We're on a mission to make home possible for homebuyers and renters across the U.S.
Offensive Security Engineer, Technical Lead (In Office or Remote)
Location
United States
Posted
2 days ago
Salary
$150K - $224K / year
No structured requirement data.
Job Description
At Freddie Mac, our mission of Making Home Possible is what motivates us, and it’s at the core of everything we do. Since our charter in 1970, we have made home possible for more than 90 million families across the country. Continue your career journey where your work contributes to a greater purpose.
Position Overview:
We’re looking for an Offensive Security Engineer who excels at navigating ambiguity, uncovering weaknesses, and engineering solutions that elevate our security posture. You’ll combine technical ingenuity with practical problem‑solving, developing automation, tools, and methods that drive
meaningful risk reduction.
Our Impact:
Freddie Mac's Information Security team is responsible for continuously testing the overall strength of our organization’s defenses (across all people, process, & technology) by simulating the objectives and actions of an attacker.
Your Impact:
In this role, you will contribute to a collaborative team as a subject matter expert focusing on advanced offensive security. You will design and implement AI-powered security tools, proactively address vulnerabilities, and champion secure engineering practices across the organization.
What to Expect (Job Responsibilities)
Applications should bring expert level knowledge in one or more domains, including web applications, AI-powered business systems, cloud environments, etc.
Execute sophisticated red team assessments across diverse attack surfaces.
Partner with internal stakeholders to define engagement scope, success criteria, and translate complex technical findings into actionable business risk narratives
Research, develop, and maintain cutting-edge offensive security tools and automation frameworks to enhance team capabilities and operational efficiency
Qualifications:
8+ years of relevant experience
Proven ability to critically examine applications and identify, exploit, and remediate complex vulnerabilities
Proven ability to create automation workflows that scale to enterprise environments.
Demonstrated expertise in bypassing modern defensive controls and security measures to achieve assessment objectives
Demonstrate proficiency in chosen domain using public research, personal blog, active projects, bug bounty, and public disclosures.
Must be willing to work east coast hours
We consider all applicants for all positions without regard to gender, race, color, religion, national origin, age, marital status, veteran status, sexual orientation, gender identity/expression, physical and mental disability, pregnancy, ethnicity, genetic information or any other protected categories under applicable federal, state or local laws. We will ensure that individuals are provided reasonable accommodation to participate in the job application or interview process, to perform essential job functions, and to receive other benefits and privileges of employment. Please contact us to request accommodation.
Freddie Mac offers a comprehensive total rewards package to include competitive compensation and market-leading benefit programs. Information on these benefit programs is available on our Careers site.
This position has an annualized market-based salary range of $150,000 - $224,000 and is eligible to participate in the annual incentive program. The final salary offered will generally fall within this range and is dependent on various factors including but not limited to the responsibilities of the position, experience, skill set, internal pay equity and other relevant qualifications of the applicant.Related Guides
Related Categories
Related Job Pages
More Security Engineer Jobs
MSP Account Director
NexthinkUnparalleled Visibility Into Issue Detection, Diagnosis, and Remediation
The MSP Account Director will manage relationships with large Managed Service Providers, driving revenue growth through strategic partnerships and market insight, while collaborating with internal teams.
Senior Director of Security Architecture and Engineering (Public Sector)
Lumen TechnologiesLumen connects the world. We are igniting business growth by connecting people, data and applications – quickly, securely, and effortlessly. Together, we are building a culture and company from the people up – committed to teamwork, trust and transparency. People power progress. We’re looking for top-tier talent and offer the flexibility you need to thrive and deliver lasting impact. Join us as we digitally connect the world and shape the future. Background Screening If you are selected for a position, there will be a background screen, which may include checks for criminal records and/or motor vehicle reports and/or drug screening, depending on the position requirements. Equal Employment Opportunities We are committed to providing equal employment opportunities to all persons regardless of race, color, ancestry, citizenship, national origin, religion, veteran status, disability, genetic characteristic or information, age, gender, sexual orientation, gender identity, gender expression, marital status, family status, pregnancy, or other legally protected status (collectively, “protected statuses”). We do not tolerate unlawful discrimination in any employment decisions, including recruiting, hiring, compensation, promotion, benefits, discipline, termination, job assignments or training. Disclaimer The job responsibilities described above indicate the general nature and level of work performed by employees within this classification. It is not intended to include a comprehensive inventory of all duties and responsibilities for this job. Job duties and responsibilities are subject to change based on evolving business needs and conditions.
This role sets the vision and multi-year roadmap for public-sector security architecture and secure service delivery, providing executive oversight for network, cloud, identity, and data-protection architectures aligned with federal standards. Responsibilities also include leading compliance strategy across FISMA, RMF, and FedRAMP ATOs, and driving the modernization of security platforms and automation.
This role involves designing, implementing, and maintaining security solutions to protect systems, networks, and data, including security administration tasks like system configuration, maintenance, and troubleshooting of various security tools. Responsibilities also cover security analysis, conducting audits and penetration tests, managing risk, and implementing security architectures for identity and access control.
Sr Cyber Security Engineer (Consumer Product Security)
NBCUniversalHere you can create the extraordinary. Join us.
The Senior Cyber Security Engineer will analyze security threats for technology initiatives, ensure design compliance with best practices, and collaborate with teams for secure implementation.