This list contains only the countries for which job offers have been published in the selected language (e.g., in the French version, only job offers written in French are displayed, and in the English version, only those in English).
We're seeking an exceptional Principal-level Offensive Security Engineer to challenge and strengthen OpenAI's security posture. This role isn't your typical red team job - it's an opportunity to engage broadly and deeply, craft innovative attack simulations, collaborate closely with defensive teams, and influence strategic security improvements across the organization. You'll have the chance to not only find vulnerabilities but actively drive their resolution, automate offensive techniques with cutting-edge technologies, and use your unique attacker perspective to shape our security strategy. This role will be primarily focused on continuously testing our hardware products and related services.
Job Responsibility:
Collaborate proactively with engineering teams to enhance security and mitigate risks in hardware, firmware, and software
Perform comprehensive penetration testing on our diverse suite of products
Leverage advanced automation and OpenAI technologies to optimize your offensive security work
Present insightful, actionable findings clearly and compellingly to inspire impactful change
Influence security strategy by providing attacker-driven insights into risk and threat modeling
Requirements:
7+ years of hands-on experience or exceptional accomplishments demonstrating equivalent expertise
Exceptional skill in code review, identifying novel and subtle vulnerabilities
Solid programming skills in C/C++, Python, or assembly for embedded systems
Industry experience securing consumer hardware (e.g., mobile devices, IoT, chipsets)
Excellent written and verbal communication skills for technical and non-technical audiences
Strong intuitive understanding of trust boundaries and risk assessment in dynamic contexts
Excellent coding skills, capable of writing robust tools and automation for offensive operations
Ability to communicate complex technical concepts effectively through compelling storytelling
Proven track record of not just finding vulnerabilities but actively contributing to solutions in complex codebases
Nice to have:
Prior experience working in tech startups or fast-paced technology environments
Experience in related disciplines such as Software Engineering (SWE), Detection Engineering, Site Reliability Engineering (SRE), Security Engineering, or IT Infrastructure
What we offer:
Medical, dental, and vision insurance for you and your family, with employer contributions to Health Savings Accounts
Pre-tax accounts for Health FSA, Dependent Care FSA, and commuter expenses (parking and transit)
401(k) retirement plan with employer match
Paid parental leave (up to 24 weeks for birth parents and 20 weeks for non-birthing parents), plus paid medical and caregiver leave (up to 8 weeks)
Paid time off: flexible PTO for exempt employees and up to 15 days annually for non-exempt employees
13+ paid company holidays, and multiple paid coordinated company office closures throughout the year for focus and recharge, plus paid sick or safe time (1 hour per 30 hours worked, or more, as required by applicable state or local law)
Mental health and wellness support
Employer-paid basic life and disability coverage
Annual learning and development stipend to fuel your professional growth
Daily meals in our offices, and meal delivery credits as eligible
Relocation support for eligible employees
Additional taxable fringe benefits, such as charitable donation matching and wellness stipends, may also be provided
Offers Equity
Performance-related bonus(es) for eligible employees