Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Staff/Principal Offensive Security Engineer - AI Agents

Full-time

OpenAI

About the Role

We’re seeking an exceptional Staff - Principal level offensive security domain expert to build agents that continuously identify and coordinate remediation of vulnerabilities across OpenAI’s infrastructure and applications. You will be the technical owner of this effort, combining deep offensive security judgment with agent engineering to build a production system that can operate safely and reliably at scale.

As OpenAI increasingly uses automation throughout the company, we believe our security testing must become increasingly automated as well. Advances in model capabilities create an opportunity to test more of our attack surface than would be possible through human effort alone and a need to ensure that we remain ahead of those same capabilities as they become available to attackers.

In this role, you’ll build a portfolio of specialized agents that develop a deep understanding of OpenAI’s infrastructure, applications, processes, and security boundaries. These agents will combine internal context with feedback from running systems to explore our cloud environments , Kubernetes clusters , web applications , endpoints, external attack surface, and other high-value targets.

The goal is for agents to not only discover vulnerabilities, but also to validate exploitability, document impact, drive remediation, and verify fixes. Success will be measured through outcomes like vulnerabilities fixed, attack surface covered, and performance on evals you’ll build.

These systems will operate continuously and with increasing autonomy, while using carefully designed guardrails and human-in-the-loop controls for dangerous actions. They will also learn from feedback from other domain experts throughout the company.

In this role, you will:

  • Serve as the technical owner of OpenAI’s offensive security agents, establishing its architecture, technical direction, operating model, and evaluation strategy.
  • Design and build a portfolio of specialized agents that continuously test OpenAI’s infrastructure and applications from a variety of authenticated and unauthenticated perspectives.
  • Translate expert offensive security workflows and intuition into tools, skills, harnesses, policies, and internal knowledge bases.
  • Build agents that deeply understand OpenAI’s environment by integrating internal context.
  • Develop capabilities for testing cloud and Kubernetes environments , modern web applications , external attack surface, endpoints, and other high-value systems.
  • Build complete vulnerability-management loops that move beyond discovery to impact validation, ownership identification, prioritization, remediation support, progress tracking, and fix verification.
  • Design human-in-the-loop systems that allow offensive security engineers to approve or reject potentially dangerous actions, provide missing context, redirect investigations, and steer agents away from unproductive paths.
  • Create feedback mechanisms that allow agents to learn from the decisions, corrections, and domain expertise of experienced offensive security practitioners.
  • Develop rigorous evaluations that measure meaningful security outcomes and improvements in agent capability over time.
  • Build production-quality infrastructure that allows the system to run continuously, recover from failures, remain observable and debuggable, and operate safely against production systems.
  • Investigate failures in agent reasoning and behavior, identify where models are capable or unreliable, and improve the surrounding tools, context, workflows, and guardrails accordingly.
  • Partner closely with offensive security, infrastructure security, product security, codex security, and engineering teams to ensure findings are high signal, understandable, and actionable.
  • Help define the future of offensive security at OpenAI, with the goal of enabling agents to perform most repeatable security testing while human experts focus on automation and high leverage agent-assisted manual review.

You might thrive in this role if:

  • You have substantial hands-on offensive security experience and strong judgment about which vulnerabilities and attack paths are worth pursuing.
  • You have extensive domain expertise in areas such as cloud security , Kubernetes and container security , web application security , source-code review, Linux security, macOS security, or external attack-surface testing. Expertise in cloud , Kubernetes , and modern web applications is especially valuable.
  • You have experience assessing complex, highly customized environments rather than relying primarily on standardized scanners, checklists, or known-vulnerability detection.
  • You can take an ambiguous offensive security problem, decompose it into a reliable system, and encode the reasoning and workflows of an experienced operator into software.
  • You have built production quality software .
  • You have built or meaningfully extended agent systems that use models, tools, structured context, memory, orchestration, and feedback loops to perform complex work.
  • You understand that an impressive agent demonstration is very different from a dependable production system, and you care deeply about evaluations, observability, failure recovery, safety, maintainability, and regression resistance.
  • You have strong intuitions about where current models are capable, where they are unreliable, and how tools, context, scaffolding, and human feedback can expand their useful operating range.
  • You are excited about working closely with frontier models , curious about their emerging capabilities, and constantly look for ways to use them to improve your own workflows.
  • You are energized by the opportunity to serve as a technical owner of an ambitious new system, make foundational architectural decisions, and help grow a team around it.

Bonus points:

  • Background or expertise in AI or data science .
  • Prior experience working in tech startups or fast-paced technology environments.
  • Experience in related disciplines such as Software Engineering , Product Security , Application Security , Detection Engineering , Site Reliability Engineering , Security Engineering , or IT Infrastructure .
Vacancy posted 2 days ago
Similar jobs that could be interesting for youBased on the Staff/Principal Offensive Security Engineer - AI Agents in Remote vacancy
  •  ...About the Team Security is at the foundation of OpenAI’s mission...  ...re seeking an exceptional Principal-level Offensive Security Engineer focused on deep, hands-on...  ...testing of OpenAI’s agent-powered products, infrastructure...  ...assessing the security of AI-powered systems. ~... 
    Suggested
    Full time

    OpenAI

    Remote
    5 days ago
  •  ...Job Description Description At Staris AI we believe human-based cyber defense is dead and the dream of security automation is finally within reach. Staris...  ...applications into a new era of security. As an Offensive Security Engineer at Staris AI, you'll be at the vanguard of... 
    Suggested
    Remote work

    Staris AI

    Seattle, WA
    19 days ago
  • $85 per hour

     ...connects elite creative and technical talent with leading AI research labs. Headquartered in San Francisco, our investors...  ..., Larry Summers , and Jack Dorsey . Position: Security Engineer (Coding Agent Experience) Type: Contract Compensation: $85/hour... 
    Suggested
    Contract work
    Summer work
    Remote work

    Mercor

    Chicago, IL
    9 days ago
  • $40 per hour

     ...to join our team to help train AI models. In this role, you will evaluate AI-generated security content, solve technical...  ...vulnerability assessments, and offensive security techniques Design and...  ...incident response, detection engineering, DFIR, malware analysis, threat... 
    Suggested
    Remote job
    Hourly pay
    Full time
    Part time

    DataAnnotation

    Raleigh, NC
    3 days ago
  •  ...human intelligence to power the AI economy. We partner with...  ...offices. You'll own application security at a company where the app...  ...path the easy path for 50+ engineers Threat models for new features...  ...(HackerOne, Bugcrowd) Offensive security skills - you've done... 
    Suggested
    Work at office
    Remote work
    Relocation package
    Shift work

    Mercor Alabaster

    New York, NY
    3 days ago
  •  ....   Position Title: Web Developer Security Engineer   Location: US Congressional Budget...  ...APIs, and SQL. Ability to leverage AI-assisted development tools (e.g.,...  ...Certified Application Security Engineer). Offensive Security: OSWE (OffSec Web Expert);... 
    Remote job
    Full time
    Work at office
    Local area

    CMT SERVICES, Inc.

    Remote
    17 hours ago
  •  ...Seeking a full-time Offensive Security Engineer, this remote position will manage the development of specialized agents to continuously identify and remediate vulnerabilities across OpenAI's infrastructure and applications, ensuring safe and reliable operations at scale... 
    Full time
    Remote work

    Virtual Vocations Inc

    United States
    1 day ago
  • $160k - $205k

     ...hiring a Senior Full Stack Pentester to join our world-class offensive security team. The role focuses on hunting high-risk vulnerabilities...  ...senior leadership on development projects and mentor junior engineers. Assist with monitoring, detection, and response functions to... 
    Remote work
    Shift work
    Day shift

    Bank of America

    Charlotte, NC
    4 days ago
  •  ...Seeking a full-time remote Senior Offensive Security Engineer (Red Team) who will execute advanced offensive security operations, simulate real-world adversary scenarios, and identify high-impact vulnerabilities across various platforms and environments. Key Responsibilities... 
    Full time
    Remote work

    Virtual Vocations Inc

    United States
    17 hours ago
  •  ...us! Senior Full Stack Pentester – Cyber Security Assurance Division Are you passionate about...  ...Pentester to join a team of world‑class offensive security professionals. In this role,...  ...knowledge and experience by mentoring junior engineers, and assist with monitoring and response... 
    Work at office
    Remote work
    Shift work
    Day shift

    Bank of America

    Chicago, IL
    2 days ago
  • $160k - $220k

     ...Join to apply for the Senior Application Security Engineer role at Zip The simple task of buying...  ...as we launch new products, such as AI Agents and an App Marketplace, and enter into...  ...1, and FedRAMP Hands‑on experience in offensive security (e.g., through bug bounty programs... 
    Full time
    Home office
    Flexible hours

    ZIP

    San Francisco, CA
    17 hours ago
  • A cybersecurity solutions company is seeking experienced professionals to evaluate AI-generated security content and solve technical cybersecurity problems. This remote role allows you to work on your own schedule and focuses on improving AI models fighting real-world threats... 
    Remote job
    Hourly pay

    DataAnnotation

    Jackson, MS
    17 hours ago
  • $40 per hour

    A leading cybersecurity firm is seeking experienced cybersecurity professionals to evaluate AI-generated security content and enhance AI models. You will work on your own schedule, with hourly pay starting at $40. The ideal candidate has 2+ years of experience in cybersecurity... 
    Remote job
    Hourly pay

    DataAnnotation

    Madison, WI
    2 days ago
  • $161k - $242k

     ...Category Engineering Hire Type Employee Job ID 17996 Base Salary Range $161000-$242000...  ..., enabling customers to rapidly innovate AI-powered products. We deliver industry-leading...  ...before someone else does. You approach security testing with curiosity and rigor, not just... 
    Permanent employment
    Live in
    Remote work
    Worldwide

    Synopsys Inc

    Austin, TX
    24 days ago
  • $118k - $130k

     ...Description Job Description Job Title: Vulnerability Management & Offensive Security Analyst Primary Location: Remote Position Type: Direct...  ...acquisition. We are redefining IT staffing by evolving AI, video screening, and our unique platform. TalentFish focuses... 
    Contract work
    Work experience placement
    Internship
    Remote work
    Visa sponsorship

    Gulf Coast Automation Group

    Chicago, IL
    11 days ago
  • $234.4k - $385k

     ...About the Team Security is at the foundation of OpenAI's mission to ensure that artificial...  .... About the Role As a Security Engineer, Application Security you will be...  ...audiences About OpenAI OpenAI is an AI research and deployment company dedicated... 
    Work at office
    Remote work
    Relocation package

    OpenAI

    Seattle, WA
    2 days ago
  •  ...federal government’s most critical national security and defense priorities, helping protect...  ...is seeking a  Web Developer Security Engineer to join our team. This position is based...  ...and Kubernetes. Experience leveraging AI-assisted development tools to support security... 
    Full time
    Local area
    Remote work
    Flexible hours

    Ardentmc

    Washington DC
    17 hours ago
  • $170k - $205k

     ...Our core product is a robust calculation engine capable of executing advanced math and machine...  ...-series data. By leveraging generative AI, we enhance usability and accelerate outcomes...  ...environment. What You Will Do As a Staff+ Software Engineer at Seeq, you will play a... 
    Full time
    Temporary work
    H1b
    Work at office
    Local area
    Immediate start
    Remote work
    Home office
    Work visa

    Seeq

    United States
    17 hours ago
  • $220.7k - $300k

     ...creativity, experimentation, and advanced AI to reshape access to credit, helping...  ...innovation across Upstart. As a Principal Machine Learning Engineer, you will work at the intersection of...  ...disability coverage for added financial security Paid time off, sick leave, and... 
    Remote job
    Full time
    Summer work
    Currently hiring
    Local area
    Work from home

    Upstart Inc.

    Remote
    17 hours ago
  • $180k - $205k

     ...to solve problems that even the most advanced supercomputers or AI systems will never reach. Their impact will span energy, pharmaceuticals...  ...: The OS Core Team at PsiQuantum works closely alongside engineers and scientists in the electronics, system architecture, and... 
    Full time
    Shift work

    Psiquantum

    Remote
    17 hours ago
  • $150k - $260k

     ...We’re jumpapp.com ! AI For Financial Advisors If you know Elixir (or would be excited to learn it!) and the following sounds...  ...experience, with a minimum of 5 years in senior or staff-level engineering roles. Deep expertise in at least one major programming language... 
    Remote job
    Full time
    Day shift

    Jump

    Remote
    17 hours ago
  • $250k - $300k

     ...Staff/Principal Software Engineer (US Remote) At Synthetic we are synthetically recreating the professional service of bookkeeping using AI. Our product processes financial data, manages bookkeeping...  ...What you'll do here Build agents that interact with customers and... 
    Remote job
    Full time
    Visa sponsorship

    Ad Synthetic, Inc.

    United States
    17 hours ago
  • $150k - $260k

     ...Staff/Senior/Principal Software Engineer (Elixir/AI Focus) Location: Remote (with occasional travel) Base Location: Salt Lake City, UT, US Employment...  ...purposes only. This information is managed securely in accordance with MLabs Ltd’s Privacy Policy and Information... 
    Remote job
    Full time
    Contract work

    Mlabs

    United States
    17 hours ago
  •  ...and empathy go hand in hand, and by combining cutting-edge AI tools with a relentless focus on human care, we can transform heart health at scale. Role Overview: The Staff / Principal Full Stack Engineer will play a central role in designing and building Chamber’... 
    Remote job
    Full time

    Chamber Cardio

    Remote
    17 hours ago
  • $250k - $300k

     ...Staff/Principal Frontend Engineer Posted by Transparent Search Group on behalf of Noon . About Noon A new era of design begins Website...  ...high performance on canvases with thousands of AI-generated nodes. You will balance deep-work coding and day... 
    Full time
    H1b
    Visa sponsorship

    Transparent Search Group

    Remote
    17 hours ago
  • $10k

     ...At Skylight, software engineers design, build, and operate...  ...designers, engineers, and security experts working side-by-...  ...and integrate data and AI responsibly into daily...  ...Engineer: $150,000–$185,000 Staff Software Engineer: $170,000–$203,000 Principal Software Engineer: $180,... 
    Full time
    Temporary work
    For contractors
    Remote work
    Relocation
    Relocation package
    Flexible hours

    Skylight, Inc.

    United States
    17 hours ago
  •  ...humans govern technology. As the Identity & Security Engineer, you will design and implement the...  ...and security foundation of the Human-Led AI Orchestration Layer. You will ensure...  ...authorization enforcement across APIs, services, agents, tools, and data access layers.... 
    Full time
    Immediate start
    Remote work
    Flexible hours

    Servant

    United States
    17 hours ago
  • $165k - $242k

     ...Description CoreWeave is The Essential Cloud for AI™. Built for pioneers by pioneers,...  ...at What You'll Do: The Enterprise Security team at CoreWeave is responsible for securing...  ...About the Role: As a Senior Security Engineer, Enterprise Security , you'll design and... 
    Permanent employment
    Temporary work
    For contractors
    Casual work
    Work at office
    Remote work
    Flexible hours

    CoreWeave

    Sunnyvale, CA
    4 days ago
  • $155.52k - $194.4k

     ...Twilio is in your hands. We use Artificial Intelligence (AI) to help make our hiring process efficient. That said,...  ...See yourself at Twilio Join the team as Twilio’s next Staff Offensive Security Engineer. About the job The Staff Engineer acts as a Technical... 
    Full time
    Local area
    Remote work
    Worldwide

    Twilio

    Remote
    16 days ago
  • $228k - $340k

     ...Everlaw is looking for a Staff/Principal AI Engineer to help design and execute our overall technical...  ...with other software engineers, security engineers, data scientists, product leads...  ...or video processing You’ve built agents to accomplish tasks, including approaches... 
    Full time
    Work at office
    Local area
    Remote work
    Flexible hours
    3 days per week

    Everlaw

    Oakland, CA
    17 hours ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Staff/Principal Offensive Security Engineer - AI Agents. Be the first to apply!