דרושים » אבטחת מידע וסייבר » Senior Vulnerability Researcher

משרות על המפה
 
בדיקת קורות חיים
VIP
הפוך ללקוח VIP
רגע, משהו חסר!
נשאר לך להשלים רק עוד פרט אחד:
 
שירות זה פתוח ללקוחות VIP בלבד
AllJObs VIP
כל החברות >
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
1 ימים
חברה חסויה
Location: Tel Aviv-Yafo
Job Type: Full Time
we are looking for a Senior Vulnerability Researcher.
You'll have the room to follow the research where it leads, and the backing of an ecosystem created to set you up for success by providing every tool and access that could help.
Some threads will feed directly into how understands what's genuinely exploitable, grounding the platform in real attacker reality rather than theoretical risk. Others will be pure discovery, pursued because the problem is hard and the finding truly matters, and published to move the field forward.
Either way, your work establishes authority in the field. Through original research, disclosures, and technical thought leadership, you'll build a body of work that earns the respect of the security community and sharpens how the industry thinks about what's truly secure.
What you will Do:
Hunt for what established security paradigms miss: flawed assumptions, gaps between specified and actual behavior, and novel vulnerability classes and exploitation techniques that don't yet have names.
Reverse-engineer and deeply understand systems, protocols, and architectures at the implementation level - developing a precise understanding of how they actually work, rather than what their designers intended.
Develop hypotheses and convert them into working proof-of-concept exploits that demonstrate real-world risk before attackers do.
Own research threads end-to-end, from an early exploration, developing and following hunches all the way through to a proof of concept, responsible disclosure or publication, following the evidence wherever it leads without waiting for a defined playbook.
Ground understanding of exploitability in attacker reality - when research surfaces findings relevant to how the platform models identity attack surface across human and non-human identities, bring that signal in.
Promote standing in the security community through original research, CVEs, and technical thought leadership that advances the field and earns trust on its merits.
Requirements:
6+ years of hands-on vulnerability research, reverse engineering, or offensive security, with a proven track record of finding non-trivial flaws and the depth in systems, protocols, and architectures to understand precisely why they exist.
A first-principles approach to how things actually work, not how they're documented to work: you pull the thread until you hit ground truth, and you're not satisfied until you do.
The instinct and ability to see what others overlook - the unquestioned assumptions in established systems, the edges no one has tested, the failure modes that live in the gap between spec and implementation.
End-to-end ownership of research: you drive hypotheses to conclusions through dead ends, changes of directions and reach hard proofs
Strong hands-on expertise, converting theories and research into a working chain and proof of concept.
Result driven depth: you go as far as a problem deserves, because the result is worth it, and you know when it is.
A track record of original significant discoveries - published CVEs, novel vulnerability classes or exploitation techniques, research that named a problem the field didn't have words for yet.
This position is open to all candidates.
 
Hide
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8837070
סגור
שירות זה פתוח ללקוחות VIP בלבד
משרות דומות שיכולות לעניין אותך
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
1 ימים
Location: Tel Aviv-Yafo
Job Type: Full Time
we are looking for a Senior Product Security Researcher.
As a Security Researcher, you'll own and evolve the core of the Oak platform: the frameworks and logics that turn fragmented, cross-surface identity data into precise, high-signal insight. You'll work directly with real-world data to find emerging attack patterns, reason about privilege and exposure, and convert what you learn into intelligence that tells customers what's actually risky - and what to do about it.
Identity is also the fastest-moving attack surface in the enterprise right now. The explosion of non-human identities and autonomous AI agents is rewriting what "who has access to what" even means, and you'll be at the front of it - defining how discovers, scores, governs and secures these identities before the rest of the market has a vocabulary for the risk.
You'll also shape voice in the field. Through original research, published findings, and technical thought leadership, you'll influence how practitioners and analysts understand identity risk as the perimeter dissolves.
What you will Do:
Drive research end-to-end - from hypothesis and exploration all the way through to the intelligence and logic that ship into the platform and makes impact on our customers.
Translate deep expertise in identity and security into the analytical engine that drives how reasons about risk, governance, and access decisions across organizations.
Create and own knowledge - the content, logic and intelligence behind every insight made, while setting and maintaining the quality, accuracy depth and coverage of the platform.
