Security Research Engineer

PensarAI, Inc.

New York, Northern (NY, KY)

Hybrid

USD 120,000 - 175,000

Full time

4 days ago
Be an early applicant
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Benefits offered by this job

Health, dental, and vision insurance
Equity
Professional development budget
Support for publishing research

Job summary

PensarAI, Inc. seeks a Security Research Engineer to operate as a hybrid Forward Deployed Engineer and offensive security researcher. You will conduct customer pentests with Apex, present findings, and help shape the platform inside customer environments.

You will also drive original offensive security research, contribute to open source tooling, and translate field learnings into product enhancements. This role blends hands-on testing with customer-facing communication and research leadership.

Qualifications

  • 5+ years of offensive security, pentesting, red teaming, or vulnerability research.
  • Strong programming in Python, Go, JavaScript, C/C++.
  • Hands-on understanding of web, cloud, and infrastructure vulnerabilities.
  • Bachelor's degree or equivalent experience.

Responsibilities

  • Run end-to-end pentest engagements for customers using Apex.
  • Curate, triage, and contextualize findings for diverse audiences.
  • Deliver clear write-ups and walk customers through exploitation paths.
  • Set up Pensar platform inside customer environments and workflows.
  • Travel to customer sites for kickoffs and on-site testing.
  • Conduct original offensive security and open source research.
  • Contribute patches, advisories, and tooling to the open source community.

Skills

Python
Go
JavaScript
C/C++
Offensive security
Penetration testing
Communication

Education

Bachelor's degree in CS or related

Tools

Apex
Open source tooling
Cloud tooling

Job description

# Security Research EngineerRun customer pentests with Apex, drive offensive security research, and shape our platform from the fieldLocationNew York, NYArrangementOn-siteTypeFull-timeBase pay$120,000 – $175,000 / yrApply viacareers@pensar.devFull-timeSecurityForward DeployedPentestingML/AIPythonResearchApply for this roleAll openings## Position OverviewWe are seeking a Security Research Engineer to operate as a hybrid Forward Deployed Engineer and offensive security researcher. You'll be on the front lines of customer engagements — using our open source tool Apex to run pentests, curate and present findings, and stand up our platform inside customer environments. In parallel, you'll drive original offensive and open source security research, and feed everything you learn in the field back into the product so Pensar keeps getting sharper as a pentesting platform.This role is customer-facing by design. The ideal candidate is equally comfortable in a terminal popping shells with Apex, on a Zoom with a CISO walking through findings, and in a design review arguing for the next product capability.## Key Responsibilities### Customer Engagements & Forward Deployed Work* Run end-to-end pentest engagements for customers using Apex, our open source offensive security tool* Curate, triage, and contextualize findings for customer audiences ranging from engineers to executives* Deliver clear, prioritized write-ups and walk customers through results, exploitation paths, and remediation* Set up and configure the Pensar platform inside customer environments, including integrations and workflows* Act as a trusted technical partner for customers throughout onboarding, engagements, and ongoing usage* Travel to customer sites as needed for kickoffs, readouts, and on-site testing### Offensive Security Research* Conduct original offensive security research across web, cloud, infrastructure, and AI/LLM attack surfaces* Develop new exploitation techniques, payloads, and tooling that extend Apex's capabilities* Build automated testing methodologies for emerging vulnerability classes and attacker tradecraft* Track the evolving threat landscape and translate it into concrete detections and capabilities### Open Source Security Research* Lead vulnerability research across high-impact open source projects and ecosystems* Verify findings, build proof-of-concept exploits, and coordinate responsible disclosure with maintainers* Contribute patches, advisories, and tooling back to the open source community* Grow Pensar's reputation in the security research community through publications, talks, and contributions### Product Feedback & Pentesting Roadmap* Translate firsthand engagement experience into concrete recommendations for the product roadmap* Partner with engineering and product on capabilities, UX, and automation that make pentesting faster and more reliable* Participate in architecture and design reviews with a focus on the pentester's workflow* Help shape Apex's direction as an open source project alongside the internal platform## Required Qualifications* 5+ years of experience in offensive security, pentesting, red teaming, or vulnerability research* Strong programming skills in multiple languages (Python, Go, JavaScript, C/C++)* Deep, hands-on understanding of modern vulnerability classes across web, cloud, and infrastructure* Proven track record of running pentest engagements end-to-end and delivering findings to customers* Excellent customer-facing communication skills — comfortable presenting to both engineers and executives* Experience contributing to or maintaining open source security tooling* Bachelor's degree in Computer Science, Cybersecurity, or related field, or equivalent experience## Preferred Qualifications* Experience with AI/LLM-assisted offensive security or building security automation on top of LLMs* Prior Forward Deployed Engineer, solutions engineering, or consulting experience at a security or developer tools company* Security certifications (OSCP, OSCE, OSWE, GXPN, or equivalent)* Public security research, CVEs, conference talks, or notable open source contributions* Experience with cloud security (AWS, GCP, Azure) and containerized environments* Familiarity with compliance frameworks (SOC 2, ISO 27001, PCI DSS) as they relate to pentesting## Compensation* Base salary: **$120,000 – $175,000** per year, depending on experience* Meaningful equity in an early-stage offensive security company* Final offers calibrated to depth of offensive security experience, the breadth of your research record, and the level you join at## What We Offer* Comprehensive health, dental, and vision insurance* Direct ownership of customer engagements and offensive research at an early-stage security company* Professional development budget for conferences, training, and certifications* Support for publishing research and presenting at industry conferences* Direct, visible impact on both our open source tooling and commercial platform## Reports ToCEO / CTO---*We are an equal opportunity employer committed to diversity and inclusion. We welcome applications from all qualified candidates regardless of race, gender, age, religion, sexual orientation, or disability status.*
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Security Research Engineer
Security Research Engineer

