{"id":1216449,"url":"https://alion.io/job/pindrop-senior-security-researcher-red-team","title":"Senior Security Researcher (Red Team)","company":{"id":1858,"name":"Pindrop","domain":"pindrop.com","url":"https://alion.io/company/pindrop","size_band":null,"is_staffing_agency":false,"employer_type":"direct","is_intermediary":false,"listed_via":null,"ats_vendor":"Greenhouse","truth_index":null},"role":"Security","role_family":"Security","seniority":"senior","employment_type":null,"work_mode":"remote","remote_scope":"stated_countries","remote_scope_basis":"posting_text","remote_working_hours":null,"hiring_geo_confidence":"structured","locations":[],"countries":[],"hiring_countries":["US"],"hiring_countries_total":1,"salary":{"min":125000,"max":165000,"currency":"USD","period":"year","gross":null,"usd_annual":165000},"salary_estimate":null,"experience_years_min":3,"visa_sponsorship":false,"relocation_package":false,"has_equity":true,"technologies":[{"name":"AWS","optional":false},{"name":"Burp Suite","optional":false},{"name":"CI/CD","optional":false},{"name":"Claude","optional":false},{"name":"Cobalt Strike","optional":false},{"name":"GCP","optional":false},{"name":"ISO 27001","optional":false},{"name":"LLM","optional":false},{"name":"Metasploit","optional":false},{"name":"Nmap","optional":false},{"name":"OWASP","optional":false},{"name":"OWASP ZAP","optional":false},{"name":"PCI DSS","optional":false},{"name":"Python","optional":false},{"name":"RAG","optional":false},{"name":"Red Teaming","optional":false},{"name":"SOC 2","optional":false},{"name":"Threat Modeling","optional":false},{"name":"Machine Learning","optional":true}],"status":"live","first_seen_at":"2026-07-01T20:24:04Z","employer_posted_date":"2026-09-25","last_verified_at":"2026-09-25T18:49:09Z","board_verified":true,"closed_at":null,"days_open":86,"trust":{"level":"ok","repost_count":null,"flags":[],"days_open":86},"description":"Who We Are\nPindrop is a cybersecurity company delivering continuous identity verification across voice, video, and digital interactions. Powered by the Pindrop Intelligence Network, our unified trust platform helps enterprises answer three critical questions:\nIs this identity synthetic? Detect AI-generated and manipulated voice and video.\nIs this identity risky? Identify fraud, suspicious behavior, and other risk signals.\nIs this identity known? Authenticate identities using voice, device, behavioral, and other signals.\nPindrop brings this intelligence together across purpose-built trust engines to help organizations make informed decisions in real time - protecting customers, workforce interactions, and emerging AI-driven interactions.\nPindrop protects billions of high-risk interactions for enterprises, including leading financial institutions, insurers, and healthcare organizations. Its technology is informed by more than 8 billion real-world interactions annually and protected by 300+ patents.\nRecognized by TIME as one of the 10 Most Influential Software Companies of 2026 and by Inc. for Best in Business for Innovation, Pindrop is backed by leading investors including Andreessen Horowitz, IVP, and CapitalG.\nWhat you’ll do\nAs a Senior Security Researcher (Red Team), you will help Pindrop proactively identify and exploit weaknesses across product, cloud, and AI-powered systems so we can strengthen defenses before adversaries do. This role blends hands-on offensive security, GenAI attack simulation, security engineering, and operational partnership with blue-team, product, and AI/ML stakeholders.\nDesign and execute red team operations against Pindrop’s GenAI systems, LLM pipelines, RAG architectures, autonomous agents, APIs, SaaS products, and cloud environments, simulating real-world attacks across both traditional and AI-specific attack surfaces.\nConduct adversarial testing focused on prompt injection, indirect prompt attacks, jailbreaking, model extraction, training-data poisoning, data leakage, inference abuse, and unauthorized output manipulation.\nUse deepfake generation, voice synthesis, and related spoofing techniques to test and attempt to defeat Pindrop’s voice authentication and deepfake detection capabilities, helping identify model robustness and detection gaps.\nDevelop novel attack chains that combine GenAI vulnerabilities with infrastructure, application, identity, and API weaknesses to create realistic end-to-end threat scenarios.