
Senior Offensive AI Security Engineer
Posted 2 days ago

Posted 2 days ago
This is a fully remote position, open to applicants in Massachusetts.
• Conduct security evaluations of Samsara’s software, code, and firmware against AI-driven and adversarial threats, while implementing necessary fixes.
• Adapt general AI security insights into Samsara-specific application security solutions, applicable to both hardware and embedded firmware.
• Identify AI-related and traditional vulnerabilities such as injection and IDOR through AI-driven offensive validation methods.
• Develop and rigorously test AI-enabled security tools and processes, promoting their use throughout the security organization.
• Compare new frontier models against earlier iterations for security-related tasks.
• Establish release criteria and safeguards for the secure adoption of AI models.
• Assist in AppSec vulnerability triage through participation in an office-hours rotation.
• Manage the bug bounty program, with potential expansion into hardware domains.
• Collaborate with engineering, hardware teams, and organizational leadership.
• Present findings to security and executive leadership as Samsara’s expert on AI-related security risks.
• Formulate and advance Samsara’s medium- and long-term strategy for the safe and effective integration of AI in security operations.
• Utilize cutting-edge AI/LLM tools for both offensive validation and defensive measures.
• Promote and integrate Samsara’s cultural values throughout the organization.
• Over 8 years of experience in application security, vulnerability management, threat modeling, offensive security, or a closely related field.
• Proven impact and influence in implementing application fixes across a substantial portion of an organization.
• Practical experience in creating AI or agentic workflows for security applications.
• Background in conducting technical security assessments across software and hardware/firmware settings.
• Experience developing secure code solutions with engineers using programming languages like GoLang.
• Experience in creating AI and agentic solutions utilizing GitHub and AWS cloud services.
• Required experience in integrating, securing, or red-teaming AI-enabled systems, including LLMs, agentic workflows, prompt injection, or adversarial testing.
• Ability to secure and maintain the legal right to work in the specified company and work location.
• Ideal: Familiarity with AI-specific attack methods, such as prompt injection, jailbreaks, and model/agent exploitation.
• Ideal: Experience in developing or validating security measures for agentic AI, RAG systems, or LLM-integrated platforms.
• Ideal: Background in red-teaming LLM-enabled systems.
• Ideal: Experience in evaluating or benchmarking LLMs.
• Ideal: Knowledge of bug bounty platforms, such as Bugcrowd.
• Ideal: Experience in federal or FedRAMP-style environments.
• Ideal: Proven record of shaping organization-wide security strategy or presenting technical insights to senior or executive stakeholders.
• Ideal: Relevant industry certifications, such as OSCP, GIAC, CISSP, or AWS certifications.
• Initial RSU grant with no vesting cliff.
• Continuous equity refresh opportunities linked to performance.
• Performance-based bonus/variable compensation.
• Flexible, employee-driven remote work model.
• Professional development stipend available.
• Comprehensive health insurance plans.
• Parental leave options.
• Flexible working arrangements.
• Office spaces accessible for employees who prefer in-person work.
Cummins Inc.
Tangible
GitLab
Tevora
Get handpicked remote jobs straight to your inbox weekly.