Offensive Security Agent Engineer
Rekrut di US saja
Pemberi kerja ini sepertinya hanya merekrut di wilayah di atas. Pastikan kamu memenuhi syarat direkrut dari Indonesia sebelum melamar.
Bangun agen keamanan ofensif untuk mengidentifikasi kerentanan di OpenAI
Anda akan membangun agen yang secara terus-menerus mengidentifikasi dan mengkoordinasikan penanganan kerentanan di infrastruktur dan aplikasi OpenAI. Anda akan menjadi pemilik teknis proyek ini, menggabungkan pengetahuan keamanan ofensif dengan pengembangan agen untuk membuat sistem produksi yang dapat beroperasi dengan aman dan dapat diandalkan secara besar-besaran.
Kenapa Menarik?
Anda akan bekerja di tim keamanan yang mendukung semua produk dan penelitian di OpenAI
Tanggung Jawab Utama
- Menjadi pemilik teknis agen keamanan ofensif OpenAI, menetapkan arsitektur, arah teknis, model operasi, dan strategi evaluasi
- Membangun portofolio agen khusus yang memahami infrastruktur, aplikasi, proses, dan batas keamanan OpenAI
- Mengembangkan agen yang dapat mengidentifikasi kerentanan, memvalidasi eksploitabilitas, mendokumentasikan dampak, mendorong penanganan, dan
Persyaratan
- Pengalaman dalam keamanan ofensif dan pengembangan agen
- Kemampuan untuk membangun sistem produksi yang dapat beroperasi dengan aman dan dapat diandalkan secara besar-besaran
- Pengetahuan tentang infrastruktur cloud, Kubernetes, aplikasi web, dan target tinggi lainnya
Skills Wajib
Konteks Indonesia
- Overlap Jam Kerja:
- Overlap minimal — jam kerja berlawanan
Lihat Deskripsi Asli dari Ashby Job Boards
Deskripsi asli dari Ashby Job Boards
ABOUT THE TEAM Security is at the foundation of OpenAI’s mission to ensure that artificial general intelligence benefits all of humanity. The Security team protects OpenAI’s technology, people, and products. We are technical in what we build but are operational in how we do our work, and are committed to supporting all products and research at OpenAI. Our Security team tenets include: prioritizing for impact, enabling researchers, preparing for future transformative technologies, and engaging a robust security culture. ABOUT THE ROLE We’re seeking an exceptional Staff - Principal level offensive security domain expert to build agents that continuously identify and coordinate remediation of vulnerabilities across OpenAI’s infrastructure and applications. You will be the technical owner of this effort, combining deep offensive security judgment with agent engineering to build a production system that can operate safely and reliably at scale. As OpenAI increasingly uses automation throughout the company, we believe our security testing must become increasingly automated as well. Advances in model capabilities create an opportunity to test more of our attack surface than would be possible through human effort alone and a need to ensure that we remain ahead of those same capabilities as they become available to attackers. In this role, you’ll build a portfolio of specialized agents that develop a deep understanding of OpenAI’s infrastructure, applications, processes, and security boundaries. These agents will combine internal context with feedback from running systems to explore our cloud environments, Kubernetes clusters, web applications, endpoints, external attack surface, and other high-value targets. The goal is for agents to not only discover vulnerabilities, but also to validate exploitability, document impact, drive remediation, and verify fixes. Success will be measured through outcomes like vulnerabilities fixed, attack surface covered, and performance on evals you’ll build. These systems will operate continuously and with increasing autonomy, while using carefully designed guardrails and human-in-the-loop controls for dangerous actions. They will also learn from feedback from other domain experts throughout the company. IN THIS ROLE, YOU WILL: - Serve as the technical owner of OpenAI’s offensive security agents, establishing its architecture, technical direction, operating model, and evaluation strategy. - Design and build a portfolio of specialized agents that continuously test OpenAI’s infrastructure and applications from a variety of authenticated and unauthenticated perspectives. - Translate expert offensive security workflows and intuition into tools, skills, harnesses, policies, and internal knowledge bases. - Build agents that deeply understand OpenAI’s environment by integrating internal context. - Develop capabilities for testing cloud and Kubernetes environments, modern web applications, external attack surface, endpoints, and other high-value systems. - Build complete vulnerability-management loops that move beyond discovery to impact validation, ownership identification, prioritization, remediation support, progress tracking, and fix verification. - Design human-in-the-loop systems that allow offensive security engineers to approve or reject potentially dangerous actions, provide missing context, redirect investigations, and steer agents away from unproductive paths. - Create feedback mechanisms that allow agents to learn from the decisions, corrections, and domain expertise of experienced offensive security practitioners. - Develop rigorous evaluations that measure meaningful security outcomes and improvements in agent capability over time. - Build production-quality infrastructure that allows the system to run continuously, recover from failures, remain observable and debuggable, and operate safely against production systems. - Investigate failures in agent