\nPlan and execute full-scope penetration tests and support bug bounty efforts across Pindrop’s web applications, APIs, SaaS products, and AWS/GCP environments using commercial and open-source offensive tooling.\nPerform architecture reviews, security code reviews, and threat modeling with emphasis on vulnerabilities introduced by AI/ML components, model integrations, and LLM-facing services.\nBuild automation for offensive security workflows, testing, compliance checks, alerting, and reporting using Python or similar scripting languages, including AI-native attack tooling where useful.\nPartner closely with SecOps and security engineering to improve detections, tune response workflows, and translate red team findings into practical remediation and defensive improvements.\nStay current on GenAI security research, adversarial ML techniques, evolving threat intelligence, and relevant regulatory developments, then apply those insights to Pindrop’s security program.\nWho you are\nYou are an adversarial thinker who approaches security from an attacker’s perspective and brings the creativity, rigor, and curiosity to prove it.\nYou have genuine hands-on experience attacking AI systems, not just reading about them, and you enjoy breaking assumptions that others consider safe.\nYou continuously look for automation and AI-powered efficiencies in offensive security workflows.\nYou communicate clearly and can translate technical findings into prioritized, actionable guidance for technical and executive audiences alike.\nYou work independently and thrive in ambiguous, fast-moving environments with minimal supervision.\nYou are resilient, optimistic, accountable, and adaptable when priorities shift.\nYour skill-set\nMust-haves\n3+ years of hands-on penetration testing and red team experience across SaaS applications, cloud infrastructure, APIs, and web applications.\nDemonstrable experience attacking GenAI or LLM-based systems, including prompt injection, jailbreaking, indirect prompt attacks, model extraction, or adversarial input generation.\nHands-on experience with deepfake tools, voice synthesis, or audio/visual spoofing technologies in an offensive or research context.\nStrong proficiency with offensive security tooling such as Burp Suite, OWASP ZAP, Nmap, Metasploit, Cobalt Strike, or equivalent frameworks.\nExperience configuring and operating SAST and DAST tools and integrating them into CI/CD pipelines.\nProficiency in at least one scripting or programming language, with Python strongly preferred, for custom attack tooling and workflow automation.\nFamiliarity with AI-specialized security tools or frameworks such as Garak, PyRIT, Claude Security, or similar adversarial ML tooling.\nStrong understanding of cloud security architecture, container security, API security, and common security standards including ISO 27001/27002, NIST, CIS, PCI DSS, OWASP, and SOC 2.\nNice-to-haves\nPrior software development or secure architecture experience, including the ability to reason about production code across multiple languages.\nResearch, publication, or deep practitioner background in adversarial machine learning, LLM security, or voice/audio deepfake detection.\nRelevant certifications such as OSCP, GPEN, GWAPT, GXPN, CEH, or equivalent.\nPrior experience in voice biometrics, AI security, fraud prevention, or similarly high-risk product environments.\nWhat’s in it for you\nAs a Pindropper, you’ll join a rapidly growing company making technology more human with the power of voice. You’ll help shape how Pindrop attacks and defends modern AI-enabled systems, working at the intersection of offensive security, GenAI, deepfake defense, and cloud security. Your work will have direct impact on how we protect voice identity and high-trust customer interactions. You’ll work alongside a passionate, high-performing team committed to excellence and enjoying the journey together.\nWhat we offer \nAs a part of Pindrop, you’ll have a direct impact on our growing list of products and the future of security in the voice-driven economy. We hire great people and take care of them. Here’s a snapshot of the benefits we offer:\nCompetitive compensation package, including RSUs (Restricted Stock Units) for all employees, so everyone shares in our long-term success.\nRemote-first environment - giving you flexibility and autonomy in how you structure your day.