Federal Software Engineer, Attack
Software Engineering
United States · Remote
Get to Know Us
Horizon3.ai is a fast-growing, remote cybersecurity company dedicated to the mission of enabling organizations to proactively find and fix and verify exploitable attack vectors before criminals exploit them. Our flagship product, the NodeZeroTM platform, delivers production-safe autonomous pentests and other key assessment operations that scale across the largest internal, external, cloud, and hybrid cloud environments. NodeZero has been adopted by organizations of all sizes, from small educational institutions to government agencies and Global 100 enterprises. It is used by ITOps/SecOps teams, consulting pentesters, and MSSPs and MSPs.
We are a fusion of former U.S. Special Operations cyber operators, startup engineers, and formerly frustrated cybersecurity practitioners. We're committed to helping solve our common security problems: ineffective security tools, false positives resulting in alert fatigue, blind spots, "checkbox” security culture, cybersecurity skills shortage, and the long lead time and expense of hiring outside consultants. Collectively, we are a team of learn it alls, committed to a culture of respect, collaboration, ownership, and results.
Summary/Overview
The Software Engineer - Attack, will be a software engineer joining our engineering team and reporting to the Director of Federal Engineering. The Software Engineer - Attack will be responsible for attack content development and data model architecture enhancement. The candidate being sought should be a creative, self-motivated, highly energetic, results and detail oriented individual passionate about software development, product development, architectural design. Strong candidates will also have a background or strong interest in offensive cyber security.
Essential Functions
Collaborate with the Attack, Data, Commercial and Federal engineering team in all phases of the software development lifecycle.
Work to improve the scalability of the NodeZero platform by empowering the Attack team to build new features and add new offensive attack content into the product.
Work with other attack engineers and N-Day researchers to understand the technical aspects of reverse engineered exploits and how they act and interact within the product in production.
Maintain and extend the platform architecture, design, and data model to support new product features.
Identify, take ownership of and resolve bugs in the product.
Maintain a high-degree of software quality though code review, testing, and production monitoring.
Adhere to and improve technical and developmental processes of the Federal Attack Team
Competencies
Ability to manage concurrent initiatives and use effective judgment in prioritization and time management.
Excellent analytical/problem solving ability.
Be self-motivated and highly energetic to have the ability to operate effectively with limited supervision and guidance.
Strong technical documentation and communication skills.
Proficient in designing, presenting, and evaluating technical solutions.
Ability to evaluate and collaboratively improve algorithms, data structures, web development, and API design.
Experience with relational and graph database systems including Postgres and Neo4j.
Ability to collaborate with and mentor teammates with varying skill levels and areas of expertise.
Ability to learn and master new technologies as required.
Excellence in object oriented programming and test driven development (e.g. Edge case testing).
Required Education/Experience
Bachelor’s and/or master's degree in business administration, commerce, computer science, engineering or related field or significant relevant industry experience.
Proficient in Python software development.
Proficient with Docker, and relational and graph databases.
Strong grasp and application of software design principles.
Experience developing and testing complex software systems with special emphasis on Federal networks at all classification levels.
Strong grasp of secure software development practices.
Proficient with version control software (Git) and effective workflows for team collaboration.
Must have or be willing to gain certifications required to operate on federal networks (SEC+, etc.)
Preferred Education/Experience
Current or ability to gain and maintain a United States Government Security Clearance.
Experience developing software in a fast-paced work environment.
Knowledge/experience developing solutions within the AWS ecosystem.
Extensive software architecture/design experience.
Cyber security related certifications/designations, such as:
Offensive Security Certified Professional (OSCP)
Certified Information Systems Security Professional (CISSP)
GIAC Penetration Tester (GPEN)
Other Duties
Please note this job description is not designed to cover or contain a comprehensive listing of activities, duties or responsibilities that are required of the employee. Duties, responsibilities, and activities may change at any time with or without notice.
Travel Required
We are a fully remote company, and this job may require up to 5% of travel to be successful. Job-related travel expenses are reviewed and must be approved by your manager.
Why H3
Competitive Compensation: We offer competitive salary, equity and benefits. Our benefits include health, vision & dental insurance for you and your family, a flexible vacation policy, and generous parental leave.
Growth Opportunities: Be part of a dynamic and growing team with numerous career advancement opportunities.
Innovation-Driven Culture: Work in a collaborative environment that encourages creativity and out-of-the-box thinking.
Hybrid & Remote Work: We embrace a mix of remote and hybrid work models depending on role and location, including our Chicago office, where some roles require regular in-office presence.
Inclusive and Diverse Team: We value diversity and promote an inclusive culture where everyone can thrive.
Compensation Disclosure
In accordance with various State’s transparency regulations, we provide the following salary range information for this position:
Base salary range: The exact salary will be determined based on the selected candidate’s location, qualifications, experience, and relevant skills.
Additional compensation: All full-time roles are eligible for an equity package in the form of stock options.
We are committed to pay equity, fairness, and transparency. All candidates will be evaluated based on their skills, experiences, and potential contributions without regard to race, gender, age, or any other protected status. Horizon3.ai is an equal opportunity employer and is committed to providing a work environment that is free from discrimination and harassment. We do not discriminate based on race, color, religion, sex, national origin, age, disability, veteran status, sexual orientation, gender identity or expression, genetic information, marital status, or any other legally protected status.
We encourage all qualified candidates to apply for open positions with our company and welcome candidates from all backgrounds and experiences. We are committed to providing equal employment opportunities to all employees and applicants for employment and will make reasonable accommodations to enable individuals with disabilities to perform the essential functions of their roles.
Join Horizon3.AI’s team of passionate professionals and contribute to the growth of cutting-edge cybersecurity solutions while building strong customer relationships in a dynamic and remote work environment.