TL;DR
Staff Security Researcher (AI): Leading and defining a world-class security research program focusing on identifying emerging threats, new attack vectors, and innovative defensive techniques for hirify.global's products and the broader identity security landscape. Focus on driving original research into product, application, and ecosystem-level vulnerabilities, advancing knowledge in cryptography, identity security, and AI security, and engaging with the global security community.
Location: Remote (United States | Canada). Remote work at hirify.global does mean working from your home country.
Salary: $192,000–$278,000 USD (USA-based) or $167,000–$242,000 CAD (Canada-based) per year.
Company
hirify.global is a product company building a market-leading enterprise password manager and pioneering Extended Access Management to ensure digital safety and unleash employee productivity for over 180,000 businesses.
What you will do
- Design and drive a greenfield security research program focused on identifying emerging threats and innovative defensive techniques.
- Drive original research into product, application, and ecosystem-level vulnerabilities, publishing findings responsibly where appropriate.
- Participate in and lead engagement in standards groups such as NIST, FIDO, and MCP, advancing knowledge in cryptography, identity security, and access governance.
- Engage with the broader security community to stay ahead of evolving risks and present research at major security conferences.
- Produce and publish high quality technical publications, including white papers, blogs, and social media posts on high-stakes topics that Security Leaders care about.
- Contribute research that shapes internal product direction and security strategy, informing detection capabilities and product security priorities.
Requirements
- 7+ years of progressive experience in security, including 5+ years leading security teams or programs at scale.
- Proven ability to design and execute independent research programs, identify novel vulnerabilities, and publish high-quality technical findings.
- Hands-on background in red teaming, offensive security assessments, exploit development, or advanced adversarial simulation.
- Deep domain expertise across Application Security, Vulnerability Research, Cryptography, Identity, and Access Governance.
- Familiarity with prompt injection, AI-based attacks, data poisoning, AI design architecture, and related vectors.
- Exceptional communication skills, with the ability to translate complex security concepts into clear narratives for both technical and non-technical audiences.
Culture & Benefits
- Prioritize collaboration, clear and transparent communication, receptiveness to feedback, and alignment with core values.
- Work in a remote-first environment, with required travel for in-person engagement (annual offsites, team meetings, industry events).
- Offers maternity and parental leave top-up programs and competitive health benefits.
- Provides a generous paid time off policy and an RSU program for most employees.
- Includes a retirement matching program and a free hirify.global account.
- Embrace AI and encourage team members to actively learn AI best practices, identify opportunities to apply AI, and drive innovative solutions.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →