Featured Job

Senior Security Engineer

None, Indiana Full-time On-site $224k — $431.2k per year 09/07/2026 Job ID: 000132
Apply Now
Offensive Security Red Team Agents Multi-Agent Orchestration Exploit Confirmation Harnesses Sandboxing

Summary

What you’ll impact

Our organization's Product Security team is hiring a Senior Offensive Security Engineer to create and improve AI-driven red team agents that autonomously perform reconnaissance, exploitation, and evidence capture. The role focuses on building agent frameworks, verification and safety layers, benchmarking models, and mentoring engineers while collaborating with human red teams.

Responsibilities

What you'll do

  • Crafting and building new red team agents: autonomous and semi-autonomous LLM agents that perform reconnaissance, hypothesis-driven exploitation, and evidence capture against NVIDIA -owned targets
  • Extending our existing agent harnesses (multi-phase orchestration, parallel specialist subagents, judge/verifier stages, out-of-band callback infrastructure) across multiple agent runtimes and model providers
  • Encoding real operator tradecraft into prompts, tools, and playbooks web app exploitation, auth bypass, SSRF/deserialization chains, cloud and Kubernetes attack paths so agents find what a skilled human would
  • Building the verification layer: exploit-confirmation harnesses that prove findings are real before a human ever sees them, driving false-positive rates down
  • Engineering the safety side of autonomy: sandboxing, scope enforcement, tool allowlists/blocklists, credential isolation, and prompt-injection defenses for agents operating with offensive capability
  • Evaluating and benchmarking frontier models for offensive tasks; partnering with our human red team to turn their engagements into repeatable agent capabilities
  • Mentoring engineers on the team and setting the technical bar for agentic offensive tooling

Requirements

What you’ll bring

  • Bachelor's degree or equivalent experience
  • 12+ years in security engineering, with at least 4 years in offensive security: penetration testing, red teaming, exploit development, or vulnerability research
  • Deep, hands-on exploitation skill in at least one domain (web application, cloud/Kubernetes, or systems/binary) you can build and prove an exploit chain, not just run a scanner
  • Strong software engineering ability in Python; you ship production code, not just PoCs
  • Practical experience building with LLMs: agent frameworks, tool use/function calling, multi-agent orchestration, or coding agents (Claude Code, Codex CLI, or similar)
  • Sound judgment about autonomous offensive tooling scoping, authorization, and blast-radius thinking are second nature
  • Respectful, responsible approach to offensive testing we break things carefully and fix them fast

Ready to Move Forward?

Apply now and our recruiting team will reach out with next steps, interview guidance, and client insights tailored to this role.