reasoning and behavior, identify where models are capable or unreliable, and improve the surrounding tools, context, workflows, and guardrails accordingly. - Partner closely with offensive security, infrastructure security, product security, codex security, and engineering teams to ensure findings are high signal, understandable, and actionable. - Help define the future of offensive security at OpenAI, with the goal of enabling agents to perform most repeatable security testing while human experts focus on automation and high leverage agent-assisted manual review. YOU MIGHT THRIVE IN THIS ROLE IF: - You have substantial hands-on offensive security experience and strong judgment about which vulnerabilities and attack paths are worth pursuing. - You have extensive domain expertise in areas such as cloud security, Kubernetes and container security, web application security, source-code review, Linux security, macOS security, or external attack-surface testing. Expertise in cloud, Kubernetes, and modern web applications is especially valuable. - You have experience assessing complex, highly customized environments rather than relying primarily on standardized scanners, checklists, or known-vulnerability detection. - You can take an ambiguous offensive security problem, decompose it into a reliable system, and encode the reasoning and workflows of an experienced operator into software. - You have built production quality software - You have built or meaningfully extended agent systems that use models, tools, structured context, memory, orchestration, and feedback loops to perform complex work. - You understand that an impressive agent demonstration is very different from a dependable production system, and you care deeply about evaluations, observability, failure recovery, safety, maintainability, and regression resistance. - You have strong intuitions about where current models are capable, where they are unreliable, and how tools, context, scaffolding, and human feedback can expand their useful operating range. - You are excited about working closely with frontier models, curious about their emerging capabilities, and constantly look for ways to use them to improve your own workflows. - You are energized by the opportunity to serve as a technical owner of an ambitious new system, make foundational architectural decisions, and help grow a team around it. BONUS POINTS: - Background or expertise in AI or data science. - Prior experience working in tech startups or fast-paced technology environments. - Experience in related disciplines such as Software Engineering, Product Security, Application Security, Detection Engineering, Site Reliability Engineering, Security Engineering, or IT Infrastructure. About OpenAI OpenAI is an AI research and deployment company dedicated to ensuring that general-purpose artificial intelligence benefits all of humanity. We push the boundaries of the capabilities of AI systems and seek to safely deploy them to the world through our products. AI is an extremely powerful tool that must be created with safety and human needs at its core, and to achieve our mission, we must encompass and value the many different perspectives, voices, and experiences that form the full spectrum of humanity. We are an equal opportunity employer, and we do not discriminate on the basis of race, religion, color, national origin, sex, sexual orientation, age, veteran status, disability, genetic information, or other applicable legally protected characteristic. For additional information, please see OpenAI’s Affirmative Action and Equal Employment Opportunity Policy Statement https://cdn.openai.com/policies/eeo-policy-statement.pdf. Background checks for applicants will be administered in accordance with applicable law, and qualified applicants with arrest or conviction records will be considered for employment consistent with those laws, including the San Francisco Fair Chance Ordinance, the Los Angeles County Fair Chance Ordinance for Employers, and the California Fair Chance Act, for US-based candidates. For unincorporated Los Angeles County workers: we reasonably believe that criminal history may have a direct, adverse and negative relationship with the following job duties, potentially resulting in the withdrawal of a conditional offer of employment: protect computer hardware entrusted to you from theft, loss or damage; return all computer hardware in your possession (including the data contained therein) upon termination of employment or end of assignment; and maintain the confidentiality of proprietary, confidential, and non-public information. In addition, job duties require access to secure and protected information technology systems and related data security obligations. To notify OpenAI that you believe this job posting is non-compliant, please submit a report through this form https://form.asana.com/?d=57018692298241&k=5MqR40fZd7jlxVUh5J-UeA. No response will be provided to inquiries unrelated to job posting compliance. We are committed to providing reasonable accommodations to applicants with disabilities, and requests can be made via this link https://form.asana.com/?k=bQ7w9h3iexRlicUdWRiwvg&d=57018692298241. OpenAI Global Applicant Privacy Policy https://cdn.openai.com/policies/global-employee-and-contractor-privacy-policy.pdf At OpenAI, we believe artificial intelligence has the potential to help people solve immense global challenges, and we want the upside of AI to be widely shared. Join us in shaping the future of technology.
