Back to jobs

Senior Security Researcher (Red Team)

US - Remote; US-Remote

Who We Are

Pindrop is a cybersecurity company delivering continuous identity verification across voice, video, and digital interactions. Powered by the Pindrop Intelligence Network, our unified trust platform helps enterprises answer three critical questions:

Is this identity synthetic? Detect AI-generated and manipulated voice and video.
Is this identity risky? Identify fraud, suspicious behavior, and other risk signals.
Is this identity known? Authenticate identities using voice, device, behavioral, and other signals.

Pindrop brings this intelligence together across purpose-built trust engines to help organizations make informed decisions in real time — protecting customers, workforce interactions, and emerging AI-driven interactions.

Pindrop protects billions of high-risk interactions for enterprises, including leading financial institutions, insurers, and healthcare organizations. Its technology is informed by more than 8 billion real-world interactions annually and protected by 300+ patents.

Recognized by TIME as one of the 10 Most Influential Software Companies of 2026 and by Inc. for Best in Business for Innovation, Pindrop is backed by leading investors including Andreessen Horowitz, IVP, and CapitalG.

What you’ll do

As a Senior Security Researcher (Red Team), you will help Pindrop proactively identify and exploit weaknesses across product, cloud, and AI-powered systems so we can strengthen defenses before adversaries do. This role blends hands-on offensive security, GenAI attack simulation, security engineering, and operational partnership with blue-team, product, and AI/ML stakeholders.

  • Design and execute red team operations against Pindrop’s GenAI systems, LLM pipelines, RAG architectures, autonomous agents, APIs, SaaS products, and cloud environments, simulating real-world attacks across both traditional and AI-specific attack surfaces.
  • Conduct adversarial testing focused on prompt injection, indirect prompt attacks, jailbreaking, model extraction, training-data poisoning, data leakage, inference abuse, and unauthorized output manipulation.
  • Use deepfake generation, voice synthesis, and related spoofing techniques to test and attempt to defeat Pindrop’s voice authentication and deepfake detection capabilities, helping identify model robustness and detection gaps.
  • Develop novel attack chains that combine GenAI vulnerabilities with infrastructure, application, identity, and API weaknesses to create realistic end-to-end threat scenarios.
  • Plan and execute full-scope penetration tests and support bug bounty efforts across Pindrop’s web applications, APIs, SaaS products, and AWS/GCP environments using commercial and open-source offensive tooling.
  • Perform architecture reviews, security code reviews, and threat modeling with emphasis on vulnerabilities introduced by AI/ML components, model integrations, and LLM-facing services.
  • Build automation for offensive security workflows, testing, compliance checks, alerting, and reporting using Python or similar scripting languages, including AI-native attack tooling where useful.
  • Partner closely with SecOps and security engineering to improve detections, tune response workflows, and translate red team findings into practical remediation and defensive improvements.
  • Stay current on GenAI security research, adversarial ML techniques, evolving threat intelligence, and relevant regulatory developments, then apply those insights to Pindrop’s security program.

Who you are

  • You are an adversarial thinker who approaches security from an attacker’s perspective and brings the creativity, rigor, and curiosity to prove it.
  • You have genuine hands-on experience attacking AI systems, not just reading about them, and you enjoy breaking assumptions that others consider safe.
  • You continuously look for automation and AI-powered efficiencies in offensive security workflows.
  • You communicate clearly and can translate technical findings into prioritized, actionable guidance for technical and executive audiences alike.
  • You work independently and thrive in ambiguous, fast-moving environments with minimal supervision.
  • You are resilient, optimistic, accountable, and adaptable when priorities shift.

