远程工作雷达

高级安全研究员(红队)

Senior Security Researcher (Red Team)

AI开发工程限定地区(需当地身份)与中国几乎无重叠,需长期倒时差
公司Pindrop
薪资$125,000 - $165,000/年
工作地点United States
地域资格限定地区(需当地身份)
时区要求与中国几乎无重叠,需长期倒时差
用工类型permanent
发布时间26 天前
数据来源4dayweek.io
前往 4dayweek.io 查看并投递 →
注意地域限制:该职位明确限定在 United States 招聘。如果你是位于中国大陆的求职者,通常需要当地工作身份才能投递,或需与雇主确认是否接受独立合同(Contractor)形式合作。
作息提示:与中国几乎无重叠,需长期倒时差。

### **我们是谁**

Pindrop 是 AI 时代的真实人类 + 正确人类® 身份信任平台。随着 AI 驱动的欺诈和深度伪造技术正在侵蚀数字通信中的信任,Pindrop 在实时语音、视频和数字交互中提供持续的身份验证和深度伪造检测。

企业依赖 Pindrop 每年保护数十亿高风险客户互动,包括美国顶级银行,以及领先的保险公司和医疗保健提供商。基于每年超过 15 亿个真实世界互动训练的模型,并受到 300 多项专利的保护,Pindrop 在恢复信任的同时减少欺诈、降低运营成本并提升客户体验。

被《时代》杂志评为 2026 年十大最具影响力软件公司之一,并被 Inc. 杂志评为创新类最佳商业公司,Pindrop 得到包括 Andreessen Horowitz、IVP 和 CapitalG 在内的领先投资者的支持。

#### 你将做什么

作为高级安全研究员(红队),你将帮助 Pindrop 主动识别和利用产品、云和 AI 驱动系统的弱点,以便在对手之前加强防御。该角色结合了实际的进攻性安全工作、GenAI 攻击模拟、安全工程以及与蓝队、产品和 AI/ML 利益相关者的操作合作。

- 设计并执行针对 Pindrop 的 GenAI 系统、LLM 流程、RAG 架构、自主代理、API、SaaS 产品和云环境的红队操作,模拟传统和 AI 特定攻击面的现实世界攻击。
- 进行专注于提示注入、间接提示攻击、越狱、模型提取、训练数据污染、数据泄露、推理滥用和未经授权的输出操纵的对抗性测试。
- 使用深度伪造生成、语音合成和相关欺骗技术来测试并尝试击败 Pindrop 的语音认证和深度伪造检测能力,帮助识别模型的鲁棒性和检测漏洞。
- 开发结合 GenAI 漏洞与基础设施、应用、身份和 API 弱点的新攻击链,创建真实的端到端威胁场景。
- 规划并执行针对 Pindrop 的网页应用、API、SaaS 产品和 AWS/GCP 环境的全面渗透测试,并使用商业和开源进攻工具支持漏洞赏金工作。
- 进行架构审查、安全代码审查和威胁建模,重点放在系统安全性上。

查看英文原文

### **Who We Are**

Pindrop is the Real Human + Right Human® Identity Trust Platform for the AI era. As AI-driven fraud and deepfakes erode trust in digital communication, Pindrop delivers continuous identity verification and deepfake detection across voice, video, and digital interactions in real time.

Enterprises rely on Pindrop to secure billions of high-risk customer interactions each year, including top U.S. banks, as well as leading insurers and healthcare providers. Powered by models trained on more than 1.5 billion real-world interactions annually and protected by 300+ patents, Pindrop restores trust while reducing fraud, lowering operational costs, and improving customer experience.

Recognized by TIME as one of the Top 10 Most Influential Software Companies of 2026 and by Inc. for Best in Business for Innovation, Pindrop is backed by leading investors including Andreessen Horowitz, IVP, and CapitalG.

