON
GET https://api.bluedoor.sh/job-postings/v1/jobs/0fca4fe31bbb455906bf5bfcf0a07a48cb56cbf8/eventsJSON