Konteks Gaji
Posisi Engineering serupa di LokerDollar dibayar sekitar $160k/yr (kisaran $1.8k–999.999k/yr, dari 643 listing aktif).
Perekrutan di OpenAI
OpenAI punya 68 lowongan aktif lain di LokerDollar dan telah merekrut di sini sejak 27 Mar 2026 — di kategori Engineering, Product, Data & Analytics.
Lihat semua lowongan OpenAI →Pertanyaan yang sering diajukan
- Apakah Offensive Security Agent Engineer di OpenAI bisa dikerjakan remote?
- Ya. Offensive Security Agent Engineer di OpenAI adalah posisi remote yang terbuka untuk kandidat di seluruh dunia.
- Berapa gaji untuk Offensive Security Agent Engineer di OpenAI?
- Rentang gaji yang tercantum untuk posisi ini adalah $347k–490k/yr.
- Jenis pekerjaan apa Offensive Security Agent Engineer di OpenAI?
- Posisi ini adalah pekerjaan full time.
- Bagaimana cara melamar?
- Klik tombol "Lamar" pada halaman ini untuk menuju halaman aplikasi resmi OpenAI.
Jelajahi lebih lanjut
Data & laporan pasar
Riset gaji & permintaan skill dari data lowongan kami sendiri.
- Lowongan IT Indonesia vs Remote Global (2026)Analisis data primer 2.049 lowongan: metodologi, klasifikasi, dataset bisa diunduh.
- Permintaan Skill AI: Indonesia vs Global (2026)10.000+ lowongan, classifier taxonomy-first, Wilson CI, pra-registrasi sebelum analisis.
- Remote ≠ Remote: Skill yang Membuka Kerja Global untuk Indonesia (2026)12.891 lowongan remote: skill coding bergaji tertinggi justru paling terkunci untuk pelamar Indonesia. Dataset agregat CC BY 4.0.
- Laporan Hiring Indonesia: Tech vs Non-TechPermintaan lowongan per bidang dari hitungan agregat — bukan listing per-listing.
- Benchmark Gaji IndonesiaKisaran gaji agregat lintas peran, dengan metodologi dan dataset terbuka.
- Indeks Gaji & Permintaan Kerja Remote untuk IndonesiaBerapa banyak lowongan remote global yang terbuka untuk Indonesia, dan gajinya (USD) per bidang.
- Laporan Kuartalan Pasar Kerja IndonesiaPHK, pendanaan, gaji & skill per kuartal — agregat terbuka.
- Laporan Pasar Remote per PeranLaporan otomatis per kelompok peran — skill, senioritas, perusahaan, gaji.
- Benchmark Gaji Remote GlobalGaji tahunan per bidang & mata uang, plus porsi lowongan terbuka untuk seluruh dunia.
Dari blog kami
- Interview Radiologi Remote?Bongkar proses interview kerja remote USD untuk posisi radiolog — dari screening sampai offer letter.
- Lowongan Radiologi Remote: Update Ags 2026Analisis lowongan radiologi remote terbaru di Agustus 2026: gaji, tren, dan tips apply. Peluang kerja dokter spesialis radiologi remote.
- 3 Secret WebsitesTahu 3 situs rahasia untuk menghasilkan dolar dengan bekerja online.