10 days ago
Base Salary
$161k - $247k/yr
Responsibilities
- Lead research evaluating frontier LLMs and customized open-weight models for code analysis, autonomous attack, and logical security reasoning.
- Build production-grade AI-assisted tools for vulnerability discovery, triage, risk validation, secure code repair, and proof-of-concept exploit generation.
- Fine-tune open-source models and integrate AI models, unified APIs, and model-agnostic execution frameworks into Product Security tools.
- Assess and secure internal AI platforms, agentic runtimes, AI coding-agent containers, orchestration layers, and LLM-integrated services.
- Perform manual and AI-assisted code reviews, threat modeling, penetration testing, offensive security research, and vulnerability analysis across Okta products.
- Operate an AI security vendor and tooling evaluation program with benchmarking harnesses.
- Publish technical research through white papers, blog posts, conference presentations, reference blueprints, or open-source tooling.
- Translate security research findings into actionable guidance for engineering teams building AI-powered features and platforms.
Requirements
- 8+ years of experience in information security with depth in application security, offensive research, or AI/ML security.
- Hands-on experience building security tooling and automation used by other engineers.
- Demonstrated experience assessing LLM-integrated systems and agentic AI architectures and finding real vulnerabilities.
- Proficiency in at least two programming languages: Python and one of Go, Java, TypeScript, or C/C++.
- Advanced experience with threat modeling, manual code review, and penetration testing for complex distributed systems.
- Knowledge of OIDC, OAuth 2.0, and SAML authentication and authorization protocols and their implementation risks.
- Experience with vulnerability research, source-code auditing, penetration testing, proof-of-concept exploits, and cryptographic implementation flaws.
- Familiarity with agentic framework internals, including tool-use protocols, MCP, function-calling patterns, and agent orchestration architectures.
- Experience with SAST, DAST, SCA, or fuzzing tools applied to AI/ML pipelines or CI/CD systems.
- Experience contributing to security standards, SDL processes, vulnerability research programs, external publications, conference talks, blog posts, or open-source security tooling.
- Strong written and verbal communication skills for documenting research and presenting to technical and non-technical audiences.
Benefits
- Annual base salary ranges are $180,000–$247,000 for the San Francisco Bay Area and $161,000–$221,000 for specified other locations.
- Equity where applicable, bonus, health, dental and vision insurance, 401(k), flexible spending account, PTO, and parental leave are offered according to applicable plans and policies.
- The role is listed as hybrid and remote, with an immersive in-person onboarding experience.
- Okta supports professional development, social impact, well-being, and connection across a global community.
About Okta
Okta secures AI. Okta is The World’s Identity Company. Freeing everyone to safely use any technology—anywhere, on any device or app.
