369,078open jobs
9,456companies
47,986added this week
Browse all
Salary
$23k – $59k per year (Estimated)
Location
In office (Bengaluru)
Seniority
Middle · 3+ years exp
Overview
Company
Impact
Profile match
Endor Labs is an application security platform built for AI-generated and human-written code, helping teams prioritize and fix real risk across the SDLC.

Who we are

Our mission is to help developers and AppSec teams spend more time accelerating development and less time dealing with security issues. Watch our 3 min pitch from our Founder & CEO here: https://www.youtube.com/watch?v=B0wmZBcPkFE

Endor Labs has been recognized as a Gartner Cool Vendor, a RSA Innovation Sandbox finalist, and a Black Hat Innovation Spotlight finalist, all in its first year from launch.

The company was founded by Varun Badhwar  and Dimitri Stiliadis, who have created multiple category-defining cloud security companies. We have raised $70M in Series A funding and assembled a team of the world’s leading static analysis experts and enterprise software veterans to increase developer productivity and open source software adoption.

What you’ll do

  • The primary focus of this position is to help the team further advance Endor Labs'proprietary vulnerability database - extending and improving our existing AI pipelines,

    e.g., in the areas of automated vulnerability validation, reachability analysis, and exploit generation.

  • Day-to-day work includes monitoring and managing pipelines that triage, enrich, and prioritize vulnerabilities at scale, working with the standards and data sources the

    ecosystem is built on (CVE, CWE, CVSS, EPSS, PURL, NVD, OSV, GHSA, VEX) and continuously improving the accuracy, coverage, and timeliness of our data.

  • You will work hand-in-hand with our world-class 0-day researchers to scale automated vulnerability discovery - turning manual research workflows into repeatable,

    production-grade systems.

  • You will investigate high-impact vulnerabilities and the vulnerability landscape at large, and author external-facing content - blog posts, technical write-ups, and advisories -

    communicating findings clearly to both technical and non-technical audiences.

  • You will collaborate with internal teams to feed findings into detection and analysis pipelines, enrich our vulnerability database, and help improve automated coverage over

    time

What we're looking for 

  • Bachelor's degree in engineering or a related field, with at least 3 years of hands-on professional experience in vulnerability research, vulnerability management, product

    security, or application security

  • Extensive knowledge of software vulnerabilities, triage, and prioritization, including deep familiarity with the associated standards and technologies (CVE, CWE, CVSS, EPSS,

    PURLs, NVD, OSV, VEX, SBOM formats)

  • Hands-on experience building production-grade solutions at enterprise scale - e.g., CI/CD automation, management of SAST/SCA findings, or comparable security tooling

    deployed across large engineering organizations

  • Demonstrated experience shipping AI/agentic systems to production - LLM pipelines, agent frameworks, tool use, prompt and eval design - with a clear track record of

    measuring output quality and a sound sense of where these approaches hold up and where they don't

  • Proficiency in reading and analyzing code across multiple languages (Python, JavaScript/TypeScript, Java, Go), and comfort reasoning about patches, root causes,

    and exploitability

  • Experience producing external security communications: blog posts, advisories, or technical reports intended for a public or customer-facing audience

Nice to have

  • Experience writing proof-of-concept exploits, or with fuzzing, static analysis, or automated vulnerability discovery
  • Contributions to open source vulnerability databases, scanners, or related tooling (OSV, osv-scanner, OpenVEX, etc.)
  • Familiarity with SAST, SCA, and DAST tooling and the realities of triaging their output at scale
  • Understanding of software supply chain security standards and frameworks (SLSA, SSDF, etc.)
  • Prior public research, CVE credits, or published vulnerability findings
  • Security certifications such as OSCP, OSCE, or equivalent

At Endor Labs, we:

