Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Remote Technical Threat Investigator, Threat Intel Engineering

Full-time

OpenAI

About the Team

Security is at the foundation of OpenAI’s mission to ensure that artificial general intelligence benefits all of humanity.

The Threat Intelligence team protects OpenAI’s technology, people, research, and infrastructure by proactively identifying and disrupting adversaries who seek to compromise our systems or misuse our models. We investigate sophisticated threats, build tooling to scale and augment analysis, and deliver intelligence that shapes security strategy and equips leadership with timely, risk-aware insights. We combine technical depth, investigative rigor, and strong cross-functional partnerships to uncover threats and drive impact across OpenAI’s security and research organizations.

About the Role

As a Technical Threat Investigator at OpenAI, you will help protect the company from sophisticated adversaries targeting OpenAI and the broader ecosystem, as well as those attempting to misuse our models in support of cyber operations.

This is a deeply investigative role. You will independently conduct complex, end-to-end investigations into capable threat actors to understand their behavior, infrastructure, emerging techniques, and how AI is integrated into their workflows. You’ll use these insights to proactively identify malicious activity and drive detection, disruption, enforcement, and safety improvements across the company.

You’ll translate your investigative findings into durable solutions that scale impact. You’ll build and own lightweight tooling, automate where it matters, and create AI-assisted workflows to make investigations faster, more repeatable, and more effective over time.

In this role, you will:

  • Conduct deep, end-to-end investigations into sophisticated threat actors interacting with OpenAI’s models, products, and broader ecosystem.

  • Think like an adversary — model attacker behavior, anticipate misuse patterns, and proactively hunt for, identify, and disrupt malicious activity.

  • Leverage internal telemetry, OSINT, vendor data, and in-house safety systems to produce high-confidence findings on adversarial use of our models in cyber operations, platform abuse, and threats targeting OpenAI.

  • Translate investigative findings into concrete improvements across detection, enforcement, intel, and safety pipelines.

  • Build tooling, scripts, automations, and agentic workflows that scale investigative throughput and reduce manual effort.

  • Prototype solutions in ambiguous and emerging problem spaces, including new product surfaces, novel attacker behaviors, and areas where existing coverage may be limited.

  • Partner closely with teams across Security, Safety Systems, Product Policy, and Integrity to operationalize findings and drive meaningful outcomes.

  • Produce clear, high-signal written outputs and recommendations that inform decision-making across technical and executive stakeholders.

You might thrive in this role if you have:

  • Experience in threat intelligence, incident response, offensive security, or a closely related field.

  • Solid experience investigating sophisticated threat actors, including model misuse, platform abuse, or other adversarial activity in complex environments.

  • A strong understanding of adversary behavior, infrastructure, and tradecraft, and the ability to apply that understanding to proactive investigations.

  • Demonstrated ability to independently drive deep technical investigations from ambiguous signals through to clear, actionable findings.

  • Experience using AI to extend or accelerate investigative workflows.

  • Strong scripting ability and comfort building lightweight automation, investigative tooling, or workflows that improve scale and repeatability.

  • Strong ability to leverage telemetry from diverse systems and vendors to drive investigations, including directly querying, extracting, and stitching together data where needed.

  • Strong written and verbal communication skills, especially the ability to translate technical investigations into high-signal outputs for diverse stakeholders.

  • Comfort operating independently in ambiguous, fast-moving problem spaces with minimal oversight.

This is a remote role with close collaboration required across teams in the US and UK. While the role is remote, regular in-person engagement with our San Francisco (SF) headquarters will be expected. Relocation assistance is available for candidates who wish to relocate to SF.

About OpenAI

OpenAI is an AI research and deployment company dedicated to ensuring that general-purpose artificial intelligence benefits all of humanity. We push the boundaries of the capabilities of AI systems and seek to safely deploy them to the world through our products. AI is an extremely powerful tool that must be created with safety and human needs at its core, and to achieve our mission, we must encompass and value the many different perspectives, voices, and experiences that form the full spectrum of humanity.

We are an equal opportunity employer, and we do not discriminate on the basis of race, religion, color, national origin, sex, sexual orientation, age, veteran status, disability, genetic information, or other applicable legally protected characteristic.

For additional information, please see OpenAI’s Affirmative Action and Equal Employment Opportunity Policy Statement .

