about 4 hours ago
Base Salary
$170k - $170k/yr
Responsibilities
- Identify and validate realistic attack paths against Array's products and infrastructure.
- Analyze large, multi-language codebases using AI and manual techniques to uncover vulnerabilities.
- Build safe proof-of-concept exploits demonstrating meaningful security risks.
- Partner with engineering to validate remediations and confirm exploit paths are eliminated.
- Document findings with evidence, technical root cause, business impact, and remediation guidance.
- Continuously improve Array's offensive security capabilities using AI tools.
Requirements
- 5+ years of experience in offensive security, application security, or penetration testing.
- Deep expertise in modern web applications, APIs, and the OWASP Top 10.
- Experience developing proof-of-concept exploits with real business impact.
- Proficiency in using AI for vulnerability discovery and security research.
- Strong communication skills to explain complex vulnerabilities to engineering teams.
- A belief in the transformative power of AI in security work.
Benefits
- Full medical, dental, and vision premiums covered at 100% for employees.
- Unlimited PTO and sick leave plus 14 company holidays.
- 100% 401k match up to 4% with immediate vesting.
- Generous parental leave for all parents.
- $1,000 desk setup subsidy for remote office setup.
- $100/month to subsidize wifi/cell phone expenses.
- Summer Fridays (half-day Fridays) from late May to the end of August.
- Commuter benefits for those working in NYC or San Francisco offices.
