Jobs Companies ClickHouse Offensive Security Engineer

À propos de ce poste Offensive Security Engineer chez ClickHouse

ClickHouse · Télétravail · Netherlands (remote)

About ClickHouse

Recognized on the 2025 Forbes Cloud 100 list, ClickHouse is one of the most innovative and fast-growing private cloud companies. With more than 4,000 customers and ARR that has grown over 250 percent year over year, ClickHouse leads the market in real-time analytics, data warehousing, observability, and AI workloads.

The company’s sustained, accelerating momentum was recently validated by a $400M Series D financing round. Over the past three months, customers including Capital One, Lovable, Decagon, Polymarket, and Airwallex have adopted the platform or expanded existing deployments. These customers join an established base of AI innovators and global brands such as Meta, Cursor, Sony, and Tesla.

We’re on a mission to transform how companies use data. Come be a part of our journey!

About the team

The Security Team is responsible for providing key security capabilities covering application, cloud and enterprise security, incident response, detection and GRC. Our team is looking for an experienced, hands-on security practitioner, who will drive the adoption of modern security processes and tooling, with focus on supporting our engineering and product teams in improving the security posture of our platforms and services.

What you will do:

  • Identify security gaps and vulnerabilities in all ClickHouse offerings triage a wide range of vulnerabilities reported via our bug bounty program, responsible disclosure, GitHub Issues covering web, API and server - client assets including low level memory issues like heap or buffer overflows
  • Improve and develop security assurance activities - pentests, vulnerability assessments, bug bounty programs, fuzzing
  • Plan and execute internal red team assessments and penetration tests against ClickHouse infrastructure, cloud environments, designing realistic adversary scenarios to test detection, response and control effectiveness
  • Assess AI/LLM-specific attack surface across ClickHouse's own AI-powered features and internal AI tooling, including prompt injection, model/data exfiltration, and unsafe agentic tool-use patterns
  • Build and operate agentic tooling for reconnaissance, exploit-chaining and attack-path discovery, and apply LLM-assisted fuzzing to accelerate vulnerability discovery across ClickHouse's products and infrastructure
  • Partner with detection engineering to validate and improve detection coverage during red team exercises, measuring and reporting on control effectiveness and time to detect/respond
  • Handle information security events and incidents across ClickHouse products and services
  • Develop processes, tooling and automation to scale security processes and mitigate risks to the business

What you bring along:

  • 7+ years of experience in pentesting, red teaming and product security
  • Experience supporting engineering and product implementation efforts by performing threat assessments, assurance activities, advisory as well as, in some cases, implementation work across distributed systems covering web, API, client/server assets
  • Hands-on experience conducting offensive security engagements - internal red teaming, penetration testing and adversary simulation - across cloud, network and application environments
  • Ability to design adversary scenarios grounded in real threat intelligence (e.g. ransomware operators, supply chain attackers, insider threat) tailored to ClickHouse's risk profile as a multi-tenant cloud data platform
  • Strong written and verbal communication skills, with ability to translate attack chains into clear, actionable findings for engineering and leadership
  • Experience building or adapting agentic and LLM-assisted tooling for offensive security use cases (recon automation, exploit chaining, fuzzing harnesses), with judgment on where AI genuinely speeds up an engagement versus adds noise
  • Familiarity with AI/LLM-specific vulnerability classes and testing methodology
  • Strong knowledge of and experience with one or more cloud service providers (e.g. AWS, GCP, Azure), Kubernetes, Cilium
  • Experience implementing and operating engineering security tools and processes (e.g. static / dynamic code analysis, software composition analysis, SBOM, OWASP SAMM, client and network fuzzing tools)
  • Security as code mindset, with focus on solving problems with automation and scale in mind

Bonus Points:

  • BS, MS, or PhD in Computer Science or related field
  • Previous contributions to open source projects
  • Security or cloud related certifications (AWS, GCP, Azure)
  • Previous experience in using AI security harnesses for pentesting purposes
  • Experience building or operating internal red team tooling and infrastructure from scratch, rather than relying solely on off-the-shelf frameworks
  • Offensive security certifications (e.g. OSCP, OSCE, OSEP, OSWE)

Compensation

For roles based in the United States, the typical starting salary range for this position is listed above. In certain locations, such as the San Francisco Bay Area and the New York City Metro Area, a premium market range may apply, as listed.

These salary ranges reflect what we reasonably and in good faith believe to be the minimum and maximum pay for this role at the time of posting. The actual compensation may be higher or lower than the amounts listed, and the ranges may be subject to future adjustments.

An individual’s placement within the range will depend on various factors, including (but not limited to) education, qualifications, certifications, experience, skills, location, performance, and the needs of the business or organization.

If you have any questions or comments about compensation as a candidate, please get in touch with us at [email protected].

Perks

  • Flexible work environment - ClickHouse is a globally distributed company and remote-friendly. We currently operate in over 20 countries.
  • Healthcare - Employer contributions towards your healthcare.
  • Equity in the company - Every new team member who joins our company receives stock options.
  • Time off - Flexible time off in the US, generous entitlement in other countries.
  • A $500 Home office setup if you’re a remote employee.
  • Global Gatherings – We believe in the power of in-person connection and offer opportunities to engage with colleagues at company-wide offsites.

Culture - We All Shape It

As part of a rapidly scaling start up, you will be instrumental in shaping our culture. 

Are you interested in finding out more about our culture?  Learn more about our values here.  Check out our blog posts or follow us on LinkedIn to find out more about what’s happening at ClickHouse.

Equal Opportunity & Privacy 

ClickHouse provides equal employment opportunities to all employees and applicants and prohibits discrimination and harassment of any type based on factors such as race, color, religion, age, sex, national origin, disability status, genetics, protected veteran status, sexual orientation, gender identity or expression, or any other characteristic protected by federal, state or local laws. 

Please see here for our Privacy Statement.

Prêt à postuler chez ClickHouse ?
Postuler chez ClickHouse

Emplois similaires

Roblox
Senior Offensive Security Engineer
Roblox
⚡ Postuler tôt San Mateo, CA, United States Sur site $196,750–$243,290
● Nouveau 👁 Vu ✓ Postulé il y a 4 h
Postman
Principal Offensive Security Engineer
Postman
⚡ Postuler tôt San Francisco, California, Uni... Sur site $275,000–$300,000
● Nouveau 👁 Vu ✓ Postulé il y a 11 h
Twilio
Staff Engineer - Offensive Security
Twilio
⚡ Postuler tôt Remote - US · lieu restreint
● Nouveau 👁 Vu ✓ Postulé il y a 12 h
Robinhood
Staff Offensive Security Engineer
Robinhood
⚡ Postuler tôt Toronto, Canada Sur site CA$191,250–CA$225,000
● Nouveau 👁 Vu ✓ Postulé il y a 16 h
Robinhood
Staff Offensive Security Engineer
Robinhood
⚡ Postuler tôt Bellevue, WA; Menlo Park, CA;... Sur site $217,000–$255,000
● Nouveau 👁 Vu ✓ Postulé il y a 16 h
Makro PRO
Associate Director - Cyber Security Offensive Engineer
Makro PRO
⚡ Postuler tôt Bangkok, Bangkok, Thailand Sur site
● Nouveau 👁 Vu ✓ Postulé il y a 1 j
Anthropic
Offensive Hardware Security Engineer, Platform Security
Anthropic
⚡ Postuler tôt San Francisco, CA | New York C... Sur site $320,000–$405,000
● Nouveau 👁 Vu ✓ Postulé il y a 1 j
Greenlight
Staff Offensive Security Engineer
Greenlight
⚡ Postuler tôt Bengaluru, Karnataka Hybride
● Nouveau 👁 Vu ✓ Postulé il y a 1 j
Array
Senior Offensive Security Engineer
Array
⚡ Postuler tôt Remote - USA or Canada · lieu restreint $170,000–$170,000
● Nouveau 👁 Vu ✓ Postulé il y a 1 j

Inscrivez-vous pour des suggestions adaptées aux emplois que vous ouvrez et aux recherches que vous enregistrez.

Plus d’emplois chez ClickHouse

Voir tous les emplois chez ClickHouse →

Postuler maintenant
🤖

Doucement — un instant

JobsRadar a été conçu pour de vraies personnes qui traversent une période difficile dans leur recherche d’emploi — pas pour des requêtes automatisées. Vous cliquez beaucoup trop vite et vous êtes maintenant temporairement bloqué.

Revenez plus tard. Si vous cherchez réellement un emploi, nous sommes de votre côté — agissez simplement comme un être humain.

Catch your next role the second it’s posted.

Create a free account and we’ll watch the boards for you — the instant a job matches your search, it lands in your inbox or Telegram. No digging, no refreshing.

Create free account

Free forever · takes 30 seconds · already have one?

Prenez une longueur d’avance dans votre recherche d’emploi.

Rejoignez notre canal Telegram pour ce qui vous aide à décrocher le poste — références salariales, le pouls hebdomadaire du marché et les annonces de nouveautés. Pas de spam, que du signal.

Rejoindre le canal — c’est gratuit