Remote Technical Threat Investigator, Threat Intel Engineering
OpenAI
About the Team
Security is at the foundation of OpenAI’s mission to ensure that artificial general intelligence benefits all of humanity.
The Threat Intelligence team protects OpenAI’s technology, people, research, and infrastructure by proactively identifying and disrupting adversaries who seek to compromise our systems or misuse our models. We investigate sophisticated threats, build tooling to scale and augment analysis, and deliver intelligence that shapes security strategy and equips leadership with timely, risk-aware insights. We combine technical depth, investigative rigor, and strong cross-functional partnerships to uncover threats and drive impact across OpenAI’s security and research organizations.
About the Role
As a Technical Threat Investigator at OpenAI, you will help protect the company from sophisticated adversaries targeting OpenAI and the broader ecosystem, as well as those attempting to misuse our models in support of cyber operations.
This is a deeply investigative role. You will independently conduct complex, end-to-end investigations into capable threat actors to understand their behavior, infrastructure, emerging techniques, and how AI is integrated into their workflows. You’ll use these insights to proactively identify malicious activity and drive detection, disruption, enforcement, and safety improvements across the company.
You’ll translate your investigative findings into durable solutions that scale impact. You’ll build and own lightweight tooling, automate where it matters, and create AI-assisted workflows to make investigations faster, more repeatable, and more effective over time.
In this role, you will:
-
Conduct deep, end-to-end investigations into sophisticated threat actors interacting with OpenAI’s models, products, and broader ecosystem.
-
Think like an adversary — model attacker behavior, anticipate misuse patterns, and proactively hunt for, identify, and disrupt malicious activity.
-
Leverage internal telemetry, OSINT, vendor data, and in-house safety systems to produce high-confidence findings on adversarial use of our models in cyber operations, platform abuse, and threats targeting OpenAI.
-
Translate investigative findings into concrete improvements across detection, enforcement, intel, and safety pipelines.
-
Build tooling, scripts, automations, and agentic workflows that scale investigative throughput and reduce manual effort.
-
Prototype solutions in ambiguous and emerging problem spaces, including new product surfaces, novel attacker behaviors, and areas where existing coverage may be limited.
-
Partner closely with teams across Security, Safety Systems, Product Policy, and Integrity to operationalize findings and drive meaningful outcomes.
-
Produce clear, high-signal written outputs and recommendations that inform decision-making across technical and executive stakeholders.
You might thrive in this role if you have:
-
Experience in threat intelligence, incident response, offensive security, or a closely related field.
-
Solid experience investigating sophisticated threat actors, including model misuse, platform abuse, or other adversarial activity in complex environments.
-
A strong understanding of adversary behavior, infrastructure, and tradecraft, and the ability to apply that understanding to proactive investigations.
-
Demonstrated ability to independently drive deep technical investigations from ambiguous signals through to clear, actionable findings.
-
Experience using AI to extend or accelerate investigative workflows.
-
Strong scripting ability and comfort building lightweight automation, investigative tooling, or workflows that improve scale and repeatability.
-
Strong ability to leverage telemetry from diverse systems and vendors to drive investigations, including directly querying, extracting, and stitching together data where needed.
-
Strong written and verbal communication skills, especially the ability to translate technical investigations into high-signal outputs for diverse stakeholders.
-
Comfort operating independently in ambiguous, fast-moving problem spaces with minimal oversight.
This is a remote role with close collaboration required across teams in the US and UK. While the role is remote, regular in-person engagement with our San Francisco (SF) headquarters will be expected. Relocation assistance is available for candidates who wish to relocate to SF.
About OpenAI
OpenAI is an AI research and deployment company dedicated to ensuring that general-purpose artificial intelligence benefits all of humanity. We push the boundaries of the capabilities of AI systems and seek to safely deploy them to the world through our products. AI is an extremely powerful tool that must be created with safety and human needs at its core, and to achieve our mission, we must encompass and value the many different perspectives, voices, and experiences that form the full spectrum of humanity.
We are an equal opportunity employer, and we do not discriminate on the basis of race, religion, color, national origin, sex, sexual orientation, age, veteran status, disability, genetic information, or other applicable legally protected characteristic.
For additional information, please see OpenAI’s Affirmative Action and Equal Employment Opportunity Policy Statement .
Background checks for applicants will be administered in accordance with applicable law, and qualified applicants with arrest or conviction records will be considered for employment consistent with those laws, including the San Francisco Fair Chance Ordinance, the Los Angeles County Fair Chance Ordinance for Employers, and the California Fair Chance Act, for US-based candidates. For unincorporated Los Angeles County workers: we reasonably believe that criminal history may have a direct, adverse and negative relationship with the following job duties, potentially resulting in the withdrawal of a conditional offer of employment: protect computer hardware entrusted to you from theft, loss or damage; return all computer hardware in your possession (including the data contained therein) upon termination of employment or end of assignment; and maintain the confidentiality of proprietary, confidential, and non-public information. In addition, job duties require access to secure and protected information technology systems and related data security obligations.
