Senior AI Red Team Engineer

Carnegie-Mellon-University

Pittsburgh (Allegheny County)

On-site

USD 150,000 - 190,000

Full time

14 days+
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Benefits offered by this job

Comprehensive medical
Dental insurance
Vision insurance
Tuition benefits
Paid time off

Job summary

Carnegie Mellon University seeks an AI Red Team Engineer for the CERT Threat Analysis Directorate to emulate adversaries against AI-enabled systems used in national security contexts. You will design and execute red-team operations, develop new attack techniques, and write cross‑platform tooling in Python, C, and scripting languages.

Expect collaboration with multiple CERT teams and graduate-level ongoing study.

Qualifications

  • BS in computer science, software engineering, networking, information systems, or a related technical field with ten (10) years of experience.

Responsibilities

  • Red team real-world AI-enabled systems to support national security objectives.
  • Develop new tactics, techniques, and procedures for attacking AI-enabled systems.
  • Write tools in Python, PowerShell, C, and BASH to enable red team operations.
  • Represent CERT technical portfolio of work and communicate with external mission partners.

Skills

Penetration testing
Red teaming
Exploit development
Python
C
BASH
PowerShell
Ghidra
IDAPRO
TCP/IP
Wireshark
OSCP

Education

BS in computer science or related field
MS in computer science or related field
PhD in computer science or related field

Tools

Cobalt Strike
Sliver

Job description

Who We Are

SEI conducts research and development in software engineering, systems engineering, cybersecurity, and many other areas of computing, working to introduce private-sector innovations into government. The SEI works closely with defense and government organizations, industry, and academia to continually improve software-intensive systems. Its core purposes are to help organizations improve software engineering capabilities, advance cybersecurity methods and technologies, and bring the discipline of software engineering to AI systems.

What We Do

The CERT Threat Analysis (TA) Directorate conducts research and development activities to identify, analyze, coordinate disclosure, and mitigate threats and vulnerabilities in systems and software. The TA Directorate is currently comprised of three teams: Artificial Intelligence (AI) Security, Malware and Vulnerability Exploitation, and Platform and Mission Engineering. The AI Security team works on advancing the state of the art in AI security at a national and global scale. The Malware and Vulnerability Exploitation (MVE) team works to improve cyber‑tradecraft analysis within strategic target communities to counter adversarial use of the Internet and related technologies. The vulnerability side of MVE (home of the CERT Coordination Center) works with an expansive network of vendors, partners, and collaborators to reduce the societal harm of vulnerable software and systems. The Platform and Mission Engineering team develops and maintains tools, environments, and operational support for the malware analysis, reverse engineering, vulnerability analysis, and AI security domains.

Position Summary

As an AI Red Team Engineer on the AI Security team, you will play a central role in adversary emulation exercises and capability development for our mission partners. Due to our unique position within the TA Directorate, the systems we red‑team fall outside the realm of ‘traditional’ enterprise red‑teaming. Our targets are commonly AI‑enabled platforms used within national security contexts. But this is not a “make the LLM say the bad thing” type of AI red team. We operate across multiple domains, meaning that our red teamers are expected to be experts in offensive cyber in addition to AI security. If you are experienced with offensive cyber tradecraft and have an interest in breaking into AI, this could be a good fit. Most of our red teamers are actively taking graduate‑level technical courses at CMU and/or pursuing technical certifications. Perpetual learning is a core part of what we do.

What you’ll do

Red team real‑world AI‑enabled systems (both the model and the hardware/software/network that it runs on) in support of national security objectives. Develop new tactics, techniques, and procedures for attacking AI‑enabled systems and related software in order to better prepare defenders for real‑world threats. Write tools in Python, PowerShell, C, and BASH to enable red team operations. Represent the CERT technical portfolio of work and operations; communicate with external mission partners and internal collaborators in concert with CERT directorates and teams.