\nWhile we work flexibly, we prioritize meaningful in-person moments through regular team on-sites, company-wide events, and intentional gatherings that foster connection, collaboration, and shared success.\nUnlimited Paid Time Off (PTO)\nGenerous health and welfare plans to choose from - including one employer-paid “employee-only” plan!\nBest-in-class Health Savings Account (HSA) employer contribution\nLow-cost vision and dental plans for you and your family, providing comprehensive coverage and peace of mind.\nPaid Parental Leave - Including birth, adoptive & foster parents\nOne year of diaper delivery for your newest addition to the family! It’s our way of welcoming new Pindroplets to the family!\nRecurring monthly phone and internet allowance to help cover essential connectivity costs and support flexible work.\nEnhanced fertility and GLP-1 benefits to support family-building journeys and personalized health needs.\nAnnual Learning & Development stipend to support your professional growth, skill-building, certifications, and continued education.\n#LI-Remote \nPlease note that the base pay range is a general guideline only. Pindrop considers factors such as (but not limited to) scope and responsibilities of the position, a candidate's work experience, education/training, and key skills, as well as market and business considerations, when extending an offer.\nUS Base Pay Range\n$125,000—$165,000 USD\nNot sure if this is you?\nWe want a diverse, global team, with a broad range of experience and perspectives. If this job sounds great, but you’re not sure if you qualify, apply anyway! We carefully consider every application and will either move forward with you, find another team that might be a better fit, keep in touch for future opportunities, or thank you for your time.\nAI - A Transformative Force\nAt Pindrop, we view artificial intelligence as a transformative force that, when harnessed responsibly, can unlock unprecedented value for our customers, partners and society and enable and empower us to continue to deliver cutting-edge technology to combat fraud and unblur the lines between what it means to be human versus machine.\nPindrop may use AI tools to help prioritize job applications for human review. The AI tool may analyze your work experience and skills to assess fit for the role, but does not consider your name or contact details. Applications with the strongest match to job requirements are prioritized for human review; not all applications may be individually reviewed.\nPindrop is an Equal Opportunity Employer\nHere at Pindrop, it is our mission to create and maintain a diverse and inclusive work environment. As an equal opportunity employer, all qualified applicants receive consideration for employment without regard to race, color, age, religion, sex, gender, gender identity or expression, sexual orientation, national origin, genetic information, disability, marital and/or veteran status.","description_format":"text","description_chars":9793,"description_truncated":false,"requirements":{"experience_years_min":3,"management_years_min":null,"team_size_min":null,"manages_managers":false,"education":null,"security_clearance":false,"languages":[]},"benefits":["Flexible schedule","Parental leave","Restricted stock units"],"hiring_locations":[{"name":"United States","iso":"US","kind":"country"}],"hiring_excludes":[],"relocation_offered":false,"industries":["Penetration Testing","Cybersecurity","Fraud Detection","Identity Management"],"lifecycle":[{"event":"open","at":"2026-09-25T09:34:22Z"}],"liveness":{"score":10,"band":"cold","label":"Long shot","p_open":1,"p_active":0.361,"p_room":0.28,"age_days":86,"expected_fill_days":25,"reasons":["conf:7","win:tail","crowd:"],"computed_at":"2026-09-26T01:53:38Z"},"pay":{"stated_usd_annual":165000,"is_top_pay":false},"html_url":"https://alion.io/job/pindrop-senior-security-researcher-red-team","json_url":"https://alion.io/job/pindrop-senior-security-researcher-red-team.json","meta":{"generated_at":"2026-09-26T01:53:38Z","cache_seconds":300,"methodology":"https://alion.io/methodology","terms":"https://alion.io/terms","contact":"https://alion.io/contact","api":"https://alion.io/developers","usage":{"tier":"crawler","counted_by":"address","units_charged":1,"used_today":1881,"day_limit":5000,"remaining_today":3119,"minute_limit":60,"resets_at":"2026-09-27T00:00:00Z"}}}