Full-Time

IT Security Engineer

Twenty

Twenty

11-50 employees

Autonomous offensive cyber operations platform

Compensation Overview

$116k - $195k/yr

No H1B Sponsorship

Arlington County, Arlington, VA, USA

In Person

US Citizenship Required

Bachelor's

Category
IT & Security (1)
Required Skills
TCP/IP
Suricata
Kubernetes
Microsoft Azure
Computer Networking
Infrastructure as Code (IaC)
Docker
Vulnerability Analysis
SOC 2
AWS
Elasticsearch
Cryptography
Terraform
Ansible
Penetration Testing
Splunk
Google Cloud Platform

Get referred to Twenty

See people who can refer or advise you

Requirements
  • A bachelor's degree in Computer Science, Information Security, or a related field, or equivalent professional experience, is required.
  • At least 5 years of professional IT security experience is required, with demonstrated expertise in at least two of network security, systems security, or cybersecurity.
  • Strong knowledge of TCP/IP, DNS, DHCP, and network protocols, with experience using firewalls, proxies, and network segmentation, is required.
  • Hands-on experience with security tools such as Splunk, ELK Stack, Snort, Suricata, or similar security information and event management and intrusion detection or prevention platforms is required.
  • Proficiency in systems security, including endpoint protection and vulnerability management, is required.
  • Experience with cloud security using AWS, Azure, or GCP and with containerized environments such as Docker and Kubernetes is required.
  • Understanding of common attack vectors and security frameworks including NIST, CIS Controls, and OWASP Top 10 is required.
  • The candidate must be able to solve problems independently and as part of a team.
  • The candidate must have strong communication skills to explain complex security concepts to non-technical stakeholders.
Responsibilities
  • Design, implement, and maintain enterprise network security architecture, including firewalls, intrusion detection systems, VPNs, and DMZs.
  • Develop and enforce security policies, standards, and procedures across the organization.
  • Conduct security assessments, vulnerability scans, and penetration testing to identify and remediate security gaps.
  • Monitor systems and networks 24/7 using security information and event management tools, and investigate and respond to security incidents.
  • Manage access controls, identity and access management, and multi-factor authentication solutions.
  • Establish and manage data loss prevention and encryption protocols for sensitive data at rest and in transit.
  • Perform security hardening of servers, workstations, and endpoints, and manage patch management and system updates.
  • Provide security awareness training and education to employees to foster a security-conscious culture.
  • Conduct root cause analysis on security incidents and prepare incident response reports and recommendations.
  • Ensure compliance with relevant regulations and standards, including CMMC, SOC 2, GDPR, PCI-DSS, or applicable industry-specific standards.
Desired Qualifications
  • Security certifications such as CISSP, CISM, CEH, CCNA Security, Security+, or similar are preferred.
  • Experience with security automation and Infrastructure as Code using Terraform or Ansible is preferred.
  • Knowledge of application security testing, including SAST and DAST, and secure development practices is preferred.
  • Experience with incident response and forensic investigations is preferred.
  • Familiarity with compliance frameworks and audit processes is preferred.

Twenty builds and deploys intelligent, autonomous systems for offensive cyber operations used by the U.S. military and Intelligence Community. Its software automates the offensive cyber lifecycle across hundreds of targets, turning multi-week workflows into continuous operations. The company emphasizes enterprise-grade, scalable cyber power to move beyond defensive postures and support active cyber conflicts, supported by government contracts and investors. Its goal is to provide faster, more reliable automated tools that give operators an information edge for national security missions.

Company Size

11-50

Company Stage

Series B

Total Funding

$168M

Headquarters

Arlington, Virginia

Founded

2024

Get referred to Twenty

See people who can refer or advise you

Simplify Jobs

Simplify's Take

What believers are saying

  • Khosla led a $30 million extension on July 20, 2026, valuing Twenty at $1.2 billion.
  • Twenty raised $100 million from Accel in June 2026, bringing total funding to $138 million.
  • Twenty lists 36 open roles on July 31, 2026, signaling rapid product expansion.

What critics are saying

  • Twenty depends heavily on U.S. Cyber Command and Navy procurement cycles.
  • Offensive AI cyber tools face congressional scrutiny; Lin testified on January 13, 2026.
  • A U.S. policy reversal or classified incident could freeze contracts and kill Twenty.