Pioneer approach at the cutting edge of a category being reinvented - as the identity foundations are rebuilt for a new world
Shape the field's understanding of identity through original research and technical thought leadership, while raising the research bar across the team and delivering top-tier value to our customers.
Requirements:
5+ years of hands-on security research experience, with a track record that demonstrates depth across identity, access control, or adjacent threat domains.
Low ego, high impact - you share findings freely, measure success by the team's impact and you are value-driven, Willing to roll up your sleeves for the foundational work creating knowledge and insights in order to provide real value to real customers.
Innovative and forward thinking - Continuous desire to learn, explore and create.
The instinct to find what others miss: you approach identity attack surfaces, NHI exposure, and AI agent behavior with genuine curiosity and a willingness to go where the research leads.
A collaborative default - happy to share and work alongside product, engineering, and go-to-market teams in order to translate raw research into intelligence that sharpens Oak's platform and customers' understanding of their identity risk.
Nice to have:
A history of original, published work - conference presentations (Black Hat, DEFCON, or equivalent), blog series, or white papers that has moved the needle and made impact.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8837082
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
27/08/2026
חברה חסויה
Location: Tel Aviv-Yafo
Job Type: Full Time
we are looking for a Lead Security Researcher.
You will lead security research. This is not a bug hunting role. Your job is to invent the approaches that become product capabilities: new ways to detect, triage, and remediate vulnerabilities using LLMs and program analysis, proven on real data before a customer ever sees them.
You own the path from idea to shipped capability. You form the hypothesis, build the proof of concept, measure whether it actually works, and partner with engineering until it is in the product. You also own the quality bar: the benchmarks and evaluations that decide whether what we ship is good enough to put in front of customers.
You will set the research agenda, not just execute one. As the team grows, you will shape how research works here.
Requirements:
Experience. 8+ years in security research, vulnerability analysis, or applied security engineering.
Startup DNA. You have worked in an early stage or 0 to 1 environment. Comfortable with ambiguity, shipping without a big org behind you, and changing direction when the data says so. This is a requirement, not a bonus.
Research to product track record. You have turned research into things that shipped: features, tools, detections in production. Not just papers or reports.
Technical depth. Deep expertise in modern application stacks (microservices, containers, cloud platforms). You understand how these systems actually break.
Builder skills. Strong programming ability in at least one modern language (Python, Go, TypeScript). Comfortable writing production quality code.
Data rigor. Experience designing experiments, building datasets or benchmarks, and measuring quality quantitatively. You do not ship on vibes.
LLM fluency. Hands on experience applying LLMs to real problems, whether evaluation, prompting, fine tuning, or agentic systems, or a demonstrated ability to get there fast.
Proven findings. A history of discovering serious vulnerabilities (CVEs welcome) and responsible disclosure.
Communication. You can explain a complex attack and its real impact clearly to engineers, executives, and customers.
Work authorization. Permanent authorization to work in the US for the San Francisco role, or in Israel for the Israel role.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8800513
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
27/08/2026
חברה חסויה
Location: Tel Aviv-Yafo
Job Type: Full Time
we are looking for a WAF Security Specialist.
What You'll Do:
Create - Produce production WAF rules across providers for high-impact CVEs and customer findings - driving the Copilot harness on most of them, writing the expression yourself on the hard ones (no public PoC, exploitable path reasoned out of a patch diff, urgent customer coverage). Your rules ship, and they set the bar generated rules are measured against.
**Optimize -**Tighten generated rules for real production constraints: WCU and rule-capacity budgets, latency, provider expression limits, and the anchoring required for a rule that fires against all traffic behind a shared Web ACL - not just the vulnerable app.
Validate - Own the adversarial pass. Build exploit variants the PoC doesn't cover, hunt bypasses in our own rules, and run the false-positive side seriously - verifying against how the legitimate client actually behaves on the wire, not against an assumption.
Monitor - Watch deployed rules in production: false-positive signals, hit patterns, coverage drift as managed rulesets shift underneath us, and the log→block promotion decision. Retire what no longer earns its capacity.
