RunSybil
Security Analyst
United States · Full-time
Sponsorship not specified$130k-$160kDetected 104 days ago
CybersecurityPenetration TestingResearchCommunicationPlain Language
About the role
- We are looking for a Security Analyst to join our security research team.
- You will work hands-on with web application vulnerabilities every day, assessing findings, confirming exploitability, rating severity, and delivering clear, accurate reports that customers rely on to understand and remediate their risk.
- This role does not require software engineering experience.
Responsibilities
- Assess and validate web application vulnerabilities across a range of targets and confirm exploitability and scope
- Maintain consistent standards across a high volume of findings
- Self-direction: you manage your own work without needing someone to structure your day
- We want everyone here to have ownership in what we're building.
- Diverse teams build better products.
- Backed by strong investor support and early customer traction, our team includes experts from OpenAI, Meta, Mandiant, Palantir, Cruise, Trail of Bits, and Aptiv.
Requirements
- Experience reproducing and validating findings manually, including in ambiguous or noisy environments
- Comfort with tools like Burp Suite, browser developer tools, or similar for hands-on verification
- It requires deep familiarity with web vulnerabilities, sharp analytical judgment, and the ability to communicate findings precisely.
- If you have spent time in bug bounty, application security, or pentesting and have a strong eye for what is real and what is noise, we want to hear from you.
- 2 or more years of hands-on experience with web application vulnerabilities through bug bounty, penetration testing, application security, or a similar role
- Solid, practical understanding of OWASP Top 10 and common web vulnerability classes: you have actually found and confirmed these, not just read about them
- Strong written communication: you can describe a vulnerability, its impact, and how to fix it in plain language
Compensation
- The base salary for this full-time position ranges from $130,000-$160,000.
- In addition to base salary, we offer meaningful equity.
- We want everyone here to have ownership in what we're building.
- Diverse teams build better products.
- RunSybil is committed to hiring people who bring different perspectives, lived experiences, and backgrounds to our work.
- Pursuant to the San Francisco Fair Chance Ordinance, we will consider for employment qualified applicants with arrest and conviction records.
Benefits
- We encourage candidates of all races, ethnicities, gender identity and expression, sexual orientation, disability or medical conditions, ages, religions, and socioeconomic backgrounds to apply.
Company info
- We Are Looking for Someone Who Brings
- Founded in 2023 by Ari Herbert-Voss and Vlad Ionescu, RunSybil is on a mission to automate hacker intuition.
- We are building Sybil, an AI-driven pentester that discovers vulnerabilities before they are exploited.
- As adversaries adopt AI to expand their attack surface, we are putting cutting-edge offensive security into the hands of defenders.
Apply directly at RunSybil →Create a free account for alerts like thisView RunSybil immigration profile
This listing is sourced directly from RunSybil's careers page and normalized into a canonical job model.