Application Security Researcher (US)

Tenzai

$120K — $150K *
Information Technology
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • Deep expertise in Web and API security, particularly around authentication and injection flaws.
  • 3+ years of hands-on experience in penetration testing, application security, bug bounty programs, or red team operations.
  • Strong communication skills to articulate complex vulnerabilities effectively.
  • Experience in coding, specifically for developing tooling related to penetration tests.
  • Adept at thriving in a fast-paced startup environment, maintaining a high level of ownership.
  • Understanding of AI integration in security applications is a plus.

Responsibilities

  • Utilize Tenzai's AI agent on customer applications, analyze results, and provide clear proof of vulnerabilities.
  • Communicate findings and exploitation evidence transparently to customers and internal teams.
  • Identify areas for improvement within the system, especially where AI misidentified vulnerabilities.
  • Innovate new attack strategies and testing techniques for web and API targets.
  • Incorporate real-world knowledge into AI agent enhancements.

Benefits

  • Opportunity to work at the intersection of AI and offensive security.
  • Collaborative work environment with a tightly-knit and innovative team.
  • Chance to shape a platform used at enterprise scale.
  • Hands-on engagement with cutting-edge security technology.
Full Job Description
Description

About the role

This is a rare opportunity to work at the intersection of offensive security and AI - and to have your expertise shape a platform used at enterprise scale. You'll perform attacks on customer applications, help the AI agent get smarter, and work alongside a tight-knit team building something genuinely new in the security space. Work closely with AI and engineering teams to continuously improve agent capabilities.

Responsibilites

  • Harness Tenzai's AI agent on customer applications, analyze the results, and validate vulnerabilities with clear exploitation evidence.
  • Present findings and exploitation evidence clearly and transparently to customers and internal teams
  • Analyze where the system needs to improve, investigate cases where the AI missed, misclassified, or hallucinated vulnerabilities.
  • Develop new attack strategies and offensive testing techniques for web and API targets, and translate real-world knowledge into improvements for the AI agent.

Requirements

  • Deep expertise in Web and API security, including authentication, business logic, and injection flaws
  • 3+ years of hands-on experience in Penetration Testing, Application Security, Bug Bounty, or Red Team operations
  • Ability to articulate complex vulnerabilities clearly, both in writing and verbally.
  • Experience in writing code to develop tooling for penetration tests
  • Comfortable working in a fast-paced startup environment with a high degree of ownership

Similar Jobs

More Jobs at Tenzai

More Information Technology Jobs

Find similar Application Security Researcher (US) jobs: