Nebius Token Factory logo
Nebius Token FactoryPosted 1 month ago

Offensive Security Lead

Remote

Full TimeSenior LevelLarge

Job Summary

Build and lead an internal red team function, hiring and developing offensive security engineers to execute adversarial simulations against Nebius Cloud stack assets. Validate and extend early-stage Secure SDLC threat models via continuous penetration testing, automating routine checks while reserving manual analysis for complex cases. Plan full-scoped engagements covering compute, storage, inference, networking, and orchestration layers, identifying threats that impact operations. Research novel attacks against GPU infrastructure, the inference stack, and AI platform managed services to assess tenant-isolation boundaries. Conduct targeted assessments of new products and infrastructure changes before shipment, then deliver clear, actionable reports with prioritized findings and remediation guidance for technical and leadership audiences. Establish scalable red team processes and tooling to support platform growth.

Required Qualifications

  • 6+ years in offensive security - penetration testing, red teaming, or adversary simulation
  • at least 1-2 years leading or mentoring a team
  • Deep experience attacking cloud-native environments: Kubernetes privilege escalation, cloud IAM abuse, virtualization and container escapes
  • Strong fundamentals across the attack lifecycle: initial access, persistence, lateral movement, data exfiltration
  • Proficiency developing custom tooling and post-exploitation capabilities (Python, Go, or similar)
  • Experience running purple team exercises and working constructively with blue teams
  • Ability to write clear, senior-level reports with business-contextualized risk (not just raw findings) that engineers can easily use
  • Applicants must be authorized to work in the country in which they apply

Desired Qualifications

  • Experience attacking ML infrastructure, model serving pipelines, or GPU clusters
  • Reverse engineering and exploits development experience
  • Application security experience
  • Familiarity with eBPF bypass techniques or kernel-level exploitation
  • Background in vulnerability research or CVE discovery
  • Experience with cloud provider internals (hypervisor/networking layers)
  • Presenting your security research at conferences like BlackHat/DefCon, etc.

Hiring someone like this?

Get your role in front of qualified candidates on Sorce.

Get started

Apply to this job in one click with Sorce

Apply on Sorce