xelys jobs xelys jobs

Engineering Manager (Rapid Response)

Horizon3

full-remoteseniorpermanentengineering-managementsecurity Full remote Today via WTTJ

See how well this job matches your profile

Sign up to get an AI match score and generate a tailored application in seconds.

Get your match score

Tags

Offensive SecurityVulnerability ResearchReverse EngineeringExploit DevelopmentPythonIDAGhidraPostgreSQLDockerKubernetes

About the role

Role Overview

Engineering Manager (Rapid Response) at Horizon3 (Full remote). Lead and scale a team of Attack Engineers focused on vulnerability research and exploit development, setting technical direction, priorities, and delivery strategy.

Responsibilities

  • Lead, mentor, and grow a team of Attack Engineers specializing in vulnerability research, reverse engineering, and exploit development
  • Own the delivery strategy for vulnerability research, including patch-diffing and rapid N-Day weaponization
  • Drive hiring and organizational scaling as the Vulnerability Research team expands
  • Oversee end-to-end exploit methodology development
  • Balance hands-on technical depth with strategic leadership

Requirements

  • 3+ years of software development experience
  • 2–3+ years of direct people management experience
  • 5+ years leading offensive security / vulnerability research / red team activities
  • Strong communication and technical writing skills (including explaining complex exploits to technical and non-technical audiences)
  • Deep expertise in vulnerability research, reverse engineering, and exploit development
  • Strong understanding of network protocols and virtualization/containerization concepts relevant to exploitation
  • Experience evaluating technical designs and ensuring production-safe quality
  • Familiarity with secure software development practices, Git, and effective team workflows
  • Background in production software engineering, ideally Python
  • Experience with database systems such as PostgreSQL or Neo4j
  • Familiarity with vulnerability disclosure processes (e.g., published CVEs) or bug bounty programs
  • Experience with reverse engineering tools such as IDA or Ghidra
  • Knowledge of common exploitation techniques (e.g., SQL injection, path traversal, buffer overflows)

Nice to Have

  • Additional languages: C/C++, Rust, Assembly
  • Containerization: Docker, Kubernetes
  • Cloud experience (e.g., AWS)
  • Security certifications (e.g., OSCP or equivalent)

Scraped 8/5/2026