Make it reproducible - Turn every finding into a regression test. Build and curate the golden CVE datasets and scoring rubrics that gate whether a new Copilot version ships.
Set the coverage line. Judge which CVEs are genuinely WAF-mitigatable and which aren't, and make the call on what enters and leaves our managed rulesets - with the reasoning written down.
Requirements:
Deep, hands-on WAF expertise across multiple major providers - you've written, tuned, and operated real rules in production on several of: AWS WAFv2, Cloudflare, F5, Imperva, Akamai, Azure, GCP, Fortinet, ModSecurity/CRS. Not "managed a WAF vendor relationship" - written the rules.
You know the caveats cold. Body-inspection limits and oversize handling, text transformations and normalization order, encoding and unicode evasion, parameter pollution, chunked and multipart edge cases, rule precedence and evaluation order, WCU/capacity economics, and how each provider's expression language quietly differs from the others.
Strong security research background - application security, vulnerability research, or offensive security. You can read an advisory, build the PoC, derive the variants nobody published, and explain exactly which request component carries the exploit primitive.
A real feel for the false-positive tradeoff. You've had to defend a blocking decision to someone whose production traffic you broke, and you know why "block everything suspicious" is not a security posture.
Comfortable in code. Enough Python (or similar) to automate replay, build variant generators, and query exploit and traffic data yourself rather than waiting on someone.
Fast under pressure, systematic afterward. You can get a solid rule out the door when a customer needs one today - and your instinct once it ships is to build the check that catches the whole class, not just the instance you fixed.
Advantage: virtual patching / vulnerability-mitigation experience, or time on a WAF vendor's rules or research team.
Advantage: hands-on with LLMs and agentic tooling - you'll be shaping an AI system's output, and it helps to understand how it fails.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8800121
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
Location: Tel Aviv-Yafo
Job Type: Full Time
we are seeking a Senior Security Researcher to join our highly technical product research team working at the core of our security products.
This is a rare opportunity to join an elite security research team and do work that directly shapes our AI and Cloud products. Your research will span cloud infrastructure, AI systems, emerging platforms, and modern architectures.
You will perform novel security research, inform product direction, and contribute to our company's thought leadership in cloud and AI security.
We are looking for an exceptional security researcher who thrives on variety and can quickly develop expertise in new areas.
Your Role:
Drive research direction across multiple domains including cloud security, AI security, and emerging threat landscapes.
Perform novel security research to uncover new attack vectors, and adversary techniques across cloud and AI systems.
Translate research findings into actionable product capabilities, detection logic, and risk prioritization guidance.
Stay current with evolving threats across cloud platforms and AIecosystems, identifying where our company should invest next.
Write and speak about security research to strengthen our company's voice in cloud and AI security.
Collaborate with product and engineering teams to translate research into shipped capabilities.
Requirements:
5+ years of experience in security research, vulnerability research, or offensive security.
Demonstrated ability to quickly develop expertise in new technical domains.
Familiarity with OWASP Top 10 for Large Language Model Applications (prompt injection, data poisoning, system prompt leakage).
Strong understanding of AI systems, frameworks, and deployment patterns, with proven ability to exploit them.
Experience conducting original security research - finding vulnerabilities, understanding attacker behavior, or developing novel techniques.
Highly motivated, curious, and able to work independently in ambiguous problem spaces.
Strong communication skills, written and verbal, with the ability to articulate technical findings and opinions clearly.
And Ideally:
Experience across multiple security domains (cloud, AI, infrastructure, application).
Background in offensive security, red teaming, or vulnerability research.
Solid understanding of cloud platforms (AWS, Azure, GCP) and cloud security concepts.
Track record of published security research, conference talks, or technical blog posts.
Experience tracking the evolving AI ecosystem and translating new developments into security research.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8796536
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
30/08/2026
חברה חסויה
Location: Tel Aviv-Yafo
Job Type: Full Time
we are looking for a Security Researcher.
As a Senior Security Researcher, you will bridge our core research initiatives at the intersection of proactive exposure management, agentic workflows, and scalable threat modeling. We are looking for an innovator who translates complex security data into product-driven features, taking full ownership from concept to production.
What You'll Do:
Drive Product-Led Research: Translate complex, real-world security challenges into actionable, product-driven research. Take full ownership of research projects end-to-end, from identifying the security gap to collaborating with engineering to ship platform features.
