Назад
6 дней назад

Head of Vulnerability Disclosure & Security Community (AI Cybersecurity)

330 000 - 395 000$
Формат работы
hybrid
Тип работы
fulltime
Грейд
head
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Head of Vulnerability Disclosure & Security Community (AI Cybersecurity): Owning Anthropic’s coordinated vulnerability disclosure and CVE Numbering Authority programs with an accent on jailbreak disclosures, vulnerability triage, and security-community partnerships. Focus on shaping disclosure policy, coordinating sensitive multi-party vulnerabilities, incorporating AI-assisted triage, and building the future security disclosure function.

Location: New York City, NY; San Francisco, CA; or Washington, DC. The role is remote-friendly but travel is required, and staff are expected to work from an Anthropic office at least 25% of the time.

Annual salary: $330,000–$395,000 USD

Company

Anthropic develops reliable, interpretable, and steerable AI systems intended to be safe and beneficial for users and society.

What you will do

  • Own Anthropic’s public coordinated-disclosure jailbreak program end to end.
  • Lead the CVE Numbering Authority function, including disclosures involving open-source projects.
  • Build partnerships with security researchers and threat-intelligence organizations.
  • Represent Anthropic at security conferences and in the vulnerability-research community.
  • Lead external technical engagement and public communication on cyber safety topics.
  • Hire and mentor a future analyst and implement tooling and AI-assisted triage to scale the program.

Requirements

  • Experience operating or participating in a coordinated vulnerability disclosure program.
  • Experience coordinating multi-party disclosures involving researchers, vendors, and open-source maintainers.
  • Experience managing vulnerability queues with defined triage and response timelines.
  • Experience handling sensitive or embargoed vulnerability information, including TLP-marked material.
  • Bachelor’s degree or equivalent education, training, or professional experience in a relevant field.
  • Ability to work from or regularly attend one of the specified US offices; travel is required.

Nice to have

  • PSIRT experience and experience coordinating disclosures involving government parties.
  • Authorship of CVEs or vulnerability disclosures and presentation of original research at security conferences.
  • Experience operating or supporting a CNA.
  • Experience applying AI to disclosure or CNA processes, including automated triage and severity assessment.
  • Experience scaling a bug bounty program through a commercial platform and established disclosure-community relationships.

Culture & Benefits

  • Collaborative environment focused on large-scale AI research and trustworthy, steerable AI.
  • Flexible working hours and an office environment designed for collaboration.
  • Competitive compensation with optional equity donation matching.
  • Generous vacation and parental leave.
  • Visa sponsorship may be available, with immigration-lawyer support, depending on the role and candidate.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →