<?xml version="1.0" encoding="UTF-8"?>
<source>
  <jobs>
    <job>
      <externalid>944ee488-dc3</externalid>
      <Title>Staff Offensive Security Engineer</Title>
      <Description><![CDATA[<p>Join us in building the future of finance.</p>
<p>Our mission is to democratize finance for all.</p>
<p>An estimated $124 trillion of assets will be inherited by younger generations in the next two decades. The largest transfer of wealth in human history.</p>
<p>If you’re ready to be at the epicenter of this historic cultural and financial shift, keep reading.</p>
<p><strong>About the team + role</strong></p>
<p>We are building an elite team, applying frontier technologies to the world’s biggest financial problems. We’re looking for bold thinkers. Sharp problem-solvers. Builders who are wired to make an impact.</p>
<p>Robinhood isn’t a place for complacency, it’s where ambitious people do the best work of their careers.</p>
<p>We’re a high-performing, fast-moving team with ethics at the center of everything we do. Expectations are high, and so are the rewards.</p>
<p>The Red Team team’s mission is to proactively identify and simulate real-world threats against Robinhood’s platforms, properties, and people.</p>
<p>Through red teaming and adversarial simulations, the team evaluates security controls, uncovers vulnerabilities, and helps continuously strengthen Robinhood’s overall security posture in close partnership with Detection &amp; Response, Physical Security, and Engineering.</p>
<p>As a Staff Offensive Security Engineer, you will take a hands-on role in designing and executing stealthy adversarial simulations to validate assumptions and uncover gaps in detection and response.</p>
<p>You’ll leverage threat modeling, penetration testing, and research-driven techniques to emulate sophisticated attackers, while collaborating cross-functionally to improve defenses and shape more secure systems.</p>
<p>This role is based in our Toronto, Canada office(s), with in-person attendance expected at least 3 days per week.</p>
<p>At Robinhood, we believe in the power of in-person work to accelerate progress, spark innovation, and strengthen community.</p>
<p>Our office experience is intentional, energizing, and designed to fully support high-performing teams.</p>
<p><strong>What you’ll do</strong></p>
<ul>
<li>Plan and execute red team operations, adversarial simulations, and penetration tests across applications, infrastructure, networks, offices, and internal processes.</li>
</ul>
<ul>
<li>Perform threat modeling for new and existing services, clearly articulating security risks and tradeoffs to engineering and risk stakeholders.</li>
</ul>
<ul>
<li>Conduct vulnerability research, exploit development, and testing using both custom tooling and public proof-of-concept techniques.</li>
</ul>
<ul>
<li>Partner with detection and response teams to simulate realistic attack scenarios and evaluate monitoring and incident response readiness.</li>
</ul>
<ul>
<li>Write and maintain tooling to automate and scale offensive security assessments.</li>
</ul>
<ul>
<li>Serve as a subject matter expert by documenting findings, recommending remediation strategies, and supporting teams through fixes.</li>
</ul>
<ul>
<li>Mentor teammates and contribute to shared knowledge through internal documentation, presentations, and external talks or blog posts.</li>
</ul>
<p><strong>What you bring</strong></p>
<ul>
<li>8+ years of hands-on experience in red teaming, offensive security, or penetration testing.</li>
</ul>
<ul>
<li>Demonstrated experience mentoring or guiding other security engineers.</li>
</ul>
<ul>
<li>Strong understanding of threat modeling methodologies and the MITRE ATT&amp;CK framework.</li>
</ul>
<ul>
<li>Experience testing modern environments, including cloud platforms (AWS, GCP), containerized systems (Docker, Kubernetes), CI pipelines, and identity systems.</li>
</ul>
<ul>
<li>Working knowledge of defensive security tools such as IDS/IPS, EDR, packet capture, and network monitoring, including common evasion techniques.</li>
</ul>
<ul>
<li>Proficiency in Python, Go, or JavaScript for exploit development, tooling, or automation.</li>
</ul>
<ul>
<li>Clear written and verbal communication skills, with the ability to explain technical findings to both engineers and senior leaders.</li>
</ul>
<ul>
<li>Experience collaborating with distributed teams and documenting work through tools such as Slack, Jira, GitHub, and email.</li>
</ul>
<p><strong>Bonus points:</strong></p>
<ul>
<li>Experience working in financial technology or regulated environments.</li>
</ul>
<ul>
<li>Prior experience serving as a technical lead on security initiatives.</li>
</ul>
<p><strong>What we offer</strong></p>
<ul>
<li>Challenging, high-impact work to grow your career</li>
</ul>
<ul>
<li>Performance driven compensation with multipliers for outsized impact, bonus programs, and equity ownership</li>
</ul>
<ul>
<li>Top tier benefits to fuel your work, including supplemental health insurance, ancillary insurance, and mental health support programs</li>
</ul>
<ul>