Drive Proactive Exposure Management: Leverage Automated Security Control Assessments (ASCA) alongside vulnerability evaluation and prioritization to holistically assess organizational risk. Deep dive into enterprise security tools (EDR, SIEM, Firewalls, IAM, etc.) to analyze configurations, map defensive capabilities, and continuously evaluate their effectiveness against real-world threats.
Build Security Tool Integrations: Drive the technical research and define the data models required to actually build deep, functional integrations into diverse security platforms, ensuring the accurate extraction of telemetry, policies, and configuration data.
Build AI & Agentic Workflows: Define, design, and implement the logic and knowledge base that feeds Nagomi's AI-powered agents, ensuring they deliver accurate, context-aware security guidance and automated risk assessments.
Map Attack Paths: Define realistic attack flows, identify toxic combinations of misconfigurations, and surface the security gaps that help customers prioritize the risks that actually matter.
Engage with Customers: Work directly with customers to help them understand their exposure, translate your research findings into meaningful posture improvements, and gather feedback to drive product innovation.
Cross-Functional Collaboration: Partner closely with product, engineering, and data teams to embed security insights into everything we build.
Requirements:
Experience: 5+ years of hands-on experience in cybersecurity research, exposure management, vulnerability analysis, or threat intelligence.
Product Mindset: Strong ability to tackle projects end-to-end, translating theoretical security research into tangible product features and automated detection logic.
Broad Security Knowledge: Deep understanding of enterprise security tools (EDR, NDR, SIEM, VM, etc.), network topology, and how security components interact to impact network posture.
AI/Agentic Expertise: Proven experience building or heavily shaping AI-powered systems and agentic workflows. You must be able to point to concrete examples where you have integrated LLMs or AI processes to solve complex technical problems.
Attacker's Perspective: Solid foundation in how adversaries think, move laterally, and exploit enterprise environments, paired with expertise in leading vulnerability prioritization standards (MITRE ATT&CK, CISA KEV, EPSS).
Communication: Strong communication skills with demonstrated experience working directly with customers, stakeholders, and cross-functional engineering teams.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8802063
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
26/08/2026
חברה חסויה
Location: Tel Aviv-Yafo
Job Type: Full Time
We are a fast growing cybersecurity startup redefining how organizations defend themselves. As attackers leverage AI for high speed strikes, we provide defenders with the same capabilities. Our platform creates an AI driven Autonomous Attacker that thinks like a hacker, generating end to end attack chains across Web, Cloud, and AI applications to prioritize mitigation where it matters. Founded a year and a half ago, weve moved at lightning speed raising a Seed from CyberStarts and a Series A from Lightspeed. With offices in Tel Aviv and New York, we maintain a high transparency, low ego environment where exceptional individuals have the autonomy to make a massive impact on a category defining product.
We are looking for a talented Security Researcher to join our team. As the brain behind our AI, you will stay ahead of the hacker community, analyze sophisticated threats, and teach our platform how to think and act like an attacker to revolutionize the penetration testing landscape
What Youll Do
Conduct deep research to uncover vulnerabilities, analyze exploits, and develop novel attack techniques.
Investigate emerging threats and build complex, automated "kill chains" across Web, Cloud, and AI applications.
Perform detailed technical analysis, including reverse engineering, protocol analysis, and exploit development.
Work side-by-side with the engineering team to turn research findings into scalable, automated AI code.
Publish research findings and contribute to the global cybersecurity community.
Requirements:
5+ years of experience in vulnerability discovery, exploit development, or reverse engineering.
Deep knowledge of Web protocols, Cloud security (AWS/Azure/GCP), and modern exploitation.
Strong scripting skills (Python/Go) to automate research and attack vectors.
Proven ability to work independently and thrive in a fast paced, 0-to-1 environment.
Preferred Qualifications:
Penetration Testing: Hands on experience performing penetration testing is strongly preferred.
Elite Background: Prior experience serving in elite cybersecurity units (e.g., 8200 or 81).
