Security Researcher, Codex Security

OpenAI OpenAI · AI Frontier · San Francisco, CA · Security Products

Lead security research on AI systems, focusing on vulnerability discovery, validation, and remediation using AI agents. This role involves building AI-driven systems, improving model capabilities, and contributing to the Codex Security product line.

What you'd actually do

  1. Conduct deep security research on real-world software systems to discover complex vulnerabilities across large codebases and distributed architectures.
  2. Investigate and validate vulnerabilities discovered by AI-driven security agents, including building proofs-of-concept and exploit demonstrations.
  3. Partner with engineering teams to improve automated vulnerability discovery, validation, and remediation workflows as part of product development.
  4. Build high quality security datasets and evals that will help advance model’s cybersecurity capabilities
  5. Train and improve AI models used for vulnerability discovery, validation, and automated remediation by developing datasets, evaluations, and feedback loops grounded in real-world security research.

Skills

Required

  • vulnerability research
  • exploit development
  • offensive security
  • AI/ML infrastructure (data, training, inference, schedulers, accelerators)
  • threat modeling
  • developer

Nice to have

  • cutting edge offensive-security techniques
  • independent operation
  • aligning diverse teams
  • delivering on tight timelines
  • clear and concise communication
  • improving security of widely used software and open-source infrastructure

What the JD emphasized

  • AI-driven security agents
  • vulnerability discovery
  • validation
  • remediation workflows
  • security datasets and evals
  • AI models used for vulnerability discovery, validation, and automated remediation
  • real-world security research
  • System-level vulnerability discovery
  • High-confidence validation
  • Scaling security research with AI agents
  • Automated exploit and proof-of-concept generation

Other signals

  • AI-driven security agents
  • vulnerability discovery
  • validation
  • remediation