Your skill-set

Must-haves

  • 3+ years of hands-on penetration testing and red team experience across SaaS applications, cloud infrastructure, APIs, and web applications.
  • Demonstrable experience attacking GenAI or LLM-based systems, including prompt injection, jailbreaking, indirect prompt attacks, model extraction, or adversarial input generation.
  • Hands-on experience with deepfake tools, voice synthesis, or audio/visual spoofing technologies in an offensive or research context.
  • Strong proficiency with offensive security tooling such as Burp Suite, OWASP ZAP, Nmap, Metasploit, Cobalt Strike, or equivalent frameworks.
  • Experience configuring and operating SAST and DAST tools and integrating them into CI/CD pipelines.
  • Proficiency in at least one scripting or programming language, with Python strongly preferred, for custom attack tooling and workflow automation.
  • Familiarity with AI-specialized security tools or frameworks such as Garak, PyRIT, Claude Security, or similar adversarial ML tooling.
  • Strong understanding of cloud security architecture, container security, API security, and common security standards including ISO 27001/27002, NIST, CIS, PCI DSS, OWASP, and SOC 2.

Nice-to-haves

  • Prior software development or secure architecture experience, including the ability to reason about production code across multiple languages.
  • Research, publication, or deep practitioner background in adversarial machine learning, LLM security, or voice/audio deepfake detection.
  • Relevant certifications such as OSCP, GPEN, GWAPT, GXPN, CEH, or equivalent.
  • Prior experience in voice biometrics, AI security, fraud prevention, or similarly high-risk product environments.

What’s in it for you

As a Pindropper, you’ll join a rapidly growing company making technology more human with the power of voice. You’ll help shape how Pindrop attacks and defends modern AI-enabled systems, working at the intersection of offensive security, GenAI, deepfake defense, and cloud security. Your work will have direct impact on how we protect voice identity and high-trust customer interactions. You’ll work alongside a passionate, high-performing team committed to excellence and enjoying the journey together.

What we offer 

As a part of Pindrop, you’ll have a direct impact on our growing list of products and the future of security in the voice-driven economy. We hire great people and take care of them. Here’s a snapshot of the benefits we offer:

  • Competitive compensation package, including RSUs (Restricted Stock Units) for all employees, so everyone shares in our long-term success.
  • Remote-first environment - giving you flexibility and autonomy in how you structure your day.
  • While we work flexibly, we prioritize meaningful in-person moments through regular team on-sites, company-wide events, and intentional gatherings that foster connection, collaboration, and shared success.
  • Unlimited Paid Time Off (PTO)
  • Generous health and welfare plans to choose from - including one employer-paid “employee-only” plan!
  • Best-in-class Health Savings Account (HSA) employer contribution
  • Low-cost vision and dental plans for you and your family, providing comprehensive coverage and peace of mind.
  • Paid Parental Leave - Including birth, adoptive & foster parents
    • One year of diaper delivery for your newest addition to the family! It’s our way of welcoming new Pindroplets to the family!
  • Recurring monthly phone and internet allowance to help cover essential connectivity costs and support flexible work.
  • Enhanced fertility and GLP-1 benefits to support family-building journeys and personalized health needs.
  • Annual Learning & Development stipend to support your professional growth, skill-building, certifications, and continued education.

#LI-Remote 

Please note that the base pay range is a general guideline only. Pindrop considers factors such as (but not limited to) scope and responsibilities of the position, a candidate's work experience, education/training, and key skills, as well as market and business considerations, when extending an offer.

US Base Pay Range

$125,000 - $165,000 USD

Not sure if this is you?

We want a diverse, global team, with a broad range of experience and perspectives. If this job sounds great, but you’re not sure if you qualify, apply anyway! We carefully consider every application and will either move forward with you, find another team that might be a better fit, keep in touch for future opportunities, or thank you for your time.

AI - A Transformative Force

At Pindrop, we view artificial intelligence as a transformative force that, when harnessed responsibly, can unlock unprecedented value for our customers, partners and society and enable and empower us to continue to deliver cutting-edge technology to combat fraud and unblur the lines between what it means to be human versus machine.

Pindrop may use AI tools to help prioritize job applications for human review. The AI tool may analyze your work experience and skills to assess fit for the role, but does not consider your name or contact details. Applications with the strongest match to job requirements are prioritized for human review; not all applications may be individually reviewed.

Pindrop is an Equal Opportunity Employer

Here at Pindrop, it is our mission to create and maintain a diverse and inclusive work environment. As an equal opportunity employer, all qualified applicants receive consideration for employment without regard to race, color, age, religion, sex, gender, gender identity or expression, sexual orientation, national origin, genetic information, disability, marital and/or veteran status.