To notify OpenAI that you believe this job posting is non-compliant, please submit a report through this form . No response will be provided to inquiries unrelated to job posting compliance.
We are committed to providing reasonable accommodations to applicants with disabilities, and requests can be made via this link .
At OpenAI, we believe artificial intelligence has the potential to help people solve immense global challenges, and we want the upside of AI to be widely shared. Join us in shaping the future of technology.
Jobicy JobID: 151752$230k - $290k
...Technical CBRN-E Threat Investigator Remote-Friendly (Travel-Required) | San Francisco, CA | Washington, DC About Anthropic Anthropic's mission... ...is a quickly growing group of committed researchers, engineers, policy experts, and business leaders working together...Remote workWork at officeVisa sponsorshipFlexible hoursWeekend work$234k - $385k
OpenAI is seeking a Technical Threat Investigator to protect the company from sophisticated adversaries targeting its technology and models. This... ...$234K to $385K plus equity, along with the flexibility of remote work while collaborating closely with teams in the US and...Remote job$144.4k - $258k
...detecting, and responding to threats to the company and... ..., Detection Engineering, Secure Code Development... ...Senior Insider Threat Investigator to join our Insider Threat... ...investigations, paired with technical expertise to navigate... ...: in-person time and remote. Our approach enables...Remote workFull timeWork at officeHome officeFlexible hours- ## Senior Lead Insider Threat Investigator (US)Postulerremote type: À distancelocations: Mount Laurel, New Jersey: Remote Charlotte (NC): Remote Port Charlotte (FL)time type: Temps... ...* Works independently as the senior technical lead and guides others within area of expertise...Remote workTemporary workWork at officeLocal areaWork from homeFlexible hours
- Responsibilities • Detect and investigate attempts to misuse Anthropic's AI systems for CBRN‑E threats • Conduct technical investigations using SQL, Python, and other tools • Develop CBRN‑E‑specific detection capabilities • Create actionable intelligence reports on CBRN...Suggested
$230k - $290k
...team is a quickly growing group of committed researchers, engineers, policy experts, and business leaders working together... ...AI systems. About the Role We are looking for a Technical CBRN‑E Threat Investigator to join our Threat Intelligence team. In this role, you...Full timeWork experience placementWork at officeVisa sponsorshipFlexible hoursWeekend work- A technology firm is seeking a Corporate Security Investigator to join their Counterintelligence & Threat Management Program. The role offers the opportunity to work remotely and involves managing complex investigations, producing detailed reports, and conducting extensive...Remote work
$115.44k - $173.16k
TD Bank recherche un Senior Lead Insider Threat Investigator à Mount Laurel, NJ. Ce poste implique la direction d’enquêtes complexes sur les menaces internes et la collaboration avec plusieurs départements. Le candidat idéal aura au moins 10 ans d’expérience dans des enqu...Remote job$132k - $148.5k
Discord is seeking a Threat Investigator to lead investigations into violent extremist and threat actor networks, develop detection strategies, and coordinate with policy, engineering, and ML/AI teams. This role reports to the Senior Manager and requires flexible collaboration...RelocationFlexible hours$200k - $215k
The DDoS threat landscape has crossed a threshold. Botnets like Aisuru and Kimwolf—comprising... ...defensive impact. You will reverse engineer active IoT botnet malware, translate... ...external‑facing research: threat reports, technical blogs, and conference presentations. At...For subcontractorLocal area- Discord is seeking a Threat Investigator to lead investigations into violent extremist networks and threat actors. You will work across policy, engineering, and ML/AI teams to develop detection and disruption strategies, document trends, and prioritize threats using investigative...
- Discord is seeking a Threat Investigator to lead investigations into violent extremist networks within the Threat Operations team. You will develop detection strategies, collaborate with policy, engineering, and ML teams, and translate complex findings into actionable guidance...
$144.62k - $174.1k
...of human interaction, solving unique technical challenges at scale, and helping to create... ...for everyone. As a Senior Threat Investigator on the Safety Investigations team, you... ...Law Enforcement Operations, Product, Engineering, Policy, and other teams to drive high...Full timeWork experience placementH1bWork at officeLocal areaVisa sponsorshipMonday to FridayWeekend work$145.46k - $193.94k
....The RoleBlack Lotus Labs is seeking a remote Threat Intelligence Researcher on the Research... ...prioritization, and intelligence production. Use technical knowledge of adversary capabilities,... ...operations by engaging with research, engineering, data science, and customer-facing...Remote workTemporary work- ...Test and Evaluation / Threat M&S / HWIL / Over-the... ...provides high-end engineering and advanced technology... ...Location : CONUS; remote/work from home acceptable... ...Information (SCI) investigation and eligibility. Existing... ..., and provide technically rigorous analysis and...Remote workFull timePart timeWork at officeLocal areaWork from home
- ...Serving as the technical lead for an established Insider Risk program, the full-time Insider Threat Technical Lead will guide insider-risk... ...security tooling while working remotely. Key responsibilities Act... ...in Microsoft Sentinel and investigate insider-risk alerts...Remote workFull time
$90k - $150k
...Consultant, Cybersecurity The Global Insider Threat Program (GITP) protects TransUnion data... ..., data protection, risk detection, and investigative capabilities. As part of the Cyber... ...intake through closure. Analyze technical, behavioral, and business context to identify...Full timeTemporary workWork experience placementWork at officeFlexible hours2 days per week$110.8k - $179.23k
...join us!This role is remote, but distance is no barrier... ...and cyber threats.Collaborate and guide... ...fundamentals.Experience investigating targeted, sophisticated... ...Familiarity with reverse engineering is advantageous.... ...Experience in writing technical blog posts and analysis...Remote workFull timeVisa sponsorshipWork visa$2,000 per month
Join to apply for the Senior Threat Detection Engineer role at Miro Join to apply for the Senior... ...security. You’ll lead threat investigations, act as the technical expert during security incidents,... ...days ago Sr. Mechanical Engineer (Remote -- Houston, TX) Leander, TX $130,...Remote workFull timeInternshipWork at officeWork from homeWorldwideFlexible hours- ...Researcher to drive advancements in threat analysis and vulnerability investigation. You will collaborate with AI/ML... ...security research or detection engineering. This full-time position offers competitive... ...benefits, with flexibility for remote work or in-office collaboration...Remote jobFull timeWork at office
$139.6k - $225.78k
...join us! This role is remote, but distance is no barrier... ...with a global team of threat intelligence analysts... ...with product engineering teams to improve detection... ...assumptions by curiously investigating threat actor TTPs to... ...intelligence. Simplify complex technical findings into clear,...Remote workVisa sponsorshipWork visa$99k - $225k
Foreign Threat Modeling and Simulation ManagerThe Opportunity:Serve as a technical manager to help manage business,... ...analysis of complex engineering and test strategies,... ...subject to a security investigation and may need to meet... ...on during meetings.Remote: If this position is...Remote workFull timeContract workPart timeWork at officeLocal area- ...Position Overview The Cyber Threat Hunter proactively protects... ...threat hypotheses, and investigates adversary tactics, techniques... ...by contributing to detection engineering, monitoring enhancements,... ...procedures (TTPs), developing technical hypotheses and investigative...Remote workContract workWork at office
$148.5k - $223.9k
...Job Category Software Engineering Job Details About... ...Experience: As a Senior Threat Intelligence Researcher... ...translating nuanced technical intelligence and... ...build automation to aid investigations and threat research using... ...team, including remote and in-person colleagues...Remote work$118.96k - $205.2k
...the Job: The Senior Threat Hunt Engineer is an advanced and highly... ...the operational and technical foundation of the... ...matters, and translate intel into hunt hypotheses.... ...hunters . Pair on investigations, lead technical deep-... ...intelligence. #LI-Remote Compensation Range...Remote workFull time- ...observes and analyzes unique threat data at-scale that no one else... ...US based positions are fully remote within the US, with optional... ...fundamentals and protocols Deep technical ability to hunt through... ...binary analysis and reverse engineering Experience with cyber threat...Remote jobContract workFor contractorsFor subcontractorWork at officeLocal areaFlexible hours
$160k - $200k
...operates through three business units: Remote Sensing (the data), Space Systems (... ...looking to add a talented Senior Cyber Threat Operations Engineer to become a key player in our vibrant... ...in the cybersecurity domain.Technical degree in Computer Science, Information...Remote workPermanent employmentFull timeWork at officeLocal areaWorldwide$129.3k - $177.8k
...part of our caring community(remote in location) The Lead Intelligence... ...owner for how Humana's cyber threat intelligence is collected,... ...AI and AutomationOwn the technical relationship with stakeholders... ...security operations, detection engineering, and vulnerability...Remote workFull timeTemporary workWork at officeHome office$70k - $140k
...Detection Analyst (Expert)The Threat Detection Analyst Expert... ...Threat Intelligence, Security Engineering, and IT Operations teams to... ...detection content based on investigations and lessons learned.Collaborate... ..., and do their best work. Remote roles will also have the opportunity...Remote workFull timeWork at officeWork from homeFlexible hours$198k - $233k
...intelligence and actionable threat insights to global... ...: This is a fully remote position within the United... ...Backend Software Engineer to join our team. In this... ...advancing our Adversary Investigation module by architecting... ...focused on technical excellence and proactive...Remote workWorldwideFlexible hours
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Remote Technical Threat Investigator, Threat Intel Engineering. Be the first to apply!
- defense investigator Remote
- corporate security investigator Remote
- human rights investigator Remote
- healthcare investigator Remote
- security investigator Remote
- employee relations investigator Remote
- remote investigator Remote
- housing investigator Remote
- insurance investigator Remote
- compliance investigator Remote


