✦ Luna Orbit — Cybersecurity

Threat Engineer

at Pluralsight

📍 Remote, US Remote 💰 $106K – $140K USD / year Posted April 10, 2026
Salary $106K – $140K USD / year
Type Not Specified
Experience mid
Exp. Years Not specified
Education Not specified
Category Cybersecurity

This remote role focuses on external threat management, offensive security oversight, and human risk programs. You will run threat intelligence triage, manage a crowdsourced bug bounty program, oversee outsourced penetration testing, and coordinate remediation workflows with engineering.

  • Oversee outsourced penetration testing and ensure rigorous scoping and testing
  • Triage and validate bug bounties; reproduce and confirm exploit reports
  • Monitor and analyze threat intelligence using the Threat Intelligence Platform (TIP)
  • Administer corporate domains and DNS security (DNSSEC, DMARC) and manage takedowns
  • Translate findings into Jira tickets and track developer SLAs to resolution

You will work with a Threat Intelligence Platform (TIP) to monitor credential exposures and active exploits, and you will manage enterprise domain administration using DNS security controls such as DNSSEC and DMARC. The role also includes validating exploit reports, tracking findings through a vulnerability pipeline into Jira tickets, and supporting security testing against OWASP Top 10 issues.

The ideal candidate is an adaptable Threat Engineer who can own the external attack surface, coordinate offensive security activities, and translate threat intelligence into actionable engineering tasks. They have strong experience managing outsourced penetration testing, triaging crowdsourced bug bounties, and handling domain and DNS security controls like DNSSEC and DMARC.

None listed

JiraThreat Intelligence Platform (TIP)Enterprise Domain Management platformDNSSECDMARC
offensive securitythreat intelligenceThreat Intelligence Platform (TIP)external attack surfacepenetration testingoutsourced penetration testingcrowdsourced bug bounty programvulnerability pipelineJiradeveloper SLAsthreat triageenterprise domain managementDNS securityDNSSECDMARCtyposquattingbrand impersonationtakedown managementphishing simulationsOWASP Top 10exploit reportscredential exposuresactive exploits
external attack surfaceoffensive securitythreat intelligencecrowdsourced bug bounty programpenetration testingvulnerability pipelineJiraDNS security (DNSSECDMARCetc.)DNSSECDMARCtyposquattingbrand impersonationtakedown managementOWASP Top 10phishing simulationsthreat intelligence platform (TIP)credential exposuresactive exploitsexploit reportsvalidate exploit reportsscope alignmentcompliancevulnerability disclosure program
Self-starterRadical ownershiptechnical translatorbalanced pragmatistintegrate security into the engineering workflowdiligent gatekeeperhold external vendors and researchers to a high standardanalytically rigorousunblock vendorsreproducing vulnerabilitiescommunicate to developerstracking developer SLAsensure rigorous testingmanage outsourced penetration testing programs
Industry SaaS
Job Function Own external threat detection and vulnerability remediation workflows
Role Subtype Security Engineer
Tech Domains Cybersecurity, SaaS
Threat EngineerThreat Engineeringoffensive securityexternal attack surfacethreat intelligencethreat intelligence platformTIPpenetration testingoutsourced penetration testingbug bountycrowdsourced bug bounty programvulnerability pipelineJiradeveloper SLAstyposquattingbrand impersonationtakedown managementEnterprise Domain Management platformDNS securityDNSSECDMARCOWASP Top 10phishing simulationscredential exposuresactive exploitsexploit payload

Ability to manage and oversee outsourced penetration testing programs, Ability to triage and validate bug bounty reports and translate findings into Jira tickets

Apply for this Position →

Get matched to jobs like this

Luna finds roles that fit your skills and career goals — no endless scrolling required.

Create a Free Profile