Let’s get started
By clicking ‘Next’, I agree to the Terms of Service
and Privacy Policy
Jobs / Job page
Security Engineer, Offensive Security image - Rise Careers
Job details

Security Engineer, Offensive Security

About the Team

Security is at the foundation of OpenAI’s mission to ensure that artificial general intelligence benefits all of humanity.  

The Security team protects OpenAI’s technology, people, and products. We are technical in what we build but are operational in how we do our work, and are committed to supporting all products and research at OpenAI. Our Security team tenets include: prioritizing for impact, enabling researchers, preparing for future transformative technologies, and engaging a robust security culture. 

 

About the Role

We're seeking an exceptional Security Engineer on the Offensive Security team to challenge and strengthen OpenAI's security posture. This role isn't your typical red team job - it's an opportunity to engage broadly and deeply, craft innovative attack simulations, collaborate closely with defensive teams, and influence strategic security improvements across the organization.


You'll have the chance to not only find vulnerabilities but actively drive their resolution, automate offensive techniques with cutting-edge technologies, and use your unique attacker perspective to shape our security strategy.

This role is open to remote employees, or relocation assistance is available to one of our OpenAI offices in San Francisco, Seattle, or New York City.

In this role, you will:

  • Conduct open-scope red and purple team operations, simulating realistic attack scenarios.

  • Collaborate proactively with defensive security teams to enhance detection, response, and mitigation capabilities.

  • Perform comprehensive penetration testing on our diverse suite of products.

  • Leverage advanced automation and OpenAI technologies to optimize your offensive security work.

  • Present insightful, actionable findings clearly and compellingly to inspire impactful change.

  • Influence security strategy by providing attacker-driven insights into risk and threat modeling.

You might thrive in this role if you have:

  • 7+ years of hands-on red team experience or exceptional accomplishments demonstrating equivalent expertise.

  • Deep expertise conducting offensive security operations within modern technology companies.

  • Proven experience performing offensive security assessments in at least one hyperscaler cloud environment (Azure preferred).

  • Demonstrated mastery assessing complex technology stacks, including:

    • Highly customized Kubernetes clusters

    • Container environments

    • CI/CD pipelines

    • GitHub security

    • macOS and Linux operating systems

    • Data science tooling and environments

    • Python-based web services

    • React-based frontend applications

  • Exceptional skill in code review, identifying novel and subtle vulnerabilities.

  • Strong intuitive understanding of trust boundaries and risk assessment in dynamic contexts.

  • Excellent coding skills, capable of writing robust tools and automation for offensive operations.

  • Ability to communicate complex technical concepts effectively through compelling storytelling.

  • Proven track record of not just finding vulnerabilities but actively contributing to solutions in complex codebases.

Additional desired qualifications:

  • Active U.S. Government Security Clearance, or eligibility and willingness to obtain one. 

  • Experience testing AI-driven systems.

  • Background or expertise in AI or data science.

  • Prior experience working in tech startups or fast-paced technology environments.

  • Experience in related disciplines such as Software Engineering (SWE), Detection Engineering, Site Reliability Engineering (SRE), Security Engineering, or IT Infrastructure.

About OpenAI

OpenAI is an AI research and deployment company dedicated to ensuring that general-purpose artificial intelligence benefits all of humanity. We push the boundaries of the capabilities of AI systems and seek to safely deploy them to the world through our products. AI is an extremely powerful tool that must be created with safety and human needs at its core, and to achieve our mission, we must encompass and value the many different perspectives, voices, and experiences that form the full spectrum of humanity. 

We are an equal opportunity employer and do not discriminate on the basis of race, religion, national origin, gender, sexual orientation, age, veteran status, disability or any other legally protected status. 

OpenAI Affirmative Action and Equal Employment Opportunity Policy Statement

For US Based Candidates: Pursuant to the San Francisco Fair Chance Ordinance, we will consider qualified applicants with arrest and conviction records.

We are committed to providing reasonable accommodations to applicants with disabilities, and requests can be made via this link.

