数据科学家,网络安全
Data Scientist, Cybersecurity
关于团队
OpenAI的智能体数据科学团队帮助塑造AI代理在我们的产品中如何被构建、部署和改进。我们与产品、工程、研究和安全团队合作,定义有意义的成功指标,了解我们的系统在现实世界中的表现,并将证据转化为更好的决策。
随着AI代理变得越来越强大,它们可以编写和执行代码,访问敏感系统,并以更高的自主性完成日益复杂的任务。这些能力为提升网络安全带来了强大的机遇,但也引入了传统安全工具和流程无法应对的风险。应对这一挑战需要新的方式来衡量安全、评估防御措施,并区分真正的风险降低与阻碍用户效率的摩擦。
关于职位
我们正在寻找一位高级数据科学家,帮助定义AI代理时代有效的网络安全是什么样子。
你将与OpenAI的安全组织和网络安全产品团队合作,衡量新兴风险,改进内部安全控制,并塑造AI驱动的安全产品。这些问题具有基础性:我们如何判断代理的安全控制是否有效?哪些防护措施真正降低了风险,哪些造成了不必要的摩擦?当AI系统发现潜在漏洞时,我们如何确定该发现是否准确、可操作并最终得到解决?当系统本身快速变化时,我们如何检测异常行为或高风险访问?
你将向数据科学团队汇报,同时与安全、网络安全产品、工程和研究团队紧密合作。这是一个高自主性的职位,适合能够建立新的分析学科、跨组织边界运作,并将模糊的安全挑战转化为可衡量的改进的人选。
在此职位中,你将:
- 定义我们如何衡量AI代理安全。建立安全控制覆盖范围、代理行为、敏感操作、访问模式、检测质量以及新兴风险的指标和评估框架。
- 在不引入不必要的摩擦的情况下改进安全控制。量化防护措施的有效性和运营成本,包括误报、被阻止的操作、升级、审批延迟和恢复路径。帮助团队使控制措施更安全、更精确、更易于使用。
- 构建安全决策的数据基础。与...
查看英文原文
ABOUT THE TEAM
OpenAI’s Agentic Data Science team helps shape how AI agents are built, deployed, and improved across our products. We partner with product, engineering, research, and security teams to define meaningful measures of success, understand how our systems behave in the real world, and translate evidence into better decisions.
As AI agents become more capable, they can write and execute code, access sensitive systems, and complete increasingly complex tasks with greater autonomy. These capabilities create powerful opportunities to improve cybersecurity, but they also introduce risks that traditional security tools and processes were not designed to address. Meeting this moment requires new ways to measure security, evaluate defenses, and distinguish genuine risk reduction from friction that slows users down.
ABOUT THE ROLE
We are looking for a senior data scientist to help define what effective cybersecurity looks like in the age of AI agents.
You will work across OpenAI’s Security organization and cybersecurity product teams to measure emerging risks, improve internal security controls, and shape AI-powered security products. The problems are foundational: How do we know whether an agent’s security controls are effective? Which safeguards meaningfully reduce risk, and which create unnecessary friction? When an AI system identifies a potential vulnerability, how do we determine whether the finding is accurate, actionable, and ultimately resolved? How do we detect anomalous behavior or risky access when the systems themselves are changing rapidly?
You will report into Data Science while partnering closely with Security, Cyber Product, Engineering, and Research. This is a high-ownership role for someone who can establish a new analytical discipline, operate across organizational boundaries, and turn ambiguous security challenges into measurable improvements.
IN THIS ROLE YOU WILL
- Define how we measure AI-agent security. Establish metrics and evaluation frameworks for security-control coverage, agent behavior, sensitive actions, access patterns, detection quality, and emerging risks.
- Improve security controls without introducing unnecessary friction. Quantify the effectiveness and operational costs of safeguards, including false positives, blocked actions, escalations, approval delays, and recovery paths. Help teams make controls safer, more precise, and easier to use.
- Build the data foundations for security decisions. Partner with engineering and data teams to improve instrumentation, connect fragmented telemetry, establish trusted datasets, and surface important coverage and data-quality gaps.
- Strengthen detection and response. Identify meaningful signals of anomalous behavior, risky access, sensitive-data exposure, and other security-relevant activity. Evaluate whether interventions improve detection quality, response times, and real-world security outcomes.
- Shape AI-powered cybersecurity products. Partner with product, engineering, and research teams to assess how effectively AI systems identify security issues, support developer and enterprise workflows, and create measurable customer value.
- Develop evaluation systems for security findings. Define quality measures for findings, including accuracy, severity, actionability, duplication, resolution, and downstream impact. Connect model behavior and product changes to outcomes such as triage, remediation, and vulnerability reduction.
