See all roles

[Remote] Offensive Security Engineer, Agent Products

Work from home Full-time role Hiring

Note: The job is a remote job and is open to candidates in USA. OpenAI is an AI research and deployment company dedicated to ensuring that general-purpose artificial intelligence benefits all of humanity. They are seeking a Principal-level Offensive Security Engineer to conduct deep penetration testing of their agent-powered products and infrastructure, identify vulnerabilities, and collaborate with engineering teams to implement security improvements.

Responsibilities

  • Conduct deep penetration tests of OpenAI’s agent-powered products, including web applications, APIs, cloud services, identity and authorization flows, CI/CD systems, and model-integrated product surfaces
  • Continuously hunt for exploitable vulnerabilities in the interactions between the applications, infrastructure, tools, and models that power our agentic products
  • Perform code review, architecture review, and hands-on exploitation to validate risk and identify subtle or novel failure modes
  • Produce clear, actionable findings with reproduction steps, exploitability analysis, impact assessment, and practical remediation guidance
  • Partner directly with engineering teams to drive fixes, validate remediation, and improve secure design patterns across agentic products
  • Build tools, test harnesses, and automation to scale penetration testing across rapidly evolving product surfaces
  • Leverage advanced automation and OpenAI technologies to optimize your offensive security work
  • Share attacker-informed insights with security and engineering teams to improve threat models, mitigations, and defensive coverage

Skills

  • 7+ years of hands-on penetration testing, product security assessment, application security, cloud security assessment, or equivalent offensive security experience
  • Deep expertise finding, exploiting, documenting, and helping remediate vulnerabilities in complex production systems
  • Experience performing offensive security assessments of modern technology products, including web applications, APIs, cloud infrastructure, identity systems, CI/CD pipelines, and distributed services
  • Experience designing, developing, or assessing the security of AI-powered systems
  • Experience finding, exploiting, and mitigating common vulnerabilities in AI systems, including prompt injection, confused deputies, unsafe tool use, and dynamically generated UI components
  • Exceptional skill in code review to identify novel and subtle vulnerabilities
  • Proven experience performing offensive security assessments in at least one hyperscaler cloud environment. Azure experience is preferred
  • Demonstrated mastery assessing complex technology stacks, including: Highly customized Kubernetes clusters, Container environments, CI/CD pipelines, GitHub security, macOS and Linux operating systems, Data science tooling and environments, Python-based web services, React-based frontend applications
  • Strong intuitive understanding of trust boundaries and risk assessment in dynamic contexts
  • Excellent coding skills, capable of writing robust tools and automation for offensive security testing
  • Ability to communicate complex technical concepts effectively through clear reports, practical remediation guidance, and compelling technical storytelling
  • Proven track record of not just finding vulnerabilities, but actively contributing to solutions in complex codebases
  • Background or expertise in AI or data science
  • Prior experience working in tech startups or fast-paced technology environments
  • Experience in related disciplines such as Software Engineering, Product Security, Application Security, Detection Engineering, Site Reliability Engineering, Security Engineering, or IT Infrastructure

Company Overview

  • OpenAI is an AI research and deployment company that develops advanced AI models, including ChatGPT. It is a sub-organization of OpenAI Foundation. It was founded in 2015, and is headquartered in San Francisco, California, USA, with a workforce of 1001-5000 employees. Its website is https://www.openai.com.
  • Company H1B Sponsorship

  • OpenAI has a track record of offering H1B sponsorships, with 57 in 2026, 103 in 2025, 74 in 2024, 15 in 2023, 18 in 2022, 10 in 2021, 6 in 2020. Please note that this does not guarantee sponsorship for this specific role.
  • Apply To This Job

    You might like

    [Remote] Business Development Director, Arc

    Work from home Full-time role

    [Remote] Senior DGX Cloud AI Infrastructure Software Engineer

    Work from home Full-time role

    [Remote] Senior Software Engineer | GTM Platform, Frontend

    Work from home Full-time role

    [Remote] Enterprise Account Executive (West)

    Work from home Full-time role

    [Remote] D365 Customer Success Engineer

    Work from home Full-time role

    [Remote] Senior Outsourced Operations Manager (Card Operations)

    Work from home Full-time role

    [Remote] Principal Engineer / Engineering Manager — Power System Studies

    Work from home Full-time role

    [Remote] Sr Technical Product Manager- AI Native Engineering

    Work from home Full-time role

    [Remote] Senior Remote Consultant

    Work from home Full-time role

    [Remote] Business Development Representative (BDR) – Enterprise (Must be USA based)

    Work from home Full-time role

    Remote Client Advisory Specialist

    Work from home Full-time role

    Coca Cola Content Moderator Jobs (Data Entry, Entry Level...

    Work from home Full-time role

    Business Development Manager — IT Staffing

    Work from home Full-time role

    Cybersecurity Practice Manager - Network and Edge Security | Remote, USA

    Work from home Full-time role

    Portfolio Manager - Renewable Energy

    Work from home Full-time role

    Experienced Customer Service Representative – Remote Work Opportunities with arenaflex

    Work from home Full-time role

    Medical Staff Lead Physician

    Work from home Full-time role

    [Work From Home] Chick-fil-A Team Member

    Work from home Full-time role

    Graphic Designer (m/w/d)

    Work from home Full-time role

    Project Manager, Regulatory Affairs (Clinical and CMC)

    Work from home Full-time role