OpenAI Global Applicant Privacy Policy

At OpenAI, we believe artificial intelligence has the potential to help people solve immense global challenges, and we want the upside of AI to be widely shared. Join us in shaping the future of technology.

OpenAI Glassdoor Company Review
4.2 Glassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star icon Glassdoor star icon
OpenAI DE&I Review
No rating Glassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star icon
CEO of OpenAI
OpenAI CEO photo
Sam Altman
Approve of CEO

Average salary estimate

$155000 / YEARLY (est.)
min
max
$130000K
$180000K

If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.

What You Should Know About Security Engineer, Offensive Security, OpenAI

Join us at OpenAI as a Security Engineer on the Offensive Security team, where you'll play a key role in fortifying our security posture and ensuring that our revolutionary technology serves humanity. This isn’t just any red team role; it’s your chance to engage in a variety of impactful tasks, from conducting open-scope red and purple team operations that simulate realistic attack scenarios to collaborating closely with defensive teams to enhance our security operations. If you have a knack for finding vulnerabilities and a passion for driving solutions, this role is perfect for you! You'll perform comprehensive penetration testing on a diverse suite of products and leverage OpenAI’s advanced automation technologies to elevate your offensive strategies. Beyond technical prowess, your ability to present actionable findings clearly will inspire impactful changes across the organization. With a minimum of 7 years of hands-on red team experience, you should be well-versed in assessing complex tech stacks and ideally have a background in cloud environments. If you thrive in a dynamic, fast-paced environment and possess exceptional coding skills, we want to hear from you! OpenAI offers the flexibility of remote work, or assistance with relocation to one of our vibrant offices located in San Francisco, Seattle, or New York City. Join us in leading the charge toward robust security in AI technology and help shape a safer future for all.

Frequently Asked Questions (FAQs) for Security Engineer, Offensive Security Role at OpenAI
What are the responsibilities of a Security Engineer at OpenAI?

As a Security Engineer at OpenAI, you'll engage in open-scope red and purple team operations, conducting realistic attack simulations that strengthen our defenses. You'll collaborate with defensive security teams to enhance detection, response, and mitigation capabilities, and perform thorough penetration testing on our various products. Your role also involves leveraging automation to optimize offensive techniques and shaping our security strategy with invaluable attacker perspectives.

Join Rise to see the full answer
What qualifications are needed for the Security Engineer position at OpenAI?

To excel in the Security Engineer role at OpenAI, candidates should possess at least 7 years of hands-on red team experience or equivalent expertise. Ideal applicants will have in-depth knowledge of offensive security operations within modern tech companies. Experience in conducting security assessments in cloud environments, particularly Azure, and from diverse technology stacks like Kubernetes, CI/CD pipelines, and several programming environments is essential.

Join Rise to see the full answer
Is remote work an option for the Security Engineer position at OpenAI?

Yes, the Security Engineer position at OpenAI is open to remote employees. Additionally, if you prefer an office environment, we offer relocation assistance to our offices located in San Francisco, Seattle, or New York City, providing flexible options to suit your working preferences.

Join Rise to see the full answer
What kind of automation skills are expected from a Security Engineer at OpenAI?

Candidates for the Security Engineer role at OpenAI should demonstrate strong coding abilities that enable them to write robust tools and automation scripts for offensive operations. Experience in automating security assessments and using advanced tools to streamline processes is crucial to optimize your effectiveness in this position.

Join Rise to see the full answer
Can you describe the team culture for the Security Engineer role at OpenAI?

The Security Engineer team culture at OpenAI emphasizes collaboration and innovation. You'll find yourself working in a supportive environment focused on continuous improvement and knowledge sharing. The team prioritizes engagement in a robust security culture, encouraging each member to contribute unique insights and drive strategic advancements in our security posture.

Join Rise to see the full answer
Common Interview Questions for Security Engineer, Offensive Security
Can you describe a recent penetration test you conducted?

In answering this question, be sure to focus on the methodology you used, the tools involved, and any significant findings you discovered. Highlight how these findings were communicated to stakeholders and what actions were taken as a result. This demonstrates not just your technical skill, but also your ability to drive change within an organization.

Join Rise to see the full answer
How do you prioritize vulnerabilities found during assessments?

When prioritizing vulnerabilities, consider factors such as the severity of the vulnerability, potential impact, exploitability, and the assets affected. Highlight your approach for both immediate remediation and longer-term strategy, explaining how this prioritization aligns with business operations.

Join Rise to see the full answer
What would you do if you encountered a serious vulnerability during a live operation?

Address this scenario by emphasizing the importance of a well-defined escalation protocol. Discuss your immediate steps, which might include documenting the finding, communicating with the appropriate teams, and ensuring that remediation efforts are initiated swiftly, all while maintaining operational integrity.

Join Rise to see the full answer
Can you explain how you approach working with defensive teams?

Discuss the importance of collaboration and communication. Explain how you work closely with defensive teams to share insights about potential threats and vulnerabilities, facilitating a proactive rather than reactive security posture that strengthens overall security infrastructure.

Join Rise to see the full answer
Describe a time when your automated tool revealed an unexpected finding.

Share a specific instance where your automation led to the discovery of a significant vulnerability or threat. Outline your thought process, the subsequent actions taken, and lessons learned, demonstrating your ability to adapt and improve security practices.

Join Rise to see the full answer
What programming languages do you prefer to use for automation, and why?

Identify programming languages you are proficient in, such as Python or Bash, and explain why you choose them for automation. Discuss the libraries or frameworks you utilize, and describe how they enhance your efficiency and effectiveness in offensive security.

Join Rise to see the full answer
How do you keep up to date with the latest security threats and trends?

Talk about the resources you leverage, such as industry blogs, security forums, conferences, or communities. Highlight any specific thought leaders or entities whose work you follow to learn about emerging threats and best practices for mitigation.

Join Rise to see the full answer
What is your experience with cloud security, particularly in Azure?

Discuss your familiarity with cloud security best practices, specifically in Azure. Mention any specific projects or assessments you've completed, and describe the challenges faced in securing cloud-based environments while sharing insights into solutions implemented.

Join Rise to see the full answer
How do you evaluate the security of a CI/CD pipeline?

Explain your approach to assessing the security posture of CI/CD pipelines, focusing on integrating security testing throughout the development lifecycle. Include examples of security checks you implement and how they help identify vulnerabilities early in the deployment process.

Join Rise to see the full answer
Why do you want to work at OpenAI as a Security Engineer?

Express your enthusiasm for OpenAI's mission to ensure AI benefits humanity. Discuss how the company's innovative approach to technology resonates with your career goals and aligns with your values regarding ethical AI and security practices.

Join Rise to see the full answer
Similar Jobs
Photo of the Rise User
Posted 9 days ago
Inclusive & Diverse
Feedback Forward
Collaboration over Competition
Growth & Learning
Photo of the Rise User
Posted 9 days ago
Inclusive & Diverse
Feedback Forward
Collaboration over Competition
Growth & Learning
Photo of the Rise User
Posted 3 days ago
Photo of the Rise User
Posted 6 days ago
Posted 14 days ago
Photo of the Rise User
Posted 12 days ago
Photo of the Rise User
Evolution Hybrid Fairfield, CT, USA
Posted 8 days ago
Photo of the Rise User
Posted 2 hours ago

OpenAI is a US based, private research laboratory that aims to develop and direct AI. It is one of the leading Artifical Intellgence organizations and has developed several large AI language models including ChatGPT.

856 jobs
MATCH
Calculating your matching score...
BADGES
Badge ChangemakerBadge Future MakerBadge InnovatorBadge Future UnicornBadge Rapid Growth
CULTURE VALUES
Inclusive & Diverse
Feedback Forward
Collaboration over Competition
Growth & Learning
FUNDING
SENIORITY LEVEL REQUIREMENT
INDUSTRY
TEAM SIZE
No info
EMPLOYMENT TYPE
Full-time, remote
DATE POSTED
March 7, 2025

Subscribe to Rise newsletter

Risa star 🔮 Hi, I'm Risa! Your AI
Career Copilot
Want to see a list of jobs tailored to
you, just ask me below!