Background checks for applicants will be administered in accordance with applicable law, and qualified applicants with arrest or conviction records will be considered for employment consistent with those laws, including the San Francisco Fair Chance Ordinance, the Los Angeles County Fair Chance Ordinance for Employers, and the California Fair Chance Act, for US-based candidates. For unincorporated Los Angeles County workers: we reasonably believe that criminal history may have a direct, adverse and negative relationship with the following job duties, potentially resulting in the withdrawal of a conditional offer of employment: protect computer hardware entrusted to you from theft, loss or damage; return all computer hardware in your possession (including the data contained therein) upon termination of employment or end of assignment; and maintain the confidentiality of proprietary, confidential, and non-public information. In addition, job duties require access to secure and protected information technology systems and related data security obligations.

To notify OpenAI that you believe this job posting is non-compliant, please submit a report through this form . No response will be provided to inquiries unrelated to job posting compliance.

We are committed to providing reasonable accommodations to applicants with disabilities, and requests can be made via this link .

At OpenAI, we believe artificial intelligence has the potential to help people solve immense global challenges, and we want the upside of AI to be widely shared. Join us in shaping the future of technology.

Jobicy JobID: 151752
Vacancy posted 4 days ago
Similar jobs that could be interesting for youBased on the Remote Technical Threat Investigator, Threat Intel Engineering in Remote vacancy
  • $230k - $290k

     ...Technical CBRN-E Threat Investigator Remote-Friendly (Travel-Required) | San Francisco, CA | Washington, DC About Anthropic Anthropic's mission...  ...is a quickly growing group of committed researchers, engineers, policy experts, and business leaders working together... 
    Remote work
    Work at office
    Visa sponsorship
    Flexible hours
    Weekend work

    Anthropic

    Washington DC
    2 days ago
  • $234k - $385k

    OpenAI is seeking a Technical Threat Investigator to protect the company from sophisticated adversaries targeting its technology and models. This...  ...$234K to $385K plus equity, along with the flexibility of remote work while collaborating closely with teams in the US and... 
    Remote job

    OpenAI

    Los Angeles, CA
    5 days ago
  • $144.4k - $258k

     ...detecting, and responding to threats to the company and...  ..., Detection Engineering, Secure Code Development...  ...Senior Insider Threat Investigator to join our Insider Threat...  ...investigations, paired with technical expertise to navigate...  ...: in-person time and remote. Our approach enables... 
    Remote work
    Full time
    Work at office
    Home office
    Flexible hours

    Workday

    Boulder, CO
    2 days ago
  • ## Senior Lead Insider Threat Investigator (US)Postulerremote type: À distancelocations: Mount Laurel, New Jersey: Remote Charlotte (NC): Remote Port Charlotte (FL)time type: Temps...  ...* Works independently as the senior technical lead and guides others within area of expertise... 
    Remote work
    Temporary work
    Work at office
    Local area
    Work from home
    Flexible hours

    TD Bank

    Montana
    1 day ago
  • Responsibilities • Detect and investigate attempts to misuse Anthropic's AI systems for CBRN‑E threats • Conduct technical investigations using SQL, Python, and other tools • Develop CBRN‑E‑specific detection capabilities • Create actionable intelligence reports on CBRN... 
    Suggested

    Jobtailor

    California, MO
    4 days ago
  • $230k - $290k

     ...team is a quickly growing group of committed researchers, engineers, policy experts, and business leaders working together...  ...AI systems. About the Role We are looking for a Technical CBRN‑E Threat Investigator to join our Threat Intelligence team. In this role, you... 
    Full time
    Work experience placement
    Work at office
    Visa sponsorship
    Flexible hours
    Weekend work

    Aisafety

    San Francisco, CA
    2 days ago
  • A technology firm is seeking a Corporate Security Investigator to join their Counterintelligence & Threat Management Program. The role offers the opportunity to work remotely and involves managing complex investigations, producing detailed reports, and conducting extensive... 
    Remote work

    SAIC

    United States
    5 days ago
  • $115.44k - $173.16k

    TD Bank recherche un Senior Lead Insider Threat Investigator à Mount Laurel, NJ. Ce poste implique la direction d’enquêtes complexes sur les menaces internes et la collaboration avec plusieurs départements. Le candidat idéal aura au moins 10 ans d’expérience dans des enqu... 
    Remote job

