Horizon3.ai Logo

Horizon3.ai

Senior Manager, Attack Engineering

Posted 24 Days Ago
Be an Early Applicant
Remote
Hiring Remotely in US
235K-280K Annually
Senior level
Remote
Hiring Remotely in US
235K-280K Annually
Senior level
Lead and scale an External Attack Engineering team to design, validate, and productize offensive capabilities targeting public-facing infrastructure, SaaS, and identity-driven attack surfaces. Own technical strategy, mentor engineers, drive discovery-to-verification attack methodologies, partner with Product to translate findings into platform features, engage customers, and ensure production-safe, high-signal capabilities aligned with modern attacker tradecraft.
The summary above was generated by AI

Get to Know Us

Horizon3 is a fast-growing, remote cybersecurity company dedicated to the mission of enabling organizations to proactively find and fix and verify exploitable attack vectors before criminals exploit them. Our flagship product, the NodeZeroTM platform, delivers production-safe autonomous pentests and other key assessment operations that scale across the largest internal, external, cloud, and hybrid cloud environments. NodeZero has been adopted by organizations of all sizes, from small educational institutions to government agencies and Global 100 enterprises. It is used by ITOps/SecOps teams, consulting pentesters, and MSSPs and MSPs. 

We are a fusion of former U.S. Special Operations cyber operators, startup engineers, and formerly frustrated cybersecurity practitioners. We're committed to helping solve our common security problems: ineffective security tools, false positives resulting in alert fatigue, blind spots, "checkbox” security culture, cybersecurity skills shortage, and the long lead time and expense of hiring outside consultants. Collectively, we are a team of learn it alls, committed to a culture of respect, collaboration, ownership, and results.

 

Summary

We’re seeking an experienced Engineering Manager to lead our External Attack Engineering organization. In this role, you’ll oversee a team responsible for designing, validating, and scaling offensive capabilities within the NodeZero platform targeting the modern external attack surface, including public-facing infrastructure, SaaS platforms, and externally-facing enterprise commercial software.

You’ll operate at the intersection of offensive security, engineering, and product, driving both hands-on technical direction and strategic execution. This leader will ensure our external attack capabilities reflect real-world attacker tradecraft while remaining production-safe, high-signal, and impactful for customers.

Ideal candidates bring a strong mix of technical depth, leadership experience, and product mindset, and are excited to build and scale a team shaping the future of autonomous offensive security.

Essential FunctionsLeadership & Team Development
  • Lead and grow a team of Attack and Full-Stack Engineers specializing in the External Attack Surface, including Commercial and SaaS platform.

  • Set technical direction, priorities, and quality standards for external offensive capabilities.

  • Mentor engineers and raise the bar for offensive rigor, delivery quality, and customer-facing clarity.

  • Drive hiring and organizational scaling as the External Attack team expands.

External Attack Strategy & Execution (Hack, Fix, Verify, Repeat)
  • Own offensive strategy across:

    • External and Public-facing platforms and infrastructure

    • Enterprise SaaS and externally-facing enterprise commercial software

    • Identity, SaaS providers, and enterprise platform layers

  • Guide development of end-to-end attack methodologies (Discovery → verification):

    • Drive continuous, at-scale discovery of public-facing external assets.

    • Evaluate identity-centric threats by leveraging dark web and open-source intelligence to simulate credential compromise and phishing consequences.

    • Implement stealth-oriented authentication and password testing methodologies reflecting modern attacker tradecraft.

    • Simulate access abuse and data exfiltration across critical SaaS-based knowledge and information management ecosystems.

  • Ensure NodeZero capabilities are realistic, production-safe, and aligned with modern attacker tradecraft.

Product & Cross-Functional Partnership
  • Partner with Product and Design to translate field insights into prioritized roadmap input and productized capabilities.

  • Create tight feedback loops between real-world attack findings and platform evolution.

  • Help define next-generation attack surfaces across cloud and AI systems.

  • Own the UI/UX and product design for the external attack surface and perimeter breach scenarios, including simplifying the configuration of attack operations and developing visualizations that translate complex attack paths into clear, actionable storytelling regarding customer risk, exploitability, and findings.

Customer & External Impact
  • Oversee high-impact customer engagements and technical briefings.

  • Ensure clear articulation of exploitability, business impact, and remediation.

  • Contribute to external content such as blogs, demos, and thought leadership where appropriate.

Competencies / RequirementsLeadership
  • 5+ years leading offensive security, red team, or attack engineering teams.

  • Experience managing teams of 6–10+ engineers and scaling organizations.

  • Proven ability to balance hands-on technical depth with strategic leadership.

External Attack Surface Expertise
  • Strong expertise in one or more:

    • External/Public-facing infrastructure attack surfaces

    • Enterprise SaaS platforms and externally-facing enterprise commercial software

    • Identity and access abuse across diverse ecosystems

  • Deep understanding of:

    • Common misconfigurations and exploitation paths in external platforms

    • System-level compromise and lateral movement in externally-facing enterprise commercial software

    • Complex multi-platform attack scenarios

  • Ability to chain attack paths end-to-end and clearly explain impact.

Technical / Engineering Fluency
  • Strong background in software engineering (Python preferred). Experience with APIs, cloud automation, and infrastructure tooling.

  • Familiarity with CI/CD and infrastructure-as-code (Terraform, CloudFormation, etc.).

  • Comfortable working with Git, MR workflows, and product development cycles.

Product + Customer Orientation
  • Experience translating offensive findings into product capabilities.

  • Strong communication skills across technical and non-technical audiences.

  • Customer-first mindset with focus on real-world impact.

Desired Skills
  • Experience across diverse environments, including cloud infrastructure, enterprise SaaS, and externally-facing enterprise commercial software.

  • Familiarity with AI/LLM systems and associated attack surfaces.

  • Experience in security tooling, red teaming, or offensive engineering products.

  • Relevant security certifications (e.g., OSCP, cloud or SaaS security) are a plus.

  • Public research, blogs, or open-source contributions related to external attack surfaces.

Expectations
  • Highly self-directed and effective in ambiguous environments.

  • Able to operate at both strategic and hands-on technical levels.

  • Maintains high standards for quality, safety, and customer trust.

  • Strong cross-functional partner across Engineering, Product, and GTM.

  • Manage an on-call rotation for the team, ensuring appropriate coverage and response to critical incidents.

 
Travel Required

This job may require up to 10% travel.

 

Perks of Horizon3

  • Inclusive Team: We value diversity and promote an inclusive culture where everyone can thrive.

  • Growth Opportunities: Be part of a dynamic and growing team with numerous career development opportunities.

  • Innovative Culture: Work in a collaborative environment that encourages creativity and out-of-the-box thinking.

  • Hybrid & Remote Work: We embrace a mix of remote and hybrid work models depending on role and location, including our Chicago office, where some roles require regular in-office presence.

  • Competitive Compensation: We offer competitive salary, equity and benefits. Our benefits include health, vision & dental insurance for you and your family, a flexible vacation policy, and generous parental leave.

Compensation and Values

At Horizon3, we believe that our people are our greatest asset, and our compensation philosophy reflects this core value. We are committed to fostering an environment where all employees feel valued, respected, and rewarded for their contributions. Our compensation structure is designed to be fair, competitive, and transparent, ensuring that every team member is recognized and compensated equitably across roles, levels, and locations.

In accordance with various State’s transparency regulations, we provide the following salary range information for this position:

  • Base salary range: $235,000 - $280,000 annually. The exact salary will be determined based on the selected candidate’s location, qualifications, experience, and relevant skills.

  • Additional compensation: All full-time roles are eligible for an equity package in the form of stock options.

You Belong Here

Horizon3 is not just an equal opportunity employer - we are a community that values diversity, equity, and inclusion as fundamental principles of our culture and success. We are dedicated to fostering a workplace where everyone feels welcome and respected, regardless of race, color, religion, sex, national origin, age, disability, veteran status, sexual orientation, gender identity or expression, genetic information, marital status, or any other legally protected status by law.

Our commitment to diversity and inclusion means we strive to attract, develop, and retain a workforce that reflects the varied communities we serve. We believe that diverse perspectives drive innovation and strengthen our ability to create cutting-edge cybersecurity solutions. At Horizon3, every team member is valued and supported in an environment that encourages personal and professional growth.

We welcome candidates from all backgrounds and experiences, and we encourage all qualified individuals to apply. Come be a part of Horizon3, where your unique contributions are recognized, and your potential is limitless.

Other Duties

Please note this job description is not designed to cover or contain a comprehensive listing of activities, duties or responsibilities that are required of the employee. Duties, responsibilities, and activities may change at any time with or without notice. 

Application Note

In any materials you submit, you may redact or remove age-identifying information such as age, date of birth, or dates of school attendance or graduation. You will not be penalized for redacting or removing this information.

Similar Jobs

An Hour Ago
Remote or Hybrid
United States
90K-120K Annually
Junior
90K-120K Annually
Junior
HR Tech • Information Technology • Professional Services • Sales • Software
Partner with Account Executives to deliver tailored technical demonstrations, lead consultative discovery, translate integrations and security concepts for diverse stakeholders, and collaborate with product and customer success to remove technical blockers. Use data and industry knowledge to refine messaging, support revenue goals, and share best practices while staying current on trends and emerging technologies.
Top Skills: APIsChatgptGenerative AiSaaSSecurity Protocols
An Hour Ago
Remote or Hybrid
United States
108K-145K Annually
Mid level
108K-145K Annually
Mid level
HR Tech • Information Technology • Professional Services • Sales • Software
Partner with Account Executives to deliver technical demos, conduct discovery with multi-stakeholder buyers, design integrations and secure solutions, leverage CRM data, mitigate technical risks, provide product feedback, and mentor junior team members to drive successful SaaS mid-market sales outcomes.
Top Skills: Ai ToolsApi IntegrationsCloud PlatformsCRMGenerative Ai (Chatgpt)Sales Enablement ToolsSecurity ComplianceWebhooks
3 Hours Ago
In-Office or Remote
United States
58K-63K Annually
Senior level
58K-63K Annually
Senior level
Big Data • Information Technology • Software • Analytics • Energy
Perform comprehensive title searches for energy and utility projects, identify and resolve title defects, prepare and review title commitments and conveyance documents, plot legal descriptions, and support scalable title processes. Advise energy teams on mineral/royalty, leasehold, easements, and underwriting/curative matters while collaborating cross-functionally to remove blockers and ensure clear property titles for projects.
Top Skills: Integrity Title PlantRamquest

What you need to know about the Seattle Tech Scene

Home to tech titans like Microsoft and Amazon, Seattle punches far above its weight in innovation. But its surrounding mountains, sprinkled with world-famous hiking trails and climbing routes, make the city a destination for outdoorsy types as well. Established as a logging town before shifting to shipbuilding and logistics, the Emerald City is now known for its contributions to aerospace, software, biotech and cloud computing. And its status as a thriving tech ecosystem is attracting out-of-town companies looking to establish new tech and engineering hubs.

Key Facts About Seattle Tech

  • Number of Tech Workers: 287,000; 13% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Amazon, Microsoft, Meta, Google
  • Key Industries: Artificial intelligence, cloud computing, software, biotechnology, game development
  • Funding Landscape: $3.1 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Madrona, Fuse, Tola, Maveron
  • Research Centers and Universities: University of Washington, Seattle University, Seattle Pacific University, Allen Institute for Brain Science, Bill & Melinda Gates Foundation, Seattle Children’s Research Institute

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account