Haystack
← Back to Jobs
Remote
Technology

Security Engineer

Dahl ConsultingUnited States🇺🇸United StatesPosted 30 Jul 2026

Quick Overview

Salary
€74/hr
Work Type
Remote
Level
Mid Senior

Job Description

Title: Security Engineer
Location: Remote
Job Type: Contract (12 Months)
Compensation: $75.19 - $97.74/hr
Industry: Retail

---
About the Role
On behalf of our client — a leading national retailer with a large-scale digital and e-commerce presence — we are seeking an experienced Security Engineer to strengthen the security posture of high-traffic web applications, APIs, and enterprise systems. This role sits within a mature security organization that protects millions of customers and safeguards sensitive payment and personal data across a complex, high-volume environment. You''ll take a hands-on, offensive-security approach, identifying and validating vulnerabilities before they can be exploited, and partnering closely with engineering teams to drive meaningful remediation.
This is an excellent opportunity for a seasoned penetration tester who thrives in enterprise-scale environments, enjoys deep technical work, and wants to make a direct impact on the security of widely used consumer-facing platforms.

Job Description
As a Security Engineer, you will lead end-to-end penetration testing engagements across web applications, APIs, and supporting infrastructure. You will scope assessments, execute exploitation and validation, and deliver clear, actionable findings that engineering teams can act on. Beyond individual testing, you''ll help mature the organization''s offensive security capabilities through automation, threat modeling, and technical mentorship.
Key responsibilities include:
  • Planning and executing full-lifecycle penetration tests, including scoping, exploitation, validation, and reporting.
  • Assessing web applications and APIs for vulnerabilities, with a focus on the OWASP Top 10, authentication/authorization flaws, and injection attacks.
  • Leveraging core security tooling — including advanced use of Burp Suite, Nmap, and common exploitation frameworks — to uncover and confirm risks.
  • Developing scripts and automations in Python or Go to streamline and scale testing workflows.
  • Documenting findings clearly and providing actionable remediation guidance to engineering partners.
  • Collaborating with engineering teams to validate fixes and confirm vulnerabilities are fully remediated.
  • Identifying risk areas early through threat modeling and pre-deployment review.

Qualifications
Required Qualifications:
  • 5+ years of hands-on penetration testing experience, focused on web applications and APIs in enterprise environments.
  • Demonstrated experience executing end-to-end penetration tests (scoping, exploitation, validation, and reporting).
  • Strong working knowledge of web application vulnerabilities, including the OWASP Top 10, authentication/authorization flaws, and injection attacks.
  • Proficiency with core security testing tools, including:
    • Burp Suite (advanced usage required)
    • Nmap
    • Common exploitation frameworks
  • Experience writing scripts or automations in Python or Go to support testing workflows.
  • Ability to clearly document findings with actionable remediation guidance for engineering teams.
  • Experience partnering with engineering teams to validate and remediate vulnerabilities.
  • Bachelor''s degree in Computer Science, Cybersecurity, or equivalent practical experience.
  • 7+ years in cybersecurity, with demonstrated progression in penetration testing responsibilities.
Preferred Qualifications:
  • Experience testing mobile applications, hardware/embedded systems, or third-party/vendor platforms.
  • Familiarity with PCI-related penetration testing requirements and compliance contexts.
  • Experience contributing to or supporting bug bounty programs (triage, validation, and escalation).
  • Exposure to threat modeling and the ability to identify risk areas pre-deployment.
  • Experience mentoring or providing technical guidance to other testers.
  • Advanced understanding of networking and system architecture in large-scale environments.
  • Experience improving or automating penetration testing processes and tooling.
  • Relevant certifications such as OSCP, OSCE, OSWE, or CISSP.

Benefits
Dahl Consulting is proud to offer a comprehensive benefits package to eligible employees that will allow you to choose the best coverage to meet your family’s needs. For details, please review the DAHL Benefits Summary: https://www.dahlconsulting.com/benefits-w2fta/.

How to Apply
Take the first step on your new career path! To submit yourself for consideration for this role, simply click the apply button and complete our mobile-friendly online application. Once we’ve reviewed your application details, a recruiter will reach out to you with next steps!

Equal Opportunity Statement
As an equal opportunity employer, Dahl Consulting welcomes candidates of all backgrounds and experiences to apply. If this position sounds like the right opportunity for you, we encourage you to take the next step and connect with us. We look forward to meeting you!

#LI-CF1
#LI-remote


Skills

Embedded Systems
OWASP
HTTPS
Penetration Testing
Python

Similar jobs