    TD Bank

    Mount Laurel, NJ
    2 days ago
  • $132k - $148.5k

    Discord is seeking a Threat Investigator to lead investigations into violent extremist and threat actor networks, develop detection strategies, and coordinate with policy, engineering, and ML/AI teams. This role reports to the Senior Manager and requires flexible collaboration... 
    Relocation
    Flexible hours

    Hitmarker | Gaming Jobs

    San Francisco, CA
    2 days ago
  • $200k - $215k

    The DDoS threat landscape has crossed a threshold. Botnets like Aisuru and Kimwolf—comprising...  ...defensive impact. You will reverse engineer active IoT botnet malware, translate...  ...external‑facing research: threat reports, technical blogs, and conference presentations. At... 
    For subcontractor
    Local area

    A10 Networks, Inc

    San Francisco, CA
    2 days ago
  • Discord is seeking a Threat Investigator to lead investigations into violent extremist networks and threat actors. You will work across policy, engineering, and ML/AI teams to develop detection and disruption strategies, document trends, and prioritize threats using investigative... 

    EngineersOfAI

    San Francisco, CA
    1 day ago
  • Discord is seeking a Threat Investigator to lead investigations into violent extremist networks within the Threat Operations team. You will develop detection strategies, collaborate with policy, engineering, and ML teams, and translate complex findings into actionable guidance... 

    BITKRAFT Ventures

    San Francisco, CA
    1 day ago
  • $144.62k - $174.1k

     ...of human interaction, solving unique technical challenges at scale, and helping to create...  ...for everyone. As a Senior Threat Investigator on the Safety Investigations team, you...  ...Law Enforcement Operations, Product, Engineering, Policy, and other teams to drive high... 
    Full time
    Work experience placement
    H1b
    Work at office
    Local area
    Visa sponsorship
    Monday to Friday
    Weekend work

    Roblox

    San Mateo, CA
    3 days ago
  • $145.46k - $193.94k

     ....The RoleBlack Lotus Labs is seeking a remote Threat Intelligence Researcher on the Research...  ...prioritization, and intelligence production. Use technical knowledge of adversary capabilities,...  ...operations by engaging with research, engineering, data science, and customer-facing... 
    Remote work
    Temporary work

    Lumen Technologies

    Maryland
    5 days ago
  •  ...Test and Evaluation / Threat M&S / HWIL / Over-the...  ...provides high-end engineering and advanced technology...  ...Location : CONUS; remote/work from home acceptable...  ...Information (SCI) investigation and eligibility. Existing...  ..., and provide technically rigorous analysis and... 
    Remote work
    Full time
    Part time
    Work at office
    Local area
    Work from home

    KBR

    Huntsville, AL
    more than 2 months ago
  •  ...Serving as the technical lead for an established Insider Risk program, the full-time Insider Threat Technical Lead will guide insider-risk...  ...security tooling while working remotely. Key responsibilities Act...  ...in Microsoft Sentinel and investigate insider-risk alerts... 
    Remote work
    Full time

    Virtual Vocations Inc

    United States
    3 days ago
  • $90k - $150k

     ...Consultant, Cybersecurity The Global Insider Threat Program (GITP) protects TransUnion data...  ..., data protection, risk detection, and investigative capabilities. As part of the Cyber...  ...intake through closure. Analyze technical, behavioral, and business context to identify... 
    Full time
    Temporary work
    Work experience placement
    Work at office
    Flexible hours
    2 days per week

    hackajob

    Chicago, IL
    5 days ago
  • $110.8k - $179.23k

     ...join us!This role is remote, but distance is no barrier...  ...and cyber threats.Collaborate and guide...  ...fundamentals.Experience investigating targeted, sophisticated...  ...Familiarity with reverse engineering is advantageous....  ...Experience in writing technical blog posts and analysis... 
    Remote work
    Full time
    Visa sponsorship
    Work visa

    Palo Alto Networks

    Austin, TX
    5 days ago
  • $2,000 per month

    Join to apply for the Senior Threat Detection Engineer role at Miro Join to apply for the Senior...  ...security. You’ll lead threat investigations, act as the technical expert during security incidents,...  ...days ago Sr. Mechanical Engineer (Remote -- Houston, TX) Leander, TX $130,... 
    Remote work
    Full time
    Internship
    Work at office
    Work from home
    Worldwide
    Flexible hours

    Miro

    Austin, TX
    1 day ago
  •  ...Researcher to drive advancements in threat analysis and vulnerability investigation. You will collaborate with AI/ML...  ...security research or detection engineering. This full-time position offers competitive...  ...benefits, with flexibility for remote work or in-office collaboration... 
    Remote job
    Full time
    Work at office

    AI Cybersecurity Company

    San Francisco, CA
    3 days ago
  • $139.6k - $225.78k

     ...join us! This role is remote, but distance is no barrier...  ...with a global team of threat intelligence analysts...  ...with product engineering teams to improve detection...  ...assumptions by curiously investigating threat actor TTPs to...  ...intelligence. Simplify complex technical findings into clear,... 
    Remote work
    Visa sponsorship
    Work visa

    Palo Alto Networks, Inc.

