Staff Attack Engineer (AI/LLM Security)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
TL;DR
Staff Attack Engineer (AI/LLM Security): Building and scaling automated attack patterns for the NodeZero autonomous pentesting platform with an accent on AI/LLM exploitation and agentic system security. Focus on designing reusable prompt injection, defense evasion, and tool-use exploitation techniques to secure enterprise AI infrastructure.
Location: Must be based in the US
Salary: $223,000 - $275,000 annually
Company
is a cybersecurity company providing autonomous pentesting solutions to help organizations proactively identify and remediate exploitable attack vectors.
What you will do
- Break AI and agentic systems and translate research into automated, repeatable attack modules.
- Design and execute prompt injection and defense evasion attacks with a focus on reusable patterns.
- Exploit LLM agents' access to code, file systems, APIs, and databases to simulate realistic attacker outcomes.
- Target AI infrastructure including model serving, training pipelines, and vector databases.
- Perform threat modeling for agentic systems to map trust boundaries and attack surfaces.
- Apply a productization mindset to turn manual techniques into scalable automated tooling.
Requirements
- Must be based in the US
- Expert-level Python and software engineering skills.
- Solid penetration testing fundamentals and understanding of common attack chains.
- Proven ability to break AI/LLM and agentic systems.
- Familiarity with AI/LLM security frameworks like OWASP Top 10 for LLMs and MITRE ATLAS.
- Experience in a security product or offensive security team.
Nice to have
- Experience with cloud AI services like Azure OpenAI or GCP Vertex AI.
- Contributions to AI security research such as blog posts, talks, or CVEs.
- Familiarity with graph databases like Neo4j.
- Background in traditional exploit development or vulnerability research.
- CTF experience in AI/ML challenge categories.
Culture & Benefits
- 100% remote work environment.
- Competitive salary and equity package in the form of stock options.
- Comprehensive health, vision, and dental insurance for employees and families.
- Flexible vacation policy and generous parental leave.
- Inclusive team culture focused on collaboration, ownership, and results.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →