Offensive Security Engineer (AI)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
TL;DR
Offensive Security Engineer (AI): Developing and refining an AI-powered pentesting system by simulating attacker behavior and validating vulnerabilities with an accent on agentic system performance and exploitability. Focus on automating vulnerability discovery, creating high-quality technical research, and bridging the gap between AI capabilities and real-world offensive security.
Location: Remote (Global)
Company
, a venture from TryHackMe, is building an AI-driven swarm of agents to automate ethical hacking and vulnerability discovery.
What you will do
- Test and provide structured feedback on the AI agent system to improve its coverage and accuracy.
- Validate and reproduce findings by writing reliable proof-of-concepts (PoCs) that demonstrate real-world exploitability.
- Manage vulnerability disclosures across OSS projects and bug bounty platforms.
- Conduct security research and produce detailed technical blogs and writeups on discovered vulnerabilities.
- Research new attack techniques and translate those insights into system improvements.
- Develop custom automation scripts, payload lists, and testing harnesses.
Requirements
- 3-5+ years of professional offensive security experience in penetration testing, bug bounty, or red teaming.
- Deep understanding of web application vulnerabilities such as SQLi, XSS, SSRF, IDOR, and SSTI.
- Proficiency in Python, Bash, and JavaScript for building custom tooling.
- Proven track record with public disclosures or CVEs.
- Strong written communication skills for explaining complex findings to engineers and security teams.
- Unable to provide visa sponsorship.
Nice to have
- Active HackerOne or Bugcrowd profile with public bug bounty reports.
- Familiarity with the TryHackMe community.
- Experience using AI-assisted security tooling.
Culture & Benefits
- Fully remote work arrangement with a global team.
- Opportunity to be an early hire with significant ownership over testing quality and standards.
- High level of trust and autonomy from day one.
- Fast-paced, intense environment focused on high impact and winning.
- Competitive salary and strong backing from the founders of TryHackMe.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →