(Fully remote position)
We're looking for a Threat Researcher with a strong offensive security background to research emerging attack techniques across AI and enterprise environments.
What You'll Do
- Research attacks against LLMs, AI agents, APIs, identity systems, and data flows
- Investigate prompt injection, agent manipulation, token abuse, privilege escalation, and data exfiltration
- Develop threat models, attack simulations, and working PoCs
- Build research tooling and test environments using Python, Docker, and cloud platforms
- Collaborate with engineering and product teams to turn research into defensive capabilities
- Publish original research through blogs, talks, advisories, or open-source tooling
- Apply frameworks such as MITRE ATT&CK to emerging AI attack techniques
- 6–10 years in threat research, red teaming, offensive security, or security engineering
- Strong hands-on offensive security and vulnerability research experience
- Deep understanding of AI/LLM and agentic architectures
- Strong knowledge of IAM, OAuth/OIDC, tokens, privileges, and DLP
- Strong Python and cloud/container experience
- Track record of publicly shared security research, tooling, or technical writing
- Ability to communicate complex security research clearly to technical and non-technical audiences
