Role at a glance
- Job function
-
Software Engineering & IT Cybersecurity
- Salary
- $224K – $431.3K/yr
- Location
- Remote - US - California
- Work arrangement
- Remote
- Employment
- Full-time
- Experience
- 12+ years in security engineering, with at least 4 years in offensive security
- Education
- Bachelor's degree or equivalent experience
Spotted an issue?
We’ll check it against the original posting.
Role Summary
NVIDIA's Product Security organization is developing AI-driven offensive security agents that audit source code and attack live web applications. The Senior Offensive Security Engineer will advance these agentic systems to support broader attack capabilities, stronger finding validation, and safer autonomous operation against NVIDIA-owned targets.
What You'll Do
- Craft and build autonomous and semi-autonomous LLM agents for reconnaissance, hypothesis-driven exploitation, and evidence capture.
- Extend multi-phase agent harnesses, specialist subagents, verifier stages, and out-of-band callback infrastructure across runtimes and...
- Encode offensive security tradecraft into prompts, tools, and playbooks covering web applications, authentication bypass,...
- Build exploit-confirmation harnesses that validate findings and reduce false positives.
- Engineer safety controls including sandboxing, scope enforcement, tool allowlists/blocklists, credential isolation, and prompt-injection...
- Evaluate and benchmark frontier models for offensive tasks and convert human red-team engagements into repeatable agent capabilities.
Generated from the employer's posting. Verify important details before applying.
View full postingQualifications
Bachelor's degree or equivalent experience; 12+ years in security engineering with at least 4 years in offensive security; deep hands-on exploitation skill in web application, cloud/Kubernetes, or systems/binary security; strong Python software engineering ability; practical experience building with LLMs; judgment about scoping, authorization, and blast radius.
Required
- Bachelor's degree or equivalent experience
- 12+ years in security engineering, with at least 4 years in offensive security
- Deep, hands-on exploitation skill in at least one domain: web application, cloud/Kubernetes, or systems/binary
- Strong software engineering ability in Python
- Practical experience building with LLMs: agent frameworks, tool use/function calling, multi-agent orchestration, or coding agents
- Sound judgment about autonomous offensive tooling — scoping, authorization, and blast-radius thinking
Preferred
- Published security research, CVEs, conference talks, or notable CTF results
- Certifications like OSWE, OSEP, OSCP, or GXPN
- Experience with SAST/DAST internals, fuzzing, or program analysis
- Experience red-teaming AI systems themselves or contributing to AI-security research
- Familiarity with Kubernetes/OpenShift, GitOps, and operating worker fleets at scale
Original job description
Content provided by the employer
Original job description
Content provided by the employer
NVIDIA's Product Security organization is looking for a Senior Offensive Security Engineer to push the frontier of AI-driven offensive security. We already run language model agents that audit source code and attack live web applications at fleet scale. These include multi-agent orchestration, adversarial verification, exploit-confirmation harnesses, and sandboxed execution. Your job is to make these agents meaningfully better attackers: new attack capabilities, new target classes, higher true-positive rates, and safer autonomy. This is a hands-on role for someone who is both a strong offensive security practitioner and a builder of agentic systems. Join us!
What you'll be doing:
Crafting and building new red team agents: autonomous and semi-autonomous LLM agents that perform reconnaissance, hypothesis-driven exploitation, and evidence capture against NVIDIA-owned targets
Extending our existing agent harnesses (multi-phase orchestration, parallel specialist subagents, judge/verifier stages, out-of-band callback infrastructure) across multiple agent runtimes and model providers
Encoding real operator tradecraft into prompts, tools, and playbooks — web app exploitation, auth bypass, SSRF/deserialization chains, cloud and Kubernetes attack paths — so agents find what a skilled human would
Building the verification layer: exploit-confirmation harnesses that prove findings are real before a human ever sees them, driving false-positive rates down
Engineering the safety side of autonomy: sandboxing, scope enforcement, tool allowlists/blocklists, credential isolation, and prompt-injection defenses for agents operating with offensive capability
Evaluating and benchmarking frontier models for offensive tasks; partnering with our human red team to turn their engagements into repeatable agent capabilities
Mentoring engineers on the team and setting the technical bar for agentic offensive tooling
What we need to see:
Bachelor's degree or equivalent experience
12+ years in security engineering, with at least 4 years in offensive security: penetration testing, red teaming, exploit development, or vulnerability research
Deep, hands-on exploitation skill in at least one domain (web application, cloud/Kubernetes, or systems/binary) — you can build and prove an exploit chain, not just run a scanner
Strong software engineering ability in Python; you ship production code, not just PoCs
Practical experience building with LLMs: agent frameworks, tool use/function calling, multi-agent orchestration, or coding agents (Claude Code, Codex CLI, or similar)
Sound judgment about autonomous offensive tooling — scoping, authorization, and blast-radius thinking are second nature
Respectful, responsible approach to offensive testing — we break things carefully and fix them fast
Ways to stand out from the crowd:
Published security research, CVEs, conference talks, or notable CTF results
Certifications like OSWE, OSEP, OSCP, or GXPN
Experience with SAST/DAST internals, fuzzing, or program analysis
Experience red-teaming AI systems themselves (prompt injection, jailbreaks, model evaluation) or contributing to AI-security research
Familiarity with Kubernetes/OpenShift, GitOps, and operating worker fleets at scale
With competitive salaries and a generous benefits package, NVIDIA is widely considered to be one of the technology world's most desirable employers. We have some of the most forward-thinking and talented people in the world working for us and, due to unprecedented growth, our elite engineering teams are rapidly growing. If you're a creative and autonomous engineer with a real passion for technology, we want to hear from you!
Your base salary will be determined based on your location, experience, and the pay of employees in similar positions. The base salary range is 224,000 USD - 356,500 USD for Level 5, and 272,000 USD - 431,250 USD for Level 6.You will also be eligible for equity and benefits.
This posting is for an existing vacancy.
NVIDIA uses AI tools in its recruiting processes.
NVIDIA is committed to fostering an inclusive work environment and proud to be an equal opportunity employer. As we highly value diversity in our current and future employees, we do not discriminate (including in our hiring and promotion practices) on the basis of race, religion, color, national origin, gender, gender expression, sexual orientation, age, marital status, veteran status, disability status or any other characteristic protected by law.About the company
NVIDIA
Large Enterprise
NVIDIA is a leading technology company renowned for its graphics processing units (GPUs) and innovative computing solutions that enhance visual experiences across multiple platforms, including gaming, scientific research, and artificial intelligence. Founded in 1993, the company has expanded its offerings to include powerful AI frameworks and deep learning platforms, making significant contributions to industries such as gaming, data centers, automotive, and healthcare. NVIDIA's commitment to pushing the boundaries of visual computing continues to drive advancements in both hardware and software, positioning the company at the forefront of emerging technologies and digital transformation.
NVIDIA is a leading technology company renowned for its graphics processing units (GPUs) and innovative computing solutions that enhance visual experiences across multiple platforms, including gaming, scientific research, and artificial intelligence. Founded in 1993, the company has expanded its offerings to include powerful AI frameworks and deep learning platforms, making significant contributions to industries such as gaming, data centers, automotive, and healthcare. NVIDIA's commitment to pushing the boundaries of visual computing continues to drive advancements in both hardware and software, positioning the company at the forefront of emerging technologies and digital transformation.