Twilio

Twilio

Twilio is a cloud communication company that offers Communication APIs for SMS, Voice, Video, and Authentication, empowering developers to embed communication capabilities into their software applications globally.

Diversified Telecommunication Services
5K-10K
Founded 2008

Description

  • Perform manual and automated penetration testing of web applications, APIs, and mobile applications.
  • Conduct internal and external network and cloud security assessments.
  • Triage and validate findings from scanners and bug bounty submissions, escalating true positives and removing false positives.
  • Perform prompt injection and jailbreak testing against AI prototypes, services, and applications.
  • Write clear technical reports that document attack paths and reproducible proof of compromise.
  • Maintain and update the team’s testing infrastructure and offensive security tooling.
  • Provide remediation guidance to engineering teams for vulnerabilities such as XSS, SQLi, and IDOR.
  • Design and lead multi-week red team operations that emulate specific threat actors.
  • Build custom payloads, droppers, and obfuscated scripts to bypass detection and maintain stealth.
  • Develop automated testing frameworks for AI systems and collaborate with security teams to tune detections based on engagement findings.

Requirements

  • 3–5 years of experience in offensive security, penetration testing, or high-volume bug bounty work.
  • Proven track record of finding high or critical vulnerabilities in complex environments.
  • Strong understanding of the MITRE ATT&CK matrix and the OWASP Top 10 for web applications and LLMs.
  • Knowledge of post-exploitation techniques including lateral movement, persistence, and data exfiltration.
  • Understanding of adversarial machine learning concepts.
  • Proficiency with Burp Suite Professional, Nmap, Metasploit, Wireshark, and C2 frameworks such as Cobalt Strike, Sliver, or Havoc.
  • Experience with AI security tools and libraries such as LangChain and TensorFlow for adversarial testing.
  • Ability to write functional scripts in Python or Bash to automate testing tasks.
  • Proficiency in Python, C++, and scripting for custom offensive tooling.
  • Advanced certifications such as OSCP, OSEP, OSWE, or GXPN, or equivalent experience.
  • Telecom expertise is preferred.
  • Must be able to work remotely from India, specifically in Karnataka, Tamil Nadu, Telangana, Maharashtra, or Delhi.
  • Occasional travel may be required for project or team in-person meetings.

Benefits

  • Competitive pay.
  • Generous time off.
  • Parental leave and wellness leave.
  • Healthcare coverage.
  • Retirement savings program.
  • Remote-first work environment.
  • Opportunities to support volunteering and donation efforts.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

Security Business Partner, Frontier Systems

Anduril Industries 1K-5K Aerospace & Defense

Anduril Industries is seeking a Security Business Partner to embed strategic security support within its Frontier Systems Division, enabling classified defense programs and business growth across Department of War and Intelligence Community customers.

SAP
3 hours, 23 minutes ago

Principal DFIR Consultant - Remote (Anywhere in the U.S.)

GuidePoint Security 251-1K Internet Software & Services

GuidePoint Security is seeking a Principal DFIR Consultant to lead its most complex incident response and forensic engagements while shaping practice methodology, mentoring staff, and supporting client and business growth.

AWS Azure Bash Go PowerShell Python SIEM
4 hours, 56 minutes ago

Senior Technical Consultant - Network Security

AHEAD 1K-5K IT Services

AHEAD is hiring a Senior Technical Consultant to lead client-facing network security engagements spanning firewall, network access control, and SASE/Zero Trust design, implementation, and delivery for enterprise environments.

Ansible AWS Azure Fortinet HIPAA Juniper Kubernetes SIEM Splunk Terraform
10 hours, 8 minutes ago

Manager, Governance, Risk and Compliance

Path Robotics 51-250 Automotive

Path Robotics is hiring a Cybersecurity GRC Manager to build and lead its enterprise governance, risk, and compliance program as the company scales into regulated markets.

AWS Azure Cybersecurity GCP
22 hours, 17 minutes ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers