Offensive Security Engineer - Red / Purple Team
Summary
The Offensive Security Engineer conducts red and purple team engagements, threat emulation, and penetration testing to validate security controls and detection capabilities. The role involves using Python for automation and collaborating with engineering teams to remediate identified vulnerabilities.
- Brisbane or Sydney Based role
- 12-month Contract
- WFH – 3days in office and 2 days WFH
As an Offensive Security Engineer, you will Validates whether client controls, detection and logging actually catch real attacks and identifies and supports closing the gaps.
The role scopes, plans, manages and undertakes cyber hunt, penetration testing, red team, threat emulation and other technical security assurance activities across networks, applications, cloud services, end-user environments and enterprise platforms.
Responsibilities
- Runs red and purple team engagements against critical apps, infrastructure and controls
- Builds and maintains fit-for-purpose red team infrastructure
- Validates controls, detection and logging; finds gaps and proves they are closed
- Owns and matures Breach & Attack Simulation
- Demonstrated experience planning, scoping and conducting penetration testing, cyber hunt, red team, threat emulation or similar technical security assurance activities across enterprise technology environments;
- Strong technical knowledge of common vulnerability classes, exploitation methods, operating systems, networks, web applications, cloud services, security controls and the tools and methodologies used to assess them
- Closes the loop: proposes remediation, new detections, log sources and controls; drives findings into the engineering backlog
- Acts as the validation arm of threat-informed defence (ATT&CK-mapped)
- Hands-on offence: adversary emulation, C2, exploitation, attack-path analysis across cloud / infra / endpoint
- Detection and logging fluency (the purple half)
- BAS and ATT&CK
- Python and automation; tight rules-of-engagement discipline
- AI coding / agentic tools (GPT-5.5 Trusted Access for Cyber, Codex, Claude Code, Copilot or similar) to find and prove exploitable vulns at repo scale
- GitLab Ultimate; standing up AI-assisted code-analysis infrastructure
- Detection engineering
- Application / code security experience (SAST, DAST, SCA)
How to apply Applications are treated with absolute confidentiality. Click APPLY or contact Gary at gary@bluefinresources.com.au or an informal conversation about your next career move