Who you are
  • BS in computer science, software engineering, networking, information systems, or a related technical field with ten (10) years of experience; MS in computer science or technical/engineering field with eight (8) years of experience; PhD in computer science or technical/engineering field with five (5) years of experience or equivalent combination of training and experience. Other educational backgrounds of a technical nature with experience as described may be considered.
  • You have previous penetration testing, red teaming, or exploit development experience.
  • You have previous hands‑on experience with at least one command and control framework (e.g., Cobalt Strike, Sliver).
  • You have experience programming/scripting in Python, C, and BASH (without the assistance of AI) and are willing to learn PowerShell.
  • You have experience with reverse engineering tools (e.g. NSA Ghidra, IDA Pro).
  • You are able to read code and quickly spot basic vulnerabilities without the assistance of AI or fuzzing.
  • You are very familiar with TCP/IP and all layers of the OSI model.
  • You have experience using Wireshark and can explain how common network protocols work.
  • You have experience in assessing the security of both Linux and Windows systems.
  • Experience with mobile (e.g., Android) and other operating systems is also appreciated.
  • You have at least two of the following relevant certifications: OSCP, CPTS, FORGE/RIOT, GXPN, GAWN, GCPN, CRTO, CRTL, OSEP, OSWE, CCNA, CWEE. Applicants without these certifications will still be considered if equivalent experience is clearly demonstrated during technical interviews.
  • You have a willingness to travel (25%) outside of your office location to other SEI offices, sponsor sites, conferences, and off‑site meetings.
  • You have excellent communication skills (oral and written), particularly regarding technical communication with non‑experts.
  • You enjoy mentoring and cross‑training others and sharing knowledge within the broader community.
  • You will be subject to a background investigation, and you must have the ability to obtain and maintain a Department of War security clearance.
Benefits
  • comprehensive medical
  • prescription
  • dental
  • vision insurance
  • generous retirement savings program with employer contributions
  • tuition benefits
  • paid time off and observed holidays
  • life and accidental death and disability insurance
  • free Pittsburgh Regional Transit bus pass
  • Family Concierge Team to help navigate childcare needs
  • fitness center access
Location

Arlington, VA, Pittsburgh, PA

Job Function

Software/Applications Development/Engineering

Position Type

Staff – Regular Full Time/Part time Full time

Pay Basis

Salary

More Information

More Information: Please visit “Why Carnegie Mellon” to learn more about becoming part of an institution inspiring innovations that change the world.

Equal Opportunity Statement

Carnegie Mellon University is an Equal Opportunity Employer/Disability/Veteran.

Statement of Assurance

Statement of Assurance Interested in a career with Carnegie Mellon University but not finding anything that currently aligns with your interests, background, or experience?

Future Opportunities

The future is awaiting your expertise and intellect. Come join the architects of what’s next.

Prospective Employee Disclosures

For technical assistance, email HR Services or call 412‑268‑4600. We are committed to providing an accessible experience throughout our recruitment process. If you need assistance or a reasonable accommodation at any stage of the application, interview, or hiring process, please contact Equal Opportunity Services by email at employeeaccess@andrew.cmu.edu or by phone at 412‑268‑5072.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

AI Red Team Engineer
AI Red Team Engineer

Carnegie-Mellon-University • Pittsburgh

On-site
USD 140,000 - 200,000
Tuition benefits
Paid time off
Retirement contributions
+2
AI Red Team Engineer
AI Red Team Engineer

Software Engineering Institute | Carnegie Mellon University • Pittsburgh

On-site
USD 150,000 - 190,000
AI Red Team Engineer
AI Red Team Engineer

Software Engineering Institute | Carnegie Mellon University • Arlington (VA)

On-site
USD 120,000 - 180,000
Senior AI Red Team Engineer
Senior AI Red Team Engineer

Carnegie Mellon University • Arlington (VA)

On-site
USD 150,000 - 190,000
Tuition benefits
Paid time off
Medical insurance
+2
Senior AI Red Team Engineer
Senior AI Red Team Engineer

Software Engineering Institute | Carnegie Mellon University • Pittsburgh

On-site
USD 120,000 - 190,000
AI Red Team Engineer
AI Red Team Engineer

Carnegie Mellon University • Pittsburgh

On-site
USD 150,000 - 210,000
Associate AI Red Team Engineer
Associate AI Red Team Engineer

Carnegie Mellon University • Pittsburgh

On-site
USD 120,000 - 190,000
Senior AI Red Team Engineer
Senior AI Red Team Engineer

Carnegie Mellon University • Pittsburgh

On-site
USD 180,000 - 230,000
Associate AI Red Team Engineer
Associate AI Red Team Engineer

Carnegie-Mellon-University • Pittsburgh

On-site
USD 120,000 - 200,000
AI Red Team Engineer - 2025000
AI Red Team Engineer - 2025000

Software Engineering Institute | Carnegie Mellon University • Pittsburgh

On-site
USD 120,000 - 170,000