    Virginia, IL
    4 days ago
  • $99k - $225k

    Foreign Threat Modeling and Simulation ManagerThe Opportunity:Serve as a technical manager to help manage business,...  ...analysis of complex engineering and test strategies,...  ...subject to a security investigation and may need to meet...  ...on during meetings.Remote: If this position is... 
    Remote work
    Full time
    Contract work
    Part time
    Work at office
    Local area

    Booz Allen Hamilton

    Beavercreek, OH
    1 day ago
  •  ...Position Overview The Cyber Threat Hunter proactively protects...  ...threat hypotheses, and investigates adversary tactics, techniques...  ...by contributing to detection engineering, monitoring enhancements,...  ...procedures (TTPs), developing technical hypotheses and investigative... 
    Remote work
    Contract work
    Work at office

    ASM Research

    United States
    5 days ago
  • $148.5k - $223.9k

     ...Job Category Software Engineering Job Details About...  ...Experience: As a Senior Threat Intelligence Researcher...  ...translating nuanced technical intelligence and...  ...build automation to aid investigations and threat research using...  ...team, including remote and in-person colleagues... 
    Remote work

    salesforce.com, inc.

    Bellevue, WA
    4 days ago
  • $118.96k - $205.2k

     ...the Job: The Senior Threat Hunt Engineer is an advanced and highly...  ...the operational and technical foundation of the...  ...matters, and translate intel into hunt hypotheses....  ...hunters . Pair on investigations, lead technical deep-...  ...intelligence. #LI-Remote Compensation Range... 
    Remote work
    Full time

    Northwestern Mutual

    New York, NY
    2 days ago
  •  ...observes and analyzes unique threat data at-scale that no one else...  ...US based positions are fully remote within the US, with optional...  ...fundamentals and protocols Deep technical ability to hunt through...  ...binary analysis and reverse engineering Experience with cyber threat... 
    Remote job
    Contract work
    For contractors
    For subcontractor
    Work at office
    Local area
    Flexible hours

    GreyNoise, Inc.

    Brooklyn, NY
    2 days ago
  • $160k - $200k

     ...operates through three business units: Remote Sensing (the data), Space Systems (...  ...looking to add a talented Senior Cyber Threat Operations Engineer to become a key player in our vibrant...  ...in the cybersecurity domain.Technical degree in Computer Science, Information... 
    Remote work
    Permanent employment
    Full time
    Work at office
    Local area
    Worldwide

    Umbra

    Arlington, VA
    1 day ago
  • $129.3k - $177.8k

     ...part of our caring community(remote in location) The Lead Intelligence...  ...owner for how Humana's cyber threat intelligence is collected,...  ...AI and AutomationOwn the technical relationship with stakeholders...  ...security operations, detection engineering, and vulnerability... 
    Remote work
    Full time
    Temporary work
    Work at office
    Home office

    Humana

    Tampa, FL
    1 day ago
  • $70k - $140k

     ...Detection Analyst (Expert)The Threat Detection Analyst Expert...  ...Threat Intelligence, Security Engineering, and IT Operations teams to...  ...detection content based on investigations and lessons learned.Collaborate...  ..., and do their best work. Remote roles will also have the opportunity... 
    Remote work
    Full time
    Work at office
    Work from home
    Flexible hours

    Cadence Bank

    Dallas, TX
    2 days ago
  • $198k - $233k

     ...intelligence and actionable threat insights to global...  ...: This is a fully remote position within the United...  ...Backend Software Engineer to join our team. In this...  ...advancing our Adversary Investigation module by architecting...  ...focused on technical excellence and proactive... 
    Remote work
    Worldwide
    Flexible hours

    Censys

    Ann Arbor, MI
    1 day ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Remote Technical Threat Investigator, Threat Intel Engineering. Be the first to apply!