SlipstreamJobs tracks this role from the company's public career site. Apply directly on the employer's site.
Salary: USD 170,000 - 0 / annual
Array is a financial innovation platform delivering credit and identity monitoring tools, privacy protection, and a financial ads marketplace to digital brands, financial institutions, and fintechs. The company seeks a Senior Offensive Security Engineer to validate product security through real-world exploitation and penetration testing.
In this role, you will operate as a paid hacker with full access to Array's applications, source code, and infrastructure to identify vulnerabilities that create meaningful business risk. You'll think like an attacker, develop proof-of-concept exploits demonstrating real impact, and use AI as a primary tool to analyze large codebases, accelerate hypothesis generation, and increase testing coverage while validating results with your own judgment.
Key responsibilities include identifying and demonstrating realistic attack paths against Array's products and infrastructure with focus on business impact; analyzing multi-language codebases using AI and manual techniques to uncover vulnerabilities and perform variant analysis; building safe proof-of-concept exploits demonstrating unauthorized access, privilege escalation, data exposure, or business logic flaws; partnering with engineering to validate remediations and confirm exploit paths are eliminated; and documenting findings with clear evidence, technical root cause, business impact, and practical remediation guidance.
You bring 5+ years of offensive security, application security, penetration testing, or red team experience with a track record of finding real application vulnerabilities. You have deep expertise in modern web applications, APIs, authentication, authorization, distributed systems, and OWASP Top 10. You're proficient using AI to accelerate vulnerability discovery, exploit development, and code analysis while validating AI-generated output. Strong communication skills enable you to explain complex vulnerabilities and attack paths to engineering teams. You view AI as reshaping work and instinctively use it to accelerate everything you do.
Success is measured by demonstrated exploit paths to sensitive data or unauthorized access; security gaps identified that existing tools missed; high-confidence validation that engineering fixes eliminate vulnerabilities; and meaningful system coverage supported by documented testing methodology.