Senior Security Engineer, Research & Engineering

Posted 2 Days Ago
Hiring Remotely in Brooklyn, New York, USA
In-Office or Remote
Senior level
Artificial Intelligence • Blockchain • Professional Services • Security • Consulting • Cybersecurity • Defense
High-end cybersecurity consultancy with a real-world attacker mentality.
The Role
Conduct red-team assessments of formally verified systems, evaluating proofs, specifications, threat models, and trusted computing bases. Build AI-driven vulnerability discovery, triage, and exploit-generation tooling; identify and demonstrate exploitable weaknesses in software and infrastructure. Produce rigorous security reports, publish methodologies, collaborate with domain experts and third parties, and deliver engagements on fixed schedules.
Summary Generated by Built In

Location: Remote within the United Kingdom

Who We Are:

Founded in 2012 by 3 expert hackers with no investment capital, Trail of Bits is the premier place for security experts to boldly advance security and address technology's newest and most challenging risks. It has helped secure some of the world's most targeted organizations and devices. Our combination of novel research with practical solutions reduces the security risks that our clients face from emerging technologies. Our work helps drive the security industry and the public's understanding of the technology that underlies our world.

Cybersecurity preparedness is a moving target. Companies like ours are the tip of the spear in the fight against attackers. Our research-based and custom-engineering approach ensures that our clients' capabilities are at the forefront of what's available. For companies and technologies that live and die by their security, a proactive, tailored approach is required to keep one step ahead of attackers.

Democratizing security information is essential. As part of our business, we provide ongoing informational support through blogs, whitepapers, newsletters, meetups, and open-source tools. The more the community understands security, the more they'll understand why a company like ours is so unique and valuable.

Role

AI has transformed the cost curve for formal verification. Network boundaries, infrastructure, operating system components, cryptographic libraries, and proof-checking kernels can now ship with genuine mathematical guarantees attached, and those guarantees are narrower than the word "verified" leads anyone to believe. We are looking for candidates who have both the rigor to read a proof and say exactly what it establishes, and the instinct to find what it left out. 

Day-to-day, you will evaluate specifications alongside their designs and proofs, and determine what has actually been established versus what has merely been assumed. Then, using state-of-the-art tools and frontier AI models, you will go after everything the proof does not reach. Some of what you find may be ordinary memory corruption. More of it will be a threat model that ignores a real attacker, a trusted computing base that does not survive deployment, or a sound proof of a property adjacent to the one that matters.

Red-team evaluations are scheduled for a one-week sprint with seven weeks to prepare. The tooling you build during that time determines how much ground you cover once the window opens. Trail of Bits is AI-native, and we expect AI to drive the bulk of our evaluations with agentic harnesses, triage pipelines, automated exploit generation, and systems like Buttercup, our cyber reasoning system that placed second at DARPA's AI Cyber Challenge. 

You will work in small teams and with third parties and report to a domain lead in applied cryptography and proof systems, operating system internals, applications, hardware, or AI infrastructure. Several engagements will run simultaneously and remain separate, so holding information where it belongs matters as much as the technical work. Occasionally, you will attend sprints and hackathon events in London. 

What You'll Achieve
  • Break systems built to resist you. Compromise designs and production software whose authors had a proof assistant on their side, and demonstrate it with a working exploit rather than a written argument.
  • Map the real attack surface of a proof. Establish the formal property, the level it holds, the threat model behind it, and the underlying assumptions, then show the client which of those give way under pressure.
  • Build the tooling that decides your coverage. Design and extend the AI-driven discovery and triage systems that determine how much of a target a single engineer can reach within a short window. 
  • Write the assessment that becomes the record. Set out what held, what did not, and what you attempted without success, clearly enough that the result stands up to the product developers.
  • Raise the practice around you. Publish tooling and methodology, write for the blog, present internally, and pull what one engagement learns into the next.
What You'll Bring
  • Red teaming. Direct experience with red teaming production software, personally responsible for finding and proving exploitable vulnerabilities. Hands-on offensive work, not exercise coordination or scanner triage.
  • Building AI tools that find bugs. Experience building AI-driven tooling for vulnerability discovery, such as agentic harnesses, LLM-assisted triage pipelines, or automated exploit generation. You have written this tooling, not only used someone else's.
  • Formal methods. Experience applying formal methods to system designs and code implementations, including reading specifications and proof artifacts and reasoning about what a machine-checked proof does and does not establish. You can read at least one of Lean, Rocq, F*, Dafny, or Verus/Rust. 
  • Depth in a systems domain. Experience finding vulnerabilities in network protocol implementations, operating system internals, open-source software, cryptographic implementations, or AI inference infrastructure. 
  • Software development. Experience in Python, C++, and/or Rust.
  • Written findings for expert readers. Experience producing security assessment reports for an audience that will scrutinize every claim.
  • Delivery to a fixed external schedule with defined acceptance criteria.
  • Vulnerability Disclosure. Experience in the ethical reporting of vulnerabilities in technology. 
Preferred Qualifications
  • Published vulnerability research: CVEs, advisories, or talks at venues like OffensiveCon, RECon, CCC, or USENIX Security.
  • Experience auditing or contributing to a formally verified codebase such as HACL*, EverCrypt, seL4, CompCert, or CakeML.
  • Experience building automated bug-finding infrastructure at scale: cyber reasoning systems, fuzzing fleets, or symbolic execution engines.
  • Experience with zero-knowledge proof systems, proof-checking kernels, or SMT-backed tooling.
  • Experience attacking AI inference infrastructure: weight confidentiality and integrity, tenant isolation, or output mediation.
  • Participation in CTF competitions, Pwn2Own, DARPA's AI Cyber Challenge, or similar.
  • Experience with compiler technology, program analysis, or binary analysis.
  • Experience in reading, writing, and publishing academic papers.