Create a Job Alert

Interested in building your career at Pindrop? Get future opportunities sent straight to your email.

Apply for this job

*

indicates a required field

Phone
Resume/CV*

Accepted file types: pdf, doc, docx, txt, rtf

Cover Letter

Accepted file types: pdf, doc, docx, txt, rtf


Select...

Yes — if you have personally performed practical testing (e.g., prompt injection, jailbreaks, AI red teaming, RAG testing, or similar).
No — if you have only studied the topics or used LLMs as a regular user.

Select...

Yes — if you have actually used deepfake or voice synthesis tools to generate or simulate attacks for testing or research.
No — if you have only theoretical knowledge or have not performed such simulations.

Select...

Please check the location of the job before responding.

Select...

Please check the location of the job before responding.

Select...

I understand that any misrepresentation or omission of fact on this application, my resume, any supplementary materials submitted by me, and interview responses, may be cause for a refusal to hire me or the termination of employment at any time during the period of my employment.

Select...
Select...
Select...
Select...

By submitting your application, you acknowledge receipt of Pindrop’s Candidate Privacy Notice, and have read, understand, and consent to the following:

  • Pindrop collects and processes your personal data for the purpose of evaluating your job application, including your resume and cover letter, submitted questionnaires, and assessment results.
  • Any skills assessments and any job interviews may be recorded by Pindrop and its service provider, CoderByte, including all video, audio, and other recordable data; the data recorded may constitute "biometric information" under specific state privacy and/or biometric laws. 
  • Interview recordings and Deepfake Data may be used for fraud prevention and security verification. Interview recordings may also be used to evaluate your qualifications for the role. We will not use your interview audio or video content to train AI models. Pindrop may use Deepfake Data to improve the accuracy of our fraud detection systems.
  • Your personal data will be stored primarily in the United States, and if you are an international applicant, your data may be transferred across borders with appropriate safeguards.
  • Your personal data will be retained for up to six months unless you provide explicit consent for future job opportunities, and you may request deletion of your data subject to applicable legal requirements.
  • Pindrop may use AI tools to help prioritize job applications for human review. The AI tool may analyze your work experience and skills to assess fit for the role, but does not consider your name or contact details. Applications with the strongest match to job requirements are prioritized for human review; not all applications may be individually reviewed.
  • You have rights regarding your personal data, including the right to access, correct, delete, or object to processing, and that you can contact privacy@pindrop.com to exercise these rights.

Voluntary Self-Identification

For government reporting purposes, we ask candidates to respond to the below self-identification survey. Completion of the form is entirely voluntary. Whatever your decision, it will not be considered in the hiring process or thereafter. Any information that you do provide will be recorded and maintained in a confidential file.

As set forth in Pindrop’s Equal Employment Opportunity policy, we do not discriminate on the basis of any protected group status under any applicable law.

Select...
Select...
Race & Ethnicity Definitions

If you believe you belong to any of the categories of protected veterans listed below, please indicate by making the appropriate selection. As a government contractor subject to the Vietnam Era Veterans Readjustment Assistance Act (VEVRAA), we request this information in order to measure the effectiveness of the outreach and positive recruitment efforts we undertake pursuant to VEVRAA. Classification of protected categories is as follows:

A "disabled veteran" is one of the following: a veteran of the U.S. military, ground, naval or air service who is entitled to compensation (or who but for the receipt of military retired pay would be entitled to compensation) under laws administered by the Secretary of Veterans Affairs; or a person who was discharged or released from active duty because of a service-connected disability.

A "recently separated veteran" means any veteran during the three-year period beginning on the date of such veteran's discharge or release from active duty in the U.S. military, ground, naval, or air service.

An "active duty wartime or campaign badge veteran" means a veteran who served on active duty in the U.S. military, ground, naval or air service during a war, or in a campaign or expedition for which a campaign badge has been authorized under the laws administered by the Department of Defense.

An "Armed forces service medal veteran" means a veteran who, while serving on active duty in the U.S. military, ground, naval or air service, participated in a United States military operation for which an Armed Forces service medal was awarded pursuant to Executive Order 12985.

Select...