Industry Presence: Contributions to research communities, conference presentations, or published research.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8798802
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
לפני 11 שעות
חברה חסויה
Location: Tel Aviv-Yafo
Job Type: Full Time
We're looking for a Security Researcher to join our team at the intersection of security research, AI, and product. This isn't a traditional research role - you'll be deeply embedded in how the platform is built, working side by side with R&D, Product, and AI teams to make sure security expertise is baked into every layer of what we ship. You'll own detection and analytics research across cloud, identity, endpoint, and beyond, while actively shaping how AI capabilities are applied to solve real security problems at scale.

WHAT YOU WILL DO
Research and develop sophisticated detections and behavioral analytics across multiple security landscapes - cloud, identity, endpoint, network, and application - with a focus on coverage that scales across customer environments.
Work closely with R&D, Product, and AI teams as the security authority - reviewing features, shaping designs, and ensuring security logic is sound, practical, and impactful.
Apply an AI-native approach to detection and analytics challenges - leveraging LLMs, ML signals, and AI-assisted workflows to do things that rule-based approaches can't.
Identify gaps in detection coverage and analytical capabilities, and drive those findings directly into the product roadmap.
Analyze real-world attacker techniques and translate them into detection logic, hunting content, and analytical frameworks that ship as part of the platform.
Evaluate detection quality rigorously - measuring fidelity, coverage, and performance against real attacker behavior and production telemetry.
Stay sharp on the evolving threat landscape and rapidly incorporate new techniques, campaigns, and attacker tooling into our detection library.
Contribute to external research output - blog posts, talks, open-source tooling - that reflects our depth and point of view in the security community.
Requirements:
WHAT YOU WILL BRING
6+ years of hands-on experience in detection engineering, security research or incident response - working with real production data at scale.
Deep knowledge of attacker techniques and behavior across at least 2 from: cloud, identity, endpoint, and network environments, with the ability to translate that directly into high-fidelity detection logic.
An AI-native mindset - you've built or applied AI-powered tooling in a security context (detection pipelines, alert investigation, hunting workflows) and you default to AI-powered approaches before reaching for manual ones.
Experience working within or alongside a product or engineering team - you understand how software gets built, and you know how to make your security expertise actionable for R&D and Product.
Strong coding skills (Python or similar), used for research, data analysis, detection development, and tooling.
A product-oriented approach to research - you think about scale, usability, and customer impact, not just technical correctness.
Self-directed and a strong self-learner - you don't wait to be pointed at problems, and you move fast when you find them.
Strong written and verbal communication skills in English, with the ability to explain complex security concepts clearly to both technical and non-technical audiences.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8838111
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
22/09/2026
חברה חסויה
Location: Tel Aviv-Yafo
Job Type: Full Time
Were looking for an experienced Vulnerability Researcher to help us uncover how modern AI tools, agents, and enterprise environments can be abused - and turn those findings into impactful security research.
This role combines deep technical research with real industry impact.
Youll investigate emerging attack techniques, build proof-of-concepts, publish research the security community cares about, and help shape how our company protects customers.
Were looking for someone who loves understanding how things work, thinks creatively like an attacker, and knows how to turn technical findings into research people actually want to read and talk about.
What Youll Do
Research vulnerabilities and attack techniques across AI tools, endpoints, browsers, MCP servers, extensions, and enterprise environments
Investigate real-world threats, CVEs, supply-chain attacks, and AI-related security risks
Build proof-of-concepts and demonstrations of new attack paths
Publish technical research, blog posts, and security content
Work closely with Product and Engineering to improve our companys detection and prevention capabilities
Help position our company as a leading company in AI security research
Explore new technologies and identify risks before they become mainstream.
Requirements:
Strong background in vulnerability research, offensive security, reverse engineering, or exploit development
Deep technical curiosity and a strong understanding of how systems work
Ability to think creatively and approach problems from an attackers perspective
Experience researching vulnerabilities and building proof-of-concepts
Ability to work independently and drive research from idea to publication
The company Mindset: You take ownership, act with accountability, collaborate openly, and focus on delivering meaningful impact. You thrive in fast-moving environments, embrace ambiguity, and enjoy solving hard problems together.