What makes Twenty unique

  • Twenty sells end-to-end offensive cyber automation, not point tools, for U.S. missions.
  • Joe Lin testified to Congress on January 13, 2026, framing measurable cyber deterrence.
  • The team combines ex-Palo Alto, Expanse, Army SIGINT, and U.S. Cyber Command operators.

Help us improve and share your feedback! Did you find this helpful?

Benefits

Health Insurance

Dental Insurance

Vision Insurance

Life Insurance

Disability Insurance

Parental Leave

Unlimited Paid Time Off

Paid Holidays

401(k) Retirement Plan

Health Savings Account/Flexible Spending Account

Commuter Benefits

Growth & Insights and Company News

Headcount

6 month growth

10%

1 year growth

26%

2 year growth

26%
Citybiz
Jul 20th, 2026
Twenty secures $30M from Khosla Ventures at $1.2B valuation for AI cyber warfare tech

Cybersecurity startup Twenty has raised an additional $30 million from Khosla Ventures, bringing its valuation to $1.2 billion. The investment follows the company's recent $100 million Series B led by Accel, which valued it at $1 billion. Founded in 2024, Twenty has now raised a total of $168 million from investors including Khosla Ventures, Accel, General Catalyst, In-Q-Tel, Point72 Ventures, Caffeinated Capital and Friends & Family Capital. The company develops AI-enabled offensive cyber capabilities for the US military and intelligence agencies. Its technology combines artificial intelligence, automation and human oversight to support cyber operations whilst maintaining human decision-making throughout mission execution. Chief executive Joe Lin said the funding will support investment in engineering and product development as the company expands its technical workforce.

Accel
Jun 18th, 2026
Our Investment in Twenty: Industrial-Scale Cyber Operations

Twenty is the modern, end-to-end offensive cybersecurity platform for US agencies.

GovCon Wire
Jun 18th, 2026
Cyber warfare startup Twenty raises $100M in Series B funding round.

Cyber warfare startup Twenty raises $100M in Series B funding round. * Twenty has closed a $100 million Series B funding round * Series B has brought Twenty's total funding to $138 million * The Potomac Officers Club's 2026 DOW summits will feature discussions about AI, cyber resilience and more Cybersecurity company Twenty has secured $100 million in a round of Series B financing led by Accel to expand its artificial intelligence-enabled offensive cyber capabilities for the U.S. military and intelligence Community. As investment accelerates across cyber warfare and defense technologies, broader momentum is also building around digital modernization and national security innovation. Two upcoming Potomac Officers Club events will bring together senior leaders to explore these priorities in depth. Register now for the 2026 Air and Space Summit on July 30, followed by the 2026 Navy Summit on Aug. 27, with sessions focused on AI, cyber resilience and digital modernization. The company said Wednesday it has reached a $1 billion valuation with the latest funding round. What are the details of the Series B funding round? Friends & Family Capital, Point72 Ventures and Caffeinated Capital participated in the Series B funding round, which has brought Twenty's total funding to $138 million. Series B builds on earlier financing rounds led by Caffeinated Capital and Tim Junio, co-founder and CEO of Expanse, which was acquired by Palo Alto Networks for $1.25 billion in 2020. Additional early support came from investors, including In-Q-Tel and General Catalyst. What did Twenty CEO joe Lin say about the funding round? Joe Lin, co-founder and CEO of Twenty, said the company is developing AI-enabled capabilities designed to help warfighters disrupt cyberthreats at their origin. "This round is extraordinary validation from some of the world's foremost investors, and we are pouring this funding directly into research and engineering," added Lin. What does Twenty do? Twenty is a venture capital-backed cybersecurity startup focused on building AI-enabled, end-to-end cyber warfare systems for the U.S. and its allies. Established in 2024, the company works to industrialize offensive cyber capabilities by combining AI and automation with controlled deployment, evaluation and mission alignment.

PR Newswire
Nov 20th, 2025
Twenty Raises $38M to Transform Cyber Warfare at Industrial Scale

/PRNewswire/ -- Twenty, the company leading the industrial-scale transformation of cyber warfare technologies, today announced that it has raised $38 million...