423,509open jobs
14,335companies
62,264added this week
Browse all
Salary
$203k – $275k per year
Location
Remote (United States)
Seniority
Principal · 10+ years exp
Employment
Full-Time
Overview
Company
Impact
Profile match
Jobgether is a Belgian recruitment platform built entirely around remote and flexible work, aggregating openings from thousands of employers that allow work from outside an office. Its matching engine ranks roles against a candidate's skills, seniority and stated preferences on location and flexibility, rather than leaving people to filter a keyword search, and it verifies how genuinely remote each posting is. The company also runs an AI screening layer that shortlists applicants for employers, and publishes research and guidance on distributed work practices alongside the job marketplace itself.

This position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for a Principal Security Researcher based in the United States.

This is a senior, high-impact security research role focused on protecting a leading AI-powered DevSecOps platform and its users.

You will conduct cutting-edge offensive security research across complex applications, codebases, AI systems, and agentic workflows.

The role combines hands-on vulnerability discovery, penetration testing, exploit validation, automation, and strategic security leadership.

You will help identify systemic and chained vulnerabilities and turn emerging threats into scalable remediation strategies.

A major focus will be securing AI and agentic capabilities, including prompt injection, agent manipulation, and workflow exploitation.

You will collaborate with engineering, product, and security teams while mentoring other researchers and influencing technical roadmaps.

This fully remote opportunity is ideal for an experienced security expert who thrives on complex problems, ambiguity, and innovative attack research.

Accountabilities

    • Lead sophisticated security research projects across multiple functional and technical areas, identifying novel, systemic, and chained vulnerabilities.
    • Conduct hands-on penetration testing and develop proof-of-concept exploits to validate vulnerabilities and demonstrate realistic attack scenarios.
    • Research emerging vulnerability classes and assess their applicability across complex codebases, driving remediation of systemic issues rather than isolated instances.
    • Lead security research focused on AI and agentic systems, including identifying attack vectors and defining security requirements for engineering teams.
    • Develop and guide security tooling, automation, and agent-assisted approaches that scale vulnerability discovery across large codebases.
    • Assess the security posture of open-source tools and dependencies, communicate findings responsibly to maintainers, and track mitigation efforts.
    • Translate complex technical findings into actionable risk assessments, remediation recommendations, and improvements for engineering and business stakeholders.
    • Integrate research outcomes into engineering, product, and business functions to ensure identified risks are addressed effectively.
    • Help shape security team and sub-department roadmaps by bringing forward emerging threats, research findings, and innovative security approaches.
    • Solve highly complex technical problems involving significant scope, ambiguity, and cross-functional dependencies.
    • Mentor, teach, and advise security professionals, engineers, and other technical experts across multiple teams.
    • Share novel vulnerability research, methodologies, and security insights with the broader security community.
    • Contribute to maintaining development velocity while strengthening systemic product security across the platform.
    • Requirements

      • 10+ years of experience in security research, penetration testing, offensive security, or a closely related discipline.
      • Demonstrated expertise discovering and exploiting vulnerabilities in large-scale codebases and complex software systems.
      • Strong programming proficiency in at least two of the following: Ruby, Go, Python, TypeScript, or Rust.
      • Ability to read, understand, and analyze code across multiple programming languages and diverse codebases.
      • Strong understanding of AI frameworks and modern AI security concepts.
      • Deep knowledge of AI attack vectors, including prompt injection, agent manipulation, and workflow exploitation.
      • Experience leading complex remediation initiatives involving multiple technical and business stakeholders.
      • Strong analytical and problem-solving capabilities, with the creativity to develop unconventional attack scenarios and identify non-obvious security weaknesses.
      • Excellent written and verbal communication skills, including the ability to explain highly technical concepts clearly and concisely.
      • Ability to translate technical research into meaningful business risk assessments and practical remediation strategies.
      • Strong cross-functional collaboration skills and the ability to influence engineering and technical decision-making.
      • Experience with published security research or conference presentations is a plus.
      • Software engineering experience, particularly with distributed systems, is advantageous.
      • Experience with a major DevSecOps platform or comparable enterprise software environment is preferred.
      • Benefits