PensarAI • New York (NY)

On-site
USD 120,000 - 175,000
Equity
Health insurance
Professional development budget
+1
Autonomous Security Engineer, Customer Solutions
Autonomous Security Engineer, Customer Solutions

PensarAI • New York (NY)

On-site
USD 140,000 - 180,000
Professional development budget
Conference opportunities
Direct ownership of engagements
+1
Autonomous Security Engineer, Customer Solutions
Autonomous Security Engineer, Customer Solutions

PensarAI, Inc. • New York (NY), Northern (KY)

On-site
USD 120,000 - 180,000
Health, dental, vision insurance
Direct ownership of customerEngagement
Professional development budget
+2
Field Pentest & Security Research Engineer
Field Pentest & Security Research Engineer

PensarAI, Inc. • New York (NY), Northern (KY)

Hybrid
USD 120,000 - 175,000
Health, dental, and vision insurance
Equity
Professional development budget
+1
Offensive Security Agent Engineer
Offensive Security Agent Engineer

Abstraction Capital • New York (NY), Northern (KY)

Hybrid
USD 180,000 - 240,000
Health insurance
Dental insurance
Vision insurance
+5
Forward-Deployed Security Research Engineer
Forward-Deployed Security Research Engineer

PensarAI • New York (NY)

Hybrid
USD 120,000 - 175,000
Equity
Health insurance
Professional development budget
+1
Offensive Security Agent Engineer
Offensive Security Agent Engineer

Pensar • New York (NY)

On-site
USD 120,000 - 170,000
Health, dental, and vision insurance
Direct ownership of core autonomous OS
Open source project involvement
Offensive Security Agent Engineer
Offensive Security Agent Engineer

PensarAI, Inc. • New York (NY), Northern (KY)

On-site
USD 180,000 - 260,000
Health insurance
Ownership of infra
Open source support
+2
Offensive Security Agent Engineer
Offensive Security Agent Engineer

PensarAI • New York (NY)

On-site
USD 150,000 - 190,000
Comprehensive health insurance
Direct ownership of core autonomous安全性
Cyber Researcher, Attack Emulation (Senior / Principal)
Cyber Researcher, Attack Emulation (Senior / Principal)

Pentera Security Ltd • Denver (CO)

On-site
USD 180,000 - 220,000
Performance-based bonuses
Equity opportunities
Health and wellness benefits
+1