615,181open jobs
29,638companies
85,681added this week
Browse all
Location
Remote (Madrid, Valencia, Spain)
Seniority
Architect · 3+ years exp
Employment
Full-Time
Overview
Company
Impact
Profile match
Neurons Lab helps financial institutions move from AI-curious to AI-enabled. We deliver AI training programs and custom AI agents designed for regulated environments — from pilot to production, at scale.

About the project (description, duration, stage)

Hands-on AI-for-Security engagement with a regulated iGaming / online-gaming group. The client's security team is genuinely advanced: they already run an AI-driven offensive-security capability - continuous external-perimeter scanning feeding an LLM agent that plans exploitation, sources and validates exploits, and executes them in sandboxed environments - plus a runtime anomaly-detection layer watching for intrusion and privilege-escalation patterns across their products. They built this themselves and have explicitly asked us to challenge and improve it, not just rubber-stamp it.

This is not a generalist AI project. Neurons Lab brings the AI-architecture and engagement depth; what's missing is the offensive-security domain lead who can sit across the table from a hands-on CISO team as a peer, pressure-test their pipeline, and own the methodology. You are that expert. The early work is concrete and consultative: understand what they've built, find where it's wrong or expensive, and propose a better way.

Stage: pre-engagement / discovery (the immediate next step is a joint technical session with the client's CISO / security engineers). Duration: discovery → advisory / PoC, with strong extension probability as the security program scales across the group.

Reporting: Neurons Lab CTO / engagement lead (@Alex Honchar); partners with the Neurons Lab AI Architect on the account. You are the security domain owner for this track.

What you'll actually do (example tasks)

  • Join joint working sessions with the client's hands-on security engineers; challenge and harden their AI-driven offensive pipeline end-to-end (recon → verification → AI-planned exploitation → sandboxed execution).

  • Design and refine the exploitation agent: how the LLM plans attack paths, selects and validates exploits, and orchestrates parallel sandboxes safely and reproducibly.

  • Optimise cost-per-finding of the existing exploitation pipeline: benchmark local / sovereign open models (Kimi, GPT-OSS, MiniMax, DeepSeek) against frontier models for the recon, exploitation and analysis loops; quantify accuracy / latency / cost trade-offs and recommend hardware sizing.

  • Shape the runtime anomaly-detection layer: define which intrusion / privilege-escalation precursor patterns are worth collecting (signal over raw-log volume), and design the missing pieces - automated response (kill a malicious process / disable an account on detection) and triage routing by criticality.

  • Stand up a quick-win PoC to anchor the engagement - e.g. an automated dependency / PR vulnerability-scanning pass, or a head-to-head local-vs-frontier benchmark of the exploitation agent.

  • Turn findings into a defensible technical proposal and roadmap; present methodology and trade-offs to a technical CISO / CTO audience.

  • Keep all sensitive work build-time and in-perimeter - no pushing intellectual property, configs, or recon-enabling data to external model providers; respect regulated-gaming certification constraints (no uncertified AI in runtime-critical paths).

Skills (hands-on first)

  • Hands-on offensive security: vulnerability research, exploit development and chaining, web + network penetration testing; fluent with Nmap, Nuclei, Katana, Acunetix, Metasploit, Burp Suite and Kali tooling.

  • Building and operating LLM agents for security work - agentic tool-use, sandbox orchestration, prompt / flow design for recon and exploitation, guardrails for autonomous exploitation.

  • Local / self-hosted open models: running and tuning open weights (Kimi, GPT-OSS, MiniMax, DeepSeek) on rented or private GPU; quantization, throughput and the agentic-performance trade-offs that matter for security automation.

  • Exploit & threat intelligence: sourcing and validating exploits (including from underground / forum sources), CVE triage, exploitability and severity assessment.

  • Runtime detection: designing intrusion / privilege-escalation pattern detection, anomaly detection, and automated response.

  • Cloud security (AWS preferred): sandboxing, container isolation, secure inference hosting.

  • Writes their own code (Python + shell) and can explain methodology to non-security executives.

Knowledge

  • Modern offensive-security methodology and the current exploit / zero-day landscape.

  • Strengths and limits of frontier vs. local LLMs for security automation (agentic tool-use, reasoning depth, cost-per-task).

  • Data-egress / sovereignty constraints: why IP and recon-enabling data must stay in-perimeter; private-cloud (AWS Bedrock) vs. rented-hardware trade-offs.

