
Staff Security Researcher
Hands-on offensive security researcher role responsible for creating detection rules (primarily OpenGrep), researching new vulnerability and malware classes, building proof-of-concept attacks, designing evaluation harnesses and benchmarks, and collaborating with engineering and platform teams to ship and maintain detection capabilities. Requires 8+ years of offensive/application security research experience, strong JavaScript knowledge (Python a plus), deep web app pentesting and detection-writing experience, and familiarity with cloud-native platforms and CI/CD security. Role is based in the United States with a hybrid schedule (twice weekly in the Austin office).