Preferred qualifications are nice to have, but not required. Please apply even if you don't meet all of these.


BenefitsBenefits, Perks & Wellness

Trail of Bits is our people, not a place. With more than 100 team members working across time zones around the globe, our remote-first culture is built on autonomy and trust.

Empowered Living:

  • Competitive compensation complemented by performance-based bonuses.

Work & Life Enrichment:

  • $1,000 Working-from-Home stipend to create a comfortable and productive home office.
  • Annual $750 Learning & Development stipend for continuous personal and professional growth.
  • Company-sponsored all-team celebrations, including travel and accommodation, to foster community and recognize achievements.

Community Impact:

  • Philanthropic contribution matching up to $2,000 annually.

Skills Required

  • Direct experience red teaming production software and personally finding and proving exploitable vulnerabilities
  • Experience building AI-driven vulnerability discovery tooling, including agentic harnesses, LLM-assisted triage pipelines, or automated exploit generation
  • Experience applying formal methods to system designs and code implementations, including interpreting specifications and machine-checked proof artifacts
  • Ability to read at least one of Lean, Rocq, F*, Dafny, or Verus/Rust
  • Experience finding vulnerabilities in network protocol implementations, operating system internals, open-source software, cryptographic implementations, or AI inference infrastructure
  • Software development experience in Python, C++, and/or Rust
  • Experience writing security assessment reports for expert audiences
  • Experience delivering work to fixed external schedules with defined acceptance criteria
  • Experience with ethical vulnerability disclosure
  • Published vulnerability research, such as CVEs, advisories, or security conference talks
  • Experience auditing or contributing to formally verified codebases such as HACL*, EverCrypt, seL4, CompCert, or CakeML
  • Experience building automated bug-finding infrastructure at scale, such as cyber reasoning systems, fuzzing fleets, or symbolic execution engines
  • Experience with zero-knowledge proof systems, proof-checking kernels, or SMT-backed tooling
  • Experience attacking AI inference infrastructure, including weight confidentiality, integrity, tenant isolation, or output mediation
  • Participation in CTF competitions, Pwn2Own, DARPA's AI Cyber Challenge, or similar activities
  • Experience with compiler technology, program analysis, or binary analysis
  • Experience reading, writing, and publishing academic papers

What the Team is Saying

Skylar
Opal
Tjaden
Sam
Artem
Jim
Anish

Trail of Bits Compensation & Benefits Highlights

  • Healthcare Strength Health coverage is described as employer-paid with no monthly premiums, alongside dental, vision, life, and disability coverage. Access to Kindbody, One Medical, Teladoc, and HealthAdvocate further strengthens the offering.
  • Leave & Time Off Breadth Time away is outlined as four weeks of PTO and about 15 company holidays. Parental support includes four months of paid leave for all parents.
  • Fair & Transparent Compensation Pay is presented as benchmarked to market with clear salary ranges visible in postings. This signals a structured and transparent approach to setting compensation.

Trail of Bits Insights

Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Brooklyn, New York
125 Employees
Year Founded: 2012

What We Do

Deepening the Science of Security Founded in 2012 by 3 expert hackers with no investment capital, Trail of Bits is the premier place for security experts to boldly advance security and address technology’s newest and most challenging risks. It has helped secure some of the world's most targeted organizations and devices. Our combination of novel research with practical solutions reduces the security risks that our clients face from emerging technologies. Our work helps drive the security industry and the public understanding of the technology underlying our world. Cybersecurity preparedness is a moving target. Companies like ours are the tip of the spear in the fight against attackers. Our research-based and custom-engineering approach ensures that our client’s capabilities are at the forefront of what’s available. For companies and technologies that live and die by their security, a proactive, tailored approach is required to keep one step ahead of attackers. Democratizing security information is essential. As part of our business, we provide ongoing informational support through blogs, whitepapers, newsletters, meetups, and open-source tools. The more the community understands security, the more they’ll understand why a company like ours is so unique and valuable.

Why Work With Us

At Trail of Bits, our 100+ global team members are the core of a remote-first, people-centric culture. Emphasizing autonomy and trust, we offer flexible work and meaningful benefits, supporting diverse talents in pursuing innovation and well-being.

Gallery

Gallery
Gallery
Gallery
Gallery
Gallery
Gallery
Gallery
Gallery
Gallery

Trail of Bits Offices

Remote Workspace

Employees work remotely.

Trail of Bits is our people, not a place. With over 100+ employees working from every time zone across the globe, our remote-first culture is built on autonomy and trust (and backed by smile-worthy benefits).

Typical time on-site: None
HQNew York, New York
Our office is situated in a vibrant and diverse neighborhood known for its blend of historic charm and contemporary urban energy. The area is dotted with charming brownstones, bustling cafes, and eclectic local shops, creating a lively yet cozy atmosphere that's quintessentially Brooklyn.

Similar Jobs

Trail of Bits Logo Trail of Bits

Engineering Director, Application Security

Artificial Intelligence • Blockchain • Professional Services • Security • Consulting • Cybersecurity • Defense
Remote
United States
125 Employees
250K-300K Annually

Trail of Bits Logo Trail of Bits

Senior Engineer

Artificial Intelligence • Blockchain • Professional Services • Security • Consulting • Cybersecurity • Defense
Remote
United States
125 Employees
160K-200K Annually

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account