Docusign · 9 hours ago
Lead Offensive Security Engineer
Docusign is a leading company in e-signature and contract lifecycle management, serving over 1.5 million customers globally. The Lead Offensive Security Engineer will be responsible for spearheading offensive security testing initiatives, conducting penetration tests, and mentoring team members to protect Docusign's products and customers.
Business Process Automation (BPA)Cloud ManagementComputerE-SignatureInformation TechnologySaaSSoftware
Responsibilities
Provide clear technical guidance and direction to the team
Mentor team members, imparting advanced offensive security skills and knowledge
Oversee the planning and execution of offensive security projects
Identify and direct areas for security investigation in coordination with the director and other leads
Serve as a key subject matter expert and point of contact for stakeholders, assisting with vulnerability impact analysis and defining remediation strategies
Work closely with the Product Security Incident Response Team (PSIRT) and engineering teams to analyze and drive the resolution of product security issue
Maintain professional and responsive communication with all stakeholders throughout the security evaluation lifecycle
Message key threats to the business to relevant stakeholders
Collaborate effectively with cross-functional groups, including Threat Intelligence and PSIRT, to continuously strengthen the overall product security posture
Qualification
Required
12+ years experience (10+ with a Master's degree) in security research, red teaming or penetration testing experience including on web application security
Experience in exploit development
Experience with cybersecurity principles, incident response lifecycles, and security best practices
Experience with CVSS (Common Vulnerability Scoring System) for rating vulnerabilities, MITRE ATT&CK for adversary tactics and techniques, and CWE (Common Weakness Enumeration) for identifying and categorizing software weaknesses
Experience leading a team effectively and communicating offensive security findings to leadership
Preferred
Strong analytical and problem-solving skills, with a keen eye for detail
Excellent written and verbal communication skills, with the ability to explain technical concepts clearly
Bachelor's degree in Computer Science, Information Security, or a related field
Industry certifications such as OSCP, GXPN, OSEP, OSWA, OSWE, OSDA
Experience with cloud, container, or network security testing
Experience with AI security testing
Benefits
Paid Time Off: earned time off, as well as paid company holidays based on region
Paid Parental Leave: take up to six months off with your child after birth, adoption or foster care placement
Full Health Benefits Plans: options for 100% employer paid and minimum employee contribution health plans from day one of employment
Retirement Plans: select retirement and pension programs with potential for employer contributions
Learning and Development: options for coaching, online courses and education reimbursements
Compassionate Care Leave: paid time off following the loss of a loved one and other life-changing events
Company
Docusign
DocuSign helps small- and medium-sized businesses collect information, automate data workflows, and sign on various devices.
H1B Sponsorship
Docusign has a track record of offering H1B sponsorships. Please note that this does not
guarantee sponsorship for this specific role. Below presents additional info for your
reference. (Data Powered by US Department of Labor)
Distribution of Different Job Fields Receiving Sponsorship
Represents job field similar to this job
Trends of Total Sponsorships
2025 (361)
2024 (337)
2023 (236)
2022 (249)
2021 (236)
2020 (115)
Funding
Current Stage
Public CompanyTotal Funding
$1.29BKey Investors
Bank of AmericaFounders Circle CapitalGreenspring Associates
2025-05-27Post Ipo Debt· $750M
2018-04-27IPO
2016-10-12Secondary Market
Recent News
2025-12-19
2025-12-17
Company data provided by crunchbase