Senior Security Engineer, Red Team

DoorDash DoorDash · Consumer · San Francisco, CA · 315 Security Engineering

Senior Security Engineer, Red Team responsible for conducting threat intelligence-informed adversary emulations to simulate real-world cyber attacks and proactively identify security improvement opportunities in the DoorDash environment. This role will work closely with cross-functional teams across the company and assess the security posture of DoorDash’s critical assets and products.

What you'd actually do

  1. Plan and execute realistic adversary simulations using curated threat intelligence to assess security opportunities, and detection and response capabilities
  2. Hunt for vulnerabilities across AI systems, payment infrastructure, autonomous delivery hardware, and emerging technologies before adversaries do
  3. Exercise range of expertise to include cyber, insider, and fraud Red Team testing scenarios.
  4. Build custom tools, exploits, and payloads tailored to DoorDash's unique and evolving tech stack
  5. Partner with Blue Teams to escalate emerging threats and develop proactive detection or defensive strategies

Skills

Required

  • 5+ years of experience in Red Teaming and Purple Teaming
  • Deep, experiential knowledge of APT and insider threat TTPs
  • Experience partnering with cross-functional teams to secure diverse environments
  • Experience running full-scope operations across multi-platform and cloud environments
  • Experience building malware and tooling
  • Strong knowledge of one of Python, Golang, Rust, Kotlin, Java, or Powershell
  • Experience using and developing tooling, methodologies and scalable infrastructure to support red team engagements capabilities
  • Experience with Command and Control (C2) frameworks
  • Experience with Defense Evasion to bypass security tooling
  • Excellent understanding of information security operations related frameworks and standards (e.g., MITRE Att&ck)
  • Experience providing technical leadership and guidance
  • Excellent communication, presentation, and stakeholder management skills

Nice to have

  • passionate about offensive security
  • care about improving your craft every day
  • think like an adversary
  • strategic and analytical thinking
  • people-first approach
  • facilitate a conversation rather than dictate it
  • empathetic to divergent viewpoints

What the JD emphasized

  • AI systems
  • autonomous delivery hardware
  • emerging technologies