  • iGaming / regulated-infrastructure context and certification constraints (build-time vs. run-time AI) - strong plus.

  • Defensive side - SIEM, anomaly detection, incident response - plus.

Experience

Key characteristics (ideally 4/4):

  • Hands-on offensive security

  • Built or operated AI / LLM-driven security automation (agents, pipelines), not just used a chatbot

  • Cloud hyperscaler experience (AWS preferred)

  • Technology consulting / client-facing delivery - can lead a CISO-level technical conversation

Role-specific characteristics:

  • 3+ years hands-on offensive security / vulnerability research / red-team

  • Demonstrable exploit development and chaining; comfortable with zero-day research and exploit intelligence

  • Has wired LLMs into real security workflows (recon, exploitation, triage)

  • Has run self-hosted / local open models in a real engagement, with a view on cost and hardware

  • Comfortable being the sole domain expert in the room and owning the methodology

Terms & conditions

  • Allocation: ~0.25 - 0.5 FTE initially (discovery/advisory + joint CISO sessions), scaling with the engagement

Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
615,181 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account Continue with Google
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Similar stack
Same company
Madrid
Backend Developer 4 hours ago
In office • Jaipur
Python
Java
Databases
MySQL
PostgreSQL
Redis
DevOps
CI/CD
Apply
$175k – $240k per year • In office • Full-Time • 5+ years exp • Boston • New York
Python
Go
JavaScript
TypeScript
Databases
PostgreSQL
Redis
AI/ML
LangGraph
LangChain
AI Agents
LangSmith
LLM
Frontend
React.js
DevOps
Cloudflare
Management
Monday.com
Apply
$158k – $268k per year (Estimated) • In office • Full-Time • 4+ years exp • Boston • New York
Python
Go
Databases
PostgreSQL
Redis
ClickHouse
AI/ML
LangGraph
LangChain
AI Agents
LangSmith
DevOps
GCP
Azure
AWS
Cloudflare
Management
Monday.com
Apply
$23k – $54k per year (Estimated) • In office • Full-Time • 5+ years exp • Bachelor's Degree • Bengaluru
Python
Frontend
Lighthouse
Apply
$18k – $53k per year (Estimated) • In office • Full-Time • 4+ years exp
Python
AI/ML
Copilot
LangChain
Function Calling
AI Agents
LangSmith
Tool Use
Apply
$45k – $111k per year (Estimated) • In office • Part-Time
AI/ML
AI Agents
LLM
RAG
LLM Guardrails
EU AI Act
NIST AI RMF
Cybersecurity
GDPR
Apply
$77k – $138k per year (Estimated) • Remote • Contractor • 6+ years exp
Python
TypeScript
AI/ML
Copilot
Claude
Prompt Engineering
Langfuse
AWS Bedrock
LLM
LiveKit
LLM Guardrails
Mobile
Twilio
DevOps
AWS
Chips/EDA
PoC Library
Analytics
A/B Testing
Apply
$66k – $126k per year (Estimated) • Remote/Hybrid • Contractor • 6+ years exp
Python
AI/ML
Langfuse
LLM
Structured Outputs
LLM Evaluation
LLM Guardrails
DevOps
AWS
Robotics
Imitation Learning
Management
Scrum
Apply
Chief of Staff / COO 1 month ago
Equity • Remote • Full-Time • Madrid
Apply
$46k – $88k per year (Estimated) • Remote • Full-Time • 4+ years exp
Python
SQL
Databases
PostgreSQL
pgvector
Pinecone
OpenSearch
AI/ML
Unstructured.io
Model Context Protocol
Composio
LLM
RAG
DevOps
GCP
AWS
AWS Step Functions
Cybersecurity
GDPR
Management
Slack
Google Workspace
Apply
In office • Full-Time • Valencia • Madrid
Apply
$50k per year • Equity • In office • Full-Time • Master's Degree • Madrid
Apply
$36k – $93k per year (Estimated) • Remote • Madrid
AI/ML
Claude
ChatGPT
Apply
$84k – $150k per year (Estimated) • In office • Full-Time • 10+ years exp • Bachelor's Degree • Madrid
AI/ML
Copilot
Cursor
AI Agents
LLM
Human-in-the-Loop
Design
Figma
Apply
$40k – $93k per year (Estimated) • Remote/Hybrid • Full-Time • Madrid
Python
SQL
Analytics
Power BI
Microsoft Excel
Apply
See all jobs
This is one of many
615,181 more open roles from verified company boards, updated every day.