RunSybil

RunSybil

Security Analyst

United States · Full-time

Sponsorship not specified$130k-$160kDetected 104 days ago
CybersecurityPenetration TestingResearchCommunicationPlain Language

About the role

  • We are looking for a Security Analyst to join our security research team.
  • You will work hands-on with web application vulnerabilities every day, assessing findings, confirming exploitability, rating severity, and delivering clear, accurate reports that customers rely on to understand and remediate their risk.
  • This role does not require software engineering experience.

Responsibilities

  • Assess and validate web application vulnerabilities across a range of targets and confirm exploitability and scope
  • Maintain consistent standards across a high volume of findings
  • Self-direction: you manage your own work without needing someone to structure your day
  • We want everyone here to have ownership in what we're building.
  • Diverse teams build better products.
  • Backed by strong investor support and early customer traction, our team includes experts from OpenAI, Meta, Mandiant, Palantir, Cruise, Trail of Bits, and Aptiv.

Requirements

  • Experience reproducing and validating findings manually, including in ambiguous or noisy environments
  • Comfort with tools like Burp Suite, browser developer tools, or similar for hands-on verification
  • It requires deep familiarity with web vulnerabilities, sharp analytical judgment, and the ability to communicate findings precisely.
  • If you have spent time in bug bounty, application security, or pentesting and have a strong eye for what is real and what is noise, we want to hear from you.
  • 2 or more years of hands-on experience with web application vulnerabilities through bug bounty, penetration testing, application security, or a similar role
  • Solid, practical understanding of OWASP Top 10 and common web vulnerability classes: you have actually found and confirmed these, not just read about them
  • Strong written communication: you can describe a vulnerability, its impact, and how to fix it in plain language

Compensation

  • The base salary for this full-time position ranges from $130,000-$160,000.
  • In addition to base salary, we offer meaningful equity.
  • We want everyone here to have ownership in what we're building.
  • Diverse teams build better products.
  • RunSybil is committed to hiring people who bring different perspectives, lived experiences, and backgrounds to our work.
  • Pursuant to the San Francisco Fair Chance Ordinance, we will consider for employment qualified applicants with arrest and conviction records.

Benefits

  • We encourage candidates of all races, ethnicities, gender identity and expression, sexual orientation, disability or medical conditions, ages, religions, and socioeconomic backgrounds to apply.

Company info

  • We Are Looking for Someone Who Brings
  • Founded in 2023 by Ari Herbert-Voss and Vlad Ionescu, RunSybil is on a mission to automate hacker intuition.
  • We are building Sybil, an AI-driven pentester that discovers vulnerabilities before they are exploited.
  • As adversaries adopt AI to expand their attack surface, we are putting cutting-edge offensive security into the hands of defenders.

This listing is sourced directly from RunSybil's careers page and normalized into a canonical job model.