Engineering Manager, Rapid Response
Listed on 2026-08-07
-
IT/Tech
Cybersecurity
Get to Know Us
Horizon
3.ai is a fast-growing, remote cybersecurity company dedicated to the mission of enabling organizations to proactively find and fix and verify exploitable attack vectors before criminals exploit them. Our flagship product, the NodeZeroTM platform, delivers production-safe autonomous pentests and other key assessment operations that scale across the largest internal, external, cloud, and hybrid cloud environments. Node Zero has been adopted by organizations of all sizes, from small educational institutions to government agencies and Global 100 enterprises.
It is used by ITOps/Sec Ops teams, consulting pentesters, and MSSPs and MSPs.
We are a fusion of former U.S. Special Operations cyber operators, startup engineers, and formerly frustrated cybersecurity practitioners. We're committed to helping solve our common security problems: ineffective security tools, false positives resulting in alert fatigue, blind spots, "checkbox" security culture, cybersecurity skills shortage, and the long lead time and expense of hiring outside consultants. Collectively, we are a team of learn it alls, committed to a culture of respect, collaboration, ownership, and results.
WhatYou’ll Do Leadership & Team Development
- Lead, mentor, and grow a team of Attack Engineers specializing in vulnerability research, reverse engineering, and exploit development.
- Manage a diverse team across multiple seniority levels (from junior engineers to Principal Attack Engineers), ensuring appropriate career development, mentorship, and growth paths for each.
- Set technical direction, priorities, and quality standards for vulnerability research and attack module development.
- Foster a culture of continuous learning, raising the bar for offensive rigor, delivery quality, and secure software development practices.
- Drive hiring and organizational scaling as the Vulnerability Research team expands.
- Own the delivery strategy across vulnerability research, patch-diffing, and rapid N-Day weaponization.
- Guide the development of end-to-end exploit methodologies:
- Oversee the reverse engineering of application binaries and patches (Java, C#, .NET, native binaries).
- Ensure the rapid and safe development of proof-of-concept (PoC) exploits for integration into the core product.
- Oversee the acquisition and configuration of test systems for exploit development and attack scenario validation.
- Ensure Node Zero capabilities remain cutting-edge by maintaining a comprehensive global view of emerging vulnerabilities and the latest threat landscape.
- Create tight feedback loops to ensure reverse-engineered exploits are swiftly weaponized and integrated into Node Zero.
- Manage operational cadences and ensure the team is prepared to rapidly respond to high-priority emerging vulnerabilities.
- 2-3+ years of direct people management experience
- 3+ years of software development experience
- 5+ years leading offensive security, vulnerability research, or red teams.
- Experience hiring and interviewing engineers
- Proven ability to balance hands-on technical depth with strategic leadership.
- Strong technical writing and communication skills, capable of conveying complex exploits to both technical and non-technical audiences.
- Deep expertise in vulnerability research, reverse engineering, and exploit development.
- In-depth knowledge of common exploitation techniques (e.g., SQL injection, path traversal, buffer overflows).
- Strong understanding of network protocols, virtualization technologies, and their role in exploitation vectors.
- Experience with reverse engineering technologies like IDA or Ghidra.
- Strong background in production software engineering, ideally in Python.
- Familiarity with secure software development practices, Git version control, and effective team workflows.
- Ability to evaluate technical designs and ensure high-quality, production-safe software.
- Experience working with database systems like Postgres or Neo4j.
- Experience with vulnerability disclosure processes (e.g., published CVEs) or bug bounty programs.
- Familiarity with additional programming languages such as C, C++, Rust, or Assembly.
- Knowledge of containerization technologies like Docker and Kubernetes.
- Experience working with cloud environments (AWS, etc.) and large-scale software projects.
- Relevant security certifications (e.g., OSCP or equivalent) are a plus.
We are a fully remote company, and this job may require up to 10% travel.
Perks of Horizon3.ai
- Inclusive Team:
We value diversity and promote an inclusive culture where everyone can thrive. - Growth Opportunities:
Be part of a dynamic and growing team with numerous career development opportunities. - Innovative Culture:
Work in a collaborative environment that encourages creativity and out-of-the-box think
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).