<li>Lifestyle wallet - a highly flexible employer-paid benefits spending account expenses beyond traditional benefits such as wellness, childcare, learning, and more.</li>
</ul>
<ul>
<li>Time off to recharge including company holidays, paid time off, sick time, paid volunteer time off, parental leave, and more!</li>
</ul>
<ul>
<li>Exceptional office experience with catered meals, events, and comfortable workspaces.</li>
</ul>
<ul>
<li>Monthly commuter stipend to help offset in-office commuting costs</li>
</ul>
<p style="margin-top:24px;font-size:13px;color:#666;">XML job scraping automation by <a href="https://yubhub.co">YubHub</a></p>]]></Description>
      <Jobtype>full-time</Jobtype>
      <Experiencelevel>staff</Experiencelevel>
      <Workarrangement>hybrid</Workarrangement>
      <Salaryrange>$191,250-$225,000 CAD</Salaryrange>
      <Skills>red teaming, offensive security, penetration testing, threat modeling, MITRE ATT&amp;CK framework, cloud platforms, containerized systems, CI pipelines, identity systems, defensive security tools, IDS/IPS, EDR, packet capture, network monitoring, Python, Go, JavaScript, exploit development, tooling, automation</Skills>
      <Category>Engineering</Category>
      <Industry>Finance</Industry>
      <Employername>Robinhood</Employername>
      <Employerlogo>https://logos.yubhub.co/robinhood.com.png</Employerlogo>
      <Employerdescription>Robinhood is a financial technology company that provides a mobile app for trading stocks, options, and cryptocurrencies.</Employerdescription>
      <Employerwebsite>https://www.robinhood.com/</Employerwebsite>
      <Compensationcurrency></Compensationcurrency>
      <Compensationmin></Compensationmin>
      <Compensationmax></Compensationmax>
      <Applyto>https://job-boards.greenhouse.io/robinhood/jobs/7460169?utm_source=yubhub.co&amp;utm_medium=jobs_feed&amp;utm_campaign=apply</Applyto>
      <Location>Toronto, Canada</Location>
      <Country></Country>
      <Postedate>2026-04-25</Postedate>
    </job>
    <job>
      <externalid>68933dfa-3e9</externalid>
      <Title>Staff Offensive Security Engineer</Title>
      <Description><![CDATA[<p>Join us in building the future of finance.</p>
<p>Our mission is to democratize finance for all. An estimated $124 trillion of assets will be inherited by younger generations in the next two decades. The largest transfer of wealth in human history. If you’re ready to be at the epicenter of this historic cultural and financial shift, keep reading.</p>
<p>We are building an elite team, applying frontier technologies to the world’s biggest financial problems. We’re looking for thoughtful problem-solvers and builders who want to make a meaningful contribution. Robinhood is a place where people take ownership of their work and help improve financial access for all. We operate with high standards, clear accountability, and a strong focus on security and ethics in everything we build!</p>
<p>The Red Team’s mission is to identify and reduce real-world security risks across Robinhood by simulating adversary behaviour and testing defenses. As a Staff Offensive Security Engineer, you will plan and execute security assessments across applications, infrastructure, and physical environments, and partner closely with engineering and security teams to strengthen detection and response capabilities. You will help prioritise risk, contribute to remediation efforts, and develop tools and techniques that improve how we test and secure our systems. Your work will directly support the safety and reliability of products used by millions of customers.</p>
<p>This role is based in our Menlo Park, CA office, with in-person attendance expected at least 3 days per week.</p>
<p>At Robinhood, we believe in the power of in-person work to accelerate progress, spark innovation, and strengthen community. Our office experience is intentional, energising, and designed to fully support high-performing teams.</p>
<p><strong>What you’ll do</strong></p>
<ul>
<li>Evangelise the Offensive Security Team’s Findings and Projects with stakeholders throughout the company and collaborate with other teams to create solutions that balance security with other priorities.</li>
</ul>
<ul>
<li>Mentor and provide guidance to the members of the Offensive Security team.</li>
</ul>
<ul>
<li>Plan and execute red team exercises, including long-term assessments that simulate real-world attack scenarios</li>
</ul>
<ul>
<li>Perform threat modelling and penetration testing across applications, infrastructure, and corporate environments</li>
</ul>
<ul>
<li>Develop scripts and tools to support and automate security testing activities</li>
</ul>
<ul>
<li>Partner with detection and response teams to run adversarial simulations and improve incident readiness</li>
</ul>
<ul>
<li>Communicate findings clearly and work with engineering teams to remediate identified risks</li>
</ul>
<ul>
<li>Lead Security Incidents when Pentest or Red Team findings require them.</li>
</ul>
<ul>
<li>Plan and participate in Adversarial Simulation exercises with various security teams.</li>
</ul>
<p><strong>What you bring</strong></p>
<ul>
<li>8+ years of experience conducting red team operations or advanced penetration testing</li>
</ul>
<ul>
<li>Experience mentoring or supporting the development of other security engineers</li>
</ul>
<ul>
<li>Passion and demonstrated experience for challenging security assumptions.</li>
</ul>
<ul>
<li>Excellent written and verbal communication skills and ability to communicate your findings at many different levels of abstraction from Engineers to Executives.</li>
</ul>
<ul>
<li>Passion for fixing security issues and not just identifying security issues.</li>
</ul>
<ul>
<li>Familiarity with common network protocols and standards such as DNS and TCP/IP.</li>
</ul>
<ul>
<li>Experience with MacOS and Linux.</li>
</ul>
<ul>
<li>Experience with leveraging components of a modern software development stack to attack companies, including CI, container orchestration systems (Kubernetes/Docker), cloud providers (AWS, GCP), etc and be able to give hardening suggestions.</li>
</ul>
<ul>
<li>Experience/knowledge of defensive tools/techniques (IDS/IPS, Packet Capture, Network Analysis, AV, EDR, etc.) and how to evade them.</li>
</ul>
<ul>
<li>Deep understanding of Mitre’s ATT&amp;CK Framework.</li>
</ul>
<ul>
<li>Strong understanding of the security fundamentals of access and identity.</li>
</ul>
<ul>
<li>Comfortable reading / writing python, go, and javascript.</li>
</ul>
<ul>
<li>Ability to research and execute a testing plan to access a new technology or process.</li>
</ul>
<ul>
<li>Demonstrated experience working with a distributed team.</li>
</ul>
<ul>
<li>Proficiency to communicate over a text-based medium (Slack, JIRA Issues, GitHub issues, &amp; Email) and can succinctly document technical details.</li>
</ul>
<p><strong>Bonus Points</strong></p>
<ul>
<li>Experience in the Financial Technology domain.</li>
</ul>
<ul>
<li>Experience being a technical lead at other organisations.</li>
</ul>
<p><strong>What we offer</strong></p>
<ul>
<li>Market competitive and pay equity-focused compensation structure</li>
</ul>
<ul>
<li>100% paid health insurance for employees with 90% coverage for dependents</li>
</ul>
<ul>
<li>Annual lifestyle wallet for personal wellness, learning and development, and more!</li>
</ul>
<ul>
<li>Lifetime maximum benefit for family forming and fertility benefits</li>
</ul>
<ul>
<li>Dedicated mental health support for employees and eligible dependents</li>
</ul>
<ul>
<li>Generous time away including company holidays, paid time off, sick time, parental leave, and more!</li>
</ul>
<ul>
<li>Lively office environment with catered meals, fully stocked kitchens, and geo-specific commuter benefits</li>
</ul>
<p>In addition to the base pay range listed below, this role is also eligible for bonus opportunities + equity + benefits.</p>
<p>Base pay for the successful applicant will depend on a variety of job-related factors, which may include education, training, experience, location, business needs, or market demands. The expected base pay range for this role is based on the location where the work will be performed and is aligned to one of 3 compensation zones. For other locations not listed, compensation can be discussed with your recruiter during the interview process.</p>
<p>Base Pay Range:</p>
<p>Zone 1 (Menlo Park, CA; New York, NY; Bellevue, WA; Washington, DC)$217,000-$255,000 USD</p>
<p>Zone 2 (Denver, CO; Westlake, TX; Chicago, IL)$190,000-$224,000 USD</p>
<p>Zone 3 (Lake Mary, FL; Clearwater, FL; Gainesville, FL)$169,000-$199,000 USD</p>
<p style="margin-top:24px;font-size:13px;color:#666;">XML job scraping automation by <a href="https://yubhub.co">YubHub</a></p>]]></Description>
      <Jobtype>full-time</Jobtype>
      <Experiencelevel>staff</Experiencelevel>
      <Workarrangement>hybrid</Workarrangement>
      <Salaryrange>$217,000-$255,000 USD</Salaryrange>
      <Skills>red team operations, advanced penetration testing, threat modelling, penetration testing, scripting, security testing, adversarial simulations, incident readiness, security fundamentals, access and identity, python, go, javascript, network protocols, standards, DNS, TCP/IP, MacOS, Linux, CI, container orchestration, cloud providers, defensive tools, techniques, IDS, IPS, Packet Capture, Network Analysis, AV, EDR, Mitre’s ATT&amp;CK Framework</Skills>
      <Category>Engineering</Category>
      <Industry>Finance</Industry>
      <Employername>Robinhood</Employername>
      <Employerlogo>https://logos.yubhub.co/robinhood.com.png</Employerlogo>
      <Employerdescription>Robinhood is a financial services company that provides commission-free trading and investing services to its users.</Employerdescription>
      <Employerwebsite>https://www.robinhood.com/</Employerwebsite>
      <Compensationcurrency></Compensationcurrency>
      <Compensationmin></Compensationmin>
      <Compensationmax></Compensationmax>
      <Applyto>https://job-boards.greenhouse.io/robinhood/jobs/7460167?utm_source=yubhub.co&amp;utm_medium=jobs_feed&amp;utm_campaign=apply</Applyto>
      <Location>Bellevue, WA</Location>
      <Country></Country>
      <Postedate>2026-04-25</Postedate>
    </job>
  </jobs>
</source>