#### What you’ll do

As a Senior Security Researcher (Red Team), you will help Pindrop proactively identify and exploit weaknesses across product, cloud, and AI-powered systems so we can strengthen defenses before adversaries do. This role blends hands-on offensive security, GenAI attack simulation, security engineering, and operational partnership with blue-team, product, and AI/ML stakeholders.

- Design and execute red team operations against Pindrop’s GenAI systems, LLM pipelines, RAG architectures, autonomous agents, APIs, SaaS products, and cloud environments, simulating real-world attacks across both traditional and AI-specific attack surfaces.
- Conduct adversarial testing focused on prompt injection, indirect prompt attacks, jailbreaking, model extraction, training-data poisoning, data leakage, inference abuse, and unauthorized output manipulation.
- Use deepfake generation, voice synthesis, and related spoofing techniques to test and attempt to defeat Pindrop’s voice authentication and deepfake detection capabilities, helping identify model robustness and detection gaps.
- Develop novel attack chains that combine GenAI vulnerabilities with infrastructure, application, identity, and API weaknesses to create realistic end-to-end threat scenarios.
- Plan and execute full-scope penetration tests and support bug bounty efforts across Pindrop’s web applications, APIs, SaaS products, and AWS/GCP environments using commercial and open-source offensive tooling.
- Perform architecture reviews, security code reviews, and threat modeling with emphasis on vulnerabilities introduced by AI/ML components, model integrations, and LLM-facing services.
- Build automation for offensive security workflows, testing, compliance checks, alerting, and reporting using Python or similar scripting languages, including AI-native attack tooling where useful.
- Partner closely with SecOps and security engineering to improve detections, tune response workflows, and translate red team findings into practical remediation and defensive improvements.
- Stay current on GenAI security research, adversarial ML techniques, evolving threat intelligence, and relevant regulatory developments, then apply those insights to Pindrop’s security program.

#### Who you are

- You are an adversarial thinker who approaches security from an attacker’s perspective and brings the creativity, rigor, and curiosity to prove it.
- You have genuine hands-on experience attacking AI systems, not just reading about them, and you enjoy breaking assumptions that others consider safe.
- You continuously look for automation and AI-powered efficiencies in offensive security workflows.
- You communicate clearly and can translate technical findings into prioritized, actionable guidance for technical and executive audiences alike.
- You work independently and thrive in ambiguous, fast-moving environments with minimal supervision.
- You are resilient, optimistic, accountable, and adaptable when priorities shift.

#### Your skill-set

_Must-haves_

- 3+ years of hands-on penetration testing and red team experience across SaaS applications, cloud infrastructure, APIs, and web applications.
- Demonstrable experience attacking GenAI or LLM-based systems, including prompt injection, jailbreaking, indirect prompt attacks, model extraction, or adversarial input generation.
- Hands-on experience with deepfake tools, voice synthesis, or audio/visual spoofing technologies in an offensive or research context.
- Strong proficiency with offensive security tooling such as Burp Suite, OWASP ZAP, Nmap, Metasploit, Cobalt Strike, or equivalent frameworks.
- Experience configuring and operating SAST and DAST tools and integrating them into CI/CD pipelines.
- Proficiency in at least one scripting or programming language, with Python strongly preferred, for custom attack tooling and workflow automation.
- Familiarity with AI-specialized security tools or frameworks such as Garak, PyRIT, Claude Security, or similar adversarial ML tooling.
- Strong understanding of cloud security architecture, container security, API security, and common security standards including ISO 27001/27002, NIST, CIS, PCI DSS, OWASP, and SOC 2.

_Nice-to-haves_

- Prior software development or secure architecture experience, including the ability to reason about production code across multiple languages.
- Research, publication, or deep practitioner background in adversarial machine learning, LLM security, or voice/audio deepfake detection.
- Relevant certifications such as OSCP, GPEN, GWAPT, GXPN, CEH, or equivalent.
- Prior experience in voice biometrics, AI security, fraud prevention, or similarly high-risk product environments.