Strong communication and writing skills in English
Even Better If You Also Bring
Published research, CVEs, blog posts, conference talks, or open-source projects
Experience with AI Security, endpoint security, browser security, or cloud security
Familiarity with AI tools like Claude, Cursor, Copilot, MCP servers, or local AI runtimes
Experience turning technical findings into content with strong industry impact.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8828999
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
לפני 8 שעות
חברה חסויה
Location: Tel Aviv-Yafo
Job Type: Full Time
Required Senior Security Researcher
Description
About us
We are building autonomous AI hackers that think like the world's best offensive security experts, act like them, and then help fix what they find before the real ones do. If this mission speaks to you, come defend the world's software: autonomously, continuously, and in-depth.
About the role:
This is a rare opportunity to work at the intersection of offensive security and AI - and to have your expertise shape a platform used at enterprise scale. As an Security Researcher, you will push the boundaries of what autonomous agents can achieve.
Your goal is to conduct cutting-edge research into novel attack vectors and vulnerabilities, using those insights to both sharpen our AI and lead the industry conversation on AI-driven security. Youll work alongside a tight-knit team building excellent software in the security space.
Responsibilites
Original Research: Develop new attack strategies and offensive testing techniques for web, network and AI targets, and translate real-world knowledge into improvements for the AI agent
Thought Leadership: Produce high-quality technical content, including research papers, stage demonstrations, or technical blog posts that showcase our unique capabilities and security philosophy.
Public Advocacy: Represent our research at major security conferences and industry events.
AI Enhancement: Part of the team improving the AI hacker to make it more dangerous and creative.
Collaboration: Work closely with AI and engineering teams to continuously improve agent capabilities and ensure research findings are integrated into the product.
Requirements:
Technical Expertise: Deep expertise in Web and API security, including authentication, business logic, and injection flaws.
Publication Record: Proven experience publishing technical security research (e.g., personal or company blogs, whitepapers) or presenting at recognized security conferences (e.g., Black Hat, DEF CON, OWASP).
Coding Proficiency: Experience in writing code to develop tooling for penetration tests and security research.
Startup Mindset: Comfortable working in a fast-paced environment with a high degree of ownership and curiosity.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8838303
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
27/08/2026
חברה חסויה
Location: Tel Aviv-Yafo
Job Type: Full Time
We're looking for an AI Security Researcher to join us and uncover emerging AI threats, derive detection logic, discover new attack vectors, conduct red teaming, and identify insider threats and misconfigurations.
What You'll Do:
Deep-dive into AI usage risks, including threat detection for chat platforms and AI agents.
Research emerging agent threats and LLM attacks, such as jailbreaks and prompt injection.
Conduct red teaming and large-scale experiments on AI agents, including quantitative experimentation and advanced result analysis.
Assess internal and externally-facing AI agents for security posture and risk exposure.
Evaluate and attack real-time defenses and runtime protections for AI applications.
Conduct research across cloud, web, and API security to uncover novel threats and attack vectors relevant to AI systems.
Partner with product and engineering teams to turn research findings into detection logic, guardrails, or product features.
Stay current on and contribute to industry frameworks (e.g., OWASP LLM Top 10, MITRE ATLAS) - potentially contributing back to the community.
Publish blog posts, give talks, and represent research at conferences.
Requirements:
Background in AI/ML or security research. Ideal candidates have both, but we're equally open to candidates from data science or security research backgrounds with demonstrated depth in AI systems.
5+ years of experience in the AI or security industry.
Solid understanding of AI agents: how tool use, memory, planning, and orchestration layers interact, and where that architecture introduces risk.
Working knowledge of LLM and agentic security - prompt injection, jailbreaks, tool-use exploitation, memory/context poisoning, and related attack classes.
Knowledge of AI vulnerabilities at both the model and infrastructure layers, and familiarity with effective mitigation strategies (e.g., guardrails, sandboxing, input/output filtering, access controls).
In-depth understanding of LLMs, generative AI, agentic systems, and RAG pipelines - how they're built, where they break, and how failure modes propagate through a system.
Strong research methodology and judgment: experience designing large-scale experiments, forming hypotheses, and applying quantitative rigor to evaluate results, identify signal from noise, and draw defensible conclusions from complex or ambiguous data.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8800549
סגור
שירות זה פתוח ללקוחות VIP בלבד