  • Strive for excellence in everything we do, prioritizing quality, speed, and impactful outcomes.
  • Engage in first principles thinking to debate ideas, test assumptions, and make decisions.
  • Put data above opinions, seeking truth and clarity in all our endeavors.
  • Embrace a culture of feedback and continuous improvement, assuming good intent in all interactions.
  • Celebrate wins as a team, understanding that our collective success is intertwined with the success of our customers.
Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
369,078 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Similar stack
Same company
Bengaluru
Remote • Full-Time • Bachelor's Degree • Taiwan
AI/ML
Agentforce
AI Agents
DevOps
CI/CD
Chips/EDA
PoC Library
Marketing
Salesforce
Apply
$47k – $165k per year (Estimated) • Remote/Hybrid • Full-Time • 1+ year exp • Bachelor's Degree • Singapore
DevOps
CI/CD
Apply
Full Stack Engineer 2 hours ago
$127k – $264k per year (Estimated) • In office • Full-Time • 9+ years exp • Sydney • Canberra • Melbourne
PowerShell
SQL
C#
TypeScript
JavaScript
C#
.NET
Databases
MS SQL
Frontend
Angular
DevOps
AWS
Azure
Azure DevOps
CI/CD
GCP
Git
Apply
$215k – $240k per year • In office • Full-Time • 5+ years exp • Seattle
Python
Rust
AI/ML
Flyte
OpenAI
DevOps
ArgoCD
AWS
Azure
Buildkite
CI/CD
Docker
GCP
Helm
Kubernetes
Terraform
Apply
$130k – $500k per year • Equity • In office • Full-Time • 5+ years exp • San Francisco
AI/ML
AI Agents
Claude
Claude Code
Copilot
Cursor
Function Calling
Human-in-the-Loop
LLM Guardrails
DevOps
GitHub
Apply
$50k – $107k per year (Estimated) • In office • 10+ years exp • Bachelor's Degree • Bengaluru
C++
Go
Frontend
GraphQL
DevOps
gRPC
Apply
$150k – $190k per year • Equity • Remote/Hybrid • 3+ years exp • Bachelor's Degree • Palo Alto
C++
Go
JavaScript
AI/ML
Edge AI
Frontend
npm
DevOps
AWS Lambda
Bazel
Docker
Kubernetes
AWS
API Gateway
Apply
$33k – $76k per year (Estimated) • In office • 5+ years exp • Bengaluru
C++
AI/ML
AI Agents
Model Context Protocol
DevOps
Bazel
CI/CD
Cybersecurity
Threat Modeling
Least Privilege
Apply
$190k – $250k per year • Equity • Remote
C++
DevOps
Bazel
CI/CD
Git
Apply
$220k – $300k per year • Equity • Remote/Hybrid • 15+ years exp • Palo Alto
C++
Go
JavaScript
Databases
PostgreSQL
Frontend
React.js
DevOps
Kubernetes
Apply
$27k – $69k per year (Estimated) • In office • 7+ years exp • Bachelor's Degree • Bengaluru
Apex
Apex
Aura Components
Lightning Web Components
MuleSoft
Visualforce
Marketing
Salesforce
Apply
$31k – $82k per year (Estimated) • In office • Full-Time • 3+ years exp • Hyderabad • Bengaluru
Apply
$31k – $73k per year (Estimated) • In office • Full-Time • 5+ years exp • Bengaluru
Apply
$16k – $34k per year (Estimated) • Remote/Hybrid • Full-Time • 2+ years exp • Bachelor's Degree • Mumbai • Bengaluru
JavaScript
PowerShell
SQL
C#
C#
.NET
Databases
Azure SQL Database
MS SQL
DevOps
Azure
Rest API
Cybersecurity
Microsoft Entra ID
QA
Postman
Swagger
Apply
$37k – $73k per year (Estimated) • In office • Internship • 4+ years exp • Bachelor's Degree • Bengaluru
Python
Scala
SQL
Databases
Apache Kafka
Databricks
AI/ML
ChatGPT
Copilot
Cursor
Spark
DevOps
AWS
Azure
CI/CD
GCP
Git
GitHub
Terraform
Apply
See all jobs
This is one of many
369,078 more open roles from verified company boards, updated every day.