        • Base salary: $203,200-$275,000 USD for U.S.-based residents, depending on factors such as experience, skills, education, geographic location, and market considerations.
        • Equity compensation and employee stock purchase plan.
        • Flexible paid time off.
        • Parental leave.
        • Growth and development fund to support ongoing professional development.
        • Team Member Resource Groups and an inclusive, collaborative culture.
        • Fully remote work environment, subject to location-based eligibility requirements.
        • Opportunity to work on cutting-edge AI, application security, and DevSecOps challenges.
        • Significant opportunities to influence security strategy, engineering practices, and technology direction.
Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
423,509 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Similar stack
Same company
In your city
In office • Full-Time • 3+ years exp • Master's Degree • Ho Chi Minh City
Python
C++
Bash
AI/ML
Computer Vision
Edge AI
DevOps
GitHub Actions
GitLab CI
CI/CD
Jenkins
Docker
GitHub
GitLab
Robotics
GStreamer
Apply
In office • Full-Time • 5+ years exp • Master's Degree • Ho Chi Minh City
Python
C++
Bash
AI/ML
Computer Vision
Edge AI
DevOps
GitHub Actions
GitLab CI
CI/CD
Jenkins
Docker
GitHub
GitLab
Robotics
GStreamer
Apply
$50k – $159k per year (Estimated) • In office • Full-Time • PhD • Amsterdam
AI/ML
AI Agents
Agentforce
Marketing
Salesforce
Apply
$29k – $77k per year (Estimated) • In office • Full-Time • 10+ years exp • PhD • Bengaluru • Hyderabad • Pune • Gurgaon
JavaScript
Apex
Apex
Salesforce Industries
AI/ML
AI Agents
Agentforce
Frontend
Web Components
Apply
$54k – $134k per year (Estimated) • Remote • Full-Time • Porto Alegre • São Paulo • Vitoria-Gasteiz • Recife • Fortaleza
JavaScript
Java
Kotlin
TypeScript
SQL
Java
Spring Boot
Quarkus
Kotlin
Mockito
Databases
MySQL
PostgreSQL
Redis
RabbitMQ
Apache Kafka
Apache Solr
Kafka
Frontend
Angular
React.js
Mobile
JUnit
React Native
DevOps
OpenShift
Prometheus
CI/CD
ArgoCD
Jenkins
Git
Docker
Kubernetes
Grafana
Gitflow
Apply
$23k – $55k per year (Estimated) • Remote • Full-Time • 8+ years exp
DevOps
Terraform
GCP
Azure
AWS
Kubernetes
Amazon EKS
Azure AKS
Apply
DevSecOps Engineer 1 day ago
$27k – $60k per year (Estimated) • Remote • Full-Time • 7+ years exp
Python
AI/ML
Red Teaming
DevOps
Splunk
Terraform
GCP
Cilium
Istio
Datadog
GitLab CI
CI/CD
AWS
Kubernetes
Service Mesh
Google GKE
eBPF
GitLab
IAM
Cybersecurity
Snyk
Prisma Cloud
Trivy
HashiCorp Vault
Falco
ISO 27001
Open Policy Agent
Checkov
Wiz
CIS Benchmarks
SOC 2
HIPAA
STRIDE
Least Privilege
Threat Modeling
tfsec
Cilium Tetragon
Cryptography
Vault
Apply
$26k – $71k per year (Estimated) • Remote • Full-Time • 7+ years exp
Analytics
A/B Testing
Apply
$21k – $47k per year (Estimated) • Equity • Remote • Full-Time • 4+ years exp • Bachelor's Degree
Python
SQL
Analytics
Power BI
Apply
$19k – $44k per year (Estimated) • Remote • Full-Time • 5+ years exp • Bachelor's Degree
JavaScript
DevOps
Azure
AWS
Bitbucket
Management
Confluence
Jira
Apply
See all jobs
This is one of many
423,509 more open roles from verified company boards, updated every day.