Offensive Security Engineer, Hardware

OpenAI OpenAI · AI Frontier · San Francisco, CA · Security

OpenAI is seeking a Principal-level Offensive Security Engineer to focus on challenging and strengthening the security posture of their hardware products and related services. The role involves performing penetration testing, collaborating with engineering teams on hardware, firmware, and software security, automating offensive techniques, and influencing security strategy through attacker-driven insights. The engineer will also be responsible for driving the resolution of vulnerabilities and presenting findings.

What you'd actually do

  1. Collaborate proactively with engineering teams to enhance security and mitigate risks in hardware, firmware, and software.
  2. Perform comprehensive penetration testing on our diverse suite of products.
  3. Leverage advanced automation and OpenAI technologies to optimize your offensive security work.
  4. Present insightful, actionable findings clearly and compellingly to inspire impactful change.
  5. Influence security strategy by providing attacker-driven insights into risk and threat modeling.

Skills

Required

  • 7+ years of hands-on experience or exceptional accomplishments demonstrating equivalent expertise.
  • Exceptional skill in code review, identifying novel and subtle vulnerabilities.
  • Demonstrated mastery assessing complex technology stacks.
  • Proven ability to reverse engineer bootrom images, firmware, or silicon-level components.
  • Deep familiarity with low-level kernel operations, secure boot processes, and hardware-software interactions.
  • Hands-on experience building and validating secure boot chains and threat models.
  • Proficiency with hardware debugging tools (UART, JTAG, SWD, oscilloscopes, logic analyzers).
  • Solid programming skills in C/C++, Python, or assembly for embedded systems.
  • Industry experience securing consumer hardware (e.g., mobile devices, IoT, chipsets).
  • Excellent written and verbal communication skills for technical and non-technical audiences.
  • Strong intuitive understanding of trust boundaries and risk assessment in dynamic contexts.
  • Excellent coding skills, capable of writing robust tools and automation for offensive operations.
  • Ability to communicate complex technical concepts effectively through compelling storytelling.
  • Proven track record of not just finding vulnerabilities but actively contributing to solutions in complex codebases.

Nice to have

  • Prior experience working in tech startups or fast-paced technology environments.
  • Experience in related disciplines such as Software Engineering (SWE), Detection Engineering, Site Reliability Engineering (SRE), Security Engineering, or IT Infrastructure.

What the JD emphasized

  • hardware
  • firmware
  • software
  • security
  • penetration testing
  • automation
  • vulnerabilities
  • risk
  • threat modeling
  • reverse engineer bootrom images
  • firmware
  • silicon-level components
  • low-level kernel operations
  • secure boot processes
  • hardware-software interactions
  • secure boot chains
  • threat models
  • hardware debugging tools
  • embedded systems
  • consumer hardware
  • code review
  • vulnerabilities
  • complex technology stacks
  • robust tools
  • automation
  • offensive operations
  • complex codebases