Apply

Ready to go for it?

AI Apply speeds things up—apply directly if you prefer.

FREE ACCESS
5,000–10,000 jobs/day
Scoutfield Logo

See all jobs on Scoutfield

Search thousands of fresh jobs every day.

Discover
  • Fresh listings
  • Fast filters
  • No subscription required
Create a free account and start exploring right away.
Plain Concepts

AI Security Lead – Offensive

Plain Concepts

. Lead AI-powered penetration testing initiatives, combining traditional offensive security techniques with AI-assisted capabilities .

Posted 9/29/2026full-timeRemote • SpainSeniorWebsite

Core Competencies

Role fit
Core Competencies

Use this summary to align your resume positioning with the role.

Demonstrates extensive expertise in Offensive Security and Application Security, with a strong focus on integrating AI-powered tools and methodologies into penetration testing and security assessments. Proficient in Secure SDLC practices and CI/CD pipeline security, with the ability to mentor teams and communicate complex technical concepts effectively.

Highest-signal resume keywords
Offensive SecurityApplication SecuritySecure SDLCAI-Powered Security ToolsWeb Application Security Assessments

ATS Keywords

Tailor your resume
Applicant Tracking System Keywords

Tip: use these terms in your resume and cover letter to boost ATS matches.

Hard Skills
Penetration TestingAdversarial TestingVulnerability ManagementThreat ModelingExploit ValidationProgramming with PythonScripting with PowerShellWeb Application SecurityAPI Security AssessmentsSecurity Methodologies
Soft Skills
Excellent Communication SkillsMentoringTeam Leadership
Tools & Technologies
Burp SuiteNmapSASTDASTSoftware Composition AnalysisSecrets ScanningCI/CD PipelinesAzureGitHub Security Ecosystem
Certifications & Qualifications
OSCPOSWECRTOGIAC
Industry Keywords
AI Application Security RisksPrompt InjectionData LeakageBusiness Logic VulnerabilitiesSecurity Transformation Initiatives

Tech Stack

Tools & technologies
AzureCloudPythonSDLC

About the role

Key responsibilities & impact
  • Lead AI-powered penetration testing initiatives, combining traditional offensive security techniques with AI-assisted capabilities
  • Design and evolve offensive security services, methodologies, assessment frameworks, and delivery models
  • Assess web applications, APIs, cloud environments, and AI-enabled systems to identify vulnerabilities and security risks
  • Evaluate the security of LLM-based applications and AI agents, including prompt injection, data leakage, excessive permissions, and insecure tool execution
  • Help organizations transform their pentesting programs by increasing assessment capacity and reducing delivery times without compromising quality
  • Drive Secure SDLC and DevSecOps initiatives, integrating security controls into engineering workflows and CI/CD pipelines
  • Build automation, tooling, and prototypes that improve efficiency and can be reused across multiple engagements
  • Act as a trusted advisor for CISOs, architects, engineering teams, and security leaders
  • Mentor and develop a multidisciplinary team of offensive security, application security, and DevSecOps specialists

Requirements

What you’ll need
  • 7+ years of experience in Offensive Security, Application Security, Adversarial Testing, or Penetration Testing
  • Experience leading technical teams or complex security engagements
  • Strong hands-on experience with web application and API security assessments
  • Solid understanding of authentication, authorization, business logic vulnerabilities, and exploit validation
  • Experience implementing or improving Secure SDLC practices, including threat modeling, secure code reviews, vulnerability management, and remediation workflows
  • Hands-on experience using LLMs, AI agents, or AI-powered security tools to enhance testing and automation activities
  • Experience integrating security into CI/CD pipelines and modern cloud environments
  • Knowledge of application security tooling, including SAST, DAST, Software Composition Analysis, and Secrets Scanning
  • Strong programming or scripting skills, preferably with Python or PowerShell
  • Experience with offensive security tools such as Burp Suite, Nmap, or similar technologies
  • Understanding of AI application security risks, including prompt injection, data leakage, retrieval access controls, and unsafe tool execution
  • Excellent communication skills, with the ability to explain technical findings to both technical and non-technical audiences
  • Fluent Spanish and English
  • OSCP, OSWE, CRTO, or GIAC certifications are nice to have
  • Experience building security methodologies, frameworks, or internal security services is nice to have
  • Background in consulting or client-facing security engagements is nice to have
  • Experience leading security transformation initiatives is nice to have
  • Knowledge of Azure and GitHub security ecosystems is nice to have

Benefits

Comp & perks
  • Flexible schedule 35 Hours / Week
  • Fully remote work (optional)
  • Flexible compensation (restaurant, transport, and childcare)
  • Fully free health insurance, with a co-payment for dental services
  • Individual budget for training or equipment and free Microsoft certifications
  • English lessons
  • Birthday day off
  • Monthly bonus for electricity and Internet expenses at home
  • Discount on gym plan and sports activities
  • Plain Camp (annual team-building event)
  • Extra perks: events attendance and speakers, welcome pack, baby basket, Christmas basket, discount portal for employees
  • Selection process: phone screen and 2 interviews with the team