#### What’s in it for you

As a Pindropper, you’ll join a rapidly growing company making technology more human with the power of voice. You’ll help shape how Pindrop attacks and defends modern AI-enabled systems, working at the intersection of offensive security, GenAI, deepfake defense, and cloud security. Your work will have direct impact on how we protect voice identity and high-trust customer interactions. You’ll work alongside a passionate, high-performing team committed to excellence and enjoying the journey together.

#### What we offer

As a part of Pindrop, you’ll have a direct impact on our growing list of products and the future of security in the voice-driven economy. We hire great people and take care of them. Here’s a snapshot of the benefits we offer:

- Competitive compensation package, including RSUs (Restricted Stock Units) for all employees, so everyone shares in our long-term success.
- Remote-first environment - giving you flexibility and autonomy in how you structure your day.
- While we work flexibly, we prioritize meaningful in-person moments through regular team on-sites, company-wide events, and intentional gatherings that foster connection, collaboration, and shared success.
- Unlimited Paid Time Off (PTO)
- Generous health and welfare plans to choose from - including one employer-paid “employee-only” plan!
- Best-in-class Health Savings Account (HSA) employer contribution
- Low-cost vision and dental plans for you and your family, providing comprehensive coverage and peace of mind.
- Paid Parental Leave - Including birth, adoptive & foster parents

- One year of diaper delivery for your newest addition to the family! It’s our way of welcoming new Pindroplets to the family!

- Recurring monthly phone and internet allowance to help cover essential connectivity costs and support flexible work.
- Enhanced fertility and GLP-1 benefits to support family-building journeys and personalized health needs.
- Annual Learning & Development stipend to support your professional growth, skill-building, certifications, and continued education.

* * *

#LI-Remote

Please note that the base pay range is a general guideline only. Pindrop considers factors such as (but not limited to) scope and responsibilities of the position, a candidate's work experience, education/training, and key skills, as well as market and business considerations, when extending an offer.

US Base Pay Range

$125,000—$165,000 USD

### **Not sure if this is you?**

We want a diverse, global team, with a broad range of experience and perspectives. If this job sounds great, but you’re not sure if you qualify, apply anyway! We carefully consider every application and will either move forward with you, find another team that might be a better fit, keep in touch for future opportunities, or thank you for your time.

#### **AI - A Transformative Force**

At Pindrop, we view artificial intelligence as a transformative force that, when harnessed responsibly, can unlock unprecedented value for our customers, partners and society and enable and empower us to continue to deliver cutting-edge technology to combat fraud and unblur the lines between what it means to be human versus machine.

Pindrop may use AI tools to help prioritize job applications for human review. The AI tool may analyze your work experience and skills to assess fit for the role, but does not consider your name or contact details. Applications with the strongest match to job requirements are prioritized for human review; not all applications may be individually reviewed.

#### **Pindrop is an Equal Opportunity Employer**

Here at Pindrop, it is our mission to create and maintain a diverse and inclusive work environment. As an equal opportunity employer, all qualified applicants receive consideration for employment without regard to race, color, age, religion, sex, gender, gender identity or expression, sexual orientation, national origin, genetic information, disability, marital and/or veteran status.

本页面信息整理自 4dayweek.io,版权归原发布方所有。职位可能随时关闭,投递请以原始页面为准。 本站只做信息聚合展示,不参与招聘流程,也不向求职者收取任何费用。

该公司其他在招职位

战略客户经理

PindropCanada200,000 - 225,000/年 CADFull Time2 天前
市场运营职能支持限定地区(需当地身份)

产品经理,AI赋能

PindropUnited Statespermanent19 天前
AI职能支持限定地区(需当地身份)与中国几乎无重叠,需长期倒时差

高级软件工程师(Pulse)

PindropUnited States$130,000 - $170,000/年permanent26 天前
开发工程限定地区(需当地身份)与中国几乎无重叠,需长期倒时差

← 返回全部职位