- Understand the complete security workflow. Measure how users discover, investigate, validate, prioritize, and resolve security issues. Identify opportunities to improve activation, adoption, retention, and enterprise value across customer-facing cybersecurity products.
- Design rigorous measurement and experimentation strategies. Evaluate new models, security controls, product features, and workflows through controlled experiments, staged rollouts, observational analyses, and other methods appropriate for high-stakes environments.
- Translate analysis into security and product strategy. Identify the highest-value decisions, clarify tradeoffs, recommend where teams should invest, and communicate findings clearly to technical partners and senior leadership.
- Help establish a new security data science capability. Build a focused roadmap, create durable operating rhythms across Data Science and Security, and help shape how this discipline grows over time.
YOU MIGHT THRIVE IN THIS ROLE IF YOU HAVE
- 5+ years of experience in data science, applied research, analytics, or a related quantitative field, with a track record of owning ambiguous, high-impact problems.
- Experience in cybersecurity, trust and safety, fraud or abuse prevention, privacy, platform integrity, or another domain involving adversarial behavior and difficult-to-measure risks.
- Strong proficiency in SQL and Python, including experience investigating complex datasets, working through incomplete instrumentation, and building reproducible analytical workflows.
- Experience defining meaningful metrics and evaluation frameworks when ground truth is limited, outcomes are delayed, or important risks cannot be observed directly.
- Strong judgment in experimentation, causal inference, observational analysis, and the practical limitations of different measurement approaches.
- The ability to partner effectively with security engineers, product managers, software engineers, researchers, data engineers, and senior leaders.
- A demonstrated ability to translate technical analysis into concrete improvements in products, systems, controls, or organizational priorities.
- Comfort operating independently, defining a roadmap, and bringing structure to a domain without established processes or industry standards.
YOU COULD BE AN ESPECIALLY GREAT FIT IF YOU HAVE
- Experience with detection engineering, threat research, security operations, insider risk, identity and access management, or privacy-preserving security analytics.
- Familiarity with AI agents, large language models, model evaluations, automated code review, or AI-powered cybersecurity products.
- Experience evaluating security findings, vulnerability detection, remediation workflows, or developer-facing security tools.
- Experience balancing security effectiveness against user experience, including false positives, approval flows, operational burden, and recovery behavior.
- Experience building automated monitoring, anomaly detection, production-oriented data assets, or systems that connect model outputs to real-world outcomes.
- A track record of building new cross-functional measurement programs or establishing analytical capabilities from the ground up.
About OpenAI
OpenAI is an AI research and deployment company dedicated to ensuring that general-purpose artificial intelligence benefits all of humanity. We push the boundaries of the capabilities of AI systems and seek to safely deploy them to the world through our products. AI is an extremely powerful tool that must be created with safety and human needs at its core, and to achieve our mission, we must encompass and value the many different perspectives, voices, and experiences that form the full spectrum of humanity.
We are an equal opportunity employer, and we do not discriminate on the basis of race, religion, color, national origin, sex, sexual orientation, age, veteran status, disability, genetic information, or other applicable legally protected characteristic.
For additional information, please see OpenAI’s Affirmative Action and Equal Employment Opportunity Policy Statement https://cdn.openai.com/policies/eeo-policy-statement.pdf.
Background checks for applicants will be administered in accordance with applicable law, and qualified applicants with arrest or conviction records will be considered for employment consistent with those laws, including the San Francisco Fair Chance Ordinance, the Los Angeles County Fair Chance Ordinance for Employers, and the California Fair Chance Act, for US-based candidates. For unincorporated Los Angeles County workers: we reasonably believe that criminal history may have a direct, adverse and negative relationship with the following job duties, potentially resulting in the withdrawal of a conditional offer of employment: protect computer hardware entrusted to you from theft, loss or damage; return all computer hardware in your possession (including the data contained therein) upon termination of employment or end of assignment; and maintain the confidentiality of proprietary, confidential, and non-public information. In addition, job duties require access to secure and protected information technology systems and related data security obligations.
To notify OpenAI that you believe this job posting is non-compliant, please submit a report through this form https://form.asana.com/?d=57018692298241&k=5MqR40fZd7jlxVUh5J-UeA. No response will be provided to inquiries unrelated to job posting compliance.
We are committed to providing reasonable accommodations to applicants with disabilities, and requests can be made via this link https://form.asana.com/?k=bQ7w9h3iexRlicUdWRiwvg&d=57018692298241.
OpenAI Global Applicant Privacy Policy https://cdn.openai.com/policies/global-employee-and-contractor-privacy-policy.pdf
At OpenAI, we believe artificial intelligence has the potential to help people solve immense global challenges, and we want the upside of AI to be widely shared. Join us in shaping the future of technology.