Principal Security Researcher (AI)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
TL;DR
Principal Security Researcher (AI): Protecting sensitive legal data by identifying security risks across products, infrastructure, and AI workflows with an accent on red teaming and adversarial analysis. Focus on original security research on LLM-enabled products, prompt injection, and driving the maturity of threat modeling and bug bounty processes.
Location: Remote - Must be based in Canada or the US
Salary: CA$201.5K – CA$252K + Equity
Company
is an AI copilot for transactional lawyers that helps legal teams draft, review, and negotiate contracts faster and with greater precision.
What you will do
- Lead active red teaming, application security testing, penetration testing, and exploit validation.
- Conduct original security research on legal AI, LLM-enabled products, prompt injection, and model misuse.
- Own external vulnerability reports, including bug bounty triage, validation, and remediation tracking.
- Drive threat modeling and secure design reviews for new products, AI workflows, and infrastructure changes.
- Partner with R&D and Engineering to surface trust boundaries and data exposure risks early in development.
- Publish security research, advisories, and technical writeups where aligned with company priorities.
Requirements
- Strong experience in application security, red teaming, penetration testing, and vulnerability research.
- Hands-on experience testing modern web applications, APIs, authentication flows, and cloud services.
- Ability to develop proof-of-concept exploits to validate security impact.
- Proven track record of partnering with engineering teams to remediate vulnerabilities end-to-end.
- Must be based in Canada or the United States.
- Excellent technical writing skills for reports, executive summaries, and public research.
Nice to have
- Experience with AI security, LLM jailbreaks, agentic workflows, or secure AI product development.
- Background in legaltech, fintech, healthtech, or environments handling highly sensitive data.
- Experience managing bug bounty programs or responsible disclosure processes.
- Familiarity with SOC 2, HIPAA, GDPR, or emerging AI governance frameworks.
Culture & Benefits
- Competitive stock option grants as a pivotal early employee.
- Company-paid group benefits for employees and families, including $1,000 for mental health support.
- Generous time off policies and annual holiday closure for complete disconnection.
- Monthly paid meals and an annual wellness allowance.
- High degree of autonomy and accountability in a flexible, outcome-focused work environment.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →