96 security researcher jobs at 54 companies in Fairfax, CA
2w
Save
Mark Applied
Hide
2w
Security Researcher
San Francisco or Israel
OnsiteFull Time
Pi: Agentic AI platform for automated software vulnerability remediation.
8+ YOE8+ years in security research or applied security engineering, startup/0→1 experience, research-to-product track record, strong programming (Python/Go/TypeScript), LLM fluency, experiment and benchmark design, and US or Israel work authorization.
Deep hands-on vulnerability research, exploit analysis, IPS/IDS detection, network protocol expertise, strong programming/scripting for research automation, technical leadership, and BS/MS in CS/CE/Cybersecurity or equivalent experience.
OpenAI: Develops artificial intelligence models and generative AI software services.
Strong security, systems, and software engineering skills; cloud, OS, containers, and CI/CD experience; ability to design security controls and run evaluations; collaborate with stakeholders.
Anthropic: Developing safe and reliable artificial intelligence systems.
7+ YOEDeep cybersecurity expertise, experience building AI-powered security tools, rigorous evaluation skills, clear technical communication, and 7+ years in security research, engineering, or a related field.
GPT-3, Circuit-Based Interpretability, Multimodal Neurons, Scaling Laws, AI & Compute, Concrete Problems in AI Safety, Learning from Human Preferences
Security Level 5: Developing technical security standards for frontier AI systems.
Security research or standards experience; ability to read NIST, ICD 705, and vendor documentation, synthesize primary sources, and write clearly and precisely under editorial pressure.
MicrosoftNASDAQ: MSFT: Develops software, services, devices, and cloud computing solutions.
1+ YOEMaster's (1+ yr) or Bachelor's (2+ yrs) in a relevant field or equivalent; ability to pass Microsoft security screening; research experience with LLMs, CodeLLM or AI IDE preferred; experience publishing and running large-scale ML experiments.
GitHub Copilot, Microsoft VS Code, Microsoft Visual Studio, Copilot CLI, Copilot Code Review, LLM, CodeLLM, RAG, Code agent, AI IDE
Lawrence Livermore National Laboratory: Develops science and technology for United States national security.
0+ YOEPhD in laser physics or related field; experience with high-energy solid-state lasers, ultrafast lasers, and experimental laser systems; ability to work in multi-disciplinary team; US citizenship for security clearance.
JPMorgan ChaseNYSE: JPM: Global financial services firm providing banking and investment solutions.
5+ YOE5+ years in software engineering or applied AI/ML research, advanced degree or equivalent experience, strong Python skills, experience with cloud platforms, containers/Kubernetes, CI/CD, observability, and secure software practices.
Sandia National Laboratories: Conducts science and engineering research for national security.
5+ YOEBachelor's degree in a relevant discipline plus 5 years of directly relevant experience, or equivalent education and experience; ability to obtain and maintain a U.S. DOE Q-level security clearance and conduct independent R&D.
Resolution: Conducts research on aligning artificial superintelligence with human intent.
Build and own corporate IT security for a distributed research org; hands-on experience with endpoint management, IAM/Zero-Trust, email security, compliance (SOC 2/ISO 27001), and translating security requirements for researchers. Bachelor's degree or equivalent required.
MDM/EDR, CI/CD, Zero-Trust, multi-cloud, SOC 2, ISO 27001
Omnissa: Provides AI-driven digital workspace and endpoint management software solutions.
12+ YOE12+ years application security experience; expertise in threat modeling, secure design and architecture for cloud-native systems; proficiency reading Java and C++; experience with code review, vulnerability research, and maturing security programs.
OktaNASDAQ: OKTA: Provide secure identity management and authentication for enterprises.
7+ YOE7+ years in information security with deep application/offensive research or AI/ML security, hands-on assessment of LLM-integrated and agentic systems, proficiency in multiple programming languages, threat modeling, manual code review, and strong communication.
Boston or Austin or Washington or Seattle or San Francisco
$120k-$155k/yrRemoteFull Time
HackerOne: Connecting organizations with ethical hackers to find security vulnerabilities.
3+ YOE3+ years security testing/vulnerability research on web/mobile apps, strong OWASP Top 10 knowledge, experience with Burp Suite and CVSS, ability to reproduce/validate findings and communicate technical impact in English.
Burp Suite, Common Vulnerability Scoring System (CVSS)
Security Software Engineer, Open Source Frameworks
San Francisco or New York City or London or Berlin
$208k-$312k/yrHybridFull Time
Vercel: Frontend cloud platform for building and hosting web applications.
4+ YOE4+ years security engineering with hands-on open source contributions; deep JavaScript/TypeScript and Node framework knowledge; vulnerability research, coordinated disclosure, and CVE experience; strong communication.
QualysNASDAQ: QLYS: Provides cloud-based platform for cybersecurity and compliance management.
6+ YOE6+ years combined software/ML and security research or penetration testing experience; strong Python; experience with Scikit-learn, TensorFlow or PyTorch, LangChain/LlamaIndex, vector DBs (FAISS, Pinecone, Qdrant), cloud (AWS/GCP/Azure), SQL and Pandas.
Hopae: Provides decentralized digital identity and verification infrastructure.
8+ YOE3+ MgmtSenior research leader with 8+ years in identity, digital trust, or cryptography and 3+ years leading research teams; deep eID standards knowledge and familiarity with NFC, biometrics, and secure elements; based in Luxembourg; fluent English.
W3C, ISO, ETSI, sd-jwt-js, NFC, biometrics, secure elements
Chicago or Los Angeles or New York City or San Francisco or Seattle or Washington, D.C.
$194k-$262k/yrOnsiteFull Time
West Monroe: Business and technology consultancy specializing in digital transformation.
7+ YOE7+ years in security architecture/SOC modernization; experience with SIEM/SOAR, detection engineering, AI-enabled SOCs, platform modernization, and executive advisory; willingness to travel; must be eligible to work in the US without sponsorship.
Code Metal: Verifiable AI-powered code translation for mission-critical industries.
3+ YOEBachelor's or Master's in a technical field (or equivalent), 3+ years building AI/ML or applied research systems, strong Python and PyTorch skills, experience with LLM tooling, fine-tuning, retrieval, agentic systems, and experiment design; eligible to obtain U.S. security clearance.
University of California: A public research university system providing education and healthcare.
5+ YOEDevelop and apply reproducible bioinformatics workflows for bulk and single-cell genomic data; proficiency in R/Python and Unix; experience with NGS analysis and secure research data management.