Remote job
Senior Security Researcher
Job details
About this role
Role overview
A senior research role on a dedicated offensive security team, producing original attacker-perspective insight and translating it into both product capability and public research. The position blends penetration testing, red team, and adversary emulation experience with Internet-scale measurement to drive detection logic, scanning improvements, and conference-caliber publications.
Responsibilities
- Apply an offensive practitioner's perspective to large-scale scanning, fingerprinting, and attack surface datasets to identify gaps in detection logic, protocol coverage, and vulnerability signals - Conduct original research into emerging attack techniques, exploitation trends, C2 infrastructure, and adversary tradecraft using Internet-wide scan data and custom testing methodology - Produce research reports, technical blog posts, and conference-caliber material for venues such as DEF CON, Black Hat, and BSides - Partner with engineering and product teams to translate research into new scanning modules, fingerprints, risk indicators, and detection features - Lead agentic AI threat research by building and evaluating autonomous pentest agents, LLM-powered vulnerability tools, and multi-agent frameworks, and determining scanning posture for the signals those tools leave behind - Encode red team and pentest knowledge of how threat actors stand up, configure, and hide infrastructure into repeatable detection logic - Mentor engineers and researchers on attacker behavior and offensive techniques, serving as an internal subject-matter expert
Requirements
- 5+ years of hands-on penetration testing, red teaming, or adversary emulation experience against enterprise, cloud, or Internet-facing environments - Demonstrated ability to independently identify and characterize vulnerabilities, misconfigurations, and exploitation techniques - Strong understanding of network protocols, service fingerprinting, and Internet-scale scanning concepts - Hands-on experience with agentic systems for offensive security, including LLM-powered attack agents and autonomous pentest frameworks such as HackSynth, RedTeamLLM, CAI, PentAG, and successors - Proficiency in scripting or coding with Python, Go, or similar languages for tooling, automation, and large dataset analysis - Familiarity with red team frameworks, C2 frameworks, initial access techniques, living-off-the-land methods, and evasion tradecraft
Nice to have
- Relevant certifications such as OSCP, OSCE, OSEP, or GXPN - Comfort working with large-scale Internet scan data, or a strong interest in learning to do so